Talent badge filter
Skills filter
Select talent location
Select talent time zones
$29/hr
100%
Job Success
Available now
Start of list.
End of list.
Senior Linux/DevOps Engineer & AI Automation Specialist
Senior Linux/DevOps Engineer and AI Automation Specialist with 15+ years of experience designing, building, and scaling cloud-native infrastructure and intelligent workflow systems. My background combines deep cloud architecture expertise (AWS-focused) with hands-on experience building AI-powered automation using n8n, LLM APIs (OpenAI, OpenRouter), vector databases, and secure cloud environments.
Most recently, I've led DevOps and cloud-security engineering for a U.S.-based healthcare SaaS platform (physician scheduling) operating under HIPAA and SOC 2. The work spans secure AWS operations, fleet patch management across mixed Windows/Linux estates, EKS lifecycle management, and building the security tooling and audit evidence that underpin a SOC 2 program — turning compliance requirements into reliable, automated, production-grade controls.
Cloud & Infrastructure Expertise
Over 12 years of AWS experience designing secure, scalable, production-grade environments across healthcare, banking, and enterprise sectors.
AWS Services
EC2, RDS, EKS, VPC, IAM, S3, CloudFront, Route53, Elastic Beanstalk, SQS, EFS, ElastiCache, Redshift
Systems Manager (SSM), GuardDuty, Security Hub, AWS Config, Inspector, CloudTrail
Infrastructure as Code
Terraform & CloudFormation — multi-account secure environments
ADR-driven design and Strangler Fig migration strategy
Containers & Orchestration
Kubernetes (EKS), Docker, ECS, Docker Swarm
EKS cluster lifecycle management — Kubernetes version upgrades across dev/staging/prod
CI/CD
Jenkins, GitLab CI/CD, CircleCI, CodePipeline, ArgoCD
GitHub Actions with ARC (Actions Runner Controller), Azure DevOps self-hosted agents
GitOps & Kubernetes Configuration Management
ArgoCD (declarative continuous delivery, app-of-apps pattern, multi-cluster sync), Kustomize (base/overlay structuring, environment promotion, patch management), Helm (chart authoring, versioning, values management across environments). GitOps workflows with full audit trail and rollback capabilities. Designed and operated production GitOps pipelines for EKS clusters in regulated environments.
High Availability
HAProxy, Nginx, Load Balancers, Heartbeat
Led infrastructure teams in banking environments and designed highly available Kubernetes production systems for U.S.-based healthcare companies.
Security, Compliance & Governance (SOC 2 / HIPAA)
Hands-on implementation and continuous evidence for compliance programs in regulated healthcare environments.
SOC 2 control implementation and evidence collection across multiple AWS accounts (logical access, audit logging, encryption, change management, patch management)
HIPAA-aware architecture: least-privilege IAM, encryption at rest and in transit, end-to-end audit trails, and EDR coverage across the fleet
AWS-native security stack: GuardDuty, Security Hub, AWS Config, Inspector, CloudTrail
Prowler (soc2_aws framework) and Vanta (GRC) for continuous control mapping and posture monitoring
AWS IAM Identity Center (SSO): MFA enforcement, permission sets, SAML federation, CC6.1 remediation
EDR migration: CrowdStrike Falcon → Microsoft Defender, with continuity of endpoint protection enforced as a hard gate
Immutable S3 evidence stores, fleet-wide backup-policy review, and EBS encryption rollout for compliance
Multi-account delegated-administrator security posture (Security Hub / Config)
Architecture Decision Records (ADRs) for traceable, auditable change governance
Windows Server & Mixed-Fleet Operations
Operated a ~70-instance EC2 fleet (Windows Server + Linux) plus ~35 EKS worker nodes
AWS Systems Manager: Patch Manager (AWS-RunPatchBaseline), Session Manager, Fleet Manager, Run Command
Established a formal monthly patch cadence; raised Windows patch compliance from a low baseline to ~84%
Windows Server lifecycle / EOL planning: Server 2016 → 2022 upgrade and decommission roadmaps aligned to patch-management policy
KB-level risk triage (e.g., hostname-length reboot risks on domain members) with documented remediation
Active Directory domain controllers and SQL Server hosts (HA production pairs, RDS member servers, performance tuning)
Safe-patch workflow with pre-patch EBS snapshots and post-reboot service validation
Observability & Monitoring
Datadog, New Relic, Zabbix — agent consolidation and cost optimization across EKS and production hosts
Networking & Secure Access
Tailscale (subnet routers, zero-trust access), VPC design, Route53, Load Balancers
AI Automation & Workflow Engineering
Beyond infrastructure, I specialize in AI-powered workflow automation:
n8n workflow design (cloud & self-hosted)
LLM integration (OpenAI, OpenRouter, local models)
RAG architectures (Qdrant, vector search, embeddings)
AI-driven CRM automation
Intelligent document processing
Automated client intake & communication systems
Secure AI pipelines for regulated industries
I design workflows that are secure, easy to maintain, scalable
$30/hr
100%
Job Success
$60K+ earned
Available now
Start of list.
