# Jake Richard Meyers - Enterprise and Cloud Architecture

## Profile

### Background

Enterprise and cloud architecture resume focused on platform modernization, cloud foundations, LOB systems, infrastructure solutions, cost-aware operations, executive roadmaps, and enterprise operating models.

### Contact Information

- Phone: (626) 988-6620
- Email: resume@askjake.pro
- Website: [https://askjake.pro](https://askjake.pro)
- LinkedIn: [https://www.linkedin.com/in/jakermey](https://www.linkedin.com/in/jakermey)
- GitHub: [https://github.com/jakermey](https://github.com/jakermey)

## Work Experience

### Scoria Software Solutions | March 2025 – Present

> Founder & Principal Software Architect

- Designed model- and platform-agnostic cloud architecture across Azure AI Foundry, Ollama, local models, consumer apps, and enterprise platforms, improving workload portability while one customer cut Azure spend 65% and reduced application latency from 3-5 seconds to 10-150 ms.
- Built a vendor- and OS-agnostic infrastructure engine spanning Azure, AWS, private cloud, bare metal, and OpenStack, enabling portable deployments and stronger vendor negotiation leverage that contributed to a 65% cloud-cost reduction.
- Architected Fumaro Sports as an Azure Databricks-backed cloud and data-platform showcase, using lakehouse patterns for feature preparation, predictive analytics, PostgreSQL-backed application routes, and governed release controls that translate a sports analytics workload into reusable enterprise architecture.
- Created a DevOps orchestration platform for governed cloud and application delivery, reducing technical debt across 65-95% of the codebase while compressing feature and patch delivery from weeks or months to days or hours and preserving controlled release paths.
- Architected the XLM engine and MCP toolkit family as a model- and platform-agnostic application architecture, converting natural-language intent into deterministic cloud, web, API, CLI, and MCP delivery patterns that shortened early-adopter POC cycles from months to weeks.
- Developed a canonical JSON schema application engine as an enterprise platform layer, deploying cohesive web, native mobile, desktop, API, CLI, and MCP surfaces from one shared contract while reducing each interface codebase 25-30% through reusable architecture.
- Coordinated client cloud, software, data, infrastructure, and security workstreams through one accountable enterprise architecture thread, carrying designs from concept through production adoption across multiple delivery surfaces.
- Led enterprise architecture across client cloud, data, DevOps, security, and application environments, connecting modernization patterns to risk controls so AI and platform work stayed deployable in governed settings.

### Bedrock Information Systems LLC | January 2019 – Present

> Principal Architect

- Designed Azure DevOps and GitHub repository, CI/CD, and release standards as reusable architecture guidance for multi-environment application fleets, embedding security, compliance, functional, and budget constraints into platform delivery.
- Developed client IT strategy and governance roadmaps that connected cloud modernization, records workflows, service management, and security posture to business outcomes, helping small public-sector teams prioritize resilient platform work over isolated tickets.
- Established NIST CSF 2.0 Tier 3 (Repeatable) as a platform-governance baseline for onboarded municipal systems, turning scattered control practices into repeatable architecture evidence and single-click audit reporting.
- Provided architecture leadership for internal and client web and application platforms, expanding Bedrock from family-office technology support into a managed-service provider model for public-sector and regulated clients.
- Modernized a century-scale government records platform by converting legacy microfilm into OCR/ICR-optimized, PDF/A-compliant digital assets with metadata in one 21-hour run, reducing public-records turnaround from weeks or months to days or hours.
- Expanded a municipal Microsoft Teams implementation into a five-year city-wide AI adoption and modernization roadmap, sequencing 26 priorities across security, compliance, user training, data protection, legacy phase-out, and ROI milestones so AI work rested on governed collaboration and information-protection foundations.
- Governed service-principal, app-registration, and workload-identity access for client-facing and agentic solutions, favoring ephemeral-token patterns, explicit check-in/check-out, granular permissions, and session-level audit trails where customer risk models required non-human identity accountability.
- Designed an Intune device-compliance and Conditional Access gate for municipal Microsoft 365 access, using policy-controlled device state as the authorization decision instead of user training alone so unmanaged endpoints could not become the path around CJIS and data-protection requirements.

