About
Azure Security Engineer with 1.5 years of hands-on experience securing Microsoft Azure environments using Microsoft Intune, Microsoft Sentinel, Microsoft Purview, and the Microsoft Defender suite. Delivered measurable security outcomes by increasing Defender Secure Score from 55% to 75%, hardening endpoints, and enforcing identity-driven access controls across cloud and hybrid environments. Focused on implementing Zero Trust security principles, continuous risk reduction, and compliance-aligned cloud security architectures.
Skills & Expertise (3)
Work Experience
Associate Security Engineer
Celebal Technologies
08-2024 - Present
Reduced endpoint attack surface by 20% (measured via Microsoft Secure Score) across 100+ workstations by orchestrating Intune-led ASR rule deployment and policy hardening. Administered Microsoft Intune, managing device compliance, 15+ configuration profiles, and endpoint protection for 120+ endpoints. Deployed Microsoft Purview, implementing sensitivity labels with encryption and DLP policies, reducing data leakage risk across M365. Enabled Entra ID authentication for SQL Server (Azure VMs) and SQL Managed Instances, eliminating SQL auth dependencies. Integrated hybrid identity using Entra Connect Sync for 1500+ users, reducing auth errors by 30% and improving sync reliability. Enforced least-privilege access via Entra PIM, group-based access, and Azure RBAC across subscriptions and resources. Centralized hybrid identity management by configuring Entra ID auth for on-prem SQL via Azure Arc. Enhanced threat detection in Microsoft Sentinel, building 20+ KQL queries, 10 analytics rules, and integrating feeds with Defender XDR.
Associate Security Engineer
Celebal Technologies
08-2024 - Present
Reduced endpoint attack surface by 20% (measured via Microsoft Secure Score) across 100+ workstations by orchestrating Intune-led ASR rule deployment and policy hardening. Administered Microsoft Intune, managing device compliance, 15+ configuration profiles, and endpoint protection for 120+ endpoints. Deployed Microsoft Purview, implementing sensitivity labels with encryption and DLP policies, reducing data leakage risk across M365. Enabled Entra ID authentication for SQL Server (Azure VMs) and SQL Managed Instances, eliminating SQL auth dependencies. Integrated hybrid identity using Entra Connect Sync for 1500+ users, reducing auth errors by 30% and improving sync reliability. Enforced least-privilege access via Entra PIM, group-based access, and Azure RBAC across subscriptions and resources. Centralized hybrid identity management by configuring Entra ID auth for on-prem SQL via Azure Arc. Enhanced threat detection in Microsoft Sentinel, building 20+ KQL queries, 10 analytics rules, and integrating feeds with Defender XDR.
Associate Security Engineer
Celebal Technologies
08-2024 - Present
Reduced endpoint attack surface by 20% (measured via Microsoft Secure Score) across 100+ workstations by orchestrating Intune-led ASR rule deployment and policy hardening. Administered Microsoft Intune, managing device compliance, 15+ configuration profiles, and endpoint protection for 120+ endpoints. Deployed Microsoft Purview, implementing sensitivity labels with encryption and DLP policies, reducing data leakage risk across M365. Enabled Entra ID authentication for SQL Server (Azure VMs) and SQL Managed Instances, eliminating SQL auth dependencies. Integrated hybrid identity using Entra Connect Sync for 1500+ users, reducing auth errors by 30% and improving sync reliability. Enforced least-privilege access via Entra PIM, group-based access, and Azure RBAC across subscriptions and resources. Centralized hybrid identity management by configuring Entra ID auth for on-prem SQL via Azure Arc. Enhanced threat detection in Microsoft Sentinel, building 20+ KQL queries, 10 analytics rules, and integrating feeds with Defender XDR.