End of list.
Most organizations already have Microsoft 365. What they often don't have is a well-structured system behind the way work actually gets done.
That usually shows up as approvals running through email, processes living in spreadsheets, documents without proper version control, and teams spending time on work that should largely run itself. That's typically where I get involved.
I work with organizations to design and build Microsoft 365 solutions that bring proper structure to internal operations - built on SharePoint, Power Apps, Power Automate, and Power BI.
I've been doing this for over 10+ years, working with organizations across the UK and Europe - operational teams, regulated environments, enterprise business functions. The work spans SharePoint Online, SharePoint On-Premises, and the Power Platform depending on what the situation calls for.
The kind of work I do most: Building Power Apps that replace spreadsheet-based processes with proper business applications. Designing approval workflows in Power Automate with clean routing logic, escalation handling, and audit trails. Setting up SharePoint environments that are structured for the long term - right permissions, right architecture, right governance from the start. Building Power BI dashboards that give operational teams actual visibility into what's happening. Delivering document management systems where documents go through proper lifecycle stages before they're published. Setting up SharePoint intranets and employee portals that connect properly with Teams and Outlook. Connecting Microsoft 365 to external systems through REST APIs and custom integrations. Building AI-powered automation using AI Builder for things like invoice processing and document data extraction.
Projects I'm regularly brought in for include document control and approval systems, procurement and purchase order workflows, capital project authorization, employee onboarding and HR self-service, inspection and compliance management, resource and room booking, operational reporting, and multi-level approval systems across Finance, Operations, and Executive functions.
I don't typically get involved in single-task work. Most of the time a business process has grown beyond what email and spreadsheets can handle, or an existing system wasn't built properly and needs rethinking. That's the kind of problem I work on.
The way I approach it is practical and architecture-led - clean data structures, maintainable logic, clear permissions, and a solution that the business can actually manage and build on going forward.
If that sounds like what you're dealing with, I'm happy to take a look at what you have and talk through what a properly built solution would look like.
$125/hr
100%
Job Success
$100K+ earned
Available now
Start of list.
End of list.
I am a senior Microsoft Cloud Architect with more than 16 years of experience designing, securing, and automating environments built on Microsoft 365, Azure, Microsoft Entra ID, and Microsoft Intune. I help organizations modernize their stack with Zero Trust principles, Windows 11 and Cloud PCs, Intune Suite capabilities, and Microsoft 365 Copilot so they get secure, automated, and measurable outcomes, not just configurations.
Top Rated Plus, 100 percent Job Success, Over $100k earned on Upwork. Clients bring me in when they need someone who can own complex architecture, clean up half finished projects, or provide ongoing expert support across the Microsoft ecosystem.
Current Focus Areas:
1. Identity, Zero Trust, and Secure Access
Microsoft Entra ID design, Conditional Access, MFA, identity lifecycle, role based access, and Just in Time access.
Entra P1 and P2 based identity security, Entra Suite integrations, and alignment to Zero Trust access patterns.
Secure access to Microsoft 365, line of business apps, and SaaS using modern authentication, device trust, and least privilege.
2. Endpoint Management with Microsoft Intune and Intune Suite
Full Intune tenant build out, Windows 11 enrollment, Autopilot, configuration profiles, compliance, and update rings.
