Security & IAM
Authentication, authorisation and data protection built in from the start — OAuth/JWT flows, role-based access, secrets management, and compliance-ready audit trails.
Most products past a certain size need the same things: authentication, fine-grained authorization, single sign-on with partners, user lifecycle, and an audit trail an auditor will accept. I've built all of it — including AegiSense, a self-hosted, multi-tenant Identity & Access Management platform that resolves role-, attribute- and relationship-based checks through a single policy decision point.
Whether you need a green-field auth design, a review of what you already have, or help replacing a per-seat SaaS with something you own, the approach is the same: security as part of the architecture, not a hardening pass at the end — with the compliance and observability to prove it.
OAuth2 / OIDC / JWT
RBAC & ABAC authorisation
Secrets & key management
API hardening & rate limiting
Audit trails & compliance
Threat modelling
Tools & technologies
Track record
Years shipping secure systems
Authorization models (RBAC / ABAC / ReBAC)
Self-hosted IAM platform built end to end
Related work

AegiSense — Multi-Tenant Identity & Authorization Platform
A self-hosted, multi-tenant Identity & Access Management platform that unifies authentication, RBAC/ABAC/ReBAC authorization, SSO and federation, user lifecycle and identity governance behind a single policy engine — for regulated, on-premise and high-scale environments.
Read case study
API Service Platform
A multi-vendor identity, KYC and financial-verification platform for Indian financial institutions — three APIs behind a shared schema, architected, built, tested and deployed end to end as a single full-stack developer.
Read case study

