

Senior IT Architect with 16+ years of experience in Identity and Access Management (IAM), specializing in designing and implementing secure, scalable authentication and authorization solutions using LDAP/LDAPS and modern protocols such as SAML, OIDC, and OAuth 2.0.
Proven expertise in Active Directory, Entra ID (Azure AD), Zero Trust frameworks, Privileged Access Management (PAM) architecture, and automation. Demonstrated ability to lead high-performing teams, deliver enterprise-grade identity services, and drive innovation in complex IT ecosystems.
Certified in MCSE, ITIL, CCZT, and PSPO, with ongoing research and authorship of a whitepaper on “Securing Identities in OT Environments.” Adept at mentoring engineers, collaborating with cross-functional teams, and building future-ready, resilient identity platforms aligned with business and security goals.
• Built a high-performing team of 16 engineers, delivering Active Directory operations, migrations, and HCI solution deployments across multiple factory sites. Pioneered the AD function within the organization, setting foundational standards and practices.
• Spearheaded the insourcing transition from Comma-Soft to DTIC, establishing operational workflows, governance models, and comprehensive solution documentation to ensure long-term sustainability.
• Led the design, implementation, and optimization of distributed identity systems leveraging LDAP protocols, enhancing scalability and performance across global environments.
• Architected and deployed Tier-0 (T0) environments for Identity & Access Management (IAM), embedding Zero Trust principles to strengthen enterprise security posture.
• Fostered strategic collaboration with DTAG, contributing to IAM architecture discussions, aligning with business goals, and building trusted partnerships across global teams.
• Championed automation and innovation initiatives, driving significant improvements in operational efficiency, system reliability, and service delivery through PowerShell and ServiceNow integrations.
• Designed and managed secure, scalable Active Directory infrastructures, including hybrid and cloud-native deployments using Azure ADDS and Cloud AD.
• Led Agile delivery practices, managing product backlogs, sprint planning, and iterative development cycles to ensure timely and quality outcomes.
• Directed large-scale migrations of applications, users, groups, servers, and BluePCs using Quest tools, ensuring minimal disruption to business-critical systems.
• Developed and integrated automation frameworks, ServiceNow workflows, and monitoring solutions to streamline DTAD operations and enhance visibility.
• Conducted threat modelling, security audits, and vulnerability assessments for identity systems, proactively mitigating risks such as token forgery, session hijacking, and privilege escalation.
• Insourced AD-related activities from external vendors, optimizing operational costs, improving control, and enhancing service quality.
• Currently Working on AI integration initiatives within identity infrastructure, exploring intelligent automation, anomaly detection, and predictive analytics to elevate operational maturity.
• Contributing to whitepaper development on “Active Directory in Operational Technology/Industrial Control Systems: Security with an Identity-Centric Approach and Preparing for Industry 4.0, Zero Trust implementation, and AI-driven IAM strategies to influence organizational direction and industry best practices.
• Led and managed a high-performing team of 24 professionals across L1, L2, and L3 support tiers, overseeing a large-scale Active Directory (AD) environment with 80,000 users and 113 Domain Controllers across 19 global sites.
• Successfully transitioned insourced operations from multiple external vendors, ensuring seamless integration, enhanced efficiency, and reduced operational overhead.
• Oversaw the end-to-end design, development, and testing of a robust Active Directory data protection solution, aligning with enterprise security standards.
• Managed customer engagement and scaled development teams to support rapid adoption and evolving client requirements.
• Architected and implemented integration solutions between Active Directory and platforms such as Amadeus, as well as other airport and airline security systems, enhancing interoperability and security.
• Spearheaded the migration of three AD forests from Windows Server 2012 to 2019, consolidating 113 Domain Controllers to 50, resulting in significant cost savings and reduced downtime.
• Championed automation initiatives using PowerShell scripting to streamline workflows, improve operational efficiency, and reduce manual effort.
• Collaborated with global stakeholders to design resilient site structures and resolve complex infrastructure challenges.
• Directed Azure Entra ID integration and AD migrations, ensuring secure, scalable, and efficient identity management across hybrid environments.
• Monitored and enhanced team performance through regular reviews, mentorship programs, and skill development initiatives for junior and new team members.
• Facilitated team-building activities and technical training sessions, fostering a culture of collaboration, continuous learning, and innovation.
• Coordinated with cross-functional teams including networking, security, and application teams to ensure seamless project execution and timely delivery.