Intune Suite add ons, including Endpoint Privilege Management (EPM) and advanced endpoint security capabilities to reduce local admin rights and enforce least privilege at scale.
Co management and migration paths from Configuration Manager to cloud attach or full Intune.
3. Microsoft 365, Copilot, and Collaboration
Microsoft 365 tenant design and cleanup, Exchange Online, OneDrive, Teams, and SharePoint Online.
Information architecture, permissions, and automation for SharePoint and OneDrive migrations from on premises file servers and legacy systems.
Microsoft 365 Copilot adoption, governance, and integration into daily work in Word, Excel, PowerPoint, Outlook, Teams, and Power BI, including new Microsoft 365 Copilot app and Microsoft 365 Premium subscription offerings.
4. Security, Defender, and Compliance
Hardening Microsoft 365 and Azure using Defender for Office, Defender for Endpoint, and identity based protections.
Planning and implementing controls that align with the newer Microsoft Defender Suite and Microsoft Purview Suite naming for E5 customers.
Practical security baselines, security score improvements, and realistic monitoring that IT teams can maintain.
5. Azure Infrastructure, Apps, and AI Integrations
Azure landing zones, networking, virtual machines, storage, and PaaS services for line of business applications.
Tenant to tenant or subscription to subscription resource migrations, including App Service, databases, and identities.
Working with Azure AI and Microsoft 365 Copilot scenarios, including AI agents, Copilot Studio Lite, and Graph API integrations into portals, dashboards, and workflows.
Clients typically hire me for:
Greenfield Microsoft 365 and Azure builds for growing companies that want best practices from day one.
Intune plus Intune Suite implementation to standardize and secure Windows 11 devices, with Autopilot and Zero Trust enrollment flows.
On premises file server and legacy SharePoint migrations to modern SharePoint Online, OneDrive, and Teams with clean permissions and automation.
Hybrid identity projects that connect on premises Active Directory to Microsoft Entra ID, including secure Conditional Access and device trust.
Microsoft 365 Copilot enablement, policy and governance setup, and real use case design for leaders, finance, operations, and IT.
Azure resource consolidation and tenant to tenant migrations when companies merge, split, or need cost and security optimization.
Creation of automation using PowerShell, Power Automate, and the Microsoft Graph API to eliminate repetitive administrative work.
How I Work:
Consultative approach: I help clarify requirements, identify risks, and design a realistic roadmap before touching production.
Transparent communication: Clear documentation, status updates, and straightforward explanations of tradeoffs.
Operational focus: I design solutions that your internal IT team can support long term, with runbooks, handover sessions, and sensible guardrails.
If you need a trusted Microsoft cloud expert to design, stabilize, or modernize your environment, I am available for both project based work and ongoing advisory support.
Share a brief summary of your environment and goals, and I can propose a concrete approach and starting scope.
United Arab Emirates
$45/hr
100%
Job Success
Available now
Start of list.
End of list.
I specialize in migrating, securing, and managing Microsoft 365 environments for organizations, ensuring accurate implementation from the outset — serving clients ranging from startups with 10 users to enterprises with 10,000 employees.
My Track Record
• Over 24,500 hours accrued on Upwork across more than 120 clients.
• Achieved Top Rated Plus status with a 100% Job Success Score.
• Possess over 11 years of practical experience in Microsoft cloud services.
• Successfully completed over 200 Microsoft 365 migration projects.
• Enterprise-sector experience includes Tier 3 Microsoft Premier Support for Fortune 500 clients, with recognition as Best Employee on two occasions.
• Made significant contributions to a Microsoft Partner of the Year organization.
MY CERTIFICATIONS (Active, Microsoft-verified)
• MS-102 Microsoft 365 Administrator
• SC-200 Security Operations Analyst
• SC-300 Identity and Access Administrator
• SC-400 Information Protection Administrator
• MD-102 Endpoint Administrator
• AZ-900 Azure Fundamentals
• MS-900
• SC-900
WHAT I DELIVER
• Cloud Migrations and Tenant Management
I facilitate seamless migrations from platforms such as Google Workspace, on-premises Exchange, GoDaddy, Zoho, IMAP, or tenant-to-tenant configurations. This includes cutover, staged, hybrid, and IMAP methods, covering email, files, SharePoint, and other data types. My services encompass tenant setup, DNS configuration, licensing management, and post-migration optimization for organizations of all sizes.
