10+ Years of strong Infrastructure System Engineer skill in Microsoft Windows Environment, especially in managing &
administering IT infrastructure.
Overview
13
13
years of professional experience
Work History
365 Senior System Engineer
New York City Housing Authority, Microsoft
11.2023 - Current
Administering organization messaging services using the O365 Exchange Online console and on-premises Exchange servers, including Active Directory.
Provided expert support in the planning, requirements gathering, implementation of data migration, and configuration of
Office 365
Worked and resolved issues on Azure AD relating to Office 365 identity and user permissions
Utilized PowerShell to provide licenses and managed sites, groups, user accounts, etc.
Utilized Windows Azure to synchronize local password to domain for Office 365
Updated exchange protection configurations, site security configurations, and SharePoint configurations to ensure successful migration
Gathered business IT requirements, analyzed, and documented project activities utilizing Agile-based project methodology
Analyze, install, configure, maintain, and troubleshoot end computing devices, system software, and drivers in support of
Mayo Clinic-wide systems, departments, and individual users
Worked on thedeployment of hybrid Office 365 environment with an upgraded Exchange 2019 environment
Extensively used client object model for creating functionalities and event receivers to enhance functionalities in SharePoint
Lists and Libraries
Maintaining Active Directory infrastructure, creating accounts, groups, GPO, etc.
Provided support and maintenance of Microsoft Office Outlook Web Access and Microsoft Office Outlook Email
Calendaring & Scheduling
Executed Server health checks for proactive monitoring and maintenance of messaging infrastructure
Duties included troubleshooting all 2nd and 3rd Level email, SPAM, and Outlook client-related issu.es
Deployed Client Access and Mailbox server roles on separate servers to provide balanced workload functionality
Deployed and configured Database Availability Groups to provide high availability of services
Worked closely with the firewall and security team to open ports and set rules for functionality
Environment Active Directory Experience, Active Directory, Office 365 Administration, Microsoft Exchange, Microsoft Products
Windows System Administration, PowerShell, Clearwell, Microsoft Teams, Microsoft Servers, Network Security, Security
Microsoft Azure, Multi-factor Authentication, Exchange Connectivity, Internet Information Services (IIS), Domain Name System (DNS), Microsoft Azure, Windows server 2012, 2012R2, 2013, 2019, Exchange Server 2013, 2016, 2016,2019, Clearwell, E-discovery
A360, MS compliance, MS Defender.
365 System Engineer
New York Life Insurance
Lebanon, NJ
09.2020 - 11.2023
Managing Microsoft Identity Management products (Active Directory, Active Directory Federation Services, and Azure, AD
Connect, Office 365) serving as an enterprise-wide directory
Administering organization messaging services using O365 exchange online console and on-premises exchange servers including active directory
Performing installation, customization and maintenance of the operating system and system software products in support of business processing requirements
Performing ongoing performance tuning, hardware upgrades and resource optimization as required
Configure CPU, memory, and disk partitions as required
Responsible for all components of Office 365 including one drive, Skype for business, yammer and SharePoint
Evaluating and integrating new operating system versions, drivers and hardware
Provided expert support in the planning, requirements gathering, implementation of data migration and configuration of
Office 365
Experience on setting up of all the three major public clouds AWS, GCP, Azure as well as VMware and Open stack private cloud and administration of the same
Establish and maintain an IT Compliance program for Financial Security Infrastructure team that minimize risks to IT objectives through effective, efficient, scalable, and cost-effective design and operation of controls, including Sarbanes
Oxley (SOX), ITGC (IT General Control) using COBIT framework, and other domestic and international compliance requirements
Responsible for IdM database design and schema maintenance
Provide E-mail access with same office Outlook client from home as well as office for executive users, implemented RPC over HTTPS on Exchange 2003 servers via ISA 2004 server
