Senior Solution Architect and Cloud Architecture Leader. Designing secure, governed Azure platforms for regulated and complex enterprise environments.
I design Azure landing zones, subscription topologies, and network architectures for companies in financial services and energy. Most projects involve regulated environments where the architecture has to satisfy both the engineering team and the compliance team.
I build CCoE operating models, write Azure Policy definitions, and design Entra ID architectures. The goal is always the same: make it easy for teams to move fast without breaking compliance, whether that's FFIEC, SOC 2, or GLBA.
I sit in architecture reviews, run pre-sales discovery sessions, and advise executives on cloud strategy. The part I care about most is making sure the roadmap we agree on in a meeting actually becomes the platform that gets deployed.
I design Azure platforms for companies that can't afford to get it wrong. Banks, energy companies, organizations where a misconfigured policy isn't just a ticket, it's a regulatory finding. Most of my work starts at the whiteboard: landing zones, identity architecture, governance models. Then I stick around to make sure it actually gets built right. I've spent 12+ years doing this across financial services, energy, and insurance, and somewhere along the way picked up 14 Microsoft certifications and started training other architects through the MCT program. What I enjoy most is the space between strategy and implementation. The part where a CCoE charter turns into actual Azure Policy definitions, or where an executive's compliance concern becomes a working Entra ID conditional access design.
Open to enterprise cloud architecture, governance consulting, and strategic advisory engagements.
estebangq@gmail.com →