Αbout CloudTales

CloudTales is the practical cloud architecture blog by Vassilis Dionisopoulos — a Principal Cloud Architect with over two decades of experience designing and delivering enterprise-scale solutions on Microsoft Azure.

This blog exists for a specific reason. Most cloud architecture content treats the easy parts as if they were the whole story. The hard parts — designing landing zones that survive an audit, building identity foundations that scale across tenants and partners, governing a multi-subscription estate without breaking the developers — get glossed over or hidden behind product marketing. CloudTales focuses on those parts.

What this blog covers

The content lives at the intersection of three themes:

  • Azure architecture for the enterprise. Landing zones, hub-and-spoke and Virtual WAN networking, multi-tenant patterns, hybrid connectivity, and platform foundations that hold up in production.
  • Identity and security as architecture. Microsoft Entra in depth — identity governance, conditional access, privileged identity management, hybrid identity — plus the broader security architecture concerns of modern Azure estates.
  • Governance, compliance, and infrastructure as code. Cloud Adoption Framework, Well-Architected Framework, Azure Policy, Bicep IaC, and the patterns that hold up under audit pressure.

The connecting thread is regulated workloads — telecommunications, financial services, public sector — where compliance, sovereignty, and operational rigor are not optional, and where most reference architectures need real adaptation to survive contact with reality.

About the author

I’m Vassilis — a Principal Cloud Architect with 25 years in enterprise IT. My work has spanned telecommunications, financial services, and retail at the largest scales the Greek market produces. In these environments, identity, uptime, and audit drive design choices more than novelty does — and that perspective shapes most of what I write here.

I’m multi-cloud certified across Microsoft Azure, AWS, and Google Cloud, with the deepest investment in the Microsoft ecosystem. I currently hold 16 active Microsoft certifications, including:

  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Certified: Azure Solutions Architect Expert (AZ-305)
  • Microsoft Certified: DevOps Engineer Expert (AZ-400)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Azure for SAP Workloads Specialty (AZ-120)

Plus an MBA and an MSc in Computer Science.

I write here because the patterns and trade-offs that take years to learn in enterprise engagements rarely make it into public documentation. CloudTales is my attempt to make a small dent in that gap.

Who this blog is for

CloudTales is written for:

  • Cloud architects designing or refactoring Azure landing zones beyond the pilot stage
  • Identity and security engineers working with Microsoft Entra at scale
  • Platform engineering teams dealing with governance, compliance, and IaC
  • Solution architects evaluating Azure for workloads with audit, sovereignty, or operational continuity requirements

If you’re looking for introductory “Hello Azure” tutorials, the official Microsoft Learn paths will serve you better. CloudTales assumes familiarity with the basics and goes deeper into trade-offs.

Related tools

Free utilities that complement this blog live at cld2day.com — practical tools to validate assumptions, compare options, and explore Azure architecture decisions hands-on.

Connect

For inquiries, see the Contact page.