Special resume view

Entertainment and Live Venue Technology Resume

Entertainment, venue, service-delivery, and resilient operations experience for organizations where technology has to support people, production timelines, and public-facing pressure.

Resume at a glance

Roles
16 public role records selected for Entertainment and Live Venue Technology Resume.
Evidence
128 structured evidence points, selected and deduped by claim family.
Source
MDX renders this page; adjacent JSON artifacts beside the role MDX files supply the claims.

Work Experience

Selected professional experience

Profile-matched evidence using the best available variant for this resume lens.

Scoria Software Solutions | March 2025 – Present

Founder & Principal Software Architect

  • Designed every tool to operate inside explicit, deterministic guardrails with codified approval and immutable attribution for any divergence, producing clearer audit trails, faster incident response (seconds or milliseconds instead of minutes), and a 1–2 order-of-magnitude reduction in attempts to bypass safety controls.
  • Reduced false positives by more than 50% (reaching over 95% in mature deployments) and cut human-intervention escalations from 20–30 per month to roughly one per quarter at one client, freeing security specialists to resume long-shelved SASE work.
  • Built a model- and platform-agnostic XLM/MCP delivery engine that converts natural-language intent into deterministic multi-surface application stacks, a transferable pattern for live-event platforms that need web, API, CLI, and tool workflows to move together under production guardrails.
  • Designed model- and platform-agnostic runtime options across Azure AI Foundry, Ollama, local models, consumer apps, and enterprise platforms, preserving low-latency and cost-aware deployment paths that transfer to live-event systems where local fallback and fast response matter.
  • Architected Fumaro Sports with Azure Databricks as the analytics backend showcase, using lakehouse-oriented data engineering patterns to support predictive sports intelligence, model-ready feature preparation, context-aware analytics, and governed human-in-the-loop release controls.
  • Designing Fumaro Sports around analyst and scout review, feedback capture, telemetry-aware runtime logging, staged private beta evaluation, and human-in-the-loop release controls so sports tools can improve without hiding uncertainty from users.
  • Building a live sports analytics runtime with public Next.js surfaces, strict TypeScript, PostgreSQL-backed routes, Azure Databricks analytics, and governed evaluation paths, a transferable architecture for event-facing systems that need reliable data products under production-like controls.
  • Created AI-assisted delivery guardrails and DevOps orchestration that compressed feature and patch cycles from weeks or months to days or hours, a transferable production-systems pattern for live-venue, event, or studio platforms that need faster change while preserving controlled release paths.
CybersecurityGovernance/complianceOperations/service deliveryCybersecurity LeadershipIdentity ManagementAi Systems Agent Architecture
Open full role

Bedrock Information Systems LLC | January 2019 – Present

Principal Architect

  • Established NIST CSF 2.0 Tier 3 (Repeatable) as the new baseline for onboarded systems across all core functions, replacing prior Tier 1 awareness-level practices and enabling automated, single-click audit reporting that reduced typical municipal IT audit effort from 40–120 staff hours to under 30 minutes.
  • Designed Bedrock's internal and client-facing Microsoft 365 information-protection baseline, including Purview sensitivity labels, DLP policy patterns, retention controls, and classification schemas that support client data subject to CJIS, HIPAA, PCI, CUI, PII, financial, health, law-enforcement, public-safety, and other regulated-data requirements.
  • Delivered measurable advances in CJIS compliance for multiple public-sector customers, strengthening security controls while reducing administrative burden on sworn officers by 1–2 hours per day and allowing more time for street-level public safety work.
  • Led a municipal Microsoft Teams collaboration rollout into a five-year modernization roadmap across 26 priorities, a transferable operating model for entertainment technology groups coordinating collaboration, security, compliance, training, adoption, and legacy phase-out without claiming entertainment-employer delivery.
  • Implemented automated Purview DLP and information-protection controls that detected sensitive-data exposure within five minutes and protected copies outside Microsoft 365, a transferable content-security pattern for entertainment enterprises managing creative, partner, or regulated operational data.
  • Built a records digitization and metadata workflow that converted century-scale legacy archives into OCR/ICR-optimized, PDF/A-compliant assets in one 21-hour run, supporting media-archive modernization patterns without claiming studio production work.
  • Applied deterministic guardrails to AI-assisted development so small infrastructure and application teams could accelerate delivery 50–75% while preserving auditability and release discipline, a practical pattern for modernizing venue or studio production systems with constrained teams.
  • Directed a 2,300-user MDM migration in 45 days with one part-time engineer, zero data loss or service interruption, and only five support requests after 15 minutes of training, a transferable adoption pattern for lean entertainment technology teams rolling out governed platforms to broad non-technical user groups.
Governance/complianceIdentity ManagementAi Systems Agent ArchitectureCybersecurity LeadershipSports Mlb TechnologyEnterprise Cloud Architecture
Open full role

