Talent badge filter
Skills filter
Select talent location
Select talent time zones
$55/hr
100%
Job Success
$3K+ earned
Offers consultations
Start of list.
End of list.
Most companies don't discover their M365 security gaps until after a breach - or a compliance audit. I've supported and secured enterprise environments spanning healthcare and financial services - including a 16,000+ user financial institution and a 12,000+ user healthcare organization - where security failures have real business consequences.
I'm a Microsoft 365 and IAM Security Engineer with 6+ years of hands-on enterprise experience across cloud and on-premises environments. My work focuses on identity security, endpoint management, secure mobile access, and compliance-aligned Office 365 architecture.
I don't just secure environments - I build scalable systems that improve operational efficiency, strengthen access governance, and support modern remote and BYOD workforces without sacrificing usability.
What I do:
🔐 Identity & Access Management
→ Okta SSO/MFA integrated with Active Directory (12K+ users)
→ Okta application onboarding, SAML/OIDC SSO, and group-based access across 70+ enterprise apps
→ Automated joiner/mover/leaver (JML) provisioning via Okta group rules and Power Automate
→ CyberArk PAM - privileged account onboarding/offboarding and vault management
→ Microsoft Entra ID (Azure AD) - Conditional Access, RBAC, MFA, and SSPR
→ Azure Virtual Desktop (AVD) secure contractor workspace configuration
→ Windows Hello for Business and biometric authentication policies
☁️ Microsoft 365 & Office 365 Security and Endpoint Management
→ Microsoft Intune deployment and endpoint management
→ Conditional Access and BYOD security architecture
→ App Protection Policies (MAM) for Outlook, Teams, OneDrive, and SharePoint
→ Secure mobile access configuration balancing security and usability
→ Multi-domain Office 365 and M365 tenant administration
→ SharePoint Online, Teams, OneDrive, and Exchange Online administration
→ Microsoft Purview - DLP policies and eDiscovery
→ Windows Server administration and system configuration
🛡️ Infrastructure Security & Hardening
→ CIS Benchmarks and DISA STIG implementation on servers and workstations
→ GPO strategy design for security baselines and application control
→ Qualys Vulnerability Management - threat detection and remediation cycles
→ HIPS deployment, upgrade, and migration
→ Active Directory and Windows Server administration and PowerShell automation
→ Microsoft Exchange Server administration and migration support
⚙️ Power Automate & Business Process Automation
→ End-to-end HR automation - offer letters, contracts, and onboarding workflows
→ Contract generation triggered via SharePoint and Power Platform
→ Power Automate + Make integration for cross-platform workflows
→ License expiry tracking with automated notifications
→ IT operational workflow automation via Teams and Email integrations
📋 Compliance & Security Operations
→ CIS-aligned security documentation and SOX IT controls support
→ Technical risk assessments and compliance gap reporting
→ SIEM log triage, threat correlation, and incident support
→ Secure access governance for distributed and offshore teams
I've administered multi-domain Active Directory and Windows Server environments, automated bulk AD operations via PowerShell, and resolved complex LDAP and replication issues in production enterprise environments. I've also supported a full enterprise identity provider migration from CyberArk to Okta, covering per-application SSO verification, authentication policy review, and automated provisioning design.
Whether you need IAM architecture, Microsoft 365 security hardening, Intune deployment, Conditional Access architecture, Office 365 administration, or secure BYOD/mobile workforce management - I deliver structured, documented solutions built for real-world business and compliance requirements.
📩 Message me with your project or security challenge. I typically respond within a few hours and offer a free 20-minute scoping call for new clients.
Jeffrey G.
has worked
.
$25/hr
100%
Job Success
$10K+ earned
Available now
Offers consultations
Start of list.
End of list.
With over two decades of hands-on experience in the IT industry, I specialize in designing and implementing secure, scalable, and cloud-optimized solutions across hybrid and modern enterprise environments. My core expertise lies in Identity and Access Management (IAM), Cybersecurity, and Enterprise AI Orchestration—leveraging n8n workflows and AI Agents to automate complex security operations, endpoint management, and business processes while maintaining rigorous compliance.
