Experienced Azure Cloud and Infra Engineer with: 2 years and as a Technical Advisor with 3 months of expertise in Identity and access management (IAM), hybrid cloud solutions, and security best practices. Skilled in managing Entra ID, on premises AD, RBAC, Conditional Access, MFA, SSO, Device registration and hybrid identity solutions. Strong background in compliance, governance, and security hardening to ensure seamless and secure access management across cloud and on-premises environments.
1. Hybrid Identity Setup: Built hybrid environments integrating on-premises Active Directory Domain Services (ADDS), Active Directory Federation Services (ADFS), Active Directory Certificate Services (ADCS), and IIS Web Server using Microsoft Entra Connect. Enabled seamless synchronization and identity federation between on-premises infrastructure and Microsoft Entra ID.
2. Single Sign-On (SSO) and API Testing: Configured and tested SSO flows and API integrations using App Registrations and Enterprise Applications in Microsoft Entra ID. Utilized Postman for validating authentication and authorization mechanisms across various endpoints with Oauth 2.0 protocols.
3. Entra Application Proxy: Deployed and configured IIS Web Server to act as a backend for Microsoft Entra Application Proxy, enabling secure remote access to internal applications.
4. Windows Hello for Business: Implemented multiple trust models including Certificate Trust, Key Trust, and Cloud Kerberos Trust for Windows 10/11 devices to enhance passwordless authentication and user experience.
5. Federated SSO with ADFS: Established domain federation between on-premises ADFS and Microsoft Entra ID to support federated authentication scenarios and streamline access management.