I’m Joseph Velliah, a Staff Cybersecurity Engineer based in Austin, Texas. Most of my day job is identity governance: who and what can access a system, how that access is granted, and how you prove it later. For 15+ years I’ve built and run platforms on Azure, AWS, and GCP, mostly in cloud security, Kubernetes, DevSecOps, and AI/GenAI.

I use this blog for field notes from that work. Zero-trust patterns, workload identity, secure pipelines, and the parts that still hold up after the demo is over.

Focus areas

  • Identity governance. Access lifecycle, least privilege, policy-as-code, and auditability.
  • Zero-trust and multi-cloud security. Service identity, IAM federation, workload trust, and compliance automation on Azure, AWS, and GCP.
  • Kubernetes in production. Service mesh, secrets, sidecars, and day-2 operations.
  • DevSecOps and AI engineering. Secure CI/CD, RAG, MCP tooling, and GenAI used inside real security workflows.

Community

  • Docker Captain. Containers, Kubernetes, and cloud-native practices.
  • AWS Community Builder. Cloud security, DevSecOps, and AI systems.

Certifications

Azure Solutions Architect Expert · Azure DevOps Engineer Expert · Certified DevSecOps Practitioner

Elsewhere

Browse all posts