Associate Security Engineer
Celebal Technologies
08-2024 - Present
Reduced endpoint attack surface by 20% (measured via Microsoft Secure Score) across 100+ workstations by orchestrating Intune-led ASR rule deployment and policy hardening. Administered Microsoft Intune, managing device compliance, 15+ configuration profiles, and endpoint protection for 120+ endpoints. Deployed Microsoft Purview, implementing sensitivity labels with encryption and DLP policies, reducing data leakage risk across M365. Enabled Entra ID authentication for SQL Server (Azure VMs) and SQL Managed Instances, eliminating SQL auth dependencies. Integrated hybrid identity using Entra Connect Sync for 1500+ users, reducing auth errors by 30% and improving sync reliability. Enforced least-privilege access via Entra PIM, group-based access, and Azure RBAC across subscriptions and resources. Centralized hybrid identity management by configuring Entra ID auth for on-prem SQL via Azure Arc. Enhanced threat detection in Microsoft Sentinel, building 20+ KQL queries, 10 analytics rules, and integrating feeds with Defender XDR.
Junior Associate Security Engineer
Celebal Technologies
08-2023 - 07-2024
Supported Microsoft Purview compliance efforts by assisting with data classification, sensitivity labeling, and compliance policy setup across 10+ M365 workloads. Contributed to Defender for Cloud posture management, analyzing Secure Score across 3+ subscriptions and supporting remediation under senior guidance. Gained hands-on experience with Azure networking including Front Door, App Gateway, Traffic Manager, and Azure Load Balancer to support secure and resilient cloud architectures. Aided in implementing Hub-and-Spoke architecture, supporting VNet design, NSGs, and traffic segmentation to ensure private and secure connectivity. Assisted in cross-tenant Azure subscription migration, handling access validation, resource verification, and post-migration security checks for 50+ resources.
Junior Associate Security Engineer
Celebal Technologies
08-2023 - 07-2024
Supported Microsoft Purview compliance efforts by assisting with data classification, sensitivity labeling, and compliance policy setup across 10+ M365 workloads. Contributed to Defender for Cloud posture management, analyzing Secure Score across 3+ subscriptions and supporting remediation under senior guidance. Gained hands-on experience with Azure networking including Front Door, App Gateway, Traffic Manager, and Azure Load Balancer to support secure and resilient cloud architectures. Aided in implementing Hub-and-Spoke architecture, supporting VNet design, NSGs, and traffic segmentation to ensure private and secure connectivity. Assisted in cross-tenant Azure subscription migration, handling access validation, resource verification, and post-migration security checks for 50+ resources.
Junior Associate Security Engineer
Celebal Technologies
08-2023 - 07-2024
Supported Microsoft Purview compliance efforts by assisting with data classification, sensitivity labeling, and compliance policy setup across 10+ M365 workloads. Contributed to Defender for Cloud posture management, analyzing Secure Score across 3+ subscriptions and supporting remediation under senior guidance. Gained hands-on experience with Azure networking including Front Door, App Gateway, Traffic Manager, and Azure Load Balancer to support secure and resilient cloud architectures. Aided in implementing Hub-and-Spoke architecture, supporting VNet design, NSGs, and traffic segmentation to ensure private and secure connectivity. Assisted in cross-tenant Azure subscription migration, handling access validation, resource verification, and post-migration security checks for 50+ resources.
Junior Associate Security Engineer
Celebal Technologies
08-2023 - 07-2024
Supported Microsoft Purview compliance efforts by assisting with data classification, sensitivity labeling, and compliance policy setup across 10+ M365 workloads. Contributed to Defender for Cloud posture management, analyzing Secure Score across 3+ subscriptions and supporting remediation under senior guidance. Gained hands-on experience with Azure networking including Front Door, App Gateway, Traffic Manager, and Azure Load Balancer to support secure and resilient cloud architectures. Aided in implementing Hub-and-Spoke architecture, supporting VNet design, NSGs, and traffic segmentation to ensure private and secure connectivity. Assisted in cross-tenant Azure subscription migration, handling access validation, resource verification, and post-migration security checks for 50+ resources.
Education
Bachelor of Technology
2020 - 2024 · India
Bachelor of Technology
2020 - 2024 · India
Bachelor of Technology
2020 - 2024 · India
Bachelor of Technology
2020 - 2024 · India
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Current Company
Other
Visa Status
No Visa
Relocation
Open to Relocation