Projects

Architecture & Engineering

Identity & Access Management

Cross-Cloud Entra ID Guest Automation

Designed and implemented an automated guest account lifecycle management system for a national defense contractor with 150,000+ users, bridging Azure Commercial and Azure Government clouds. The solution eliminated manual provisioning steps and reduced identity exposure across a highly regulated environment.

Entra ID PowerShell Azure Functions Azure Government Cloud Zero Trust
Outcome: Removed manual provisioning workflow entirely, reduced provisioning errors, and strengthened Zero Trust posture for cross-cloud collaboration environments.
Power Platform & Azure Integration

Enterprise Time Tracking Platform

Designed and delivered a full-stack time tracking solution using a serverless Azure backend, covering everything from a mobile-responsive Power Apps canvas app to automated ADP payroll synchronization and daily email reporting.

Power Apps Azure Logic Apps Azure Functions PowerShell SharePoint ADP Integration
Outcome: Eliminated manual time entry errors, automated daily reporting workflows, and integrated directly with ADP for accurate payroll processing.
Cloud Integration & Automation

HR & Learning Data Pipeline (ETL)

Architected a serverless ETL pipeline pulling workforce data from ADP (via mTLS-secured API) and LinkedIn Learning into Azure SQL, creating a unified data foundation for workforce analytics and reporting.

Azure Functions PowerShell Azure SQL ADP API LinkedIn Learning API mTLS
Outcome: Full pipeline execution under 15 seconds. Cost-efficient serverless design with no dedicated infrastructure required.
Identity & Access Management

HR to Identity Sync

Built a serverless pipeline that pulls employee data from an HR and payroll system via mTLS-secured API and populates corresponding user properties in Entra ID. The architecture uses Azure SQL as an intermediate store — Functions pull from the HR system, normalize and stage the data in SQL, then a separate process syncs from SQL into Entra ID. This decouples the HR pull cadence from the Entra write cadence and creates an audit trail at the transformation layer. Certificates are managed in Azure Key Vault; Functions authenticate to Azure SQL via Managed Identity.

Azure Functions Azure SQL Entra ID ADP API mTLS Azure Key Vault Managed Identity PowerShell
Outcome: Automated employee record synchronization between HR and identity systems, eliminating manual updates and establishing a clean audit trail across the pipeline.
Governance & Compliance

Power Platform Governance Framework

Designed and delivered a 9-environment Power Platform governance framework for a large enterprise food manufacturing client. The framework established layered DLP policies, environment-level permissions, and operational reporting across the full environment tier structure from Personal and Development through Test and Production.

Power Platform DLP Policies Environment Management Power Apps Power Automate
Outcome: Delivered a repeatable governance baseline covering all environment types, with enforcement policies and audit-ready operational reporting in place at launch.
Microsoft 365 & Endpoint Management

M365 Modernization: Exchange Online & Intune Migration

Led two concurrent M365 platform modernization initiatives. Migrated all users to Exchange Online via hybrid OAuth configuration, designed for zero user downtime throughout the transition. In parallel, migrated all endpoints from a legacy MDM platform to Microsoft Intune, building all device management policies and enrollment processes from scratch to replace existing controls with a modern, cloud-native endpoint management framework.

Exchange Online Microsoft Intune Hybrid OAuth MDM Migration Microsoft 365 Endpoint Management
Outcome: Delivered zero-downtime mail migration and a full MDM platform replacement, establishing a modern, unified endpoint management baseline built entirely on native Microsoft tooling.
Security & Incident Response

Network-Wide Malware Remediation & Security Hardening

Responded to an emergency call to remediate a malware infection that had spread across the entire network of a 9-county public library system, spanning multiple geographically distributed branch locations. Remediation included analysis of the infection's spread, identification of the cause and entry point, coordination with the customer on notification and next steps, data cleanup, PC reloads, and malware removal across the full network. Following recovery, designed and implemented a comprehensive hardening program: LAN segmentation via VLANs, firewall controls, Group Policy Objects, increased desktop security, and additional network-layer protections.

Incident Response Active Directory Group Policy Network Segmentation VLANs Firewall Design Windows Server
Outcome: Zero further infections across the business (internal) systems for the remainder of Georgia Technologies' engagement. The quality of the response earned a long-term managed services contract retained through exit.
Thought Leadership & Education

"Better Than Best" Train the Trainer Workshop

Designed and delivered a multi-week internal training workshop for Microsoft Trainers focused on elevating the craft of technical instruction across in-person and remote formats. Sessions covered learning styles and how to structure delivery that reaches all types of learners; audio and video best practices including workspace optimization, microphone selection and placement, camera positioning, lighting, and clothing patterns that cause visual interference; and drawing and diagramming techniques, with emphasis on using tools in a way that feels natural to the audience without drawing attention to the tooling itself. Conducted in one-hour sessions approximately twice per week over six weeks.

Train the Trainer Adult Learning Styles Remote Delivery AV Best Practices Technical Instruction Microsoft
Outcome: Participants were already highly regarded Microsoft Trainers, yet demonstrated measurable changes in delivery technique following the workshop, with positive feedback across the cohort.
Thought Leadership & Education

Microsoft Certification SME & Course Author

Served as subject matter expert contributing to the outline and design of three Microsoft certification tracks and associated courseware. Independently authored and delivered curriculum for Learning Tree International training programs reaching professionals worldwide.

SC-300 Identity Administrator SC-100 Cybersecurity Architect AZ-305 Azure Architect Microsoft Learn Learning Tree
Outcome: Directly shaped how thousands of security and cloud professionals are trained and evaluated on Azure identity, security architecture, and solutions design.
Speaking

Engagements & Instruction

🏛️
US Secret Service Electronic Crimes Conference Washington, DC

Keynote addressing government and law enforcement investigators on the use of virtualization to perform forensic analysis of suspect systems offline — enabling examination of criminal computers without risk of evidence contamination or network exposure.

🏢
Microsoft Ready Las Vegas, NV

Presented to Microsoft's global field and partner community on identity, Zero Trust security, and cloud architecture best practices.

📡
Netscout Conference Las Vegas, NV

Featured speaker on enterprise network visibility, security monitoring strategy, and architecture leadership in complex environments.

🎓
Course Instructor — Microsoft, Learning Tree International & Google 20+ Years of Technical Instruction

Delivered technical training to thousands of IT professionals worldwide across cloud architecture, identity and access management, cybersecurity, and infrastructure. Notable clients include NASA, FBI, FDIC, Boeing, US Supreme Court, and branches of the US military.