⭐️Top-Rated Freelancer with a 100% Job Success Score and consistent 5-star ratings
⭐️ 20+ years of IT experience across enterprise, cloud, and hybrid infrastructures
🔐 I hold the Certified in Cybersecurity (CC) credential from ISC2, validating my foundational expertise in network security, access control, and incident response.
⭐️Microsoft Certified Trainer (MCT ID: 14831841) and Azure Solutions Architect Expert (AZ-305)
⭐️ Trusted by Fortune 500 companies as a Subject Matter Expert (SME) for Azure Cloud Services, IAM, Cybersecurity, and Intune
⭐️ Proven track record in delivering enterprise-scale solutions with precision and agility
I’ve led successful deployments of Azure Virtual Desktop (AVD) environments with Intune management tailored for both pooled and personal host pools, integrating FSLogix for profile management, optimizing OneDrive sync, and securing access via Conditional Access and PIM. My work ensures high availability, performance, and compliance across remote workforces.
🛠️ Skills Snapshot:
🤖 AI & Automation Architect: Expert in building Autonomous AI Agents and n8n-driven workflows that integrate LLMs (OpenAI, Anthropic) with enterprise data, secured by Entra ID and Conditional Access.
☁️ Cloud Platforms: Azure, AWS, Alibaba Cloud, Google Cloud
🔐 Identity & Access: AD DS, Azure AD, Entra ID, PIM, MFA, Conditional Access, Hybrid Identity, ADFS, Pass-through Auth
🛡️ Security & Monitoring: Microsoft Defender for Identity & Cloud, Azure Sentinel, CIEM Solutions, Orca Security, Tenabe JIT
📱 Endpoint Management: Intune, SCCM, Microsoft Endpoint Manager
⚙️ Automation: PowerShell, Terraform, Logic Apps, KQL, Azure Functions
🖥️ Virtualization & Remote Work: AVD (Personal & Pooled), FSLogix, VMware, Hyper-V
📧 Microsoft 365: Exchange Online, Hybrid Exchange, Teams, OneDrive, SharePoint
🛡️ Compliance: Microsoft Purview, Okta
📨 Email Security: SPF, DKIM, DMARC
🧩 High Availability: Windows Clusters, Azure Scale Sets, Availability Groups
💾 Backup & DR: Symantec, Veeam, Azure Backup
📋 Incident Management: ServiceNow, Jira
🖥️ OS Expertise: Windows Server (2003–2022), Linux
I bring a depth of expertise that few can match. My clients benefit from my vast knowledge base, proven methodologies, and innovative solutions tailored to their unique needs.
I work closely with my clients to understand their needs, address their concerns, and deliver solutions that meet and exceed their expectations. Let's connect and discuss how I can leverage my expertise to empower your organization and drive innovation in the digital age.
Masood R.
has worked
.
$140/hr
100%
Job Success
$400K+ earned
Available now
Offers consultations
Start of list.
End of list.
✅ 𝟭𝟱+ 𝘆𝗲𝗮𝗿𝘀 𝗲𝘅𝗽𝗲𝗿𝗶𝗲𝗻𝗰𝗲𝗱 𝗠𝗶𝗰𝗿𝗼𝘀𝗼𝗳𝘁 𝗔𝘇𝘂𝗿𝗲 | 𝗢𝗳𝗳𝗶𝗰𝗲 𝟯𝟲𝟱 | 𝗪𝗶𝗻𝗱𝗼𝘄𝘀 𝗧𝗲𝗰𝗵𝗻𝗶𝗰𝗮𝗹 𝗖𝗼𝗻𝘀𝘂𝗹𝘁𝗮𝗻𝘁/𝗔𝗿𝗰𝗵𝗶𝘁𝗲𝗰𝘁 𝘄𝗶𝘁𝗵 𝗰𝗹𝗶𝗲𝗻𝘁𝘀 𝘀𝗽𝗮𝗻𝗻𝗶𝗻𝗴 𝗣𝘂𝗯𝗹𝗶𝗰 𝗦𝗲𝗰𝘁𝗼𝗿, 𝗕𝗮𝗻𝗸𝗶𝗻𝗴, 𝗘𝗻𝗲𝗿𝗴𝘆, 𝗡𝗚𝗢, 𝗥𝗲𝘁𝗮𝗶𝗹, 𝗧𝗲𝗹𝗰𝗼, 𝗠𝗦𝗣, 𝗮𝗻𝗱 𝗘𝗱𝘂𝗰𝗮𝘁𝗶𝗼𝗻 𝘀𝗲𝗰𝘁𝗼𝗿𝘀.
