Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Swarna Biswal

Service Analyst(Cloud)
Bangalore

Summary

Experienced IT Administrator with 7+ years specializing in Identity and Access Management (IAM) and Microsoft 365 administration. Skilled in managing Azure AD (Entra ID), Okta, Intune, MFA, SSO, and RBAC, with expertise in M365 services like Exchange, SharePoint, Teams, and OneDrive. Proficient in endpoint management using Intune and JAMF, as well as policy enforcement and automation through PowerShell. Recognized for ensuring secure access, facilitating audits, and implementing Zero Trust practices in enterprise environments.

Overview

9
9
years of professional experience
2015
2015
years of post-secondary education
4
4
Certifications

Work History

Service Analyst – Identity & Access

TLC Worldwide
12.2024 - Current
  • Designed and implemented access provisioning workflows using PowerShell and Azure Automation for hybrid identity management.
  • Administered Azure AD/Entra, managing MFA, RBAC, PIM, custom roles, and conditional access policies to protect critical systems.
  • Provide Product support for Cosmos, TLC Worldwide in-house product.
  • Collaborate with the development team on Azure-hosted.
  • Utilized SQL queries in Snowflake to extract, validate, and analyze dataflow ensuring data accuracy and integrity.
  • Conducted API security testing (Swagger, Postman) for Cosmos platform (internal SaaS product), validating SSO claims and OAuth tokens.
  • Learn Dynamics365 and its integration and data sync with the in-house product and training the same to the junior teammates.
  • Reduced customer complaints by proactively identifying potential problems and implementing corrective actions.

Cloud Support Engineer

Lenovo
06.2023 - 08.2024
  • Led IAM administration for Azure and M365 platforms, including SSO, Federation, MFA enforcement, and PIM/PAM access control.
  • Automated role-based access assignment and revocation using Azure AD dynamic groups and PowerShell scripts.
  • Deployed Microsoft Intune policies for BYOD and corporate devices, ensuring secure app deployment and patch compliance.
  • Managed Azure AD Connect for hybrid identity synchronization, troubleshooting UPN mismatches and sync conflicts.
  • Integrated Microsoft Defender for Endpoint and Jamf Protect for real-time threat monitoring and response.
  • Managed compliance reporting, device health monitoring, and remediation workflows.
  • Enforced DLP, encryption, remote wipe, and device restriction policies across mobile and desktop endpoints.
  • Collaborated with security teams to align MDM practices with Zero Trust and regulatory frameworks (NIST, ISO).
  • Audited IAM configurations to align with Zero Trust principles, reducing standing privileges and identifying stale accounts.
  • Configured Microsoft Defender for Cloud and Sentinel to detect identity-based threats and anomalous behavior.
  • Conducted regular reviews of user access and entitlements, ensuring segregation of duties (SoD) and minimal privilege models.
  • Executed Joiner-Mover-Leaver (JML) processes to automate access lifecycle in line with Zero Trust principles.
  • Integrated Microsoft 365 and Dynamics 365 with Azure AD for centralized IAM control and policy enforcement.
  • Developed access review processes and enabled Access Packages and Entitlement Management for contractors and B2B partners.
  • Implemented DLP, encryption, and device compliance policies via Intune and Defender for Endpoint for data protection.
  • Conducted identity security audits, identifying excessive permissions and access anomalies using Azure AD and Microsoft Defender.
  • Provided internal consulting on IAM and security governance in compliance with NIST 800-171 and ISO 27001 frameworks.
  • Managing and supporting the complete M365 suite and troubleshooting the M365 issues.
  • Managed Azure virtual machines (VMs): deployment, configuration, scaling, and reserved instance management.
  • Administered Azure Resource Manager (ARM): handled subscriptions, resource groups, and cost optimization.
  • Configured virtual networks (VNet), network security groups (NSGs), firewalls, and VPN gateways for secure connectivity.
  • Implemented identity management integrations using Azure AD, RBAC, and conditional access.
  • Deployed and maintained Azure Storage accounts, including blob/file storage, backup, and recovery policies.
  • Monitored resource usage and implemented budget alerts and cost control strategies across environments.

