Prashant Tulsiani, Enterprise Cloud Architect and Azure Solution Architect in Dubai, UAE

Prashant Tulsiani

Cloud Architect

Get in touch
Scroll to find out more

About Myself

Hi, I'm Prashant — a Cloud Architect based in Dubai, UAE. I design and implement cloud-agnostic, cost-effective infrastructure that drives business growth, balancing technical depth with business acumen to deliver solutions that fit how organizations actually work.

Fifteen years in, I've built platforms for a national cultural authority, a greenfield digital bank, a luxury retail group, one of the region's largest mall and leisure operators, and a global shipping company — starting out in IT services and managed services in Mumbai, India, and spending the last decade across the UAE. Across all of them, the technical design was rarely the hardest part. Meeting regulatory requirements, staying inside a budget, and handing over something the operations team can actually run — that is where most of the work sits.

Industries

Government Sector
Multi-tenant platforms for three national museums under UAE data sovereignty rules.
Banking & Fintech
A fully digital bank built from nothing, held to PCI-DSS, SWIFT and NESA.
Luxury Retail
ERP cloud assessment, AWS governance and identity modernization at group scale.
Malls & Leisure
A 1,500-server hybrid estate and its migration path, application by application.
Shipping & Marine
900+ VMs moved to Azure, with the sizing and capacity planning behind them.
IT Services & Managed Services
Where I started — L3 support and server engineering across BPO and MSP environments.

My work sits across multi-cloud platforms — Azure, AWS, GCP and OCI — enterprise identity, Microsoft 365, cloud security, and the automation that holds all of it together. Cloud-agnostic by default, because the design that only works on one provider is a commercial decision disguised as a technical one.

I'd rather ship the simplest thing that satisfies the requirement than the most interesting thing I could justify — good architecture is easy to understand, great architecture is difficult to misuse. Security and governance belong in the design from the first diagram, and anything done more than once should be code. I've yet to see a case where guardrails genuinely slowed a capable engineering team down; mostly they let them move faster without asking permission. My eight working principles are set out in full further down this page.

Lately I've been focused on AI infrastructure and Azure OpenAI architecture — generative AI in production rather than in a slide deck, plus the AI-driven automation and intelligent workflows that make operations measurably more efficient and modern workplaces genuinely smarter. Copilot and Copilot Studio, computer vision on GPU, AIOps that closes its own incidents.

Increasingly the work is as much programme as platform. I lead transformation efforts spanning engineering, security, finance and business stakeholders, translate them for the executives who fund them, and sit across vendor contracts and licensing where the commercial detail decides whether a design is actually affordable. Alongside that I define the standards and mentor the teams who build against them — the part of the job with the longest half-life, because a standard outlives whatever I personally deployed.

Core Competencies

Cloud Platforms

AzureAWSGCPOCIHybrid ArchitectureCloud Migration

Cloud Security & Identity

Entra IDConditional AccessZero TrustSAML / OAuth / OIDCRBACJML Lifecycle AutomationIdentity GovernanceDefender for CloudSentinelKey Vault & HSM

Networking & Connectivity

ExpressRouteDirect ConnectSD-WANAviatrixFront Door & WAFDDoS ProtectionFirewall NVAs

Serverless & Containers

AKSOpenShiftAzure FunctionsAWS LambdaEvent-Driven ArchitectureGPU Workloads

Observability & AIOps

Azure MonitorDynatracePrometheusGrafanaOpenTelemetryAnomaly DetectionSelf-Healing Automation

AI & Generative AI

Azure OpenAICopilot StudioComputer Vision (NVIDIA GPU)Text / Audio / Vision ModelsConversational AIAI Governance

Data Platforms

Cosmos DBAzure SQL & Managed InstancePostgreSQLMongoDBBigQueryData Lakehouse

Governance, Cost & Reliability

Landing ZonesAzure PolicyTagging StrategyFinOpsCost ForecastingReserved CapacityWell-Architected ReviewsDR / Multi-Region HA