### Los Angeles County Employees Retirement Association (LACERA) | August 2023 – June 2024

> Principal Cybersecurity Architect

- Designed the Secure Productive Enterprise roadmap across greenfield identity, network, Microsoft 365, and Azure foundations, linking platform modernization, endpoint management, data protection, cloud services, and access controls into one board-visible enterprise architecture path.
- Architected the LACERA Cloud framework across multiple data centers with SDN and SD-WAN patterns, creating a reusable enterprise cloud architecture for business-service migration, availability planning, compliance, and LOB platform modernization.
- Delivered real-time platform dashboards and live operating signals that moved project charters, budget, and resource decisions from multi-quarter approval cycles to a monthly cadence, giving enterprise leaders clearer visibility into modernization progress and operating tradeoffs.
- Modernized ServiceNow GRC and change-management workflows into an enterprise delivery control plane, increasing legitimate change flow from a handful per month to dozens per week while reducing platform-change cycles from weeks to days or hours with almost no regressions.
- Developed cloud control-plane automation and orchestration patterns for privileged access, lifecycle enforcement, audit evidence, and governed change execution, turning headcount constraints into repeatable platform controls and cost-aware operational leverage.
- Led SIEM, SOAR, and SASE platform evaluation through RFPs, demonstrations, and proofs of concept, translating enterprise architecture, service-delivery, compliance, and operating-cost tradeoffs into vendor-selection criteria before procurement decisions locked in.
- Overhauled service-management and project-portfolio workflows so security, IT operations, and end users could move LOB modernization work through governed delivery channels without slowing remediation, platform support, or routine service delivery.
- Established a dedicated engineering operating model for architecture, platform implementation, remediation, and consultative support to information systems and application teams, giving LOB modernization efforts a clearer path from design decisions to delivered change.

### Wells Fargo Bank | July 2022 – July 2023

> Senior Cybersecurity Architect

- Led the Service Enablement Task Force for enterprise cloud architecture across 128 resource provider types, converting custom infrastructure decisions into reusable Azure blueprints and pre-approved service patterns that let bank application teams adopt standardized designs at migration scale.
- Guided infrastructure teams toward ARM Templates and Azure Blueprints as enterprise deployment standards, reducing configuration drift and turning cloud platform requirements into repeatable infrastructure-as-code blueprints for high-volume application migration.
- Accelerated enterprise cloud architecture approvals from 3-12 applications per month to 40-50 completed reviews per week, unblocking the bank's first successful large-scale public-cloud migration program through standardized Azure infrastructure solution patterns.
- Designed HYOK and external-key-provider architecture as the enterprise cloud adoption unblocker, removing third-party cryptographic dependencies and giving the bank a 100% bank-controlled key-management model for regulated public-cloud migration.
- Developed enterprise cloud governance roadmaps that moved application teams from exception-driven architecture review to standardized blueprint selection, reducing review effort from weeks or months to roughly one to two asynchronous hours while preserving platform approval gates.
- Conducted comparative Azure and Google Cloud platform analysis, turning provider capability gaps into closure plans, compliance-scoring inputs, and control-model decisions for enterprise cloud service selection and migration governance.
- Framed Azure and Google Cloud platform trade-offs for senior executives, translating engineering, compliance, cryptography, infrastructure, and operating-model constraints into an enterprise provider decision across bank-scale endpoint and ATM environments.
- Developed standardized compliance scoring for cloud services and resource-provider gaps, giving infrastructure, architecture, and GRC teams a repeatable evidence model for Azure/GCP closure plans, provider decisions, and governed cloud adoption.