Application Analyst

Ericsson
04.2020 - 02.2023
  • Administered hybrid IAM solutions using Azure AD and Okta, managing federated access for global partners and staff.
  • Built workflows in Okta Workflows and Azure Logic Apps for provisioning/deprovisioning, license assignment, and JML automation.
  • Managed end-to-end device lifecycle for Windows, macOS, iOS, and Android using Microsoft Intune and Jamf Pro.
  • Deployed and enforced MDM/MAM policies, including device compliance, configuration profiles, and conditional access.
  • Implemented BYOD and corporate device enrollment strategies, ensuring secure onboarding and access controls.
  • Automated application deployment, OS patching, and policy assignments using Intune deployment rings and Jamf policies.
  • Maintained secure access governance through Access Reviews, GPO, and conditional access policies.
  • Supported IT audits and compliance assessments by providing IAM evidence reports and access logs.
  • Implemented policies in Defender for Office 365, Exchange Transport Rules, and eDiscovery to protect data.
  • Wrote PowerShell scripts for identity management (bulk provisioning, license automation, policy enforcement).
  • Coordinated migration from legacy identity systems to integrated Microsoft 365 environments with enhanced IAM capabilities.Managed Exchange Online: mailboxes, groups, transport rules, retention, and legal holds.
  • Resolved mail delivery issues, spam filtering, and integrated Defender for O365.
  • Administered SharePoint: sites, libraries, permissions, workflows, and retention policies.
  • Managed OneDrive: storage, sync issues, sharing, and DLP.
  • Oversaw Microsoft Teams: team creation, guest access, apps, and compliance settings.
  • Enforced governance via eDiscovery, auditing, and alert policies.
  • Automated M365 tasks with PowerShell for provisioning, licensing, and group management.
  • Collaborated with cross-functional teams to ensure seamless integration between applications, improving business processes.

Technical Support Specialist

Schneider Electric
06.2019 - 12.2019
  • Supported end-user identity lifecycle processes across Active Directory, LDAP, and Intune for global users.
  • Managed VPN, proxy, endpoint agent deployment and global protection services.
  • Worked on Citrix XenDesktop issues and SCCM deployment tickets.
  • Managed high-volume ticket queues while maintaining exceptional levels of customer service and satisfaction.
  • Explained technical information in clear terms to promote better understanding for non-technical users.

Technical Support Specialist

Wells Fargo
03.2018 - 03.2019
  • Supported domain joins, Group Policy troubleshooting, and Microsoft Intune onboarding for global users.
  • Assisted with directory synchronization and troubleshooting federation and MFA issues.

Service Desk Analyst

CSS Corp / AT&T
05.2016 - 06.2017
  • First point of contact for IAM and infrastructure-related incidents.
  • Escalated and resolved issues with Active Directory, Exchange Online, and VPN access.

Education

B.Tech - Computer Science Engineering

BPUT
Odisha
01-2015

Skills

    IAM Platforms: Azure AD (Entra ID), Okta, Active Directory, Azure AD B2B/B2C, Azure AD Connect, PIM/PAM

    Authentication & Access: SSO, MFA, Smart Lockout, Conditional Access, SAML, OAuth 20, OpenID Connect, Federation Services (ADFS)

    Identity Lifecycle Management: User provisioning/deprovisioning automation, Joiner-Mover-Leaver workflows, Role-based access (RBAC)

    Security & Compliance: DLP, Defender for Endpoint, Azure Key Vault, Sentinel, Microsoft Purview, NIST, GDPR, ISO 27001, Zero Trust

    Automation: PowerShell, Azure CLI, Graph API, ARM templates, Intune/SCCM automation

    Cloud & Hybrid Infrastructure: Azure IaaS/PaaS, Hybrid AD, Virtual Networking, NSG, VPN

    Monitoring & Troubleshooting: Azure Monitor, Log Analytics, Sentinel, API debugging (Postman, Swagger), Incident Response

    Tools & Platforms: Intune, Jamf, Microsoft 365 (Exchange, Teams, SharePoint, OneDrive), ServiceNow, Salesforce, SAP, Snowflake

    Azure Adminstration and understanding of Infrastructure as Code (IaC) best practices and Te

    M365 Admin(Exchange Online,Sharepoint,teams,Onedrive) and Azure Sentinel,azure logic,knowledge on kql query

Certification

Microsoft Certified: Azure Administrator Associate (AZ-104)

Timeline

Service Analyst – Identity & Access

TLC Worldwide
12.2024 - Current

Cloud Support Engineer

Lenovo
06.2023 - 08.2024

Application Analyst

Ericsson
04.2020 - 02.2023

Technical Support Specialist

Schneider Electric
06.2019 - 12.2019

Technical Support Specialist

Wells Fargo
03.2018 - 03.2019

Service Desk Analyst

CSS Corp / AT&T
05.2016 - 06.2017

B.Tech - Computer Science Engineering

BPUT
Swarna BiswalService Analyst(Cloud)