Los Angeles County Employees Retirement Association (LACERA) | August 2023 – June 2024

Principal Cybersecurity Architect

  • Converted reactive security queues, user-reported disruptions, and alert noise into daily operating rhythms and dashboard-driven governance, a transferable live-venue technology pattern for keeping service continuity visible under operational pressure.
  • Implemented Entra Privileged Identity Management with Just-in-Time access, eliminating 45 standing privileged accounts and all persistent admin access except a monitored break-glass account, while unifying a single audit trail and introducing M-of-N controls integrated with change management.
  • Extended regulated content-security controls by tuning Purview DLP, sensitivity labels, retention policies, and Defender-aligned compliance workflows, a transferable pattern for protecting sensitive entertainment, venue, or audience data without claiming direct production credit.
  • Contained a high-pressure privileged-account compromise with zero data extraction, zero lateral movement, and no business-system impact, a transferable incident-response and service-continuity pattern for live operations where downtime is visible immediately.
  • Operationalized continuous adversarial validation with Pentera and Defender correlation, turning exposure findings into change-ready remediation queues for live-venue-style security operations where incident readiness, change cadence, and service continuity matter more than one-off scans.
  • Institutionalized red-team and blue-team exercises across Pentera, Defender, and Purview, a transferable continuity-exercise pattern for live-venue technology teams that need practiced detection, response, and remediation before high-pressure operating windows.
  • Built investigation and remediation workflows that connected security signals, governance evidence, and change data into practical dashboards, a transferable live-venue operations pattern for keeping policy effectiveness, false positives, and readiness visible before service-impacting events.
  • Integrated security tooling into fire-drill and disaster-recovery exercises, proving a venue-style operational-readiness cadence that preserved continuity for internal users, external consumers, and public-facing services during a real high-privilege account lockdown.
CybersecurityGovernance/complianceCybersecurity LeadershipEntertainment Live Venue TechnologyProduct Engineering DesignCybersecurity Architecture
Open full role

Wells Fargo Bank | July 2022 – July 2023

Senior Cybersecurity Architect

  • Led governed cloud-architecture review across 128 resource-provider types, turning bespoke infrastructure choices into reusable patterns transferable to studio and venue enterprises that need trusted cloud foundations without weakening security or GRC approval gates.
  • Accelerated security and infrastructure review cycles from an average of 3–12 application approvals per month to 40–50 completed reviews per week, unblocking the bank’s first successful large-scale public-cloud migration program after multiple prior failed attempts and enabling application teams to move into Azure architectures in volume for the first time in years.
  • Designed multi-layer HYOK cryptography and external key-provider governance as transferable content-security discipline for studio and venue cloud systems that must protect sensitive data while preserving auditable key control.
  • Developed SDLC policy-enforcement roadmaps that shifted the organization from an exception-driven culture to standardized architecture selection; application teams’ effort dropped from dozens of hours spread over weeks or months to roughly one to two hours of asynchronous work, while security and infrastructure teams achieved substantially higher output volume with near-universal consistency of results.
  • Translated cybersecurity, compliance, cryptography, and platform trade-offs for senior executive decision-making, a transferable studio-enterprise architecture pattern for leaders weighing cloud-provider adoption, content-security controls, and venue-system risk.
  • Conducted comparative cybersecurity analysis of Azure and Google Cloud Platform services, identifying provider and platform gaps and converting the findings into closure plans that informed the bank’s cloud-security control model.
  • Developed standardized compliance-scoring approaches for cloud services, making architecture and configuration review more consistent, repeatable, reliable, and quantifiable across teams that previously evaluated risk through bespoke review paths.
  • Guided infrastructure teams toward ARM Templates and Azure Blueprints for deployment standardization, reducing configuration drift and making security requirements easier to enforce through repeatable infrastructure-as-code patterns.
CybersecurityCloud/infrastructureOperations/service deliveryTraining/knowledge managementIdentity ManagementAi Systems Agent Architecture
Open full role

