01About 02Capabilities 03AI Lab 04Experience 05Case Studies 06Certifications 07Contact
Available for engagements — C2C / Remote
Security · Cloud · AI Architect

Assil Abdulrahim

Securing the cloud journey for the enterprises that can't get it wrong.

Trusted advisor to CIOs & CISOs and founder of 365Architect. I turn complexity into clarity — architecting secure Azure & AWS migrations, identity, governance, and DevSecOps for finance, healthcare, retail, and government.

Glenside, PA · USA EN · AR (Multilingual) 20+ Years
Assil Abdulrahim — Security & Cloud Architect
● Available 20+ Years 365Architect CEO CISM · CCSK
Scroll
20+
Years in Enterprise Security
40+
Professional Certifications
9
Agile Teams Led at Scale
4
Regulated Sectors Served
Independently verified · Microsoft Learn 22 Active certs 29 Exams passed 110 Modules 82h Training View transcript
Profile

The bridge between
security and architecture.

/ 01 — about
A
Assil Abdulrahim
Founder & CEO
365Architect
Glenside, PA · USA

For two decades I've helped Fortune-class enterprises modernize legacy platforms and move to the cloud without trading away security. I work where the stakes are highest — finance, healthcare, retail, and government — partnering with leaders at organizations like Santander, Walmart, Publix, and F5.

My differentiator is simple: I fill the gap between security experts and technical architects. Most teams have one or the other; compliance and cloud migration break down in the space between them. I speak both languages and bridge that gap — from boardroom strategy down to the IaC pipeline.

Security-first thinking is in my DNA. I design secure-by-default systems that pass the hardest audits — HIPAA, PCI-DSS, ISO, NIST, FedRAMP — and still fuel innovation. And I pair that with a forward bet most consultancies haven't made yet: private, on-prem AI that keeps your intellectual property entirely your own.

Trusted advisor to CIOs / CISOs / BISOs $2M project insurance Full-cycle: roadmap → implementation EN · AR
What I do

Capabilities

/ 02 — capabilities
01

Cloud Security Architecture

Secure-by-design reference architectures, threat modeling, and security baselines across Azure & AWS environments.

Threat ModelingSecurity BaselinesDefense-in-Depth
02

Identity & Access (IAM)

Federated identity, SSO, MFA and Zero Trust. Entra ID / Azure AD P2, PIM/PAM, Okta, Auth0, PingFederate, ADFS.

Zero TrustSSO / MFAPIM / PAM
03

Cloud Migration & Landing Zones

Large-scale, low-disruption migration to Azure & AWS — landing zone design, networking, governance, and monitoring per Well-Architected.

Landing ZonesWell-ArchitectedNetworking
04

Governance, Risk & Compliance

Gap analysis & attestation against CSA CCM, ISO, NIST, SOC2, FedRAMP. Azure Policy, Blueprints, Purview, data governance.

HIPAA / PCI-DSSCSA CCM · NISTMicrosoft Purview
05

DevSecOps & IaC

Secure CI/CD pipelines and Infrastructure as Code that ship fast and stay compliant — Terraform, ARM, PowerShell automation.

Secure CI/CDTerraform · ARMPowerShell
06

AI-Driven Security & Private LLM

On-prem AI for anomaly detection, semantic search and compliance classification — ML.NET, Azure AI, GraphRAG, vector search.

Private LLMGraphRAGAnomaly Detection
The forward bet

Private AI Lab

Fully private, on-premises AI ecosystems I designed and built — multi-model, zero-knowledge, and vendor-independent. Your IP never leaves your perimeter.

/ 03 — ai_lab
~/brainnest365 — secure node On-prem · Zero-knowledge
# BrainNest365 & CodeNest365 — private AI ecosystems
assil@blackwell:~$ inference --engine ollama --local
DeepSeek-Coder-V2 · Qwen3-Coder-Next · Kimi
assil@blackwell:~$ graphrag index --leiden --hardware NVIDIA-Blackwell
knowledge graph built · architectural discovery −60%
assil@blackwell:~$ qdrant search --hybrid --vectors
hybrid RAG · vector search optimized
assil@blackwell:~$ aider --pair --refactor
AI-assisted refactor · IP stays on-prem

Local LLM Orchestration

Multi-model local inference via Ollama — DeepSeek-Coder-V2, Qwen3-Coder-Next, and Kimi running entirely in-house.

GraphRAG Knowledge Indexing

Leiden community-detection pipeline on NVIDIA Blackwell that cut architectural discovery time by ~60%.

Qdrant Vector + Hybrid RAG

Optimized vector search and hybrid retrieval over a secure, self-hosted knowledge base.

Agentic & Voice Workflows

Aider AI-pair-programming plus Whisper + TTS voice AI — automation without sending data off-site.

