Principal Enterprise Architect Resume
SUMMARY:
- 10+ years of professional IT experience in design, development, build and configuration of secure infrastructure, services, and application.
- 6+ years in Microsoft Cloud Services (Azure / Microsoft 365)
TECHNICAL SKILLS:
AZURE ACTIVE DIRECTORY: Self Service password reset, Conditional Access, Single Sign On, Multi Factor Authentication, Privileged Identity Management, User provisioning automation, Azure AD App registration & Enterprise application, Azure AD application proxy, AD connect.
MICROSOFT 365 and DLP: Azure Information Protection, Microsoft Cloud App Security, Microsoft Intune (MDM), Office 365 ATP, SafeLink s, Office 365 message encryption, Exchange online archiving and retention policies, Windows Defender with ATP, Microsoft 365 Secure score, Microsoft 365 Security Compliance center.
MICROSOFT AZURE: Azure Virtual Desktop, Windows 365, Azure Bastion, Azure Sentinel, Azure Security Center, Just in Time VM access, Role Based Access Controls, Key Vault, Azure VM update management (patching), Azure monitor, Azure Firewall, Blueprints and Policies Azure Application gateway, Azure DDOS protection, Azure DNS, Azure Traffic Manager, Network Security Groups, Web Application Firewall Rules, Private Endpoints, Service Endpoints, Disk and Database Encryption, Hub and Spoke Network Topology, Subnets, Virtual network gateway connections (Site to site, Express route, Point to site), Virtual network peering s.
CI/CD: ARM Templates, JSON, Terraform, GitHub, Azure Devops Server / Service, Docker, Kubernetes (K8s), Ansible.
PROFESSIONAL EXPERIENCE:
Confidential
PRINCIPAL ENTERPRISE ARCHITECT
Responsibilities:
- Review all Pull requests that need to be deployed in client’s infrastructure.
- Create landing zones for green - field cloud deployments leveraging the Microsoft cloud adoption framework.
- Security assessments and analysis for Microsoft cloud services (Microsoft 365 & Azure)
- Pre/Post Sales Azure architect responsible for planning, design, and deployment of Microsoft 365 & Azure services.
- Data loss prevention for cloud and on-premises assets.
- Secure score analysis across Microsoft Azure and Office 365 environments.
- Cloud App Security Design and Implementation for 7000 user environments for waste management company
- Azure information protection implementation for credit union including profile scanner for on-premises file and SharePoint servers.
- Intune Windows 10 Auto Pilot Deployment for 5000 user environments with conditional access policies.
- Windows 10 always on VPN device tunnel implementation for a Colorado company with conditional access
- Azure security center secure score review for all customers with active azure subscriptions in a bid to design statement of work to implement security standards as recommended by Microsoft.
- Azure subscription migrations.
- Windows Virtual desktop deployments
- Azure migrate assessments and replication of VMware virtual machines to azure.
- Replicate SQL database instances to SQL managed instances with private endpoints for security
- Migrate IIS websites to app services with v-net integration, access restriction policies, azure front door load balancing with web application firewall policies for security.
- Azure files setup with Local AD authentication. On-premises file server synchronization leveraging azure file sync.
- Azure sentinel deployment for syslog CEF log investigation.
- 30TB Data migration (structure / unstructured) from AWS to Azure using Azure data factory pipelines. Migrating data first from AWS S3 buckets to Azure storage account data lake storage. From Azure Data Lake Storage to Azure SQL hyperscale database.
- Azure landing zone implementation with hub and spokes architecture.
- Migration of Citrix VDA to Azure Virtual Desktop for multi branch Azure infrastructure.
- Azure Files local AD authentication with Private Endpoints.
Confidential
SENIOR AZURE ARCHITECT
Responsibilities:
- Azure Subscription migrations (Azure resource move).
- SQL data migration with Azure Data factory
- Infrastructure Migrations with Azure Migrate (SQL, Webservers, AD etc.)
- Refactoring of VM based workloads to PaaS (Azure Webapps, Azure SQL DB and Managed Instances, Azure Functions)
- Azure Virtual Desktop Implementation with FSlogix
- Azure Expert MSP Audit Technical Lead Facilitator
- Advanced Azure Networking Architecture (vWAN, Express Routes, Firewall & Networking Virtual Appliances)
Confidential
MICROSOFT 365 AZURE ARCHITECT
Responsibilities:
- Azure Site Recovery and Azure Backup
- File Server migrations to Azure Files (Azure File Sync)
- Azure VPN implementation to On-premises
- Virtual Machine Migration from VMWare / Hyper-V to Azure
- Microsoft 365 Tenant Setup
- Microsoft Teams Voice Implementation
- Microsoft 365 Security implementation
- Intune MDM implementation
Confidential
SENIOR SYSTEMS / PRESALES ENGINEER - AZURE / OFFICE 365
Responsibilities:
- Cloud security services Implementation expert
- Cloud migration engineer.
- Level 3-4 Escalation support specialist
Confidential
TECHNICAL SOLUTIONS PROFESSIONAL | AZURE
Responsibilities:
- Office 365 Migrations and security implementations
- Azure Infrastructure Build, Migrations and Security implementations
- On-premises infrastructure security assessment and vulnerability remediation.
Confidential
CLOUD SOLUTIONS ARCHITECT - AZURE / OFFICE365
Responsibilities:
- Cloud App Security Design and Implementation for 7000+ user environments for waste management company, for DLP, threat detection, information protection, conditional access, shadow IT.
- Azure information protection implementation for credit union on-premises and cloud resources leveraging AIP and configuring AIP scanner for on-premises file servers, SharePoint servers and document repositories.
- Azure sentinel implementation for security alerting and Logic app integration for automated response.
- Intune Windows 10 Auto Pilot Deployment for enterprise environments with conditional access policies.
- Azure defender secure score analysis, remediation planning and implementation
- MFA, SSPR, SSO & Password writeback implementation
- Azure AD connect implementation
- Azure AD Privileged Identity management and Access reviews
- McAfee EPO DLP implementation
- Exchange on-premises to Office365 Migrations (Hybrid, Staged, cut over).
Confidential
N.O.C TIER II ENGINEER
Responsibilities:
- Support levels 1 - 3 network and server infrastructure escalations
Confidential
NETWORK ENGINEER
Responsibilities:
- Computer hardware management
- Routing and switching
- Setup virtual networking for Vm’s
- Manage Hyper-V private cloud infrastructure using System Center Suite (SCVMM, SCCM, SCOM, SCO etc.)
- Update workstations using system center configuration manager
- Setup VMWare V-center Server to manage Virtual machines on Esxi 6.0 - 7.0
- Red hat Linux Administration
Confidential
SYSTEMS ADMINISTRATOR / COMPUTER SCIENCE LECTURER
Responsibilities:
- Lectured Programming Language in COBOL to the OND level computer science students.
- Managed and Monitored the School’s IT infrastructure
- Created a domain for and added all the school’s systems into it, created accounts from the server to enable centralized management, created organizational units and implemented group policies to ensure that only formal tasks were carried out on the systems.
- Managed Students online Registration.
- Audited IT funds.
Confidential
COMPUTER ENGINEER
Responsibilities:
- Maintenance and configuration of SAIMA Computerized Bullet proof doors for Union Bank Branches Within Lagos State, Nigeria.
- Firmware update for SAIMA doors