Compliance & Audits

PCI-DSSSWIFTNESAGDPRUAE Data Sovereignty

Infrastructure as Code & CI/CD

TerraformTerragruntARM TemplatesGitHub ActionsAzure DevOps

Modern Workplace

Microsoft 365Exchange OnlineSharePoint OnlineTeamsOneDriveIntuneM365 CopilotDefender for Endpoint

Automation & Scripting

PowerShellPythonMicrosoft Graph APIAnsible

My Architecture Principles

Great architecture isn't about choosing the newest technology. It's about making the right decisions that balance business value, security, scalability, operational excellence, and long-term sustainability.

Prashant Tulsiani
01

Business Before Technology

Technology exists to create business value, not technical complexity. Every architectural decision should improve scalability, security, operational efficiency, customer experience or cost.

Learn more

What this means

  • Understand the business problem first
  • Challenge unnecessary complexity
  • Deliver measurable outcomes
  • Focus on ROI, not technology trends

A successful architecture is measured by business outcomes, not by the number of services it uses.

02

Security by Design

Security is never an afterthought. It is built into every layer of the architecture, from identity through to data at rest.

Learn more

Core principles

  • Zero Trust
  • Least Privilege
  • Identity First
  • Encryption Everywhere
  • Defense in Depth
  • Secure by Default

Security should accelerate innovation, not slow it down.

03

Simplicity Wins

Good architecture is easy to understand. Great architecture is difficult to misuse. Where several solutions exist, choose the simplest one that satisfies the requirement.

Learn more

What I avoid

  • Kubernetes without a reason
  • Microservices without a reason
  • Overengineering
  • Automation for its own sake

Complexity is a cost someone pays every day after you leave.

04

Automation First

Anything performed more than once should be automated. Infrastructure is software, and everything eventually becomes code.

Learn more

Everything as code

  • Infrastructure
  • Deployments
  • Configuration
  • Compliance
  • Security
  • Testing
  • Monitoring
  • Documentation

If it only exists in someone's head, it isn't architecture yet.

05

Design for Failure

Failures are inevitable. Downtime is optional. Every solution assumes something will break and stays available when it does.

Learn more

Every solution includes

  • High Availability
  • Disaster Recovery
  • Backup
  • Monitoring
  • Self-Healing
  • Observability
  • Resilience

Hope is not a disaster recovery strategy.

06

Governance Enables Innovation

Governance should never block engineering teams. It should provide safe guardrails that let them move faster than they could without it.

Learn more

The guardrails

  • Landing Zones
  • Azure Policy
  • Tagging
  • RBAC
  • Identity Governance
  • Naming Standards
  • Cost Controls
  • Compliance

Guardrails on a mountain road let you drive faster, not slower.

07

Optimize for Total Cost of Ownership

The cheapest solution today often becomes the most expensive tomorrow. Cloud is about value, not just a lower bill.

Learn more

What gets balanced

  • Infrastructure Cost
  • Licensing
  • Operations
  • Maintenance
  • People
  • Security
  • Future Growth

A design that saves 10% and needs three more engineers to run has cost you money.

08

Continuous Evolution

Technology changes and architecture should evolve with it. Every design gets reviewed again rather than defended forever.

Learn more

Questions I keep asking

  • Can it be simpler?
  • Can it be faster?
  • Can it be cheaper?
  • Can it be more secure?
  • Can it be easier to operate?

The best architecture is never finished.

Beyond the Architecture

Designing the system is half of it. The other half is the programme around it — the people, the budget, and the case you make to the people who sign it off.

Programme & Team Leadership

I lead large-scale cloud transformation programmes and translate them for the people who fund them — coordinating technology, finance and business units, managing vendor relationships through contract negotiation and licensing optimization, and mentoring infrastructure, security and application teams on the standards they build against.

