☁️ Azure Cloud Engineering
↩️ Back to Portfolio Home
📁 Back to Projects Index
Azure Engineering Scope
This section demonstrates practical Azure engineering across infrastructure as code, network architecture, secrets management, cloud monitoring, identity governance, and CI/CD automation.
All three projects are live deployments on a personal Azure subscription with full GitHub Actions pipelines, what-if preview, and environment promotion across dev and prod. Evidence combines personal subscription deployments, sanitised workplace experience, and lab-based work.
Azure Engineering Project Index
| Project | Engineering Capability Demonstrated | Skills |
|---|---|---|
| ⚙️ Infrastructure as Code and Cloud Governance | Bicep module library deploying a hardened storage account, Log Analytics workspace, NSG with diagnostic settings, and an alert rule for privileged role assignments. Deployed via GitHub Actions CI/CD pipeline with what-if preview, environment promotion across dev and prod, and CanNotDelete resource locks enforced on critical resources. Key Vault module added for secrets management with RBAC-based access. |
Bicep Azure CLI NSG Log Analytics GitHub Actions Resource Locks Key Vault RBAC
|
Certifications
| Certification | Level | Focus Area | Certificate | Lab Evidence |
|---|---|---|---|---|
|
AZ-104 Azure Administrator |
Associate | Hands-on administration: identity and governance, storage, compute, virtual networking, and monitoring at production scale. | View certificate | azure-identity-governance-engineering |
|
AZ-900 Azure Fundamentals |
Fundamentals | Core cloud concepts, Azure service models, pricing, and governance — the foundation underpinning the AZ-104 work above. | View certificate | azure-identity-security-foundations |
|
SC-900 Security, Compliance & Identity Fundamentals |
Fundamentals | Microsoft Entra ID, Zero Trust principles, and compliance fundamentals — security context for the identity governance work in this portfolio. | View certificate | azure-identity-security-foundations |