Configured conditional access policies in Entra ID to enforce security requirements for accessing cloud resources, reducing the risk of unauthorized access
Experience with Ad - hoc reporting, parameterized, custom reporting using SSRS and Power BI
Methods of migration from Exchange Server on - premises (SBS, 2007, 2010, 2013 and 2016) and third-party platforms (Google Apps, Lotus Notes Domino, etc) to Exchange Online (mostly PST, IMAP, Cutover, and Hybrid Deployment)
Worked with the client to enable SSO and MFA in their apps against Azure AD and ADFS 4.0
Managed Office 365 mailboxes and migrated Public Folders with the toolset BitTitan and custom scripting solution
Migrate the Data using Azure database Migration Service(AMS)
Monitor and track mobile device, connected to Bloodhound and Charles applications
Senior O365 support for perm (Exchange 2010) to O365 migration
Worked on O365 security and compliance features including mailbox searches, legal hold, retention policies, message trace, and other eDiscovery tools
Responsible for architecture, planning, testing and implementation processes for migration of data from on- prem to the
Office 365 for 40000+ global users in a hybrid implementation using Azure Active Directory
Designed the migration process from Exchange 2010 to Exchange Online by establishing pre-migration and post migration checklists
Maintained Confidential ’s SMTP infrastructure which includes Proofpoint Protection Servers 2 masters and 15 agents, configured email firewall rules, RBL and SMTP routes and supported Tumbleweed servers
Migration Project to migrate from Exchange 2010 to O365 using BitTitan
Partnered with Corporate Communications to establish an Office 365 Transformation Communication Plan in multiple languages to inform, educate and excite the users about the impending Office 365 move
Mitigated outages related to the Office 365 transformation program
Identified and resolved issues, communicated findings to upper management, conducted Root Cause analysis and documented RCA reports
Environment: Active Directory, windows PowerShell, Azure AD, MS Exchange online, Multifactor authentication (MFA), Azure
AD Connect, Windows server, Nagios, Load Balancers, Lotus Notes, Office 365 Administration, Microsoft Exchange, Multi-factor
Authentication, Microsoft Azure, Microsoft Products, Microsoft Office, Windows Server, Windows System Administration
Managing Microsoft Identity Management products (Active Directory, Active Directory Federation Services, and Azure, AD
Connect, Office 365) serving as an enterprise-wide directory
Managing Identity Access management of Azure Subscriptions, Azure AD, Azure AD Application Proxy, Azure AD Connect
Azure AD Pass Through Authentication
Creating and managing application integrations for identify and access management
Having Experience of Creating conditional Access policies Multifactor authentication (MFA), Resetting MFA and Resolving the MFA issues
Familiarity in the following areas: single sign-on, enterprise directory architecture and design, directory schema, namespace, replication topology, resource provisioning, role-based access Control, user lifecycle
Performed SSO connections in AWS and Azure technology standards with SAML 2.0 (saml spring framework -backend coding)
Primarily responsible for Global C&K team in the migration project from SharePoint 2007 to SharePoint On-Premise 2013 using Content Matrix Metalogix tool
Use of Docker, Kubernetes and OpenShift to manage micro services for development of continuous integration and continuous delivery
Worked on Exchange Online and SharePoint migration tasks including data migration, team site configurations, content management, workflows, site permissions, user adoption and change management
Experienced on using framework of Discover, Assess, Migrate, Optimize, and Monitor as a path for migration for a better output and use Azure Migrate and Azure Database Migration Service to migrate the workloads from on premise datacenter to Azure
Used Charles Proxy and Bloodhound to test Events tracking
Responsible for L3 support of O365 migration
Implemented multi-factor authentication (MFA) solutions using Brainwaves technology in conjunction with Active Directory, adding an additional layer of security beyond traditional password-based authentication
Successfully established and tested Azure AD Tenant for production
Provided technical direction to allow Active Directory on-Prem group to populate users