• Security and Compliance Implementation
I implement security and compliance measures, including Conditional Access policies, Zero Trust frameworks, Microsoft Defender XDR, Microsoft Sentinel, Purview Data Loss Prevention (DLP), sensitivity labels, and compliance configurations aligned with standards such as SOC 2, HIPAA, ISO 27001, and GDPR. Additionally, I provide full Security E5 implementations tailored for distributed and international teams.
• Identity and Access Management
My expertise extends to Microsoft Entra ID (Azure AD), hybrid identity solutions utilizing Azure AD Connect, Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Identity Management, Role-Based Access Control (RBAC), user lifecycle automation, and periodic access reviews.
• Endpoint Management
I offer comprehensive endpoint management through Microsoft Intune MDM/MAM, Windows Autopilot, and security baselines for Windows, macOS, iOS, and Android devices. My services include BitLocker encryption, Defender policies, application deployment, and device compliance enforcement.
• PowerShell Automation and Scripting
I develop automation scripts for bulk provisioning, licensing, compliance reporting, mailbox configuration, migration tasks, and integrations utilizing Microsoft Graph API and Power Automate.
• Email Security and Exchange Online
My services encompass configuring mail flow rules, implementing anti-spam and anti-phishing measures, DKIM, DMARC, SPF settings, shared mailboxes, distribution groups, archiving solutions, litigation holds, and eDiscovery processes.
• Collaboration and Governance
I configure Microsoft Teams for enterprise environments, establish guest access policies and retention policies, deploy SharePoint Online solutions, design permission structures, and develop comprehensive information architectures.
TOOLS AND PLATFORMS
• Microsoft 365 Suite: SharePoint, OneDrive, Microsoft Teams, Microsoft Entra ID, Microsoft Defender (Endpoint, Identity, Cloud Apps, Office 365), Microsoft Purview, Microsoft Sentinel, BitTitan MigrationWiz, ShareGate, SkyKick, Mover, SharePoint Migration Tool (SPMT), SentinelOne EDR, ThreatLocker, Barracuda Email Protection, N-able NCentral, ConnectWise Manage, AutoTask.
• Identity & Access Management: Azure AD Connect (Entra Connect), ADFS, WAP, SSO (SAML, OAuth, WS-Fed), Conditional Access, MFA, SSPR, Privileged Identity Management (PIM), Duo Security, Password Hash Sync, and Pass-through Authentication.
• Endpoint Management: Microsoft Intune, Windows Autopilot, BitLocker, Windows Update Rings, ASR, Compliance Policies, Configuration Profiles, Windows Hello for Business, Datto RMM, AnyDesk, Windows Remote Desktop (RDP).
• Security & Compliance: Zero Trust Architecture, SOC 2, ISO 27001, HIPAA, DLP, Information Protection, SPF/DKIM/DMARC, OME, EOP, ATP, Microsoft Secure Score, Sensitivity Labels, NIST Cybersecurity Framework, GDPR, Insider Risk Management, eDiscovery, and Vanta.
HOW I WORK
I prioritize clear, direct communication, provide regular updates, and avoid disengagement.
• I prioritize clear, direct communication, provide regular updates, and avoid disengaging.
• I maintain comprehensive documentation of every change, configuration, and process.
• My approach centers on security at all times, regardless of project scope.
• I offer flexible availability for one-time projects, ongoing managed services, or dedicated full-time engagements (40 hours per week).
• I treat your
Associated with
Sync Experts Information Technology L.L.C
$45/hr
100%
Job Success
$100K+ earned
Offers consultations
Start of list.
End of list.
Microsoft Certified with 6+ years making IT stacks behave for enterprise clients across the US, Australia, UK, Ireland, and Europe. I don’t just manage systems — I design, secure, and future-proof them so you sleep easy at night.
