Commercial Front Door
Azure landing-zone, management-group, and guardrail operations for platform, identity, and security teams.
Audit-safe visibility into policy inheritance, network exposure, Defender posture, and baseline freshness without exposing tenant credentials.
Proof Layer
Offline drift analyzer + CLI + dashboard surface.
This repo includes a reusable analyzer that reads landing-zone drift exports and turns them into owner, guardrail, and remediation packets.
Why it matters
Recruiters looking for Azure / Microsoft 365 / Entra / Intune / AWS / GCP should see real cloud-admin work: policy inheritance, route integrity, owner-role hygiene, and audit-safe cleanup proof.