Strategy & Commercial

I define cloud strategy and multi-year roadmaps that hold up against business objectives rather than sitting beside them — budget planning, cost forecasting, and FinOps governance across OPEX and CAPEX models, aimed at return on enterprise cloud investment.

Flagship Projects

DCT Abu Dhabi · 2025 — present

Multi-Tenant Museum Platform

Architected a mission-critical, multi-tenant platform on Azure and Microsoft 365 serving three national institutions — Zayed National Museum, Natural History Museum and Al Ain Museum — from a single governed estate. Scope ran across ticketing, visitor services, exhibits, digital content, finance, security, marketing and education programmes, with tenant isolation that lets each museum operate independently.

  • 3institutions
  • 3,000monthly users
  • 99.95%uptime
AzureMicrosoft 365Multi-tenancyExchange OnlineSharePoint OnlineTeamsGovernance

DCT Abu Dhabi · 2025 — present

Enterprise Generative AI Platform

Built an enterprise generative AI platform on Azure OpenAI, delivering a multilingual visitor chatbot and AI-driven collection cataloging. The harder half was compliance: UAE data sovereignty rules and GDPR were met through native encryption, Key Vault integration and role-based access control rather than bolted on afterwards.

  • 8+languages supported
Azure OpenAICopilot StudioKey VaultRBACUAE Data SovereigntyGDPR

DCT Abu Dhabi · 2025 — present

Computer Vision Visitor Intelligence

Designed and deployed an AI-powered computer vision system on Red Hat OpenShift with NVIDIA GPUs, providing real-time visitor movement tracking, behavioural analytics and predictive security alerting across the museum estates.

  • 30%faster incident response
OpenShiftNVIDIA GPUComputer VisionRHELPredictive Alerting

DCT Abu Dhabi · 2025 — present

AIOps Framework & Cost Optimization

Layered an AIOps framework over Azure Monitor and Dynatrace for anomaly detection, predictive alerting and self-healing workflows, run in parallel with a cost programme of rightsizing, reserved capacity and automated scaling — proving the two goals are not in tension.

  • 15%lower MTTD
  • 20%incidents self-resolving
  • 30%lower monthly spend
  • 15%better performance
Azure MonitorDynatraceSelf-Healing AutomationFinOpsReserved Capacity

Al Tayer Group · 2023 — 2025

AWS Landing Zone & Cloud Governance

Designed an AWS Landing Zone that pulled nine separate accounts under one governance framework, centralising management, standardising resource allocation and enforcing best practice across all of them. Defined the operating processes and procedures behind AWS cloud operations to speed up issue resolution across the team.

  • 9accounts unified
AWSLanding ZoneGovernanceCloud Operations

Al Tayer Group · 2023 — 2025

Identity Lifecycle & Endpoint Modernization

Designed Joiner–Mover–Leaver identity lifecycle automation on Entra ID covering secure provisioning, deprovisioning and periodic access reviews, then moved application authentication onto Azure AD across SAML, OAuth and OpenID Connect. Rolled Microsoft Intune out across Windows, macOS, iOS and Android, with Defender for Endpoint deployed alongside it.

Entra IDJML AutomationSAML / OAuth / OIDCIntuneDefender for Endpoint

Zand Bank PJSC · 2019 — 2023

Greenfield Digital Bank on Azure

Joined the core build team standing up one of the UAE's fully digital banks from nothing. Planned and implemented the entire Azure infrastructure and security estate end to end — Enterprise Agreement setup and tenant provisioning, networking, compute, data and security services — working alongside application architects, DevOps and data teams to keep every solution cloud-native, cloud-agnostic and aligned to 12-factor and microservices principles. Held PCI-DSS, SWIFT and NESA compliance with the CISO team throughout.

