Professional Experience
Systems Engineer / Stack Overflow / Remote
June 2022 - October 2023
- Led and executed successful migration of Endpoint MDM from Workspace ONE to Kandji and Intune
- Developed and enhanced library tools to streamline day-to-day API utilization for Okta, Fresh Service, BambooHR, and Google Workspace
- Managed daily Okta operations, utilizing Terraform for IaC to efficiently handle groups, RBAC, and bookmarks using Atlantis workflow
- Configured Azure production and development environments for optimal IT functionality
- Oversaw administration of all company applications, including secure integration of Okta (SAML), automation, access controls, and overall security
- Spearheaded procurement, planning, and implementation of Kandji and Intune MDMs, leveraging Okta, Apple DEP, and Windows Autopilot
- Orchestrated successful migration of diagramming tool from Miro to Lucid
- Actively participated in multiple audits, diligently gathering evidence for SOC2, ISO27001, and external security audits
- Successfully integrated Fresh Service SaaS App Manager for streamlined vendor and contract management across the organization
IT Lead / Flashfood / Remote
June 2021 - June 2022
- Enrolled vendor applications into Okta deployment via SAML and SWA, early stages of establishing Zero Trust through device-state and context flow
- Completed SOC2 audit with Deloitte Canada, actively participating in policy design, reviews, and employee training
- Contributed to ongoing semi-annual access reviews, ensuring compliance and security measures
- Created and implemented bash scripts for initializing Macbooks, including MDM and security applications such as Cisco AMP, Umbrella, and Vanta
- Enhanced Jira workflow for IT Service Desk tickets, streamlining processes and improving efficiency
- Managed administrative access for all 60 Flashfood applications, reviewing access request tickets and adhering to company and SOC2 policies
Systems Administrator / 2Keys - An Interac Company / Toronto, ON - Hybrid
April 2019 - June 2021
- Administered and monitored Scotiabank's internal Public Key Infrastructure (PKI) servers
- Conducted monthly research and executed Scotiabank's security standards on the bank's internal PKI servers, including RHSA research, testing, and execution in lower environments
- Raised required CAB changes and ensured follow-through with internal bank processes
- Executed security monitoring and login audit, system file changes monitoring, system's disks and RAM usage, and OS level warnings and errors by writing bash monitoring scripts for PKI servers
- Led and obtained Operation Readiness process review for internal OCSP project
- Planned, organized, and implemented the release of the newest version of Entrust Security Provider (ESP) to 95,000 internal customers across 8 countries
- Created python scripts to ingest and output spreadsheets of user's data and ESP user reports made by Tanium
Systems Administrator / Coinsquare / Toronto, ON
February 2018 - April 2019
- Conducted comprehensive research and exhaustive testing to determine the suitability and effectiveness of Ansible/JumpCloud/Automox for Linux and Mac OS administration
- Successfully constructed and managed a state-of-the-art Unify network and corporate office infrastructure
- Spearheaded the seamless integration of Okta SSO, enabling 150 employees to access multiple systems with enhanced security and efficiency
- Developed and authored the Asset Management Policy and Acceptable Computer Usage Policy, ensuring adherence to industry standards and regulatory requirements
- Provided exceptional help desk support for Linux Mint and MacOS endpoints, printers, network, VOIP phones, and security systems
Junior Systems Admninistrator / Plexxis Software / Vaughan, ON
May 2017 - February 2018
- Created and implemented bash scripts to automate daily tasks
- Successfully deployed and configured Oracle and CentOS servers within VMware environment
- Spearheaded a VMware replacement project by leading the implementation of oVirt
- Installed, configured, and deployed multiple appliances including Observium, Apache web servers, and Windows RDP
- Provided daily support and maintenance for Plexxis application and servers