### Microsoft Corporation | March 2021 – November 2021

> Senior Customer Engineer, Global Tech Team

- Led Microsoft-scale customer engineering across Fortune 500, public-sector, high-technology, and internal Microsoft environments, managing 37 dedicated accounts while serving as the final architecture escalation path for global cloud, data, identity, reliability, and product-group issues.
- Led post-DART enterprise architecture remediation after a global ransomware response, sequencing recovery across Active Directory forests, Microsoft 365 tenants, Azure, Azure Stack, and private-cloud dependencies while closing privilege-risk paths without losing platform modernization momentum.
- Resolved one to two critical-situation escalations per week across strategic accounts, including a Windows Server 2016 Storage Spaces Direct defect that cascaded through SQL Always On, Exchange Online, RDS, DFS, and failover clustering before a global patch restored high-availability architecture reliability worldwide.
- Launched Year 1 of LACERA's three-year municipal platform roadmap as their Microsoft engineer, standing up greenfield Active Directory and Microsoft 365 environments, designing Azure landing zones and SD-WAN foundations, and sequencing identity, endpoint, and cloud dependencies so the full modernization program could finish on schedule.
- Helped remediate a hyperscale service outage by tracing an infrastructure-as-code workflow to the failure path, guiding rollback and permanent-fix architecture decisions, and converting postmortem evidence into geo-resiliency, disaster-recovery, and safer global rollout guidance for Premier and Unified Support customers.
- Published reusable PowerShell, ARM-template, GitHub, Microsoft Learn, and field-delivery assets for Azure infrastructure, Microsoft 365, identity, and cloud operations, converting repeated customer architecture and escalation patterns into public-safe reference guidance that reduced repeat demand and freed capacity for higher-value reliability architecture work.
- Supported MSIT, LinkedIn, GitHub, and Microsoft product organizations through migration, incident, critical-situation, identity, and cloud architecture work, applying global customer escalation discipline to internal Microsoft platform reliability and modernization decisions.
- Coordinated CSAMs, Critical Situation Managers, sales, technical pre-sales, support, customer engineering, and cloud solution architecture teams to scope enterprise cloud engagements accurately, preserving executive/customer communication and cross-account architecture decisions across Microsoft touchpoints.

### Los Angeles County Employees Retirement Association (LACERA) | December 2020 – March 2021

> Senior Cybersecurity Architect

- Architected a board-adopted three-year enterprise technology and security roadmap across eight domains, converting a NIST CSF Level 1 baseline into a funded Level 3 target state that sequenced cloud foundations, platform modernization, staffing, and risk reduction for executive decision-makers.
- Created an enterprise modernization roadmap aligning cloud enablement, endpoint provider and management systems, business-service migration, and data-protection requirements so business services and LOB systems could move through planned architecture instead of tool-led drift.
- Converted shadow IT, access-risk, and visibility findings into five formal platform RFP lifecycles for ServiceNow, PMO tooling, and Microsoft security solutions, using service-management and governance platforms to lock in the next phase of enterprise modernization.
- Modernized the remote-work platform across approximately 550-600 users and endpoints, replacing VPN-only visibility with Entra, Netskope, full-tunnel inspection, firewall, web-filtering, and endpoint controls that gave cloud and infrastructure teams an operable visibility foundation for distributed service delivery.
- Stabilized enterprise remote access during the COVID crisis by sequencing VPN, identity, endpoint, firewall, and web-filtering work, eliminating recurring unexpected downtime and restoring service metrics while preserving the longer-term cloud enablement and platform modernization path.
- Defined landing-zone and core-service architecture across Active Directory, networking, Microsoft 365, and Azure so implementation teams had a coherent foundation, transferable to club-scale systems where analytics, collaboration, and security services must share governed platform patterns.
- Planned data and information-security compliance controls for future business services, ensuring cloud enablement and service migration decisions were evaluated against security standards before implementation choices narrowed the architecture.
- Applied Microsoft Graph-era control-plane inspection to cloud-connected privileged identity administration, improving audit visibility for high-risk access paths that standard administrative views did not expose before broader platform modernization.

