A micro-segmentation program needed governance that could span legacy networks and modern segmentation at once. I owned that workstream.

Micro-segmentation only works if enforcement is consistent. In a large, regulated operator, that means connecting decades of legacy network infrastructure with a modern segmentation model, without slowing the business to a crawl or opening a security gap.
Enforcement requests that used to be manual and inconsistent now route through a risk-based model across both environments. Application owners have a clear path, and security has an audit trail.
Client names are generalized. The work is real; the labels are not.