Skip to content
View Cloud-Architekt's full-sized avatar

Highlights

  • Pro

Block or report Cloud-Architekt

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
cloud-architekt/README.md

πŸ‘‹ About Me

MVP Blog Followers

I'm a Cyber Security Architect based in Koblenz, Germany, specializing in identity security and cloud-native solutions on the Microsoft platform. I've been awarded Microsoft MVP in Security since 2020.

Here's what I'm building and contributing to:

  • πŸ”­ Founder & Dev: EntraOps – automated privilege management based on the Enterprise Access Model
  • πŸ›‘οΈ Co-Author: AzureAD-Attack-Defense – the community playbook for Entra ID attack & defense scenarios
  • πŸ§ͺ Contributor: Maester – open-source PowerShell-based security test automation framework for Microsoft 365 & Entra ID
  • ✍️ Writing about IAM + Security at cloud-architekt.net
  • 🎀 Active community speaker at conferences and meetups
  • πŸ§‘β€πŸ€β€πŸ§‘ Organizer of Azure Meetup Bonn & Cloud Identity Summit

🎯 Areas of Expertise

My focus is on the Microsoft security stack - from identity and access management to threat detection and cloud security posture.

Microsoft Entra ID Azure Zero Trust Conditional Access Privileged Identity Workload Identities Microsoft Sentinel Defender for Cloud KQL PowerShell DevOps Security CSPM


πŸš€ Featured repositories

Repository Description Stars
AzureAD-Attack-Defense Community playbook: attack scenarios on Microsoft Entra ID and their mitigations & detections ⭐ 2.5k
EntraOps Classify, identify & protect privileged identities based on the Enterprise Access Model ⭐ 241
AzureSentinel KQL hunting & detection queries for Microsoft Sentinel ⭐ 209
AzurePrivilegedIAM Docs & samples for privileged identity and access management in Azure ⭐ 185

🎀 Community Speaking

I've been speaking at various conferences across Europe and internationally since 2019, covering topics like:

  • πŸ”‘ Entra ID / Azure AD attack & defense
  • πŸͺ™ Token-based authentication attacks (Fantastic Tokens & How to Protect Them)
  • πŸ›οΈ Microsoft Enterprise Access Model & Control Plane security
  • πŸ€– Workload Identities & non-human identity management
  • πŸ” Identity Threat Detection & Response (ITDR)
  • πŸ“ Conditional Access at scale (AADOps / EntraOps)

Full history with slide downloads: cloud-architekt.net/speaking


🀝 Connect

Feel free to reach out - whether it's about cloud security, community collaboration, or speaking engagements.

Website LinkedIn Twitter / X Bluesky Mastodon

Popular repositories Loading

  1. AzureAD-Attack-Defense AzureAD-Attack-Defense Public

    This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.

    PowerShell 2.5k 364

  2. EntraOps EntraOps Public template

    Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)

    PowerShell 273 33

  3. AzureSentinel AzureSentinel Public

    Sharing my KQL queries for Azure Sentinel

    PowerShell 209 43

  4. AzurePrivilegedIAM AzurePrivilegedIAM Public

    Docs and samples for privileged identity and access management in Microsoft Azure and Microsoft Entra.

    PowerShell 185 37

  5. meetups meetups Public

    All slides from my meetup talks

    38 11

  6. ADOPipelinesSecInfo ADOPipelinesSecInfo Public

    PowerShell module to collect information about service connections and (release) pipelines in Azure DevOps.

    PowerShell 8 7