<SS/> Sashree Seepersad
Principal Azure | Sovereign Cloud Architect

Sashree Seepersad

Fractional Principal-level leadership for regulated European enterprises — sovereign Azure architectures with HYOK encryption, Zero Trust access and DORA / NIS2 compliance built into the design.

480 Servers migrated in 3 waves
+64% Azure API Capacity
-40% Compliance Gaps
-70% Identity-Related Incidents

Sovereign cloud for regulated enterprises

I am a Principal Azure and Sovereign Cloud Architect with 26 years of experience designing, securing and modernising mission-critical IT environments in regulated enterprise settings. I work as a B2B contractor and fractional Principal, and I am the Founder of Ne Plus Ultra Global Solutions.

I partner directly with C-suite executives and Enterprise Architects: authoring technical blueprints, defining sovereign cloud guardrails for Tier-1 financial-services clients, and leading cloud extractions and insourcing programmes end-to-end.

My track record covers high-availability architectures, complex Linux infrastructure, and resilient cloud and on-prem platforms with sub-24h RTO/RPO and zero data loss in disaster-recovery execution — with NIS2, DORA and ISO 27001 compliance, access control and operational resilience embedded in the design rather than added afterwards.

Worcester Polytechnic Institute

Certificate, Unix / C++ · 2000

Key achievements

  • Compliance: cut compliance gaps by 40% and achieved 100% audit readiness.
  • Identity: reduced identity-related incidents by 70% through IAM strategy.
  • Resilience: delivered ≤24h RTO/RPO with zero data loss in quarterly DR drills.
  • Cost: cut cloud spend by 25% via rightsizing and reservations.

Frameworks & standards

  • Regulatory: DORA, NIS2, ISO 27001, Swiss data-protection requirements.
  • Governance: NIST, ISO 27002, CIS, COBIT.
  • Security & identity: Zero Trust, IAM, PIM/JIT with zero standing privileges, HYOK encryption, customer-owned HSM.

Career Track

Group Lead Cloud & Connectivity

Kanadevia Inova s.r.o · SSC-GID Digital Core Services
04/2026 – Present
Bratislava, Slovakia
  • Spearheaded the end-to-end insourcing of core cloud and infrastructure services from an external managed service provider within a compressed 6-month execution window.
  • Architected a 3-wave cloud migration strategy for a 480-server estate supporting 14 business-critical applications, delivering annual cost reduction with a 15–22 month payback period.
  • Defined sovereign guardrails for the Azure landing zone — HYOK encryption, customer-owned HSM controls, edge autonomy, and PIM/JIT access with zero standing privileges — to meet Swiss data-protection requirements.

Founder & Principal Cloud Architect

Ne Plus Ultra Global Solutions · neplusultra.eu
2024 – Present
Europe, remote
  • Partner directly with C-suite executives and Enterprise Architects to provide fractional Principal-level leadership, authoring technical blueprints and defining sovereign cloud guardrails for Tier-1 FSI clients.
  • Engineered proprietary frameworks for routing Agentic AI and RAG workloads through localised, HYOK-encrypted pipelines, guaranteeing zero PII leakage to public hyperscalers under strict DORA and NIS2 mandates.
  • Led cloud extractions, boosting Azure API capacity by 64%, and delivered multi-million-euro OpEx strategies.

IT Business & Solution Architect

Zurich Insurance · Business Technology Services
01/2022 – 12/2025
Bratislava, Slovakia
  • Designed and directed the migration of complex legacy and on-premise systems into secure, compliant cloud architectures.
  • Architected AWS and Azure environments aligned to NIST, ISO 27002, CIS and COBIT, reducing enterprise compliance gaps by 40%.
  • Delivered sub-24-hour RTO/RPO through cloud-native disaster-recovery strategies, with zero data loss in quarterly drills.
  • Secured Azure Data Factory, Lambda and Glue data flows, cutting leakage risk by 50% through threat modelling.

Senior Systems Engineer

AT&T Global Network Services
2012 – 2015
Bratislava, Slovakia
  • Managed a VMware private cloud; enforced OS and virtualisation hardening, reducing attack surface by 40%.
  • Led breach response, forensics and log correlation, cutting MTTR by 60%.
  • Rolled out IDS/IPS and ran vulnerability scans, reducing critical exposure by 85%.
  • Developed DR strategies meeting 2h RTO/RPO, validated in high-availability tests.
  • Mentored junior engineers on secure operations, cutting configuration drift by 50% via SOPs and training.
Earlier career (2006 – 2012): Senior Technical Support Engineer, Dell · IT Consultant, self-employed · UNIX System Administrator, Soitron · Product Support Engineer, Corinex Communications · Desktop Support Engineer, ON Semiconductor.