Conduct eDiscovery in Office 365 to Identify, preserve, search, analyze, and export email, documents, messages, and other types of content to investigate and meet legal obligations
Used Security hardening to secure a system, to reduce the surface of vulnerability
Monitoring the system performance and doing the kernel tuning to enhance the system performance
Implemented Jenkins pipelines into Azure pipelines to drive all micro services builds out to the Docker registry and then deployed to Kubernetes, Created Pods and managed using AKS
Worked on provisioning users from OKTA to AD and also importing users from AD to OKTA
Worked on integrating various applications like Workday, ADP, ZScalar etc
With OKTA to provide them with SAML based
Single Sign On
Involved in discussions with Okta-Workday project
Worked with and developed eDiscovery platform for electronic record retrieval
Experience in Syncing the Objects Users, Groups, Workstation from active directory to azure active directory
Active Directory Federation Services (ADFS), SAML, web Single Sign-on (SSO), OAuth and related authentication technologies
Migrated On premises MS Exchange 2010 to Office 365 with integration of Azure ADFS, we had 5 different domains running on premises Exchange, one domain migrated through BitTitan cloud tool, one with SkyKick tools and 3 domain through office 365 Confidential tools
And import PST’s to office365 uses PowerShell
Migration/Deployment and in-place upgrades of Windows OS Help- Desk Desktop and Network Support in a BREAK/FIX
ENVIRONMENT on various Intel-based in a Dell Micro-Computers
Worked with ADFS 3.0 / Server 2012 R2 deployment of new Identity Provider role and external access over Web Application
Proxy role(s) in addition to ADFS proxy from ADFS 2.x
Worked in the Confidential middleware LDAP/Identity group as a lead IDM engineer supporting multiple end clients
Work involved design, architecture and implementation of SUN IDM and LDAP middleware space
Involved in Cloud Security Infrastructure and design for client’s in-house Azure Applications
Worked on application Gateway while integrating SSO to IBM tiriga with Azure Portal (SSO header settings)
Worked on tumbleweed products (Secure Mail, Anti-Virus, Content filtering etc)
Performed Mail Migrations to Office 365 using BitTitan, SkyKick, and Office 365
Linux Administration including web server configuration, scripting and database support using MySQL 2003, PHP, XML and
Apache on Fedora Linux and FreeBSD
Experience troubleshooting skills in a Windows 2012 environment - Event log analysis, installation, and administration of Windows Server 2012, including user setup and defining roles, performance tuning, backup and restore, security monitoring, registry for the Application Specific Servers
Environment: Active Directory, windows PowerShell, Azure AD, AWS, XML, TPAM, MS Exchange online, Multifactor authentication (MFA), Azure AD Connect, Windows server, Nagios, Load Balancers, Active Directory Experience, Office 365
Administration, Microsoft Office, Microsoft Exchange, Microsoft Products, Windows System Administration, Multi-factor
Authentication.
Senior System Engineer
Unlimited Technology Inc, Avangrid
New York, Rochester
09.2018 - 05.2019
Support multiple AD forests, including multiple domains forest with over 8 domains, 150 domain controllers and 120 AD sites, running on Windows Servers 2003, 2008 R2 and 2012 R2
I worked as a SME (Subject Matter Expert) for Windows servers and good Knowledge and work experience with VMWare
NSX and vRealize Operations Manager
Deploy Manage and troubleshooting of Windows 2008R2 and 2012 R2 Domain Controllers in Active Directory
Analyze performance of physical servers to determine and customize virtual server specification Deployment of VM
Templates to deploy virtual servers
Experience in Azure Migration, Azure Load balancing, Networks, Backups, App Services, Security Center IaaS and PaaS
Installing/Configuring the Systems in the AWS Cloud as per the Project timelines and handover to Technical/Business teams for the Testing
Configure and upgrade Nessus and ATP defender vulnerability management console
Manages, maintains and support Juniper, Palo Alto Firewalls, IPS/IDS, Endpoint Security products, PKI and network security
Infrastructure
Leveraged Active Directory to manage user identities and access privileges within the organization, synchronizing user profiles and permissions with Brainwaves authentication systems
Design, install, administer, and optimize hybrid cloud components to ensure business continuity (i.e
Azure AD, ADFS, SSO &
VPN Gateways.)