Track record

Experience

/ 04 — experience
2021 — Present
Founder & CEO — Security & Cloud Consultant
365Architect · Glenside, PA
  • Lead enterprise cloud security, architecture, migration, and IAM consulting across finance, healthcare, and retail.
  • Engineer Azure Policy, Blueprints, baselines, and custom controls to enforce governance and maintain secure posture.
  • Run SSP, SRCR, and ISAR reviews and gap analyses against CSA CCM, ISO, and NIST for attestation and remediation.
  • Architect AI-driven security controls (ML.NET, Azure AI) and a private GraphRAG node for on-prem, vendor-independent automation.
SantanderWalmartPublixF5
2019 — 2021
Senior / Principal Architect (Director-level)
Infosys · Bentonville, AR
  • Led a 55+ member cross-functional team of developers, architects, and leads; owned hiring and delivery for the vertical.
  • Rescued and re-architected a multi-billion-dollar platform with cloud-native, event-driven, microservices design.
  • Led 9 Agile Scrum teams modernizing pharmaceutical systems alongside HIPAA auditors for full regulatory adherence.
  • Advised executive leadership on technical governance; shaped multi-million-dollar engagements end to end.
2018 — 2019
Principal Identity Services Architect
Independent Consultant · Greater Philadelphia
  • Built a centralized federated identity platform integrating Okta, Auth0, Azure AD, Google, and social providers.
  • Migrated legacy identity to cloud AAD with hybrid identity, SSO, MFA, PingFederate, CA SiteMinder, and ADFS.
  • Delivered OAuth 2.0 / OIDC solutions, full CI/CD pipelines, and IaC via PowerShell and ARM templates.
2016 — 2018
Chief Architect, SVP
SICOM · Lansdale, PA
  • Built a microservices integration platform connecting 37+ POS payment devices — cutting integration from months to weeks.
  • Delivered the flagship E-Payment system and Sicom.Framework, doubling company profits through expanded market reach.
  • Achieved PCI-DSS certification with third-party auditors; built enterprise security frameworks in .NET 4.5.
2015 — 2016
Security Architecture / Principal Architect
NIH / NIAID · Rockville, MD
  • Architected secure, Level-3-mature RESTful APIs that passed the first security scan with zero vulnerabilities.
  • Drove a TOGAF-aligned architecture roadmap and introduced DevOps practices and automated deployment pipelines.
2013 — 2015
Microsoft Architect
Deloitte · Camp Hill, PA
  • Owned enterprise security architecture; built a Fine-Grained Access framework on WIF for claims-based authN/authZ.
  • Delivered reusable security components (SiteMinder emulator, HTTP modules, policy-based auth) across all .NET app types.
Proof

Selected engagements

/ 05 — case studies
Banking & Finance
Santander
Cloud Security & Migration
via 365Architect
Challenge

A global, systemically-important bank needed to harden its security posture and move regulated workloads to the cloud — without disrupting operations or failing audits.

Approach

Architected the cloud security and migration strategy; enforced governance through Azure Policy, Blueprints, and custom security baselines; ran SSP, SRCR, and ISAR reviews with gap analyses against CSA CCM, ISO, and NIST; and implemented identity and Zero-Trust controls.

Audit-readyGovernance enforced as code across regulated cloud workloads, with baselines and remediation mapped to CSA CCM, ISO & NIST.
Retail · Pharmacy / HIPAA
Walmart
Principal Architect
via Infosys
Challenge

A multi-billion-dollar pharmaceutical platform required modernization at massive scale, under strict HIPAA regulatory oversight.

Approach

Led a 55+ member cross-functional organization and 9 Agile Scrum teams to re-architect the platform with cloud-native, event-driven microservices — working alongside HIPAA auditors to guarantee full regulatory adherence.

$B-scaleA multi-billion-dollar platform rescued and modernized to event-driven microservices, delivered HIPAA-compliant by 9 coordinated Scrum teams.
Payments · Point-of-Sale
SICOM
Chief Architect, SVP
Challenge

Fragmented integrations across 37+ POS payment devices stretched delivery to months and blocked market expansion.

Approach

Built a microservices integration platform, the flagship E-Payment system, and the reusable Sicom.Framework — then drove PCI-DSS certification with third-party auditors.

2× profitIntegration time cut from months to weeks, company profits doubled, and full PCI-DSS certification achieved.
Credentials

Certifications

40+ professional certifications across cloud, security, data, and architecture — most available to download below as PDFs, with 22 active Microsoft credentials independently verifiable on Microsoft Learn.

/ 06 — certifications
Education

Academic foundation

/ 07 — education
2014
Master of Science

Project Management

Keller Graduate School of Management
Graduate study in program & project leadership
View diploma · PDF
2000
Bachelor of Science

Electrical Engineering

Tishreen University
Major in Electronics
Toolchain
Trusted across regulated industries Santander Walmart Publix F5 NIH / NIAID Deloitte SICOM Infosys
Contact

Let's make your cloud
secure by design.

Modernizing systems, hardening your cloud, or navigating a compliance-heavy migration? I take on short- and long-term engagements (Corp-to-Corp or remote). Let's talk.

Send a message
$2M project insurance C2C / Remote Finance · Healthcare · Retail · Gov