Microsoft Corporation | March 2021 – November 2021

Senior Customer Engineer, Global Tech Team

  • Operated at Microsoft customer-engineering scale across Fortune 500, public-sector, high-technology, and internal customers, managing 37 dedicated accounts while resolving cloud, data, identity, reliability, and product-group escalations whose operational pressure transfers to live-venue technology environments without implying venue-specific delivery.
  • Advised enterprise Microsoft 365 customers on Purview, sensitivity labeling, regulated-data discovery, and DLP policy tuning, framing content-protection controls that transfer to entertainment enterprises managing sensitive creative, operational, and partner-access data.
  • Mentored approximately a dozen engineers and contributed to more than six internal training programs and over twenty standardized customer delivery programs; the volume and variety of customer demand directly led to requesting and shaping production features that later shipped in Exchange Online Bookings.
  • Served as a primary post-incident remediation resource for Microsoft’s Detection and Response Team (DART); after DART contained a global ransomware attack against a Fortune 500 transportation company, led the subsequent worldwide identity-management overhaul spanning Active Directory forests, Microsoft 365 tenants, Azure and Azure Stack deployments, and private-cloud regions across tens of thousands of endpoints and users, permanently closing the privilege-escalation and leaked-privilege lateral-movement vectors that enabled the original attack and rapidly deploying FIDO-token plus Microsoft Authenticator multi-factor authentication to the entire global user base.
  • Resolved one to two critical-situation escalations per week across strategic Microsoft accounts, including a Storage Spaces Direct defect that cascaded through SQL Always On, Exchange Online, RDS, DFS, and failover clustering, reinforcing high-availability patterns relevant to live-venue operations where timing and service continuity matter.
  • Helped remediate a hyperscale service outage by tracing an infrastructure-as-code workflow to the failure path, guiding rollback and permanent-fix decisions, and turning postmortem evidence into rollout and geo-resiliency controls relevant to live-venue platforms where service interruption directly affects public-facing operations.
  • Delivered custom Azure Well-Architected engagements for enterprise customers whose scale exceeded standard guidance, translating cloud, resilience, governance, and platform constraints into architecture decisions transferable to studio and live-venue enterprises that need reliable, secure, executive-ready technology platforms.
  • Published reusable PowerShell, ARM-template, GitHub, Microsoft Learn, and field-delivery assets that converted repeated Azure infrastructure, Microsoft 365, identity, and cybersecurity patterns into governed reference guidance, a transferable capacity signal for entertainment enterprises that need repeatable platform operations without exposing protected details.
CybersecurityCloud/infrastructureProduct designOperations/service deliveryCybersecurity LeadershipEnterprise Cloud Architecture
Open full role

Los Angeles County Employees Retirement Association (LACERA) | December 2020 – March 2021

Senior Cybersecurity Architect

  • Served as the organization’s first dedicated cybersecurity engineer and primary architect of a comprehensive three-year technology and security maturity roadmap spanning eight domains that was formally adopted by the CISO, IT leadership, and the Board; established a NIST CSF baseline at Level 1 with a formal target of Level 3 and secured a funded multi-year program that immediately opened three new security engineering roles.
  • Discovered and fully remediated hidden super-privileged Active Directory backdoor accounts that held the highest possible rights—built-in administrator, domain, enterprise, and schema administrator in Active Directory, plus synchronized Global Administrator access in Microsoft 365. These accounts were invisible in standard tools, completely excluded from audit trails and authentication records, and carried suspected logic-bomb associations; they were eliminated within two weeks of discovery.
  • Designed and deployed Entra and Netskope across the entire organizational footprint of approximately 550–600 users and endpoints, converting the environment from zero visibility on remote endpoints (beyond legacy VPN tunnel traffic) to full visibility, full-tunnel VPN, firewall, web filtering, and endpoint security controls.
  • Stabilized workforce remote access under crisis conditions, sequencing identity, VPN, endpoint, firewall, and web-filtering controls to eliminate recurring unexpected downtime, a transferable live-venue service-continuity pattern for time-bound operations and production-adjacent support workflows.
  • Converted identity, access, visibility, shadow-IT, and high-risk access findings into five formal platform RFPs, a transferable governed-modernization pattern for entertainment enterprises aligning ServiceNow, PMO, and Microsoft security platforms around trusted operating data.
  • Led architecture and planning for the Secure Productive Enterprise initiative, defining greenfield landing-zone and core-service direction across Active Directory, networking, Microsoft 365, and Azure so later implementation work had a coherent foundation.
  • Created the strategic roadmap for modernizing identity and endpoint provider/management systems, aligning cloud enablement, business-service migration, and data-protection requirements before individual tool projects were allowed to drive the architecture.
  • Planned data and information-security compliance controls for future business services, ensuring modernization work was evaluated against required security standards instead of only short-term remote-work stabilization.
CybersecurityGovernance/complianceIdentity ManagementAi Systems Agent ArchitectureCybersecurity LeadershipSports Mlb Technology
Open full role

