It Engineer, Principle - Identity And Access Management
CurrentMoved departments from Messaging to Identity and Access Management in 2014 due to my expertise in directory services (specifically Active Directory) tied in with automation with PowerShell. My current focus involves:-Maintain over 100 Github for Enterprise repositories (approximately 14 years worth of PowerShell development). Many projects have been (or still are) used to solve large enterprise projects, including M & A activities. I have also developed a custom PowerShell shell that is used by over 100 IT engineers daily. I am Qualcomm’s subject matter expert on PowerShell and I have a special acknowledgement in one of the more popular books on learning PowerShell: Learn PowerShell in a Month of Lunches 3rd edition.-Service owner for Active Directory and Azure AD (and all subservices such as FIM\MIM, AAD Connect, Microsoft 365, Conditional Access, etc.). These duties include managing a global team that includes staff in India to ensure a strong (and stable) Microsoft Identity Platform.-As the Active Directory service owner my services includes 10 different forests (with the primary corporate forest containing 7 domains). In many cases we have trusts and\or FIM\MIM connecting the forests together (including PCNS to sync passwords). -Currently my Azure AD portfolio consists of 5 different Azure AD tenants (2 are non-production). While most companies would have a single production tenant, Qualcomm engineering has specific security requirements which requires us to use additional tenants.-Design and support a complex set of Azure AD conditional access policies (that includes using Microsoft Graph API to backup\export (and possibly restore) conditional access policies).-Environments include non-Windows systems which both interact and are joined to the domain (such as Mac's and Linux hosts). I provide support when necessary given my background with Linux systems and directory services.