Stuff I’m dangerously good at:
Microsoft 365 & Security → Exchange migrations without the chaos, Defender that actually defends, Purview compliance so auditors smile.
RMM & MSP Tools → Syncro, NinjaOne, Datto, Atera, Intune — I’ve wrestled them all into shape.
Servers & Virtualization → Windows, Linux, VMware, Hyper-V, Citrix, Azure AVD — uptime is my love language.
Cloud Infra → Azure, AWS, GCP — designed, deployed, managed, secured.
Security & BCDR → SIEMs (Splunk, Graylog, ELK), ThreatLocker, Huntress, CrowdStrike, backups with Veeam/Acronis/Datto that actually restore.
✅ MSP/MSSP battle-tested
✅ Security-obsessed, downtime allergic
✅ Enterprise polish, SMB practicality
If you want an admin who can untangle your IT mess, lock it down, and keep it humming — I’m your guy.
$100/hr
100%
Job Success
$100K+ earned
Start of list.
End of list.
As a dedicated Microsoft 365 Solution Architect, I specialize in optimizing and securing digital workplaces using M365 and Azure technologies. With an extensive background in migrating emails and files to Microsoft 365, I ensure seamless transitions to SharePoint Online and Teams, enhancing collaboration and productivity.
Certifications:
Microsoft 365 Certified: Identity and Services (MS-100)
Mobility and Security (MS-101)
Security Administration (MS-500)
Managing Microsoft Teams (MS-700)
Expertise in Microsoft 365 Services:
Security & Compliance
Microsoft Teams & Exchange Online
Advanced Threat Protection (ATP)
SharePoint Online & OneDrive for Business
Power Automate & Microsoft Forms
I am also a Certified Mimecast Technician, emphasizing my commitment to robust email security solutions. My experience spans multiple successful migrations to Microsoft 365, demonstrating my ability to leverage M365's full potential to meet diverse organizational needs.
United States
$30/hr
100%
Job Success
$1K+ earned
Start of list.
End of list.
Cody P.
has worked
.
Experienced and dedicated Platform engineer building out infrastructure services using Terraform, Ansible, and other automation tools for enterprise management. In addition, I have worked with building and scaling out projects in languages such as Python and Golang for various tools and applications
If you’re in need of anything related to platform development or automation, I’m here to assist.
$75/hr
100%
Job Success
Available now
Start of list.
End of list.
With over 18 years of comprehensive enterprise IT experience, I am a Certified Information Security Manager (CISM) and certified Solutions Architect specializing in Microsoft Azure and Microsoft 365. My expertise lies in designing, building, and auditing secure cloud infrastructures that align with strict federal and industry compliance frameworks.
I specialize in implementing true Zero Trust architectures, advanced endpoint management, and Policy as Code to protect organizations against emerging AI-driven threats and data exfiltration.
Core Competencies & Cloud Architecture:
Azure Solutions Architecture: End-to-end design and implementation of highly secure Azure infrastructures (IaaS/PaaS), including advanced networking, storage, compute, and Azure Active Directory (Entra ID) integrations.
M365 & Modern Endpoint Architecture: Expert-level deployment of Microsoft 365 services, focusing heavily on Microsoft Intune (MDM/MAM), conditional access, and secure modern workplace design.
Cybersecurity & Threat Mitigation: Architecting defenses against modern and AI-generated threats using advanced threat protection (ATP), continuous monitoring, and proactive vulnerability management.
Governance, Risk, and Compliance (GRC):
Regulatory Frameworks: Extensive experience building environments and conducting cybersecurity audits that strictly adhere to CMMC, FedRAMP, and ITAR compliance standards.
Zero Trust & Data Security: Designing and enforcing Zero Trust network access (ZTNA), comprehensive Data Classification, Data Loss Prevention (DLP), and rigorous identity and access management (IAM) protocols.
Policy as Code: Automating governance and compliance enforcement across cloud environments to ensure continuous adherence to security baselines.
Foundational Enterprise Experience:
Migration & Disaster Recovery: Proven track record of executing seamless on-premises to cloud migrations, implementing robust Azure Site Recovery (ASR), and engineering enterprise-grade Business Continuity/Disaster Recovery (BCDR) strategies.
