I’m Joseph Velliah, a Staff Cybersecurity Engineer based in Austin, Texas. Most of my day job is identity governance: who and what can access a system, how that access is granted, and how you prove it later. For 15+ years I’ve built and run platforms on Azure, AWS, and GCP, mostly in cloud security, Kubernetes, DevSecOps, and AI/GenAI.
I use this blog for field notes from that work. Zero-trust patterns, workload identity, secure pipelines, and the parts that still hold up after the demo is over.
Focus areas
- Identity governance. Access lifecycle, least privilege, policy-as-code, and auditability.
- Zero-trust and multi-cloud security. Service identity, IAM federation, workload trust, and compliance automation on Azure, AWS, and GCP.
- Kubernetes in production. Service mesh, secrets, sidecars, and day-2 operations.
- DevSecOps and AI engineering. Secure CI/CD, RAG, MCP tooling, and GenAI used inside real security workflows.
Community
- Docker Captain. Containers, Kubernetes, and cloud-native practices.
- AWS Community Builder. Cloud security, DevSecOps, and AI systems.
Certifications
Azure Solutions Architect Expert · Azure DevOps Engineer Expert · Certified DevSecOps Practitioner