I came to security through the systems it needs to protect.
My career spans more than 20 years in IT operations, infrastructure architecture, cybersecurity, and identity governance. That path shapes how I think: controls need to work with the environment, and technical choices need to make sense as business decisions.
My focus is identity and access management—the relationships between people, systems, entitlements, and accountability. I bring architectural depth in Active Directory, Entra ID, and federated identity, alongside experience in security governance and identity program delivery.
An MBA in Management of Technology complements that technical background. I work at the connection between implementation reality, disciplined risk management, and leadership judgment.
Why Third Practice?
Third Practice is a nod to Shu–Ha–Ri, a progression of mastery: first you learn the established forms, then you understand the principles behind them, and finally you know them well enough to exercise your own judgment. That third stage doesn’t abandon the foundations. It’s where they become useful in situations no template anticipated, which is where most real identity, architecture, and risk decisions live.