Based in Doha, Qatar

Palani “Kumar”Annamalai

Microsoft Cloud, Infrastructure, Identity & Security Architect

Microsoft Certified TrainerFormer Microsoft Cloud Solution Architect

I have worked through successive generations of Microsoft infrastructure: from Windows NT and Exchange 5.5, through Active Directory, Windows Server, messaging, clustering and hybrid infrastructure, into Azure, Azure Local, Microsoft 365, identity and security.

Portrait of Palanikumar Annamalai
Roots
Windows NT and Exchange 5.5
Previously
Microsoft Cloud Solution Architect, 2021⁠–⁠24
Teaching
Microsoft Certified Trainer, current 2026
Based in
Doha, Qatar

Technology progression

Every layer is still in someone’s estate

Many problems on a modern Microsoft estate start in something older: a directory design, a cluster witness, a mail flow rule, a permissions model nobody revisited.

Much of my work has been implementations, migrations, upgrades and the transitions between generations, which is exactly where those older layers surface. This site is where I write down what that work teaches, for engineers who will actually try the steps.

The full progression

The stack underneath, oldest layer at the bottom
  1. Windows NT and Exchange 5.5Where it started
  2. Windows Server and Active DirectoryDirectory, domains and server generations
  3. Exchange generationsOn-premises messaging, then hybrid and Exchange Online
  4. System Center, virtualisation and clusteringEnterprise management and availability
  5. Storage Spaces Direct and Azure LocalSoftware-defined infrastructure; Azure Local was Azure Stack HCI until November 2024
  6. Azure and Microsoft 365Cloud platform and productivity services
  7. Identity, security and governanceEntra ID, Defender, Sentinel and Purview across every layer

AutomationPowerShell · Microsoft Graph

Current focus

Five areas I work in today

Not a product list. These are the areas where the older layers and the current services meet, and where my writing, labs and training sit.

  1. Infrastructure and hybrid cloud

    Windows Server estates, clusters and software-defined storage, and how they extend into Azure and Azure Local.

    • Windows Server
    • Active Directory
    • Failover Clustering
    • Storage Spaces Direct
    • Azure
    • Azure Local
  2. Identity and access

    From Active Directory to Microsoft Entra ID: hybrid identity, authentication, Conditional Access and privileged access.

    • Microsoft Entra ID
    • Hybrid identity
    • Conditional Access
    • Identity governance
    • Privileged Identity Management
  3. Messaging and collaboration

    Exchange since 5.5: on-premises generations, Exchange hybrid, Exchange Online and the Microsoft 365 around it.

    • Exchange Server
    • Exchange hybrid
    • Exchange Online
    • Microsoft 365
    • Teams
  4. Security and governance

    Security operations, identity security and data governance, built on Zero Trust principles rather than bolted on.

    • Microsoft Defender
    • Microsoft Sentinel
    • Microsoft Purview
    • Zero Trust
  5. Automation and technical enablement

    PowerShell and Microsoft Graph for the repeatable work, and labs, scripts and training so others can do it too.

    • PowerShell
    • Microsoft Graph
    • Labs and scripts
    • Training

Technical writing

The long form lives here

I write on LinkedIn about Microsoft identity, security, messaging, governance and infrastructure. This site is the permanent home for the deeper engineering pieces: the problem, the evidence, the mechanism and the fix, with the versions tested.

Planned topics, not yet published

Working titles. None of these is available yet, and the order may change.

  1. MessagingFrom Exchange 5.5 to Exchange Online: what three decades of messaging change taught me
  2. IdentityPreparing Microsoft Entra ID for passkey-first authentication
  3. MessagingEWS retirement: finding what will break before Exchange Online turns it off
  4. SecuritySecuring AI agents with Entra, Purview and Conditional Access
  5. InfrastructureFrom Storage Spaces Direct to Azure Local: what changed, and what didn’t

Hands-on

Labs and resources

Lab guides, checklists and scripts, each with prerequisites, the product versions tested and stated limitations.

Labs

No labs published yet.

Resources

No resources published yet.

Palanikumar, holding a microphone, presents to attendees seated at round tables with laptops.

Training and community

Teaching the stack I have run

As a Microsoft Certified Trainer, current for 2026, I teach Azure and Microsoft security and present to technical audiences. I have recorded 19 training sessions across AZ-900, AZ-104 and SC-200. Selected recordings will be added after review.

No sessions scheduled yet. Dates are published on the training page once confirmed.

Training

Selected credentials

Evidence, not decoration

Certifications validate parts of the engineering story. These are the current ones closest to the work; the full record is on Credly.

All selected credentials

Current, 2026

Microsoft Certified Trainer

Recorded AZ-900, AZ-104 and SC-200 training series, and technical presentations. Training

Expert certifications

  • SecurityMicrosoft Certified: Cybersecurity Architect Expert
  • CloudMicrosoft Certified: Azure Solutions Architect Expert
  • Microsoft 365Microsoft 365 Certified: Administrator Expert

As of September 2026

active Microsoft certifications
18
passed Microsoft exams
32
Microsoft Applied Skills
2

Verify credentials on Credly (external site)

About

I’m Kumar. My work started with Windows NT and Exchange 5.5, and has continued through the generations that followed.

The About page tells the longer story: what changed at each step, what did not, and what repeated transitions have taught me. Read the full progression.

Contact

Connect

Senior architecture roles, training, or a technical question about something on this site: email is the best way to reach me. LinkedIn is where I share shorter technical notes.