Home About Labs Projects Contact Email Me ↗
About

The background behind the work.

Five plus years of enterprise IT in New York, spent mostly in environments where the systems are not allowed to fail. This is the long version — the short one is on the home page.

Background

Institutional IT, at scale.

My enterprise experience has been built inside two of New York's largest institutions — Columbia University and NYC Health + Hospitals — supporting mission-critical infrastructure and the user-facing technology thousands of people touch every day.

That context shapes how I work. When a clinical or academic workflow stops, there is no appetite for trial and error. You reproduce the problem, read the evidence, make the smallest correct change, and leave a record so the next person is faster than you were.

Approach

Structured, documented, repeatable.

I lean on structured troubleshooting and evidence-based decisions rather than pattern-matching from memory. Tickets get triaged on impact and urgency, not on who asked loudest. Access changes get a request, an approver, and a note explaining why.

The thread running through all of it is repeatability. If I fix something twice the same way, it should become a knowledge article. If I do it ten times, it should become a script. Most of my automation work started as exactly that observation.

Technology should simplify complexity, strengthen security, and create repeatable outcomes.

Direction

Where this is heading.

I am deepening two tracks in parallel: systems and identity administration on the operations side, and practical automation on the engineering side — including production AI workflows built with real controls around credentials, validation, and auditability.

The labs and projects on this site are where that happens in the open. Each one is written up so the reasoning is visible, not just the result.

Capabilities

What I actually
work on.

Grouped by how it shows up in practice rather than by keyword. Where a capability has been exercised outside of work, the lab or project is linked.

01
Daily

Windows systems and end-user support

Endpoint troubleshooting, profile and policy issues, application and peripheral faults, imaging and refresh work, and the escalated tickets that come back a second time.

Applied In
Enterprise support roles, 5+ years
02
Daily

Microsoft 365 administration

User and group management, licence assignment, Exchange and Teams administration, shared mailbox and distribution list hygiene, and tenant-level settings that affect everyone downstream.

Applied In
Enterprise tenant administration
03
Daily

Active Directory and access management

Account lifecycle from onboarding to offboarding, group membership and nested-group untangling, MFA enforcement, credential reset and recovery workflows, and least-privilege reviews.

Applied In
Enterprise directory work
04
Framework

IT service management

Incident, request, and change practices under ITIL 4 — prioritisation, queue management, escalation paths, knowledge management, and the documentation that makes a service supportable by more than one person.

05
Building

Automation and AI workflows

Python and shell automation, REST API integration, OAuth token lifecycle handling, local state in SQLite, and multi-agent AI orchestration with validation gates and retry logic rather than blind execution.

06
Building

Log analysis and security fundamentals

Reading authentication and system logs, writing queries that separate signal from noise, tuning thresholds, and documenting the response so it holds up to review. Security as part of good operations, not a separate job.

Toolset

Tools and
methods.

Nothing here is listed for decoration — these are the platforms and practices I have used to get real work finished.

Platforms
  • Microsoft 365
  • Active Directory
  • Windows 10 / 11
  • ServiceNow
  • Splunk
Languages & Data
  • Python
  • Bash / shell
  • SQL via SQLite
  • JSON payload design
  • Markdown documentation
Methods
  • Structured troubleshooting
  • Ticket triage & prioritisation
  • Access review & least privilege
  • Runbook & knowledge authoring
  • Change documentation
Credentials

Certifications.

ITIL 4 Foundation in April 2023, CompTIA Security+ in May 2025 — with a dedicated page for each.

C/01
CompTIA Valid to 2028

Security+

Threat analysis, security architecture, network security, identity management, operations, governance, risk, and compliance.

Certified
May 12, 2025
Candidate ID
COMP001022470377
Valid Until
May 12, 2028
C/02
IT Service Management Renewal lapsed

ITIL 4 Foundation

Service value chain, four dimensions model, guiding principles, and continual improvement practices for enterprise IT.

Certified
April 23, 2023
Credential ID
GR671511333KC
Renew By
April 23, 2026 — not renewed
Next

See it in practice.