✅ 𝟭𝟬+ 𝗠𝗶𝗹𝗹𝗶𝗼𝗻 $ 𝘁𝗲𝗰𝗵𝗻𝗶𝗰𝗮𝗹 𝗰𝗼𝗻𝘁𝗿𝗮𝗰𝘁𝘀 𝗮𝗻𝗱 𝗽𝗿𝗼𝗷𝗲𝗰𝘁𝘀 𝗱𝗲𝘀𝗶𝗴𝗻𝗲𝗱, 𝗶𝗺𝗽𝗹𝗲𝗺𝗲𝗻𝘁𝗲𝗱, 𝗮𝗻𝗱 𝗤𝗔’𝗲𝗱.
"𝘈𝘮𝘪𝘳 𝘸𝘢𝘴 𝘦𝘹𝘱𝘦𝘳𝘵 𝘪𝘯 𝘵𝘩𝘪𝘴 𝘸𝘰𝘳𝘬. 𝘊𝘰𝘮𝘮𝘶𝘯𝘪𝘤𝘢𝘵𝘪𝘰𝘯 𝘸𝘢𝘴 𝘦𝘹𝘤𝘦𝘭𝘭𝘦𝘯𝘵. 𝘏𝘦 𝘸𝘢𝘴 𝘢𝘭𝘸𝘢𝘺𝘴 𝘱𝘶𝘯𝘤𝘵𝘶𝘢𝘭 𝘢𝘯𝘥 𝘦𝘧𝘧𝘪𝘤𝘪𝘦𝘯𝘵. 𝘏𝘪𝘴 𝘢𝘱𝘱𝘳𝘰𝘢𝘤𝘩 𝘸𝘢𝘴 𝘤𝘢𝘭𝘮, 𝘳𝘢𝘵𝘪𝘰𝘯𝘢𝘭, 𝘧𝘳𝘪𝘦𝘯𝘥𝘭𝘺, 𝘩𝘦𝘭𝘱𝘧𝘶𝘭 𝘢𝘯𝘥 𝘱𝘳𝘰𝘢𝘤𝘵𝘪𝘷𝘦. 𝘞𝘰𝘳𝘬𝘪𝘯𝘨 𝘸𝘪𝘵𝘩 𝘈𝘮𝘪𝘳 𝘸𝘢𝘴 𝘢 𝘱𝘭𝘦𝘢𝘴𝘶𝘳𝘦. 𝘞𝘦 𝘢𝘳𝘦 𝘭𝘰𝘰𝘬𝘪𝘯𝘨 𝘧𝘰𝘳𝘸𝘢𝘳𝘥 𝘵𝘰 𝘸𝘰𝘳𝘬𝘪𝘯𝘨 𝘢𝘨𝘢𝘪𝘯 𝘸𝘪𝘵𝘩 𝘈𝘮𝘪𝘳 𝘪𝘯 𝘵𝘩𝘦 𝘯𝘦𝘢𝘳 𝘧𝘶𝘵𝘶𝘳𝘦 𝘢𝘴 𝘩𝘦 𝘩𝘢𝘴 𝘱𝘳𝘰𝘷𝘦𝘯 𝘵𝘰 𝘣𝘦 𝘢𝘯 𝘪𝘯𝘷𝘢𝘭𝘶𝘢𝘣𝘭𝘦 𝘴𝘶𝘱𝘱𝘰𝘳𝘵 𝘵𝘰 𝘶𝘴 𝘢𝘯𝘥 𝘩𝘪𝘴 𝘸𝘢𝘺 𝘰𝘧 𝘸𝘰𝘳𝘬𝘪𝘯𝘨 𝘪𝘴 𝘰𝘧 𝘵𝘩𝘦 𝘩𝘪𝘨𝘩𝘦𝘴𝘵 𝘱𝘳𝘰𝘧𝘦𝘴𝘴𝘪𝘰𝘯𝘢𝘭 𝘲𝘶𝘢𝘭𝘪𝘵𝘺. 𝘛𝘩𝘢𝘯𝘬 𝘺𝘰𝘶 𝘈𝘮𝘪𝘳 𝘧𝘰𝘳 𝘢𝘭𝘭 𝘺𝘰𝘶𝘳 𝘸𝘰𝘳𝘬 𝘢𝘯𝘥 𝘧𝘰𝘳 𝘵𝘩𝘦 𝘸𝘢𝘺 𝘪𝘯 𝘸𝘩𝘪𝘤𝘩 𝘺𝘰𝘶 𝘮𝘢𝘥𝘦 𝘸𝘰𝘳𝘬𝘪𝘯𝘨 𝘸𝘪𝘵𝘩 𝘺𝘰𝘶 𝘵𝘰 𝘣𝘦 𝘢 𝘱𝘭𝘦𝘢𝘴𝘶𝘳𝘦."
✅Experienced in planning, deploying, securing, and troubleshooting Google SSO and Okta technologies
✅Experienced in CIS security assessments, best practices, well-architected framework, cost optimizations of Microsoft workloads.
✅Experienced in designing and building Active Directory tiering structure, Privileged Access Workstations (PAW), hardening Active Directory Group Policy Objects (GPO), Intune security policies
✅Experienced in planning, deploying, migrating, securing, and troubleshooting the following technologies
⚙️Azure (App Services, VMs, networking, security, storage, etc.)
⚙️Microsoft 365
⚙️Entra ID (formerly Azure AD)
⚙️Entra Internet Access and Private Access
⚙️Azure Migrate (Physical, Hyper-V, VMware, etc.)