### City National Bank | March 2020 – July 2020

> Vice President, Azure Infrastructure

- Drove Azure foundational-infrastructure strategy with enterprise engineering teams, shaping roadmap and design guidance for virtual networks, monitoring, access patterns, and application migration planning before workloads moved into cloud execution.
- Reviewed infrastructure design documents with application teams for cloud migration, service refactoring, post-cutover cost control, secure access, and operational readiness, reducing one-off architecture decisions during a compressed transformation window.
- Scaled VPN, VDI, Microsoft 365, and Teams access as enterprise continuity infrastructure for a national bank, preserving workforce availability during emergency facility closures while federated identity, MFA, and RADIUS validation remained supporting control-plane requirements.
- Implemented infrastructure governance and service-management practices for cloud migration work, giving technical staff and business stakeholders clearer visibility into deliverables, risks, adoption support, and operational readiness.
- Connected infrastructure resilience and access-control decisions to mobile front-end and banking-platform architecture discussions, keeping line-of-business modernization visible in cloud migration planning.
- Kept Active Directory as the coherent source for the emergency remote-access identity path while pairing Ping Federate, Azure AD, Microsoft Authenticator, and RADIUS middleware, reducing the risk that crisis-speed VPN and VDI expansion would fragment authentication or weaken auditability.
- Consulted with security and compliance stakeholders on zero-trust, SIEM/SOAR, endpoint encryption, BitLocker, RBAC, and disaster-recovery considerations, aligning remote-work urgency with regulated banking control expectations.
- Created and reviewed infrastructure design documents for application and engineering teams, helping standardize cloud, identity, monitoring, and service-refactoring decisions before workloads moved into Azure.

### Molina Healthcare | February 2019 – February 2020

> Senior Solutions Architect (Consultant, Infosys)

- Sequenced the first major migration around the highest-value LOB workload: a 450 TB SQL Always On platform with 2.7 TB of daily transactions and 12-15 SDLC environments, proving the workload-migration architecture, cost model, risk posture, and repeatable pattern before broader enterprise-cloud adoption.
- Architected the Azure Landing Zone and hybrid-cloud migration program for a regulated healthcare estate of roughly 16,000 production servers, 40,000 total environments, 630 applications, and more than 2 PB of data, giving application and infrastructure teams a governed enterprise-cloud foundation for platform modernization at production scale.
- Authored Terraform-integrated Infrastructure-as-Code and orchestration frameworks for landing-zone resources including networking, Virtual WAN, storage, gateways, firewalls, SQL Always On operations, and automated cutovers, preserving familiar operations workflows while standardizing enterprise platform governance and repeatable migration execution.
- Reframed a stalled healthcare cloud-migration program into an executable enterprise architecture by aligning executives, application owners, project managers, engineering teams, Microsoft, and ServiceNow support around shared platform decisions, restoring delivery momentum for LOB modernization.
- Developed reusable Secure Healthcare Cloud Program patterns from the Azure Landing Zone engagement, packaging migration governance, Terraform automation, security approvals, communication practices, and operating models into a healthcare cloud platform modernization pattern future regulated organizations could reuse.
- Standardized service-oriented architecture guidance across network, security, server, compute, database, reporting, IAM, and content-distribution services, giving application teams common enterprise patterns for LOB migration, healthcare platform governance, and post-migration operations.
- Led onshore consultants, offshore delivery teams, Molina stakeholders, application developers, platform engineers, and vendor support through the clean migration of the most complex workload, keeping architecture decisions, SQL modernization, infrastructure automation, and service handoffs aligned across the enterprise program.
- Governed Azure tenants, subscriptions, RBAC, and core shared services while approving migration and management plans, turning landing-zone standards into enforceable enterprise-cloud operating procedures for application and infrastructure teams.