Worked with ADFS 2.0 / Server 2008 R2 to ADFS 2.1 / Server 2012 configurations, export, import and application set migrations
Setup GCP Firewall rules to allow or deny traffic to and from the VM's instances based on specified configuration and used
GCP cloud CDN (content delivery network) to deliver content from GCP cache locations drastically improving user experience and latency
Experienced in Tennant to Tennant migration using BitTitan and Quest OnDemand Migrations tools
Install and Configure Metalogix Content Matrix
Monitored and administrated e-mail security with Proofpoint enterprise solutions
Use OpenShift to improve application security by putting admin consoles on different Docker containers accessible only from unusual port numbers
Created Vuser scripts using Web (HTTP/HTML), Windows Sockets protocol
Created Proof of concept for PI Coresight (now PI VISION) and PI Auto Point Sync (APS)
Serve as the staff specialist responsible for analyzing, developing, and recommending the establishment of standards concerning network operations, server operations, desktop architecture and system documentation
Designed, developed and architected the SUN IDM solution to deal with user accounts on Unix servers and Sybase databases
Configured and resolved Azure AD Connect sync issues, Various types of Data issues and Attribute issues
Used Azure Active Directory for MFA (Multi Factor Authentication) and integrate with Virtual Desktops for users
Having Experience on creating and updating the Various PowerShell Scripts for windows, Active Directory, Azure AD and
O365
Support of eDiscovery projects
Provided expert support in the planning, requirements gathering, implementation of data migration and configuration of
Office 365
Migrated the Data using Azure database Migration Service (AMS)
Experience with cloud, hybrid, and IT-as-a-Service models including implementation and migration (Azure)
Integrate on-premises Windows AD with Azure AD, configure multi-factor authentication (MFA) and federated single sign-on (SSO)
Experience with NetIQ Directory Resource Administrator (DRA) product requires regular read and write access into the
Active Directory Domains, and any Office 365 tenants managed by each DRA Server
Experience in developing Dockerfile to containerized applications to deploy on managed kubernetes service EKS and AKS
Actively involved in O365 production deployment on Okta and Post deployment troubleshooting (War Room) ON Call
Okta setup of various web based applications such as O365, Concur, Service Now, Adobe, AWS, etc
System (DFS), Internet Information Service (IIS) and Remote Access Service (RAS)
Active in Windows 7 and Windows 10 Image Deployment Projects, troubleshooting issues and resolving technical challenges in deployment, building Automated Image Deployment solutions using Microsoft SCCM and other integrated tools such as
MDT
Experience in installation and configuring DUO security for multi-factor authentication, integrated with Ping using DUO integration kit
Reconfigure integrated email on Mobile Device in most cases after the O365 migration
Knowledge about Office 365 products such as Yammer, Delve, Sway, Power BI, CRM Dynamics, Intune, and Visio
Deployed CISCO ACI Greenfield and Migrated from Legacy network
Worked with Virtual Networking Virtual Switches, VM Kernel Ports
Installed and configure Web Portal of the company using IIS and apache
The configuration of Backup and Restore of NSX Manager and Data
Deployed in the cloud and on-premises using Amazon Web Services (AWS) and Single- Server support
Create and Link exception policies to windows 2003, 2008R2 and 2012 R2 servers in PROD & QA Environments
Experience in creating and managing virtual machines in windows Azure
Migration of Web applications from IIS 6.0 to 7.5, IIS 7.5 to IIS 8.5
Wrote build.xml for applications that use Ant for builds respectively
Managed, led and supported Windows NT, 2000 and 2003 Active Directory domain network in multi-locations
Deployed and Configured VMware NSX Manager, Controller, Edge Gateway leveraging network data and intelligence for advanced security
Planned, tested and evaluated various equipment's, systems, IOSs and procedures for use within the Network / security infrastructure
Designed and implemented ADFS 2012 R2 SSO federation plus filtered Windows Azure AD Sync to enable hybrid Exchangeand other Office 365 services
Developed scripts or automation workflows to streamline user provisioning and de-provisioning processes in Active
Directory, ensuring timely updates to user access rights based on brainwave authentication data
Plan and Develop roadmaps and deliverables to advance the migration of existing solutions on-premise systems/applications to Azure cloud
Configured mail connectors and policies within EOP for mail hygiene
Performed hands on tasks such planning SUN IDM troubleshoot, installs, patch upgrades, and Sun LDAP tuning, maintenance, patches and other daily administrative tasks on the internal engineering lab servers
Implemented load balancing and clustering technologies using Windows 2000 server to ensure high availability of DNS, Web services and other IP Services
Extensive experience with Email migration, from Google Mail to Exchange online, using BitTitan