Technical Competencies

Sovereign Cloud & Compliance

DORA, NIS2, ISO 27001/27002, CIS, COBIT and NIST alignment. HYOK encryption, customer-owned HSM, data residency and Swiss data-protection guardrails for Azure landing zones.

Resilience & Security Operations

Disaster recovery and business continuity to defined RTO/RPO, Zero Trust, IAM with PIM/JIT, threat modelling, IDS/IPS, OS and virtualisation hardening, breach response and forensics.

Cloud, Hybrid & Infrastructure

Azure, AWS and hybrid cloud. Linux (Red Hat), VMware, Hyper-V, TCP/IP and IPv4/IPv6 routing. Terraform, Ansible, PowerShell, CI/CD and Infrastructure as Code.

Cloud Economics & MSP Insourcing

Multi-million-euro OpEx strategies, rightsizing and reservations, payback-driven migration planning, and end-to-end extraction of cloud services from managed service providers.

Training & courses

Automation with Ansible · Red Hat Red Hat Virtualization · Red Hat Red Hat System Administration III · Red Hat Architecting on AWS · Amazon Architecting Microsoft Azure Solutions · Microsoft Azure Databricks · Udemy Azure DevOps · Udemy

Case Studies

Measurable outcomes from sovereign cloud, resilience and security engagements. Select a card to read the full study.

MSP Insourcing · Sovereign Azure

Insourcing a 480-server estate from an MSP in six months

End-to-end extraction of core cloud and infrastructure services at Kanadevia Inova: a 3-wave migration of 480 servers and 14 business-critical applications into a sovereign Azure landing zone with HYOK, customer-owned HSM and zero standing privileges.

Read case study
Critical applications
14
Payback
15–22 mo
Sovereign AI · DORA & NIS2

Sovereign Agentic AI & RAG pipelines

Proprietary frameworks for routing Agentic AI and RAG workloads through localised, HYOK-encrypted pipelines for Tier-1 FSI clients.

PII to public hyperscalers
Zero
Mandates
DORA · NIS2
Read case study
Cloud Extraction · OpEx

Cloud extractions & multi-million-euro OpEx strategy

Fractional Principal-level leadership for Tier-1 FSI clients: technical blueprints, sovereign guardrails and cloud extractions that expanded Azure API capacity.

Azure API capacity
+64%
OpEx strategies
Multi-M €
Read case study
Compliance · Resilience

Compliance-aligned multi-cloud with ≤24h DR

AWS and Azure environments at Zurich Insurance aligned to NIST, ISO 27002, CIS and COBIT, with cloud-native disaster recovery proven in quarterly drills.

Compliance gaps
-40%
RTO / RPO
≤24h
Read case study
Security Operations · Private Cloud

Private cloud hardening & breach response

VMware private cloud at AT&T Global Network Services: OS and virtualisation hardening, IDS/IPS rollout, forensics-led incident response and 2h RTO/RPO disaster recovery.

Critical exposure
-85%
MTTR
-60%
Read case study

Articles & Insights

Executive-level perspectives on sovereign cloud, compliance, cloud economics and scalable architecture. Select a card to read the full article.

Compliance · Sovereignty

De-risking European Enterprise Cloud: Navigating DORA, Swiss nDSG, and Sovereign Data Logic

Why HYOK encryption, zero standing privileges and continuous auditing form the backbone of a Zero Trust landing zone that regulators can sign off on.

4 min read · DORA · nDSG · NIS2

Read article
FinOps · MSP Insourcing

The 49% OpEx Blueprint: Achieving Extreme Cloud Cost Optimization via MSP Insourcing & FinOps

A three-phase FinOps strategy — tagging and visibility, high-velocity MSP insourcing, unit economics — for enterprises whose cloud spend has outgrown their MSP model.

4 min read · FinOps · Cloud economics

Read article
Architecture · Scale

High-Throughput Telemetry: Scaling IoT Data Ingestion Capacity by 64%

Queue-based ingestion, hot/cold storage tiering and protocol optimisation: the structural changes that let telemetry platforms absorb unpredictable surges without runaway cost.

3 min read · IoT · Event streaming

Read article

Consultation & Inquiries

Inquire about sovereign Azure landing zones, DORA / NIS2 readiness, MSP insourcing and cloud extractions, disaster-recovery design, or fractional Principal-level architecture leadership.

sashree@neplusultra.eu Piešťany, Slovakia · Europe, remote B2B contractor · Fractional