IT Passionate Cloud Engineer, can do attitude I always up for the challenges. Highly Motivated. I Love to explore and learn about new technologies always in search of next HOP.
Responsible for providing cloud solutions to client, Service High availability & Azure Security
Solutions.
Azure Security:
1. Provide Azure DDoS protection and Bastion services according to client requirement.
2. Configure SIEM through Azure Sentinel and Log Analytics.
3. Implement Azure Sentinel IDS & IPS solutions to remediate cyber attack.
4. Provide Azure Defender for Cloud Plan services to harden resources security according to Secure score and Recommendation.
5. Create analysis rules in sentinel view and detect vulnerability with help of predefined template.
6. Based on generated alerts and incident assign users to investigate issue.
7. Create prevention action rule in sentinel with logic apps designer based on alert.
8. Enable SQL audit logs with the help of log analytics workspace.
Azure IaaS & PaaS:
1. Implement frontdoor solutions with WAF integration.
2. Configure HTTP to HTTPS url redirection & Rule Engine Configuration.
3. Implement CDN for static websites and web application.
4. Provsion Traffic manager using various routing methods such as performance, weighted, priority, geographic & multivalue.
5. Azure load balancing Solutions included Layer 7 application gateway and layer 4 load balancer.
6. Creating and managing Network security Groups for Virtual machines and Virtual Networks for security purposes.
7. Configuration and troubleshooting of VPN connections such as Site to site, Point to Site, and Vnet Peering, Express Route.
8. Creation of Azure Private & Service Endpoint solutions and administration of Route tables to manage traffic within Azure environments with WAF and Geo Locations-Restrictions for KSA region clients.
9. Configure monitoring solutions Log analytics workspace integration with VM Event logs, NSG flow logs, connection troubleshoot, Traffic analytics, and Azure Alerts creation through action groups.
10. Providing Azure AD DS solutions as Managed service.
11. Quarterly perform Azure DR Drill activities with all clients.
12. Provide On-prem to cloud backup solutions, Implement Availability sets and Availability zone solutions to build up high availability in service.
13. Auto backup provision and restoration for VMs, SQL, MySQL, Create VMSS solution with specialize image from azure Share Compute Galleries.
14. Provide complete Web App Service solutions like purchasing domain & wild card SSL certificates from Azure, bind custom domain, Web App service deployment slots and to integrate app service with MySQL or SQL service.
15. As a CSP Provide Billing solutions to clients such as cost analysis and Budget Alert features.
16. Troubleshoot Azure VMs when they are not accessible, Check automation account resolve VMs Auto Start/Stop issue.
17. Create Storage AC, File Share, ADF, and Data Lake solutions with Private Endpoint to clients according to requirement.
Azure Active Directory:
1. Sync on-prem AD with AAD using PTA.
2. Deploying ADDS services in cloud environment.
3. Assign conditional access policies for users.
4. To create Administrative Units for individual departments.
5. Implement PIM management and User risk policies
6. Azure AD connect synchronization troubleshooting
7. Enterprise application integration with AD SSO by SAML configuration. 8.Azure AD Entitle management and Delegations
09. Advance MFA management for user’s visual studio login.
10. Dynamic users’ creation and Self-service password reset
11. Implement Azure AD Password Hash Synchronization & Password Write Back.
Responsible for managing hybrid cloud environment on Azure and VM Ware platform,Monthly cloud billing ,Application license renewal, vendor co-ordination & Deployment using MS TFS.
DNS:
1. Troubleshoot and verify the DNS forward and reverse lookup zone.
2. Create of host A, CNAME record for new websites and MX record.
3. check newly created servers DNS name resolving issues.
DHCP:
1. Scope creation as per requirement.
2. Maintain IP reservation list and to monitored bad ip.
SQL:
1. Create auto-backup maintenance plan in sql on Azure VM with cloud blob location url.
2. Restoration of prod SQL server diff and full backup when database went to recovery mode.
3. Creation of user SQL database for read and write log-in through AD define OU's.
4. Creating link servers between two prod database servers.
Active Directory:
1. Migrated AD Server 2012 R2 to 2016.
2. Managing and implement new group policies.
3. To establish trust between two domains.
4. Responsible for user log in creation and their access.
5. Recover deleted AD users from LDP.
6. To create AD replication servers.
7. AD schema upgradation and deploying additional exchange server attributes.
8. NTDS backup through WB Admin
Windows Server 2008,2012R2, 2016 and 2019
1. Installing exchange server 2019
2. Experience with installing various server manager roles .
3. Print server, IIS with all configurations.
4. WDS and WSUS Implementation.
5. Installing SQL server management studio on server with various versions.
6. To configure RAM disk partition on servers.
7. Experience with tools like Free partition wizard, filezilla, winscp , advance IP scanner, RV tools , Clone zilla,Hirenboot-CD
Azure Administrator
AZ-900
SC-900
AZ-900