Skip to content
View loredan1994's full-sized avatar

Block or report loredan1994

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
loredan1994/README.md

Nicolae-Loredan Calimanu

Cloud Solutions Architect & Engineering Lead based in Cluj, Romania.

I design secure Azure platforms, engineering guardrails, and delivery systems that teams can operate at scale. My work sits at the intersection of cloud architecture, platform engineering, DevSecOps, and technical leadership.

Portfolio · Selected work · Writing · YouTube · LinkedIn · CV

What I work on

  • Azure architecture and cloud platform engineering
  • Terraform, infrastructure as code, and self-service delivery
  • Identity, secrets, certificate lifecycle, and API security
  • DevSecOps guardrails and reusable governance patterns
  • Engineering leadership, architecture reviews, and technical strategy

Selected public work

A read-only Microsoft Entra application relationship explorer for investigating identities, permissions, and attack paths. Built with TypeScript and Microsoft Graph, with security and architecture documented alongside the implementation.

A focused proof showing secret rotation and validation patterns around Azure Key Vault. This is part of my broader interest in turning security requirements into repeatable engineering controls.

A structured KQL query library and operator playbooks for finding Azure Monitor ingestion-cost problems, investigating noisy tables, and running repeatable SRE reviews.

How I think about systems

  • Systems over symptoms. Find the structural cause before reaching for a tool.
  • Failure-mode first. Design around blast radius, recovery, ownership, and compliance.
  • Guardrails over heroics. Make the safe path the easy path.
  • Outcomes over tool obsession. Choose technology that teams can own in production.
  • Documentation as an engineering asset. Record the why, not only the what.

Selected credentials

Verified badge wallet

Each badge opens its public verification record.

Trusted AI Safety Expert (TAISE) Certificate Certificate of Competence in Zero Trust (CCZT) Certificate of Cloud Security Knowledge v.5 GitHub Foundations LFS169: Introduction to GitOps API Security Fundamentals Microsoft Certified: Azure Fundamentals

Additional current Credly credentials

View the complete Credly profile

Microsoft verified credentials

Microsoft Certified Expert Microsoft Certified Associate

Microsoft Applied Skills

View the Microsoft Learn credential profile

Current explorations

  • AI-assisted engineering workflows
  • Hands-on development in Python, Go, and TypeScript
  • Reusable cloud platform and governance patterns
  • Turning architecture knowledge into practical internal tooling

For case studies and the full professional story, visit calimanu.com.

Pinned Loading

  1. azure-key-vault-rotation-proof azure-key-vault-rotation-proof Public

    Reproducible proof showing how independent Azure Key Vault rotation affects restored RSA keys across DR vaults

    Shell

  2. azure-log-analytics-cost-triage azure-log-analytics-cost-triage Public

    KQL query library and operator playbooks for Azure Log Analytics cost triage, observability, and weekly SRE reviews

  3. entra-relationship-explorer entra-relationship-explorer Public

    Read-only Microsoft Entra application relationship explorer for IAM attack paths, evidence, and remediation

    TypeScript