⚙️Intune
⚙️SQL Server (High Availability, TDE, and Security lockdown)
⚙️Always-On VPN (Azure AD-joined, Hybrid-joined, SCEP, etc.)
⚙️Active Directory Certificate Services (ADCS) PKI
⚙️Data Loss Prevention (DLP)
⚙️Microsoft Sentinel
⚙️Azure Governance
⚙️Azure Policy
⚙️Windows 10
⚙️Microsoft Defender for Cloud
⚙️Microsoft Defender for Identity
⚙️Microsoft Defender for Endpoint
⚙️Microsoft Defender for Cloud Apps
⚙️System Center Configuration Manager (SCCM)
⚙️System Center Virtual Machine Manager (SCVMM)
⚙️PowerShell
⚙️SCIM Provisioning and Single Sign-On (SSO)
⚙️Azure Virtual Desktop
⚙️Active Directory Domain Services (ADDS)
⚙️Active Directory Federation Services (ADFS)
⚙️Azure Information Protection (AIP)
⚙️Hyper-V
⚙️Exchange Online/Exchange Server
⚙️Teams/Office Communications Server/Lync Server/ Skype for Business Server
⚙️Digicert CertCentral (SSL certificate lifecycle automation)
⚙️Nerdio
⚙️Barracuda Message Archiver
⚙️Barracuda Email Gateway Defense (formerly Email Security)
⚙️CrowdStrike (remove and uninstall due to update BSOD issue)
⚙️Kaspersky Security Center
⚙️Symantec Endpoint Protection Manager
⚙️McAfee Endpoint Protection (ePO)
⚙️Unifi UDM Pro
⏱Saving deployment time and man-hours and focusing on quality of delivery