City National Bank | March 2020 – July 2020

Vice President, Azure Infrastructure

  • Led a core infrastructure team of approximately six engineers (expanded to roughly eighteen during the crisis response), serving as the bank’s only pre-existing remote-access capability and the first group transitioned to full remote work in March 2020.
  • Executed rapid remote-work enablement that moved all IT staff to remote within one week and emptied the bank’s downtown Los Angeles and New York facilities to align with the governor’s emergency closure mandate; achieved 100% workforce remote transition within 30 days, with only minor adjustments required for branch-based colleagues.
  • Stabilized secure remote-access continuity by scaling VPN, VDI, Microsoft 365, and Teams behind federated identity, MFA, and continuous RADIUS validation, a transferable live-venue operations pattern for preserving staff access without relaxing control expectations during facility disruption.
  • Kept Active Directory as the coherent source for the emergency remote-access identity path while pairing Ping Federate, Azure AD, Microsoft Authenticator, and RADIUS middleware, reducing the risk that crisis-speed VPN and VDI expansion would fragment authentication or weaken auditability.
  • Drove Azure foundational-infrastructure strategy for regulated systems, creating roadmap and design guidance for virtual networks, identity, access, monitoring, and migration planning transferable to studio and venue enterprises that need secure cloud foundations before production-adjacent workloads move.
  • Reviewed infrastructure design documents and guided application teams through cloud migration, service refactoring, post-cutover cost control, and secure-access considerations, reducing the risk of one-off designs during a compressed transformation window.
  • Implemented standardized project and service-management practices for cloud migration work, giving technical staff and business units clearer visibility into deliverables, risks, adoption support, and operational readiness.
  • Coordinated with security and compliance stakeholders on zero trust, SIEM/SOAR, endpoint encryption, RBAC, and disaster recovery, grounding emergency platform decisions in venue-security and content-protection controls transferable to live operations.
Identity/accessCloud/infrastructureCanonicalTraining/knowledge managementOperations/service deliveryEnterprise Cloud Architecture
Open full role

Molina Healthcare | February 2019 – February 2020

Senior Solutions Architect (Consultant, Infosys)

  • Architected a governed Azure landing-zone and hybrid-cloud migration model for roughly 16,000 production servers, 630 applications, and more than 2 PB of regulated data, a transferable studio and live-venue platform pattern for secure workload migration and executive-ready operating foundations.
  • Reframed a stalled healthcare cloud-migration program into an executable Azure delivery model by unifying executive leadership, application owners, project managers, engineering teams, Microsoft, and ServiceNow support around a common migration plan, reducing program ambiguity and restoring delivery momentum.
  • Sequenced the first major migration around the most business-critical SQL Always On workload, protecting 450 TB of data with 2.7 TB of daily transactions and 12-15 SDLC environments to prove a resilient platform pattern transferable to live-venue and production-systems operations.
  • Authored the majority of the Infrastructure-as-Code and orchestration frameworks that provisioned and governed all Landing Zone resources (networking, Virtual WAN, storage, gateways, firewalls, and Zero Trust network security) as well as the ongoing deployment and maintenance of the critical SQL Always On workload; integrated the frameworks into the organization’s existing Terraform processes so that operational teams experienced zero change to day-to-day maintenance and management, while end-to-end automated cutovers (including a perfectly clean production SQL Always On migration) required only human monitoring.
  • Embedded controls, audit trails, and SIEM/SOAR integration points into the landing-zone architecture, a transferable content-security and venue-security pattern for platforms that need operational visibility, reviewable evidence, and executive confidence before sensitive workflows move to cloud.
  • Led a combined delivery team of approximately twelve onshore and two dozen offshore Infosys consultants plus a core group of fifteen permanent Molina stakeholders, coordinating Infrastructure-as-Code work with application refactoring (including a significant SQL version upgrade) performed by team developers to make the critical workload cloud-native; the coordinated effort delivered a successful, clean migration of the organization’s most complex and business-critical application while maintaining influence across the full server, data-center, and application footprint.
  • Developed Secure Healthcare Cloud Program patterns from the engagement’s lessons, turning migration, governance, automation, security, and communication practices into reusable material for future healthcare organizations seeking equal-or-better security in public or hybrid cloud.
  • Wrote a proprietary PowerShell module for virtual-machine migration orchestration, reducing repetitive migration work and giving teams a more consistent control plane for lift-and-shift execution.
Identity/accessPrivileged AccessCybersecurityCloud/infrastructureData/AIGovernance/compliance
Open full role