Created different application policies in the ACI including Tenants, Application Network Profile (ANP), End Point Group (EPG), Contracts, Subjects, Filters & Labels
Involved in application virtualization using ThinApp.Solving issues related to RDP of Azure Infrastructure
Utilized global level and site level Group Policy Objects (GPDs) to manage AD Organizational Units(OUs), objects, groups, users, and computers
Wrote PowerShell scripts for administrative tasks and management of the server infrastructure
Environment: Microsoft Azure, Office 365 Administration, Active Directory, Active Directory Experience, Microsoft Exchange
Microsoft Products, Microsoft azure, Windows System Administration, VMware ESX, VMware Server, VMware vSphere, VMware
Documented and designed procedures to implement new app functionality to hardened domain controllers
Planning and implementing an Active Directory domain consolidation and reorganization for HDS
Remediating Service Principal Names for Kerberos Constrained Delegation
Two factor authentication, code signing, server SSL
Configuring wed server roles (IIS, DHCP, WSUS and WDS)
Worked on 12 different Sun One LDAP environments and 6 different Sun IDM environments
AD domain global consolidation and AD/ADFS/Exchange migrations including Office365 and tenant to tenant migrations, plus SSO with ADFS 2012 R2 for Office 365 and other partners
Provide custom certificate template for VPN to allow access to different network segment
Customize update certain data fields from HR data to multiple attributes in AD user object
Excellent understanding of Exchange Online Configuration and Email migration, FIM synchronization
Identified problem and forwarded it to appropriate area of responsibility
Experienced in Performance Analytics which included generating reports, developing Custom Charts and integrating with reporting tools like Microsoft Power BI & Explore Analytics in ServiceNow per requirements
Design & implement migration strategies for traditional systems on Azure (Lift and shift/Azure Migrate, other third-party tools
Experienced in using multifactor authentication using Microsoft Authenticator, Duo, RSA
Implement Windows sockets layer to enable alternate client/server communication to existing DCOM mechanism
Experience on Performance tuning of Linux machines in the environment by kernel parameter tuning, identifying process that hog the system resources and containing them
Integrated Okta SSO with Cisco tetration, Cisco email security, ATP defender, Nessus, and many other apps in ACC environment
Ensured compliance with regulatory requirements by implementing audit trails and logging mechanisms in Active Directory for brainwave authentication events, facilitating traceability and accountability
Consulted on litigation holds and eDiscovery capabilities within Office 365
Working as a Network SME for the NextGen Datacenter Cloud Architecture, using Cisco ACIand Nexus 9K
Provided support in setting up audio and visual technology for conferences and meetings
Directly supported the in-house service ticket software for non-emergency user related issues
This support involved resolving the issue and/or re-directing the ticket to the appropriate team who would then resolve
Worked with third party vendors to resolve issues with hardware or software covered by annual maintenance agreements
Performed re-starts, xml, and environment properties, configuration changes
Recommended changes in firewall rules in support of project affecting the security infrastructure
Responsible for implementing containerized based applications by using Azure Kubernetes Service (AKS)
Involved in Team building & Migration projects, project implementation, analytical, interpersonal and communication Skills
Responsible of web application deployments over cloud services (web and worker roles) on Azure, using VS and PowerShell
Automated Job scheduling for different systems in IT infrastructure
Conveyed instructions remotely through phone communications and web chat when necessary
Automated user accounts to force password change for every 30 days with Group policy
Design Azure PaaS/IaaS solutions based on business requirements and Microsoft best practices
Creating and managing VM Ware cluster
Enabling HA and DRS features in a cluster
Also Migration of Virtual Machines using V Motion and SV Motion Methods
Provide solution for wireless access by custom certificate template base user account
Complete Active Directory AD health check with MS Engineer to fix more than 100 issues in companywide forest, modify
Active Directory topology to enhance replication and authentication operations
Third level support for DNS, DHCP, DFS, group policy
Setup and configure DNS, DHCP and IIS server
Configuring LAN & Networking Troubleshooting and Internet Troubleshooting
Troubleshooting of complex LAN /WAN connectivity issues
Implement ADFS and Dir-sync for deployment of Office 365
Environment: Internet Information Services (IIS), Integrated Systems, Visio, VMware ESX, VMware vSphere, LDAP
Administration, DNS Administration, Dynamic Host Configuration Protocol (DHCP), Active Directory Experience, Multi-factor
Authentication, Account Management.