"𝘈𝘮𝘪𝘳 𝘪𝘴 𝘰𝘯𝘦 𝘰𝘧 𝘵𝘩𝘦 𝘮𝘰𝘴𝘵 𝘥𝘦𝘥𝘪𝘤𝘢𝘵𝘦𝘥, 𝘩𝘢𝘳𝘥𝘸𝘰𝘳𝘬𝘪𝘯𝘨 𝘢𝘯𝘥 𝘪𝘯𝘯𝘰𝘷𝘢𝘵𝘪𝘷𝘦 𝘱𝘦𝘰𝘱𝘭𝘦 𝘐’𝘷𝘦 𝘩𝘢𝘥 𝘵𝘩𝘦 𝘱𝘭𝘦𝘢𝘴𝘶𝘳𝘦 𝘰𝘧 𝘸𝘰𝘳𝘬𝘪𝘯𝘨 𝘸𝘪𝘵𝘩. 𝘈𝘮𝘪𝘳 𝘢𝘭𝘸𝘢𝘺𝘴 𝘨𝘰𝘦𝘴 𝘢𝘣𝘰𝘷𝘦 𝘢𝘯𝘥 𝘣𝘦𝘺𝘰𝘯𝘥 𝘵𝘰 𝘧𝘪𝘯𝘢𝘭𝘪𝘻𝘦 𝘪𝘮𝘱𝘭𝘦𝘮𝘦𝘯𝘵𝘢𝘵𝘪𝘰𝘯 𝘢𝘯𝘥 𝘦𝘯𝘴𝘶𝘳𝘦 𝘢 𝘴𝘶𝘤𝘤𝘦𝘴𝘴𝘧𝘶𝘭 𝘤𝘰𝘮𝘱𝘭𝘦𝘵𝘪𝘰𝘯. 𝘈𝘮𝘪𝘳 𝘪𝘴 𝘵𝘩𝘦 𝘵𝘺𝘱𝘦 𝘰𝘧 𝘱𝘦𝘳𝘴𝘰𝘯 𝘺𝘰𝘶 𝘤𝘢𝘯 𝘤𝘰𝘶𝘯𝘵 𝘰𝘯 𝘢𝘯𝘥 𝘩𝘪𝘴 𝘱𝘰𝘴𝘪𝘵𝘪𝘷𝘦 𝘢𝘵𝘵𝘪𝘵𝘶𝘥𝘦 𝘪𝘴 𝘤𝘰𝘯𝘵𝘢𝘨𝘪𝘰𝘶𝘴. 𝘐 𝘸𝘰𝘶𝘭𝘥 𝘩𝘪𝘨𝘩𝘭𝘺 𝘳𝘦𝘤𝘰𝘮𝘮𝘦𝘯𝘥 𝘩𝘪𝘮 𝘥𝘶𝘦 𝘵𝘰 𝘩𝘪𝘴 𝘦𝘹𝘱𝘦𝘳𝘵𝘪𝘴𝘦 𝘪𝘯 𝘵𝘩𝘦 𝘧𝘪𝘦𝘭𝘥 𝘰𝘧 𝘦𝘮𝘢𝘪𝘭 𝘥𝘦𝘭𝘪𝘷𝘦𝘳𝘢𝘣𝘪𝘭𝘪𝘵𝘺."
Amir M.
has worked
.
$15/hr
$700+ earned
Start of list.
End of list.
Experienced in identity & access management, endpoint security, network infrastructure, cloud administration, and complex migration projects.
Key Achievements
Zero Trust Architecture Implementation: Led a multi-client initiative to deploy Zero Trust frameworks, reducing security risks by 40% and achieving compliance with ISO 27001 standards.
Seamless MDM Migrations: Executed zero-downtime migrations for 5+ clients between Jamf Pro, Microsoft Intune, and Addigy, ensuring 100% user retention and policy continuity.
Threat Mitigation: Reduced false positives in CrowdStrike Falcon and Microsoft Defender by 60% through custom detection rule tuning and incident response playbooks.
Cloud Security Optimization: Designed Azure-based hybrid cloud environments with RBAC and network segmentation, cutting cloud-related vulnerabilities by 50%.