Coretek Services | August 2018 – January 2019

Senior Solutions Architect

  • Migrated a 16,000-user base to Exchange Online in a single Azure AD tenant while consolidating 32 Exchange environments across 27 Active Directory forests after a merger, reducing fragmentation in identity and email operations.
  • Migrated 10,000 on-premises mailboxes to Exchange Online in seven weeks with less than 2% failure, a transferable cutover pattern for creative and live-venue teams that need collaboration access to continue while platform foundations change.
  • Preserved user attributes, SIDs, passwords, groups, and profile data during consolidation, a transferable access-continuity pattern for creative teams that need shared workspaces and collaboration history to survive platform migration.
  • Implemented Conditional Access for device and user compliance, strengthening Microsoft 365 identity security while supporting cloud productivity adoption.
  • Consolidated user and desktop infrastructure after 19 company acquisitions, preserving user attributes and configurations while standardizing Active Directory, print, DNS, DHCP, VPN, and MPLS patterns.
  • Created a Microsoft 365 managed-service program and onboarded a 10,000-plus-seat pilot customer, a transferable service-operations pattern for entertainment enterprises and live-venue teams that need collaboration platforms to run predictably after launch.
  • Architected a Project Online PMO solution with automated onboarding, offboarding, and access provisioning, improving project governance without adding manual administrative overhead.
  • Designed secure, highly available file-sharing and virtual-desktop data architecture for collaborative media and digital content, a transferable enterprise pattern for creative, venue, and production-adjacent teams balancing content access, uptime, backup, patching, disaster recovery, and cost.
Identity/accessCloud/infrastructureOperations/service deliveryEnterprise Cloud ArchitectureIdentity ManagementAi Systems Agent Architecture
Open full role

Obsidian Availability Solutions | September 2016 – December 2018

Principal Consultant

  • Co-founded an IT consulting firm and established strategic partnerships with Microsoft, ServiceNow, Palo Alto, Dell, HPE, and other vendors within two years, expanding the service portfolio available to customer environments.
  • Secured Microsoft Tier 1 / Direct CSP partner status, enabling stronger managed cloud and security offerings while improving the firm’s ability to support customer adoption directly.
  • Built rapid customer and tenant onboarding patterns for managed-services lifecycle entry, standardizing implementation strategy so new customers could move from sale to operating service more predictably.
  • Developed a per-unit managed-services cost model that made contract pricing more accurate, connecting technical delivery scope to financial sustainability instead of relying on broad estimates.
  • Implemented hybrid-cloud, productivity, collaboration, communication, identity, and security systems across customer environments, including Azure subscriptions, virtual networks, Hyper-V, System Center, Exchange, Skype, SharePoint, Teams, and security policies.
  • Led a 16,000+ user Skype for Business Online and Cloud PBX migration across 67 sites, consolidating more than 100 telecom contracts while delivering end-user training and unified communications support.
  • Implemented an Enterprise PKI hierarchy with an offline root CA, HSM-backed key storage, and certificate issuance for 6,000+ users and devices, strengthening authentication and regulatory-aligned identity controls.
  • Designed certificate templates, enrollment paths, and AD CS administrative RBAC for SCCM, RADIUS, and general access use cases, making PKI an operable trust service for cloud-adjacent infrastructure instead of a one-time build.
Operations/service deliveryEnterprise Cloud ArchitectureProduct Engineering DesignEnterprise ArchitectureCloud InfrastructureTechnical Product Design
Open full role

