Senior Azure Infrastructure Architect

Azure Infrastructure for
Regulated Organizations.

I design and deliver the full stack — cloud architecture, networking, Active Directory, identity security, and compliance readiness — for insurers, healthcare firms, law enforcement, and other organizations where getting it wrong isn't an option. One architect. No handoffs. End to end.

27+ Years Engineering
US / Asia Global Deployments
SOX · HIPAA · CJIS Compliance Frameworks
Walter Riopedre — Senior Azure Infrastructure Architect, Tampa FL

Consulting Pillars

What I Deliver

I understand the wire, the packet, and the policy — a rare combination that bridges network foundations, cloud engineering, identity security, and regulatory compliance in one engagement.

Cloud Architecture & Migration

Greenfield Azure builds and datacenter exits — zero downtime, production-grade governance, and multi-region reach. 500+ server migrations delivered.

Landing Zones Multi-Region AVD / W365 Zero Downtime
🔒

Identity & Zero Trust Security

Legacy AD to modern Entra ID — eliminating lateral movement, enforcing least privilege, and building the identity foundation every compliance framework requires. 27+ years in directory services.

Active Directory Entra ID Conditional Access PIM
💻

Secure Workforce Enablement

Compliance-aligned endpoint management for distributed, regulated workforces. Intune, Autopilot, and AVD delivering secure, consistent workspaces — regardless of platform or location. 1,000+ device fleet deployments.

Intune Autopilot AVD Multi-Platform

Compliance & Audit Remediation

I find the gaps before the auditors do. Having supported live Justice Department audits and SOX external reviews, I know what controls actually eliminate findings versus what merely delays them.

SOX HIPAA CJIS / FBI GLBA

Why Organizations Engage Me

When Clients Bring Me In

Most engagements start with one of these situations. If any of these sound familiar, let's talk.

🔌

Active Directory is fragile and blocking a cloud modernization or Entra migration that keeps stalling.

An audit is coming — SOX, HIPAA, CJIS — and the controls aren't defensible yet.

Azure exists, but governance and identity don't — subscriptions sprawling, no policy baseline, no clear ownership.

📅

A datacenter exit has a hard deadline and the migration plan isn't production-ready.

💻

An Intune or AVD rollout is stalled or insecure — devices out of compliance, policies inconsistent, endpoints ungoverned.

🎯

Security and infrastructure ownership is fragmented — no single architect who understands the full stack.

Directory Services Depth

27+ Years in Directory Services:
NT4 → Active Directory → Hybrid Identity → Entra ID

Most Azure architects arrived from application development or pure cloud backgrounds. My foundation is directory services — the layer everything else depends on. That depth is rare, and in regulated environments it's the difference between an identity architecture that passes audit and one that generates findings.

AD health assessment, remediation, and forest/domain cleanup
Hybrid identity design and AD Connect architecture
Group Policy rationalization and GPO-to-Intune migration
Privileged access redesign and delegated admin restructuring
Entra ID modernization for compliance-driven environments
AD security hardening for SOX, HIPAA, and CJIS requirements

Featured Projects

Consulting Work

HEALTHCARE · MULTI-REGION

Emperion — Global Healthcare Cloud Platform

Architected the entire Azure environment from zero for a URAC-accredited IME provider (47+ years in operation, 25,000+ provider network). Multi-subscription build across US East, US West, and Asia Pacific — delivering a consistent, HIPAA-compliant experience for a 24/7 borderless workforce. Entra ID, hybrid identity, Intune managing 1,000+ devices globally, and Azure Virtual Desktop.

US / Asia Pacific HIPAA 25,000+ Providers Multi-Subscription AVD
View Details →
MIGRATION · PUBLICLY TRADED

UPC Insurance — NYSE Datacenter Exit

Led complete datacenter exit for a NYSE-listed P&C insurer. 500+ servers migrated from VMware and Nutanix across 6 Azure subscriptions. Zero downtime to production. Every architectural decision — access controls, audit logging, change management, network segmentation — designed to withstand SOX external audit scrutiny.

SOX 500+ Servers 6 Subscriptions Zero Downtime
View Details →
GREENFIELD · INSURANCE

Slide Insurance — Greenfield Enterprise Build

Designed and built the complete IT infrastructure for a fast-growing insurer from scratch — Azure cloud platform, Active Directory, Entra ID, Intune/Autopilot for 1,000+ devices, AVD, and network security. GLBA-compliant architecture throughout.