  • 0downtime incidents
  • 3regulatory frameworks held
AzureExpressRouteFront DoorCosmos DBSQL Managed InstanceDefender for CloudPCI-DSSSWIFTNESAMulti-Region HA

Zand Bank PJSC · 2019 — 2023

Core Banking Infrastructure as Code

Led the bank's Infrastructure as Code programme using Terraform and Python automation across both Azure and Google Cloud, covering the full core banking stack — retail and corporate banking, payments, middleware, CRM, loans, KYC/AML, cards and notifications. Worked with Microsoft's Azure FastTrack and Enterprise Unified teams to keep the estate aligned to the Well-Architected Framework.

TerraformPythonAzureGoogle CloudWell-Architected Framework

Scorpio Marine & MAF Group · 2014 — 2019

Enterprise Cloud Migrations at Scale

Two large migration programmes. At Scorpio Marine I led the move from on-premises to Azure end to end — design, sizing, capacity planning and workload placement across IaaS, PaaS and SaaS — migrating 900+ VMs using ASR and BFS. At Majid Al Futtaim I managed a hybrid estate of 1,500+ servers across AWS, Azure and VMware while setting each application's migration path: rehost, rebuild, replatform, refactor or replace.

  • 900+VMs to Azure
  • 1,500+servers managed
  • 5,000+mailboxes supported
Azure Site RecoveryAWSVMwareMigration StrategyOffice 365Exchange Hybrid

Professional Experience

Infrastructure Architect – CloudFeb 2025 – Present
Department of Culture and Tourism (DCT) — Abu Dhabi, UAE

Architecting Azure and Microsoft 365 infrastructure for a multi-tenant national museum platform, spanning AI/ML platforms, computer vision, AIOps, Zero Trust identity, and cloud cost governance across the wider estate.

Enterprise Infrastructure – CloudMay 2023 – Feb 2025
Al Tayer Group — Dubai, UAE

Owned enterprise cloud infrastructure across AWS and Azure — landing zone governance, identity lifecycle automation, endpoint modernization, and the cloud operations standards the wider IT estate runs on.

Cloud and Infrastructure ManagerJul 2019 – Apr 2023
Zand Bank PJSC — Dubai, UAE

Core build team member standing up one of the UAE's fully digital banks — owned Azure infrastructure, security, and Infrastructure as Code end to end, holding PCI-DSS, SWIFT, and NESA compliance throughout.

IT Infrastructure EngineerDec 2018 – Jul 2019
L3, Alpha Data, MAF Group — Dubai, UAE

Supported Majid Al Futtaim Group's on-premises to AWS migration, managed a large hybrid server estate across AWS, Azure, and VMware, and provided Level 3 support for Office 365 and core Microsoft infrastructure.

IT Infrastructure Solution ArchitectJul 2014 – Dec 2018
Scorpio Marine Management Pvt Ltd — Mumbai, India

Led Scorpio Marine's on-premises to Azure transformation — infrastructure design, sizing, and workload placement across IaaS, PaaS, and SaaS — alongside vendor management and cost reduction.

Early Career2011 – 2014
L3 Cloud Engineering, Allied Digital Services & Sparsh BPO Services — Mumbai, India

Built a systems and infrastructure foundation across three roles — Server Engineer, System Engineer, and System Administrator — working hands-on with server administration and enterprise IT operations.

Certifications

(ISC)²

Certified Cloud Security Professional (CCSP)

Microsoft

Azure Solutions Architect Expert

Microsoft

Azure Security Engineer Associate

Google Cloud

Professional Cloud Architect

Oracle

OCI Architect Associate

Aviatrix

Certified Engineer — Multicloud Network Associate

Informatica

Cloud Lakehouse Data Management

VMware

Certified Professional 6 (VCP6)

AXELOS

ITIL Foundation v3

NetApp

DATA ONTAP Administrator

DataCore

Certified Implementation Engineer (DCIE)

Microsoft

MCITP & MCSE — Server, Exchange, Hyper-V

Contact

Let's Build Something Extraordinary