Core Expertise
Identity & Access Management:
Okta: SSO/MFA orchestration, SAML 2.0/OIDC integrations, SCIM provisioning, and lifecycle automation.
Azure AD/Entra ID: Conditional access policies, privileged access management, and hybrid identity transitions.
Password Management: Enterprise deployment of 1Password and Keeper, enforcing secure credential sharing and policy compliance.
Cybersecurity & Endpoint Protection:
CrowdStrike Falcon/SentinelOne: Threat hunting, EDR/XDR tuning, and endpoint hardening for 1000+ devices.
Microsoft Defender: Detection engineering, incident response workflows, and compliance with MITRE ATT&CK frameworks.
Vulnerability Management: Proactive remediation of critical vulnerabilities using Tenable and Qualys, aligning with NIST and CIS benchmarks.
Network & SASE:
Cato Networks/FortiSASE: SD-WAN optimization, ZTNA deployment, and secure remote access for distributed teams.
Firewall & Segmentation: FortiGate/Check Point configurations to enforce least-privilege access and reduce lateral movement risks.
MDM & Endpoint Management:
Jamf Pro/Intune: Zero-touch macOS/iOS deployment, compliance policies, and app lifecycle automation.
Migration Leadership: Smooth transitions between MDM platforms with 99.9% user satisfaction and minimal IT overhead.
Cloud & Backup:
Azure/GCP: Hybrid cloud infrastructure design, security hardening, and cost-optimized resource management.
Datto SaaS Backup: Business continuity strategies with RTO/RPO <15 minutes for mission-critical workloads.
Client Impact
Security Posture: Enhanced endpoint detection, reduced breach risks, and achieved compliance with GDPR, HIPAA, and SOC 2.
Operational Efficiency: Automated patching, ticket workflows, and RMM scripting reduced manual tasks by 70%.
Cost Savings: Optimized cloud resource usage and backup strategies, saving clients 20–30% annually.
Tools & Frameworks
Jira, Office 365, Slack, CrowdStrike, Okta, Jamf, Microsoft Intune, Network Security, Google Cloud, SaaS, macOS, Cyber Threat Intelligence
$45/hr
100%
Job Success
$20K+ earned
Available now
Start of list.
End of list.
SC-300 Certified | OKTA Certified | AWS Certified | CISSP | 10+ Years IAM Experience
Microsoft Entra ID Expert | Conditional Access, PIM & Identity Governance
I help organizations secure access, stop identity-based attacks, and implement Zero Trust in Microsoft 365 environments.
🚀 What I Can Help You With
🔹 Microsoft Entra ID (Azure AD)
Tenant design & security hardening
Conditional Access & Zero Trust implementation
Privileged Identity Management (PIM)
Identity Governance (Access Reviews, Access Packages, Entitlement Management)
Role-Based Access Control (RBAC)
Cross-tenant collaboration (B2B / B2B Direct Connect)
Hybrid identity (Entra Connect, Pass-through Auth, Federation)
🔹 Security & Compliance
MFA & passwordless authentication strategy
Identity risk & sign-in risk remediation
Security architecture aligned with Zero Trust
Least privilege access model design
Identity lifecycle management
Governance controls for SOC2 / ISO 27001 readiness
🔹 Enterprise Integrations
SSO (SAML / OIDC) integrations
Okta ↔ Entra migration & coexistence
Application consent & enterprise app security
Automation using Microsoft Graph & PowerShell
🛡 Why Work With Me?
✅ SC-300 Certified (Deep Entra ID expertise)
✅ CISSP Certified (Security-first mindset)
✅ 10+ years real-world IAM implementation experience
✅ Strong understanding of governance & compliance frameworks
✅ Business-oriented approach
✅ Clear communication & structured delivery
Associated with
OneIAM
$30/hr
$30 earned
Start of list.
End of list.