### Coretek Services | August 2018 – January 2019

> Senior Solutions Architect

- Architected a 16,000-user Exchange Online and Azure AD tenant consolidation across 32 Exchange environments and 27 Active Directory forests after a merger, reducing platform fragmentation for administrators and business users.
- Created a Microsoft 365 managed-service architecture and onboarded a 10,000-plus-seat pilot customer, turning migration delivery lessons into a repeatable operating model for governed cloud adoption.
- Migrated 10,000 on-premises Exchange mailboxes to Exchange Online in seven weeks with less than 2% failure, converting legacy collaboration migration risk into a controlled cloud-platform execution pattern.
- Designed a highly available file-sharing and virtual-desktop data architecture for collaborative media and digital content, balancing performance-to-cost ratio, uptime, patching, backup, disaster recovery, and secure access.
- Evaluated internal and client cloud, endpoint, identity, security, and managed-service health, converting platform findings into modernization roadmaps customers could sequence by readiness and operational impact.
- Architected a Project Online PMO solution with automated onboarding, offboarding, and access provisioning, turning project governance into repeatable cloud-service architecture without adding manual administrative overhead.
- Designed alternative migration solutions around network and server limitations, eliminating project delays by treating infrastructure constraints as architecture inputs instead of cloud adoption blockers.
- Preserved user attributes, SIDs, passwords, groups, and profile data during multi-forest consolidation, treating identity continuity as a cutover requirement for business users and administrators.

### Obsidian Availability Solutions | September 2016 – December 2018

> Principal Consultant

- Implemented hybrid-cloud, productivity, collaboration, and communications platforms across customer environments, aligning Azure subscriptions, virtual networks, Hyper-V, System Center, Exchange, Skype, SharePoint, Teams, and policy controls into managed infrastructure solutions.
- Led a 16,000+ user Skype for Business Online and Cloud PBX migration across 67 sites, consolidating more than 100 telecom contracts while moving communications architecture into a managed Microsoft cloud operating model.
- Built repeatable customer and tenant onboarding patterns for managed cloud lifecycle entry, turning sales handoff, implementation scope, delegated access, and Microsoft tenant readiness into a predictable operating model.
- Led 24/7/365 critical-situation response and executive advisory work across availability, continuity, and security risks, converting service interruptions into practical remediation plans for customer and internal platform operations.
- Designed early Azure AD lifecycle and entitlement patterns for internal and customer tenants, connecting onboarding, role changes, group access, and delegated CSP/MSP administration into repeatable managed cloud tenant controls.
- Co-founded an IT consulting firm and built Microsoft, ServiceNow, Palo Alto, Dell, HPE, and other vendor partnerships into a managed-cloud service portfolio for customer tenant, infrastructure, collaboration, and security environments.
- Oversaw vendors, strategic partners, managed cloud service portfolios, scopes of work, and pricing, tying customer architecture recommendations to accountable delivery economics and partner selection.
- Implemented hybrid identity and federation foundations across Microsoft cloud customer environments, aligning directory synchronization, access boundaries, and tenant onboarding so cloud adoption could proceed without losing operational control.