GLBA 1,000+ Devices Intune / Autopilot Zero Trust
View Details →
AUDIT REMEDIATION · LAW ENFORCEMENT

Regional Sheriff's Office — CJIS Audit Readiness

Hardened on-premises infrastructure and prepared a Florida law enforcement agency for a live Justice Department internal audit. Achieved full FBI CJIS Security Policy compliance — mandatory MFA, end-to-end encryption, detailed audit logging, and access controls that exceeded typical enterprise security standards.

CJIS / FBI Audit Readiness MFA Zero Trust
View Details →

Regulated Industry Experience

Built for Environments Where Security Isn't Optional

Most of my career has been spent in environments where a misconfigured permission or missed audit log carries regulatory and legal consequences. I've designed and operated infrastructure under some of the most demanding compliance frameworks in existence — not as a consultant parachuted in, but as the engineer who built it and owns it.

🏦

Financial Services & Insurance

Active Directory and Azure infrastructure for publicly traded companies under SOX, GLBA, and SEC requirements. Audit trails, privileged access management, and change control processes built to withstand external auditor review — not just pass an internal checklist.

SOX GLBA SEC Reg SP

UPC Insurance (NYSE) · Slide Insurance

🏥

Healthcare & Medical Services

Identity and cloud infrastructure in HIPAA-covered environments requiring strict PHI access controls, audit logging, and BAA-compliant Azure services. Built the complete cloud platform for Emperion — a URAC-accredited IME provider with 25,000+ providers operating 24/7 across the US and Asia.

HIPAA HITECH URAC / SOC 2

Emperion · Medical Research Institute (IT Director)

🔌

Law Enforcement (CJIS)

Consulting with Regional Sheriff offices in support of live Justice Department audits. FBI CJIS Security Policy requires advanced MFA, end-to-end encryption, detailed audit logging, personnel security screening, and access controls that far exceed typical enterprise standards.

FBI CJIS NIST 800-53 Zero Trust

Regional Sheriff Offices, Florida

“I've spent 27+ years in environments where compliance isn't a checkbox — it's engineered into every layer of the architecture. Whether it's a SOX audit, HIPAA risk assessment, or a live CJIS compliance review, I've been in that room. I know what auditors actually look for.”

The Professional Bridge

From Caribbean NOCs to Global Cloud Fabrics.

My career spans the history of the modern data center — from engineering national telecommunications infrastructure at ETECSA in Cuba in 1996, to building global multi-region Azure environments for US and Asian markets today. That 27-year arc gives me something cloud-only engineers don't have: a deep understanding of what infrastructure needs to survive, not just what it needs to run.

MSc Telematics CCNA PMP ITIL v4 Bilingual EN / ES
Full Background →

Verified Experience

What My Work Demonstrates

500+
Servers migrated to Azure with zero production downtime
1,000+
Devices managed in compliance-aligned Intune environments
4
Major compliance frameworks: SOX, HIPAA, CJIS, GLBA
3
Continents — US, Asia, and Caribbean infrastructure operations

What Colleagues and Clients Say

Recommendations

Walter brings a rare combination of deep infrastructure expertise and security-focused architectural judgment. His ability to understand the full stack — from networking and directory services to cloud governance and audit-focused controls — and turn that depth into practical results for complex organizations.

When something was his responsibility, you knew it was in good hands. He played a real role in strengthening the company's security posture and helped the organization hold up well through its audits — which says a lot about the quality of the foundation he built.

There was no team handing him pieces of it. He owned the full architecture end to end, made the decisions, and executed them. The infrastructure wasn't just functional; it was defensible.

There was no "we'll fix it later." The architecture was sound from the start. He wasn't just building infrastructure — he was building something that other people would have to depend on and operate. That perspective shows in the quality of what he delivers.

What stood out most to me was Walter's sense of ownership. He's proactive, thoughtful in his approach, and follows through on what he sets out to do. He's someone you can rely on to both identify problems and help drive solutions.

How I Work

Engagement Models

Available for a range of engagement structures depending on your organization's needs. All engagements are NDA-friendly.

Selected Technologies

Tools I Work With

Microsoft Azure Active Directory Microsoft Entra ID Microsoft Intune Windows Autopilot Azure Virtual Desktop Windows 365 Conditional Access Privileged Identity Management Defender for Identity Defender for Endpoint ExpressRoute Private Endpoints VMware Nutanix Azure Monitor Defender for Cloud AD Connect

Ready to move forward?

Whether you're planning a datacenter exit, facing a compliance audit, or need your Active Directory and Azure environment modernized — let's start with a conversation. Serving clients nationwide from Tampa, FL.