Windows System Administrator
Web monk Solutions
02.2012 - 04.2015
Manage 25 Servers and 350 desktop clients for Indya.com and ITSpace.com
Active Directory Services Managing Users and AD objects and printers
Installation, Configuration, and Administration of Windows NT, 2000, MS Exchange 5.5 Servers, McAfee AV Server, and ARC
Serve IT
Installation & Configuration of IIS with SSL, DNS, DHCP, FTP and Terminal servers
Configured ODBC connections for MS SQL Database utilization, also IIS for web interface usage, and SMTP relays for mail forwarding
Deliver services with the Platform Team utilizing Azure/Cloud and on-site Server infrastructure including:
Extensive Use of PowerShell to execute commands/scripts
Developed a migration approach to move workloads from On - Premises AD to Windows Azure or develop new cloud-ready application solutions
Backup & disaster recovery by Scheduling and Managing data backups on Windows Servers
First point of contact for troubleshooting hardware, software, LAN, WAN and operating system issues worked with the team of 12 and gained all the professional knowledge required
Experienced with Docker and Kubernetes with PRISMA, Nessus vulnerability scanning, Sysdig, Azure ATP, Windows
Defender ATP anti-malware
Improve scalability and ease of deployments of the Openstack underlay network by migrating from Standalone Nexus to
Cisco ACI platform
Admin for Duo mobile 2-factor authentication for all users
Creating and managing VM Ware cluster
Enabling HA and DRS features in a cluster
Installs, assembles and configures computers (refresh), monitors (thin client), network infrastructure and peripherals such as printers, scanners and related hardware; pulls cables and rewires or directs the rewiring of cables as required for new installations and office reconfiguration
Troubleshoots problems with computer systems, including troubleshooting hardware and software, e-mail, network and peripheral equipment problems; makes repairs and corrections where required
Worked for mid to enterprise level customers supporting environments within the organization
Installation, configuration and administration of Proxy Servers, IIS Servers and SQL Servers
Running PowerShell scripts for day to day backups
Designing migration solution on various Tech & Cloud IaaS/PaaS platforms and doing its implementation
Manage Check Point VPN-1 & Firewall-1 security policy
Administration of LAN and WAN
Manage Cisco Switches and 2500 series Routers
Tracking and documenting Active Directory production support issue
End user support related to windows
Environment: VMWare ESXi, Windows Desktop Administration, Systems Management, Account Management, Active Directory
Experience, Agile Methodologies, Multi-factor Authentication, Office 365 Administration, Windows System Administration
Office Administration, DNS Administration, LDAP Administration, Microsoft Azure, Microsoft Office, Microsoft Exchange
Dynamic Host Configuration Protocol (DHCP), Microsoft azure.
Education
Master of Science - Computer Science
Chicago State University
03.2018
Bachelor of Science - Information Technology
Gujarat Technological University
07.2012
Skills
It includes installation, Configuration, management, and Administration of