Identity & Access Management
Identity lifecycle management, RBAC, Active Directory, delegated administration, Windows LAPS, access auditing, file permissions, and PowerShell automation.
Technical Portfolio
Explore my practical projects across Identity and Access Management, cybersecurity, security operations, vulnerability management, Active Directory, Microsoft technologies, automation, endpoint management, Linux, networking, and enterprise infrastructure.
Project Portfolio
My projects are designed to demonstrate more than individual technologies. They show how systems, security controls, automation, monitoring, access management, documentation, and troubleshooting can work together in enterprise environments.
Identity lifecycle management, RBAC, Active Directory, delegated administration, Windows LAPS, access auditing, file permissions, and PowerShell automation.
Splunk, Sysmon, Windows security events, threat detection, dashboards, MITRE ATT&CK, vulnerability scanning, and security analysis.
Windows Server, Group Policy, file services, endpoint management, PowerShell scripting, asset management, networking, Linux, and enterprise workflows.
Explore My Work
Search or filter the portfolio to explore projects related to identity, cybersecurity, cloud, infrastructure, automation, vulnerability management, networking, and other technical areas.
Try another search term or select a different project category.
My Approach
I structure projects to demonstrate both technical implementation and the operational processes that support enterprise environments.
Define the technical problem, business need, architecture, requirements, security objectives, and expected outcome.
Configure the infrastructure, systems, applications, security controls, identities, permissions, policies, and supporting services.
Apply least privilege, RBAC, security policies, endpoint controls, authentication requirements, logging, and monitoring.
Use PowerShell and structured data to reduce repetitive work, improve consistency, and create repeatable workflows.
Validate functionality, analyze logs, test access controls, investigate failures, and verify that security controls work as intended.
Record architecture, configurations, commands, workflows, screenshots, troubleshooting steps, results, and business value.
Identity & Access Management
My IAM work focuses on enterprise identity lifecycle processes, including joiner, mover, and leaver workflows, role-based access control, security groups, delegated administration, access auditing, Windows LAPS, and PowerShell automation.
The environment also integrates secure departmental file access and Splunk monitoring to provide visibility into authentication, account changes, privileged activity, and file-access events.
Future development continues toward access reviews, segregation-of-duties checks, privileged access monitoring, and ticket-based request and approval evidence.
Security Operations
My security operations projects demonstrate the collection and analysis of Windows security events and Sysmon telemetry using Splunk Enterprise.
The environment provides visibility into failed authentication attempts, successful logons, privileged access, account creation, account lockouts, PowerShell activity, process execution, services, and other security-relevant events.
These projects support practical experience with security investigations, SPL searches, dashboards, MITRE ATT&CK mapping, event correlation, and detection engineering concepts.
Vulnerability Management
My vulnerability management work uses Nessus to perform host discovery, network vulnerability scanning, credential validation, credentialed assessments, Active Directory enumeration, and malware-related assessments.
The project emphasizes understanding findings, validating scan coverage, identifying authentication limitations, prioritizing risk, and documenting remediation recommendations.
Automation
My automation projects focus on reducing repetitive administrative tasks and creating consistent, traceable workflows.
Examples include identity lifecycle automation, Active Directory account auditing, CSV-based request processing, asset tracking, barcode and QR scanner workflows, manual serial-number entry, duplicate handling, and audit-log generation.
Explore the Repositories
Visit my GitHub profile to explore project documentation, scripts, screenshots, configurations, workflows, and technical notes.