Enterprise Azure landing zone
A multi-subscription Azure foundation that separates shared platform services from identity, virtual desktops, and business workloads.
Read case study +
Broadest platform scope, with explicit confirmation of deployed subscriptions and detailed configuration work.
Challenge
Establish a governed Azure platform with clear separation of shared services and application workloads.
My work
Worked through Terraform-based subscription organization, hub-and-spoke connectivity, firewall IP Groups and rule collections, identity networking, and diagnostic-policy configuration. The history explicitly confirms that the platform and workload subscriptions had been deployed.
Project status
Deployed subscription foundation documented. Later conversations cover policy troubleshooting, firewall configuration, and planned workload enablement; those individual changes are not all treated as verified complete.