Six domains. One shield.
Azure cloud security
AzureSecure landing zones, Defender for Cloud, Sentinel, and cloud-native architecture patterns.
IAM & identity
IAMEntra ID, Zero Trust, PIM, Conditional Access, and identity threat detection.
Data security
DataMicrosoft Purview, data classification, DLP strategies, and encryption at scale.
Security assessment
AssessmentAssessment frameworks, methodologies, reporting templates, and risk scoring.
Security architecture
ArchitectureSABSA, threat modeling, reference architectures, and design principles.
AI security
AILLM threat modeling, OWASP AI Top 10, securing Azure OpenAI and Copilot.
From the blog
AI threat modeling: what most teams get wrong
Why traditional threat models fail for LLM-based systems and how to design ones that actually work.
Zero Trust identity in Azure — a practitioner's guide
Real-world implementation patterns beyond the marketing slides. What works, what doesn't.
Securing your Azure landing zone from day one
Architecture decisions that are hard to reverse — get them right before you scale.
Free tools for practitioners
All tools are free, open source, and built to solve real problems in security teams.
AI Threat Model Toolkit
LiveReady-to-use threat modeling templates for LLM and GenAI applications, mapped to OWASP LLM Top 10. Includes STRIDE analysis and Azure OpenAI examples.
Azure Security Baseline Checker
SoonPowerShell + Python scripts to audit Azure subscriptions against CIS benchmarks and output a prioritized remediation report.
IAM Risk Analyzer
SoonIdentify over-privileged identities, stale accounts, and risky role assignments in Microsoft Entra ID. Outputs a risk dashboard.
Built by a practitioner, for the community
CyberKavach.ai is a security knowledge hub focused on the intersection of Azure cloud security, identity architecture, and AI security — built by a security architect with hands-on experience designing and assessing enterprise security programs.
The mission is simple: share real, practitioner-grade insights and free tools that help security teams build better defenses — not marketing content.
Stay sharp
Get security architecture insights, new tool releases, and curated Azure security updates — straight to your inbox. No spam, unsubscribe anytime.
Join security practitioners getting weekly insights