active
Entra ID governance sandbox
Access packages and lifecycle workflows built the way a real directory would need them, then load-tested against the approval and expiry cases a demo never shows.
- Entra ID
- Access packages
- Graph API
- PowerShell
Identity, detection, and Zero Trust work that was actually configured and tested — not just diagrammed. Each page carries the tenant setup, what was measured, and what broke first.
active
Access packages and lifecycle workflows built the way a real directory would need them, then load-tested against the approval and expiry cases a demo never shows.
active
KQL detections against Defender and Sentinel telemetry, run against simulated attacks to find the false-positive rate before anything reaches a real queue.
ongoing
Moving a legacy AD DS domain onto native Entra ID Governance — hybrid join, sync behavior, and the parts of a directory migration that only surface once real objects are moving through it.
A Conditional Access policy simulator and an agent-permissions review are both in progress. A Catalina Wine Mixer catering proposal remains, as ever, theoretical.