Orion Technology Services | June 2015 – August 2016

Senior Solutions Engineer, Engineering Team Lead

  • Led a 12-month ITIL managed-services overhaul that strengthened onboarding, SLA discipline, support efficiency, and escalation paths, transferable to live-venue technology operations where production-adjacent services need predictable run-state control.
  • Designed incident, event, standard request, access, and problem-management processes as managed-service operating patterns, transferable to venue technology teams that need calm escalation and continuity during live operations.
  • Modeled ServiceNow and ConnectWise integrations for incident, event, problem, and change workflows, improving the service-data foundation transferable to venue technology operations, production-systems tracking, and continuity control.
  • Architected Microsoft 365 and SharePoint Online migrations, including a 150-plus-site-collection environment, moving collaboration content into governable tenant structures transferable to venue operations, production knowledge, and content-security workflows.
  • Designed and deployed Microsoft Project Online PMO solutions for six organizations, automating project structure, visibility, and portfolio discipline for customer delivery teams.
  • Architected Hyper-V and VMware private-cloud environments integrated with Azure ExpressRoute and Azure Backup, a transferable enterprise platform pattern for resilient venue systems, workload isolation, and live-operation recovery needs.
  • Built real-time availability monitoring with rapid on-call escalation and prescriptive analytics, helping the Network Operations Center detect integration and automation failures before they disrupted venue-like service commitments or live-operation continuity.
  • Developed technical training and LMS resources for internal and customer teams, improving adoption of new operating processes in a way transferable to venue technology teams with mixed technical depth and event-driven continuity needs.
Identity/accessGovernance/complianceOperations/service deliveryEnterprise Cloud ArchitectureIdentity ManagementAi Systems Agent Architecture
Open full role

Detroit IT / Core 3 Solutions | June 2014 – February 2015

Senior Systems Administrator

  • Designed and delivered migration of a large hosted Citrix environment to Office 365, including Exchange 2010 to Exchange Online, 2.5 TB of Windows file services to SharePoint Online, and Skype for Business for internal and external communication.
  • Planned a multi-state network overhaul across ISPs, Cisco UCM voice, VPN, MPLS, hardware refresh, and disaster-recovery services, showing transferable continuity planning for distributed venue technology operations with network and voice dependencies.
  • Administered a VMware-based private cloud hosting VDI and sandbox environments for multiple software-development teams of 20-40 developers, preserving collaboration capacity for complex software work.
  • Provided Tier 2 and Tier 3 escalation for service-desk resources and managed-services customers, translating recurring incidents into durable fixes and clearer support paths for technical users in service-continuity-sensitive environments.
  • Implemented availability-management and disaster-recovery practices for customer environments, strengthening reliability for mission-critical systems that had to stay aligned with service expectations in venue-like operating windows.
  • Coordinated client project plans, milestones, vendors, risks, and deliverables, giving internal leadership and customer stakeholders clearer visibility into active engagements.
  • Managed build-out, quality assurance, and deployment of client project engagements, reducing handoff risk between design, implementation, and managed-services support.
  • Reported project status, milestones, issues, risks, and deliverables to internal leadership, improving visibility into active customer work and enabling earlier escalation of delivery concerns.
Identity/accessCloud/infrastructureIdentity ManagementAi Systems Agent ArchitectureCybersecurity LeadershipSports Mlb Technology
Open full role

Detroit Country Day School | June 2013 – June 2014

Senior Systems Analyst, Helpdesk Lead

  • Refreshed Track-It! ITSM usage by defining ticket classification, escalation, and prioritization standards, creating clearer service expectations for a high-touch user community that included faculty, staff, students, parents, alumni, and guests.
  • Developed Microsoft SCCM-based imaging and systems-management practices for approximately 2,500 workstations across four campuses, improving endpoint consistency and reducing repetitive manual support work.
  • Designed and deployed mobile laptop fleets across campuses with limited dedicated technology-center space, showing transferable device-fleet planning for venue-like environments where users need technology without facilities changes.
  • Coordinated EUC and classroom-technology vendor escalations, repairs, RMAs, and warranty service, protecting user-facing continuity while keeping hardware lifecycle issues visible to leadership.
  • Supported school-issued and sponsored software adoption, including Office 365 and classroom solutions, with account migration assistance, user training, and knowledge resources that reduced adoption friction.
  • Advised academic and administrative stakeholders on technology needs and modernization options, connecting infrastructure and endpoint decisions to educational delivery and operational productivity.
  • Collaborated with academic and administrative departments to identify technology needs, improving the alignment between classroom support, operational productivity, and educational delivery.
  • Managed implementation work for student-information system improvements, strengthening data accessibility for staff and faculty who depended on accurate academic and administrative records.
Operations/service deliveryCybersecurity LeadershipSports Mlb TechnologyEntertainment Live Venue TechnologyProduct Engineering DesignEnterprise Cloud Architecture
Open full role

University of Michigan, Information & Technology Services | June 2011 – September 2012

