MFA enrollment
50 of 50 identities covered
NIMBUS TECHNOLOGIES // RESTRICTED SYSTEM
SentinelCore is an executable graduate capstone that translates identity-first Zero Trust principles into reviewable controls, device posture, simulation evidence, and response paths.
REVIEW CREDENTIALS ARE PRE-FILLED · LOCAL SESSION ONLYZERO TRUST EXECUTIVE OVERVIEW
A reviewable model for identity, device, network, application, and data access across a fictional 50-user organization.
50 of 50 identities covered
Modeled protected application flows
46 of 50 modeled endpoints
Estimate against $34,200 Year-1 cost
RISK TREND / 30 DAYS
CONTROL COVERAGE
AUTHORIZED TEST HARNESS
Twelve controlled scenarios exercise policy, detection, and response paths. Results are simulations—not production attack claims.
NIST SP 800-207 ALIGNMENT
Every request is evaluated from multiple signals; network location alone never grants trust.
Verify the person or workload with MFA, risk signals, and short-lived sessions.
Check management, encryption, health, and compliance before sensitive access.
Segment flows and continuously inspect traffic instead of trusting a location.
Grant least-privilege access to a named resource, not the whole internal network.
Apply classification, DLP, encryption, and session controls to the information itself.
EVIDENCE REGISTER
DEVICE POSTURE
ABOUT THIS BUILD
I built SentinelCore as a graduate capstone implementation for a fictional mid-size company, Nimbus Technologies. The problem is practical: users, devices, applications, and data no longer sit behind one trustworthy network boundary.
I translated NIST SP 800-207 principles into 30 control records, device posture, policy artifacts, privileged-access rules, KQL detections, response playbooks, and a dashboard that computes its metrics from evidence data.
I start Conditional Access in report-only mode, monitor break-glass use separately, require approved and time-bound privilege elevation, and connect every detection to a response path.
This repository is an executable portfolio reference—not a claim of live tenant deployment. The organization, telemetry, and ROI are modeled and documented for review. Production use requires tenant validation, named owners, rollout evidence, and control testing.