Based in Doha, Qatar

Palani KumarAnnamalai

Microsoft Cloud, Infrastructure, Identity & Security Architect

Microsoft Certified TrainerCISSPFormer Microsoft Cloud Solution Architect

I design, secure and troubleshoot Microsoft environments spanning Azure, Microsoft 365, Microsoft Entra ID, Windows Server, Active Directory, Exchange, Microsoft Defender, Sentinel, Purview and hybrid infrastructure. My work connects architecture with implementation, validation and operations.

Portrait of Palanikumar Annamalai
Professional scope
Enterprise Microsoft infrastructure, cloud, identity and security
Previously
Microsoft Cloud Solution Architect, Security
Credentials
CISSP and Microsoft Certified Trainer
International experience
India, the UAE, Ireland and Qatar

What I work on

Connecting Microsoft infrastructure, cloud, identity and security

Modern Microsoft environments rarely fit within one product boundary. Identity, messaging, infrastructure, security and governance depend on one another. I work across those connections to reduce exposure and modernise established environments while maintaining operational control.

Connected Microsoft technology landscapeAn animated network links cloud, infrastructure, identity, security and automation.AZURECLOUDIDENTITYSECURITYAUTOMATION
Cloud, infrastructure, identity, security and automation—connected as one system.

Free community tool · Public beta

Assess Microsoft security across cloud and on-premises systems

AdminSecOps is a free, read-only assessment tool covering Microsoft Entra ID, Microsoft 365, Exchange Online, Intune, Azure, Active Directory, AD CS, Group Policy and Windows.

Evidence is evaluated on the user’s device. The browser application has no server-side evidence upload, telemetry, analytics or remote logging.

Launch AdminSecOpsHow it works

AdminSecOps
Assessment99controls
Priority findingIdentity protectionEvidence and remediation available
CoverageCloud + on-premisesUnavailable evidence remains not assessed
01Read-only collection
02Evidence package
03Local analysis
04Prioritised findings
05Remediate and validate

From design to operations

Architecture must continue working after implementation

A technically correct design can still fail if ownership, monitoring, recovery and operational dependencies are unclear.

My work examines the required capability, its dependencies, how access is controlled, what happens when a component fails, how the result is validated and who owns the service afterwards.

The full progression

The stack underneath, oldest layer at the bottom
  1. Windows NT and Exchange 5.5Where it started
  2. Windows Server and Active DirectoryDirectory, domains and server generations
  3. Exchange generationsOn-premises messaging, then hybrid and Exchange Online
  4. System Center, virtualisation and clusteringEnterprise management and availability
  5. Storage Spaces Direct and Azure LocalSoftware-defined infrastructure; Azure Local was Azure Stack HCI until November 2024
  6. Azure and Microsoft 365Cloud platform and productivity services
  7. Identity, security and governanceEntra ID, Defender, Sentinel and Purview across every layer

AutomationPowerShell · Microsoft Graph

Current focus

Five areas I work in today

These are the areas where established infrastructure and current cloud services meet, and where my writing, labs and training are focused.

  1. Infrastructure and hybrid cloud

    Windows Server estates, clusters and software-defined storage, and how they extend into Azure and Azure Local.

    • Windows Server
    • Active Directory
    • Failover Clustering
    • Storage Spaces Direct
    • Azure
    • Azure Local
  2. Identity and access

    From Active Directory to Microsoft Entra ID: hybrid identity, authentication, Conditional Access and privileged access.

    • Microsoft Entra ID
    • Hybrid identity
    • Conditional Access
    • Identity governance
    • Privileged Identity Management
  3. Messaging and collaboration

    Exchange since 5.5: on-premises generations, Exchange hybrid, Exchange Online and the Microsoft 365 around it.

    • Exchange Server
    • Exchange hybrid
    • Exchange Online
    • Microsoft 365
    • Teams
  4. Security and governance

    Security operations, identity security and data governance, built on Zero Trust principles rather than bolted on.

    • Microsoft Defender
    • Microsoft Sentinel
    • Microsoft Purview
    • Zero Trust
  5. Automation and technical enablement

    PowerShell and Microsoft Graph for the repeatable work, and labs, scripts and training so others can do it too.

    • PowerShell
    • Microsoft Graph
    • Labs and scripts
    • Training

Technical writing

Practical guidance, documented in depth

I write on LinkedIn about Microsoft identity, security, messaging, governance and infrastructure. This site is the permanent home for the deeper engineering pieces: the problem, the evidence, the mechanism and the fix, with the versions tested.

Training and community

Practical training grounded in experience

As a Microsoft Certified Trainer, I provide practical sessions across Azure, Microsoft 365, identity, security, Windows Server and hybrid infrastructure.

No sessions scheduled yet. Dates are published on the training page once confirmed.

Training

Selected credentials

Credentials aligned to my work

These selected credentials support my work across security, architecture, cloud and identity. The broader certification record is available on Credly.

All selected credentials

Technical training and presentations

Microsoft Certified Trainer

Recorded AZ-900, AZ-104 and SC-200 training series, and technical presentations. Training

Professional certification

  • CISSPCertified Information Systems Security Professional

Expert certifications

  • SecurityMicrosoft Certified: Cybersecurity Architect Expert
  • CloudMicrosoft Certified: Azure Solutions Architect Expert
  • Microsoft 365Microsoft 365 Certified: Administrator Expert

As of September 2026

active Microsoft certifications
18
passed Microsoft exams
32
Microsoft Applied Skills
2

Verify credentials on Credly (external site)

Contact

Connect

I’m open to senior architecture, technical leadership, speaking and Microsoft training opportunities. For professional enquiries or questions about material published here, email is the best way to reach me. I also share shorter technical notes on LinkedIn.