IT Engineer

  • Built a University of Michigan School of Music, Theatre, and Dance production background across 18 theatre productions from 2011-2015, spanning lighting design, sound design, stage management, assistant master electrician work, light-board operation, sound-board operation, live sound, and music-production training.
  • Led asset and configuration data work for the BMC Remedy to ServiceNow transition, preserving operational context that live-venue and production technology teams also need for reliable equipment support, ownership, and service continuity.
  • Managed asset governance and lifecycle processes for more than 25,000 endpoints, classroom technologies, and peripherals, showing transferable asset-readiness discipline for venue and production technology environments.
  • Supported Configuration Management integration with Microsoft System Center and SAP Business Objects reporting, turning endpoint and asset data into operational visibility relevant to venue technology readiness, equipment support, and service decisions.
  • Onboarded critical university departments into a shared-services model for end-user systems administration, including Human Resources, Business & Finance, Information & Technology Services, and the Office of the President & Administration.
  • Helped plan touchless user-state migration, application upgrades, workstation refresh, and support-model updates across 25,000 users and more than 100 departments, showing transferable change-planning discipline for venue technology refreshes with minimal disruption.
  • Developed and delivered ITIL training that standardized incident, request, service-transition, and operational practices, providing transferable documentation and escalation discipline for production and venue technology teams.
  • Maintained campus computing sites and laboratories across workstations, printers, network infrastructure, and physical environments, providing transferable readiness experience for public-facing venue and live-event technology spaces.
Operations/service deliveryTraining/knowledge managementEntertainment ProductionEntertainment Live Venue TechnologyEntertainment ProductionAvailability Resilience
Open full role

Battery Giant / Energy Products | January 2007 – December 2010

IT Manager

  • Directed infrastructure, security, networking, identity, remote-server, ERP, and POS operations for a retail franchise technology environment, giving branch offices and franchisees a standard operating foundation for growth instead of ad hoc local systems.
  • Designed and deployed standardized franchise technology kits, procurement processes, training resources, and escalation paths that helped expand the franchise platform from 2 stores to 11 in 18 months, with plans established for 30 additional stores in the following year.
  • Built a centralized ecommerce and product-information platform covering more than 250,000 products across 3,000,000+ applications, improving lookup, cross-reference, pricing, and inventory workflows for internal users and franchise operations.
  • Implemented centralized ledger, inventory-control, and POS data patterns across QuickBooks, Microsoft Dynamics, and CounterPoint SQL, giving transferable evidence for venue-like commerce systems where transaction integrity, loss prevention, and multi-location operations matter.
  • Rescued all data and transactions after a vendor-inflicted total system failure, preserving business continuity and financial integrity with no business-operations impact.
  • Rebuilt disaster-recovery and network design practices for mission-critical business systems, achieving 99.99% uptime for two consecutive years and giving transferable continuity evidence for venue technology operations where interruption affects public-facing service windows.
  • Established IT governance, security-awareness training, policy, and procedure standards for franchise technology users, reducing operational risk while giving franchisees clearer support expectations and repeatable compliance practices.
  • Managed IT staff, vendors, contractors, and affiliated service providers, aligning hiring, dismissal, procurement, and operational oversight with the franchise’s growth and support needs.
Identity/accessCybersecurityCloud/infrastructureOperations/service deliveryIdentity ManagementCybersecurity Leadership
Open full role

Detroit Country Day School | June 2005 – August 2006

Systems Analyst

  • Established the school's Active Directory foundation by helping consolidate six separate Kerberos realms into one AD forest, turning an early support/admin assignment into hands-on directory design and build experience.
  • Developed imaging and systems-management practices for approximately 2,500 workstations across four campuses, showing transferable endpoint-readiness discipline for venue-like environments with shared devices, rotating users, and time-sensitive service demand.
  • Modernized legacy servers and workstations from Windows NT and Windows 98 SE to Windows Server 2003 and Windows XP, reducing operational risk while giving classrooms and administrative teams a more supportable platform.
  • Supported account and data migration into the new Active Directory environment, pairing technical rollout with training, knowledge resources, and getting-started seminars so students and faculty could adopt the change with less disruption.
  • Coordinated repairs, RMAs, warranty work, and vendor escalations for classroom and end-user technology, protecting user-facing continuity when device or software issues threatened daily operations.
  • Researched and recommended emerging classroom technologies, connecting infrastructure work to the academic experience rather than treating support as a purely back-office function.
  • Led incident, request, and change-management practices for end-user systems during endpoint modernization, giving technical and nontechnical users clearer support paths while shared technology platforms changed.
  • Developed security-focused service workflows and endpoint protocols for classroom technology, improving prioritization, escalation, and access-control practices in a high-touch academic setting.
Identity/accessData/AIIdentity ManagementCybersecurity LeadershipIdentity AccessCybersecurity Architecture
Open full role

