Projects
Sanitized case studies from production environments. Each covers the problem, architecture decisions, implementation, and measurable outcomes.
Conditional Access Architecture
identityDesigned 20 policies from scratch โ per-platform compliance enforcement, tiered MFA, risk-based policies, legacy auth blocking, BYOD containment, and Cloud PC controls.
Identity Lifecycle Automation
automationBuilt a three-system automated onboarding pipeline โ Jira ticket to provisioned account in minutes. Zero human intervention, encrypted credential delivery, and 19 KB articles documenting the platform.
Endpoint Compliance at Scale
endpoint585-device fleet across Intune and Jamf with 80 config profiles, 7 compliance policies, staged Autopatch rings, and cross-platform security baselines.
Endpoint Security Stack
securityFull security implementation: ASR rules, BitLocker silent deployment, Defender for Endpoint/EDR across Windows and macOS, LAPS with version-aware pilots.
CVE Intake Automation
automationTeams-triggered automation that pulls Defender TVM API data and creates enriched Jira tickets, standardizing vulnerability triage across the organization.