Cybersecurity professional with expertise in Identity and Access Management (IAM)
and Cybersecurity engineering. Skilled in OKTA for IAM and CyberArk for Privileged
Access Management (PAM). Proficient in implementing SSO solutions, passwordless
authentication, and multi-factor authentication, as well as user creation and deletion
processes. Notable achievements include integrating OKTA with multiple applications
for SSO and building Python scripts for user automation. Seeking a cybersecurity
position to leverage IAM and Cybersecurity skills to enhance organizational security
measures.
Pabitra Kumar R.
has worked
.
$125/hr
100%
Job Success
$7K+ earned
Start of list.
End of list.
Hi, I'm Mihai, an independent consultant specialized in Workforce Identity and Access Management, with a strong focus on Identity Governance and Okta Workflows.
Over the past few years, I’ve helped organizations streamline their joiner-mover-leaver (JML) processes, enforce access policies, and automate identity operations across cloud and on-prem systems. I mostly work with companies using Okta, helping them get the most out of features like Lifecycle Management, Identity Governance (OIG), Privileged Access, and the Workflows platform.
I’ve led implementations from scratch, migrated from legacy IAM tools, and built custom provisioning/integration flows using API connectors where off-the-shelf options weren’t enough. I’m hands-on, detail-oriented, and always looking for practical ways to improve security while making life easier for IT and end users.
If you're looking for help with your Okta setup from initial design to advanced automation let’s talk.
Mihai Andrei G.
has worked
.
$77.78/hr
100%
Job Success
Offers consultations
Start of list.
End of list.
I design and migrate mission-critical cloud infrastructure for
organizations that need compliance, security, and reliability more
than anything else. Most clients come to me for email migrations
or Zero Trust architecture. All of them end up with infrastructure
that becomes an organizational standard, not a one-off project.
WHAT I DO
- Cloud Security & Compliance Audits -
Assess your infrastructure against CMMC, FedRAMP, HIPAA, or SOC 2 requirements.
Identify gaps with clear remediation roadmap and timeline.
- GCC High & FedRAMP Migrations -
Design and execute zero-downtime migrations to federal cloud.
I've reduced migration timelines by 67% (4 months → 6 weeks) using automated toolchains and repeatable processes.
- Zero Trust Architecture Design & Implementation -
Build identity-first security frameworks with Entra ID,
Conditional Access, PIM, and passwordless MFA. Aligns to CMMC, FedRAMP, and federal security standards.
- Large-Scale Infrastructure Architecture -
Design landing zones, governance models, and cost optimization frameworks for 100+ subscriptions.
I've owned $4B+ in infrastructure across global enterprise environments.
HOW I WORK
Phase 1: Discovery & Assessment (1 week)
Audit current infrastructure, compliance posture, security gaps
Deliver detailed assessment with prioritized recommendations
Phase 2: Architecture & Planning (1-2 weeks)
Design the target state (landing zones, governance, identity)
Create implementation roadmap with milestones and timelines
Get stakeholder alignment before building
Phase 3: Implementation (2-8 weeks, depends on scope)
Execute migrations or deployments using Infrastructure as Code
Automated testing, compliance validation, zero-downtime cutover
Documentation and team handoff
Phase 4: Validation & Hardening (1 week)
Security assessment post-deployment
Runbook documentation for ongoing operations
Knowledge transfer to your ops team
RECENT RESULTS
GCC High Migration for Healthcare Organization
Challenge: 4-month timeline, no repeatable process, unfamiliar with federal requirements
Approach: Designed end-to-end framework, automated policy deployment, built repeatable process
Outcome: Reduced timeline to 6 weeks (67% faster). Framework became company standard.
Client now qualifies for $50M+/year federal contracts.
Large-Scale Infrastructure for Global Healthcare Network
Challenge: $4B spend across 100+ subscriptions, ad-hoc setup, escalating costs
Approach: Designed landing zones, governance models, automated onboarding
Outcome: $200K+ annual savings. 99.99% uptime for patient-critical systems.
Infrastructure scaled from weeks to days per new clinic.
Zero Trust & Identity Architecture for Enterprise
Challenge: Shadow IT, compromised accounts, slow access provisioning, no modern controls
Approach: Conditional Access, Entra External ID, passwordless MFA, automated policies
Outcome: Password attacks eliminated. External access now audited and time-limited.