Enterprise Collaboration & Governance: Over a decade of foundational experience designing information architecture, taxonomies, and governance models for complex Microsoft SharePoint (2007-Online) and Office 365 deployments.
Infrastructure Automation: Proficient in automating the provisioning of VM's, Storage, Networks, and Affinity Groups through PowerShell scripting, ARM, and ASM.
Agile Leadership: Functioned as a Subject Matter Expert (SME) and Functional Consultant within Agile/SCRUM frameworks, leading requirement gathering, proof-of-concept creation, and collaborating with globally distributed teams.
$73.5/hr
100%
Job Success
$5K+ earned
Offers consultations
Start of list.
End of list.
🏆 Trusted by Microsoft & Volvo for mission-critical Cloud Security
I secure enterprise Azure & Microsoft 365 environments with Zero Trust architecture, strong identity controls, and SIEM/XDR automation.
Core Expertise:
✅ Identity & Access Management
› Entra ID (Azure AD): SSO, Conditional Access, MFA, PIM
✅ Security Operations (XDR, SIEM, SOAR)
› Defender XDR (Endpoint, Identity, Office 365, Cloud Apps, Cloud)
› Microsoft Sentinel, Log Analytics, Azure Monitor, Workbooks, Logic Apps
✅ Cloud Architecture & Governance
› Azure Architecture & Automation: ALZ design, Management Groups, Azure Policy, Bicep, Terraform
› DevOps & Infrastructure as Code: Azure DevOps CI/CD pipelines
› Governance & Compliance: Microsoft Purview (data governance/classification), RBAC, secure baselines, tagging strategy, budgets, automated reporting
✅ Modern Workplace & Device Management
› Microsoft 365: Exchange, SharePoint, and Teams administration and security
› Intune & Autopilot: device compliance, app protection, secure endpoint configuration
✅ Azure Cloud Platforms & Workloads
› Azure Cloud Solutions: AVD and Cloud PC; Azure migration (VMware/Hyper‑V to Azure); Azure Site Recovery and Backup
✅ Network Security & Connectivity
› Azure Firewall, NSGs, and VPN Gateway
Who I help:
🎯 SMBs, MSPs, Startups building a secure cloud environment
🎯 Teams migrating to the cloud
🎯 Organizations needing compliance (ISO, SOC 2)
🧠 FREE Review: Send me your idea/project and I’ll record a FREE personalized VIDEO with high-impact recommendations.
Let’s build a secure, well-governed cloud that just works.
— Filip Y.
⭐️⭐️⭐️⭐️⭐️
Certifications:
• SC-100: Microsoft Cybersecurity Architect
• AZ-500: Azure Security Engineer
• AZ-104: Azure Administrator
• SC-300: Identity and Access Administrator
• Microsoft Applied Skills: Administer Active Directory Domain Services
• Microsoft Applied Skills: Defend against cyberthreats with Microsoft Defender XDR
• Microsoft Applied Skills: Configure SIEM security operations using Microsoft Sentinel
$10/hr
100%
Job Success
$500+ earned
Offers consultations
Start of list.
End of list.
Daniyal A.
has worked
.
Note: Most of my "in progress" contracts are actually idle, i.e. the work is done, but clients haven't closed them yet.
Hi, I'm Daniyal.
I'm a software engineer with 8+ years of experience building web applications, automation tools, and integrations.
My work ranges from full-stack development using Laravel, Django, Next.js, and React to automation projects involving PowerShell, Bash, Azure, Microsoft 365, Entra ID, and API integrations.
A lot of the projects I work on involve eliminating manual work. Whether that's automating repetitive business processes, building internal tools, creating deployment scripts, integrating third-party services, or developing custom web applications, I focus on solutions that save time and reduce operational overhead.
Some things I commonly help clients with:
• Web applications and backend systems
• PowerShell and Bash scripting
• Azure, Microsoft 365, and Entra ID automation
• API integrations and workflow automation
• Data extraction, processing, and reporting
• Custom business tools and internal platforms
I value clear communication, quick turnaround times, and writing code that is easy to maintain long after the project is finished.
If you need someone who can handle both software development and automation work, I'd be happy to discuss your project.