### Orion Technology Services | June 2015 – August 2016

> Senior Solutions Engineer, Engineering Team Lead

- Architected Hyper-V and VMware private-cloud environments integrated with Azure ExpressRoute and Azure Backup, giving customers period-appropriate hybrid-cloud options with clearer resilience, recovery, and workload-isolation patterns.
- Led a 12-month ITIL managed-services architecture overhaul that turned onboarding, SLA discipline, support efficiency, and escalation paths into a repeatable operating model for enterprise cloud and infrastructure services.
- Organized managed-services engineering across several dozen Office 365 tenant environments, turning repeated migration, support, and delegated-administration work into a consistent multi-tenant cloud-service operating model.
- Designed incident, event, standard request, access, and problem-management processes as reusable service-operation architecture, converting reactive support patterns into more predictable managed cloud delivery and escalation control.
- Architected Microsoft 365 and SharePoint Online migrations for multiple clients, including a 150-plus-site-collection environment, moving collaboration workloads into more governable tenant structures for enterprise cloud operations.
- Built real-time availability monitoring with rapid on-call escalation and prescriptive analytics, giving the Network Operations Center earlier visibility into integration and automation failures before they affected managed cloud-service commitments.
- Designed hosted private-cloud multi-tenancy patterns on VMware-era infrastructure, separating customer environments and access paths into an early control-plane model for managed private-cloud delivery.
- Governed delegated administration across several dozen Office 365 tenant environments, turning repeated CSP/MSP support patterns into a more consistent multi-tenant cloud-service operating model with clearer tenant-administration boundaries.

### Detroit IT / Core 3 Solutions | June 2014 – February 2015

> Senior Systems Administrator

- Designed and delivered migration from hosted Citrix, Exchange, and Windows file services into Office 365, including Exchange Online, SharePoint Online, and Skype for Business collaboration services.
- Planned a multi-state network overhaul for six offices across five states, coordinating ISPs, Cisco UCM voice, network hardware refresh, VPN, MPLS, and disaster-recovery services to reduce infrastructure fragility.
- Administered a VMware-based private cloud hosting VDI and sandbox environments for multiple software-development teams of 20-40 developers, preserving reliable collaboration and experimentation capacity.
- Implemented availability-management and disaster-recovery practices for customer environments, keeping mission-critical systems aligned with SLA expectations through more reliable operating patterns.
- Planned Office 365 migration for Citrix-hosted customers, preserving document integrity and collaboration continuity during the move from hosted Exchange and file services to Microsoft cloud services.
- Managed build-out, quality assurance, and deployment of client infrastructure engagements, reducing handoff risk between design, implementation, and managed-services support.
- Provided Tier 2 and Tier 3 escalation for service-desk resources and managed-services customers, translating recurring incidents into more durable fixes and clearer support paths.
- Conducted security assessments and implemented protective measures for customer environments, connecting infrastructure modernization to breach prevention and risk reduction.

### Detroit Country Day School | June 2013 – June 2014

> Senior Systems Analyst, Helpdesk Lead

- Developed SCCM-based imaging and systems-management practices for approximately 2,500 workstations across four campuses, turning endpoint support into repeatable platform operations instead of manual remediation.
- Refreshed Track-It! ITSM usage by defining ticket classification, escalation, and prioritization standards, turning recurring helpdesk work into clearer service operations for a multi-campus school environment.
- Designed and deployed mobile laptop fleets for primary and elementary campuses with limited dedicated technology-center space, expanding digital-learning access through a fit-for-facilities endpoint platform.
- Managed student-information system improvements that strengthened data accessibility for staff and faculty, improving a line-of-business platform used for academic and administrative records.
- Advised academic and administrative stakeholders on technology needs and modernization options, connecting infrastructure and endpoint decisions to educational delivery and operational productivity.
- Coordinated EUC and classroom-technology vendor escalations, repairs, RMAs, and warranty service, protecting instructional continuity while keeping hardware lifecycle issues visible to leadership.
- Delivered staff training on new technologies and software, increasing comfort with adopted tools and reducing avoidable support demand after rollout.
- Supported school-issued and sponsored software adoption, including Office 365 and classroom solutions, with account migration assistance, user training, and knowledge resources that reduced adoption friction.