Access provisioning 3 days → 2 hours.
WHEN I'M A GOOD FIT
✓ Migrating to federal cloud (GCC High, SIPERNET, AWS GovCloud)
✓ Need to achieve CMMC Level 1/2 or FedRAMP compliance
✓ Building Zero Trust architecture and need expert guidance
✓ Managing 50+ Azure subscriptions, need governance/cost optimization
✓ Healthcare system, government contractor, or regulated financial firm
WHEN I'M NOT
✗ Need a small changes to quick website or landing page
✗ Want M365 email/Teams setup without infrastructure strategy
✗ Need "just fix this fast" without proper architecture
If any of this resonates, let's talk more. Share your infrastructure
challenge, compliance requirement, or timeline and I'll send back a 2-3 slide
assessment and next steps.
No fluff, no BS. Just honest technical assessment.
$18/hr
$200+ earned
Start of list.
End of list.
I am an IAM professional with 7 years of experience designing and implementing OAuth 2.0, OpenID Connect, and SAML authentication and authorization solutions.
I have helped SaaS platforms and enterprises implement enterprise SSO and resolve complex SAML, OAuth, and token-related issues across Google, Okta, Entra ID (Azure AD), Keycloak, Auth0, and AWS Cognito, ensuring a seamless and secure user experience.
Keycloak: Configured clients (applications), roles, permissions, and user management. Integrated with external IdPs for SSO.
Oracle IAM: Integrated enterprise applications for secure sign-up/login journeys, role-based access, and policy enforcement.
AWS Cognito: Skilled in setting up User Pools, App Clients, and federation with external identity providers.
I specialize in delivering secure, scalable identity solutions that streamline user access and enhance application security.
$70/hr
$78 earned
Start of list.
End of list.
Identity and Access Management Consultant
Ontario, Canada
As a seasoned Okta and Microsoft Entra ID Consultant, I specialize in helping organizations streamline identity and access management (IAM) by implementing secure, scalable, and user-friendly solutions. With deep expertise in both Okta’s and Microsoft’s IAM platforms, I bring a unique, cross-platform perspective to ensure seamless integration, enhanced security, and optimized user experiences for businesses of all sizes.
I am highly skilled in deploying and managing Okta and Microsoft Entra ID solutions, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), identity federation, automated user provisioning, and lifecycle management. My extensive experience with both platforms allows me to design hybrid IAM architectures, providing flexibility and efficiency across cloud and on-premises environments.
Whether you are looking to adopt a cloud-first IAM strategy, consolidate multiple identity systems, or improve security compliance, I offer tailored solutions leveraging the best capabilities of Okta and Microsoft Entra ID. I work closely with stakeholders across IT, security, and business teams to align IAM strategies with organizational goals while ensuring seamless user adoption and minimal disruption.
Core Competencies:
Okta Identity Solutions: Single Sign-On (SSO), Multi-Factor Authentication (MFA), Lifecycle Management, API Access Management, Directory Integration
Microsoft Entra ID (formerly Azure AD): Enterprise Mobility + Security (EMS), Conditional Access, Identity Protection, B2B/B2C Collaboration, Hybrid Identity Solutions
IAM Integration: Federated Identity, Directory Synchronization (Okta AD Agent, Microsoft AD Connect), Cross-platform Integration
Security & Compliance: Role-based Access Control (RBAC), Identity Governance, Risk Management, GDPR, HIPAA, and other regulatory frameworks
Hybrid Cloud Identity Architectures: Combining Okta and Microsoft Entra ID for seamless user experiences and secure access to on-prem and cloud resources
User Lifecycle Management: Automated provisioning and de-provisioning, Access Reviews, Role-based Access, and Self-Service Features
Custom Application Integrations: OAuth, OpenID Connect, SAML, and SCIM integrations for seamless application security and access
IAM Strategy & Roadmap: Designing IAM strategies that balance security, scalability, and ease of user adoption across diverse systems