— Present
- Manage identity and access via Entra ID — Conditional Access, device compliance, hybrid join health, and app registrations
- Administer the endpoint fleet through Intune and NinjaOne — patching, deployment, and configuration baselines
- Automate recurring operations with PowerShell and the Microsoft Graph API
- Maintain security posture across SentinelOne, Check Point, and Cloudflare Zero Trust
- Own software lifecycle and inventory across NinjaOne, PDQ, and SmartDeploy
- Scope and deliver internal tooling and infrastructure projects with engineering stakeholders
- Improved fleet-wide encryption coverage and recovery readiness through automated BitLocker enablement and Entra ID key escrow
- Enabled secure AI-assisted RMM access by modernizing and containerizing the NinjaOne MCP server behind Cloudflare Access
- Established a scalable identity and restricted mail-access model for internal AI applications
- Restored compliant access for affected hybrid devices by tracing Conditional Access failures to broken joins and missing Primary Refresh Tokens
- Led the Claude and ChatGPT Enterprise rollout for 70+ staff, covering licensing, automated deployment, and internal workshops