Education

Education

The University of Michigan, Ann Arbor, MI

  • College of Literature, Science, and the Arts (LSA) | Biochemistry, Economics, and Data Science
  • School of Music, Theatre, and Dance (SMTD) | Design & Production, Stage Management, Lighting Design & Electrics, Sound Engineering, and Music Production

Detroit Country Day School, Beverly Hills, MI

  • High School Diploma | College Preparatory Curriculum

Skills

Selected skills

Skills are selected from shared JSON skill records referenced by the selected role evidence.

AI Systems, Safety & Applied LLM Engineering

Deterministic guardrails (Expert), immutable attribution (Expert), continuous red-team/blue-team exercises (Expert), adversarial safety-control testing (Expert), model evaluation frameworks (Expert), secure LLM deployment patterns (Expert), Azure AI Foundry (Expert), AI-assisted development guardrails (Expert), Model- and platform-agnostic XLM (LLM/SLM) orchestration (Advanced), MCP toolkits (Advanced), Ollama/local models (Advanced), hybrid multi-model routing (Advanced)

Product Design, Technical UX & Sports Decision Support

Stakeholder interviews (Expert), workflow mapping (Expert), information architecture (Expert), product requirements (Expert), cross-functional design reviews (Expert), technical-user experience (Expert), product strategy (Expert), design-to-production delivery (Expert), executive-ready tradeoff framing (Expert), design systems (Advanced), component systems (Advanced), baseball analytics (Advanced)

Soft Skills & Cross-Functional Practice

Executive communication (Expert), stakeholder alignment (Expert), technical mentoring (Expert), non-technical stakeholder training (Expert), project and program coordination (Expert), vendor evaluation (Expert), RFP demonstration leadership (Expert), proof-of-concept facilitation (Expert), change adoption (Advanced)

Azure Data, Analytics & AI Platforms

Azure Databricks (Expert), Databricks lakehouse architecture (Expert), data landing zones (Expert), governed analytics platforms (Expert), reusable reference architectures (Expert), workload modernization (Expert), production readiness (Expert), Cloud Adoption Framework (Expert), Azure Well-Architected Framework for analytics and AI workloads (Expert), Data engineering (Advanced), feature preparation (Advanced), lakehouse-oriented sports analytics (Advanced)

Identity, Access & Cryptography

Microsoft Entra ID / Azure AD (Expert), Entra ID Governance (Expert), entitlement management (Expert), Privileged Identity Management (PIM) (Expert), Just-in-Time access (Expert), Conditional Access (Expert), FIDO / MFA (Expert), RBAC and least-privilege design (Expert), Just Enough Administration (JEA) (Expert), Azure Key Vault (Expert), secrets-management patterns (Expert), certificate-based authentication (Expert)

Cybersecurity Architecture, Detection & Operations

Cybersecurity architecture (Expert), cloud security architecture (Expert), Zero Trust architecture (Expert), Microsoft Defender (Expert), Microsoft Purview (Expert), SIEM (Expert), SOAR (Expert), SASE (Expert), XDR and vulnerability management (Expert), endpoint protection (Expert), incident response (Expert), post-incident remediation (Expert)

Microsoft Purview, DLP & Information Protection

Microsoft Purview Data Loss Prevention across Microsoft 365 and endpoints (Expert), Teams DLP (Expert), sensitivity labels (Expert), auto-labeling (Expert), retention labels and policies (Expert), data classification (Expert), sensitive-data discovery and mapping (Expert), DLP policy authoring (Expert), AD RMS to Azure Information Protection (AIP) to Microsoft Information Protection (MIP) to Purview modernization (Expert)

Cloud, Network & Enterprise Infrastructure

Microsoft Azure (Expert), private cloud architecture (Expert), Azure Landing Zones (Expert), Azure Policy (Expert), Landing Zone Accelerator patterns (Expert), hybrid cloud architecture (Expert), Azure Well-Architected Framework (Expert), geo-resiliency (Expert), high-availability patterns (Expert), vendor-agnostic infrastructure schemas (Expert), Google Cloud Platform (GCP) (Advanced), Azure / GCP security and third-party-risk comparisons (Advanced)