Writing
Build journals & field notes
Long-form technical writing on cloud security, compliance, and building in public.
2026-07-19
Building an Entra Conditional Access library
Writing policies is easy. Proving they respond to real events is the part that matters, so I built a monitoring layer. Entra sign-in and audit logs flow into a Log Analytics workspace, and Microsoft Sentinel sits on top with KQL detections tied to the patterns.
Cloud SecurityIAMPolicy as CodeDevSecOps
Read →2026-06-09◆ A 6-part build journal
Building a NIS2-Compliant AWS Landing Zone
An open-source AWS landing zone in Terraform, mapped explicitly to NIS2 Article 21 and ISO 27001:2022 Annex A — built in public, module by module, over six weeks.
AWSNIS2TerraformIaC
View series · 6 published →