### University of Michigan, Information & Technology Services | June 2011 – September 2012

> IT Engineer

- Led Asset and Configuration Management work for the BMC Remedy to ServiceNow transition, defining import logic and data relationships so production ITSM cutover preserved service operations context.
- Managed asset governance and lifecycle processes for more than 25,000 university endpoints, classroom technologies, and peripherals, giving leadership clearer visibility across a 100,000-user environment.
- Supported Configuration Management integration with Microsoft System Center and SAP Business Objects reporting, turning endpoint and asset data into governed decision support for university IT operations.
- Helped plan touchless user-state migration, Windows and application upgrades, workstation refresh, and support-model updates for 25,000 users across more than 100 university departments during enterprise service consolidation.
- Maintained campus computing sites and laboratories across workstations, printers, network infrastructure, and physical environments, supporting reliable academic and administrative access at institutional scale.
- Built a University of Michigan School of Music, Theatre, and Dance production background across 18 theatre productions from 2011-2015, spanning lighting design, sound design, stage management, assistant master electrician work, light-board operation, sound-board operation, live sound, and music-production training.
- Onboarded critical university departments into a shared-services model for end-user systems administration, including Human Resources, Business & Finance, Information & Technology Services, and the Office of the President & Administration.
- Developed and delivered ITIL training to End User Computing team members after train-the-trainer preparation, improving consistency in incident, request, service transition, and operational practices across the support organization.

### Battery Giant / Energy Products | January 2007 – December 2010

> IT Manager

- Directed infrastructure, networking, remote-server, ERP, and POS operations for a distributed retail franchise environment, giving branch offices and franchisees a standard platform foundation for growth instead of ad hoc local systems.
- Rebuilt disaster-recovery and network design practices for mission-critical business systems, achieving 99.99% uptime for two consecutive years after taking ownership of availability and recovery architecture.
- Built a centralized ecommerce and product-information platform spanning 250,000 products and 3,000,000+ applications, giving franchise operations a shared platform for lookup, pricing, inventory, and cross-reference workflows.
- Designed and deployed standardized franchise technology kits, procurement processes, training resources, and escalation paths, helping the retail platform expand from 2 stores to 11 in 18 months with a repeatable branch rollout model.
- Implemented centralized ledger, inventory-control, and POS patterns across QuickBooks, Microsoft Dynamics, and CounterPoint SQL, standardizing multi-location retail operations around shared financial and inventory platforms.
- Maintained branch-office technology, local and remote data centers, and replica systems, strengthening availability and business continuity for distributed retail franchise operations.
- Established IT governance, security-awareness training, policy, and procedure standards for franchise technology users, reducing operational risk while giving franchisees clearer support expectations and repeatable compliance practices.
- Developed online training, LMS, documentation, and support resources for franchisees and staff, reducing dependence on one-off support interactions while standardizing technology adoption.

### Detroit Country Day School | June 2005 – August 2006

> Systems Analyst

- Modernized legacy servers and workstations from Windows NT and Windows 98 SE to Windows Server 2003 and Windows XP, reducing operational risk while moving classrooms and administrative teams onto a more supportable platform.
- Developed imaging and systems-management practices using Microsoft SMS and Symantec Ghost for approximately 2,500 workstations across four campuses, improving endpoint consistency through a repeatable device-platform model.
- Managed enterprise imaging, software installation, and workstation refresh activity for students, faculty, management, and directory-infrastructure servers, linking endpoint and server reliability to classroom continuity.
- Coordinated repairs, RMAs, warranty work, and vendor escalations for classroom and end-user technology, protecting teaching continuity when hardware or software issues threatened daily operations.
- Led incident, request, and change-management practices for end-user systems during early identity and endpoint modernization, giving users a clearer path for support while the environment shifted from legacy platforms.
- Developed security-focused service workflows and endpoint protocols for classroom technology, improving prioritization, escalation, and access-control practices in a high-touch academic setting.
- Established the school's Active Directory foundation by helping consolidate six separate Kerberos realms into one AD forest, turning an early support/admin assignment into hands-on directory design and build experience.
- Supported account and data migration into the new Active Directory environment, pairing technical rollout with training, knowledge resources, and getting-started seminars so students and faculty could adopt the change with less disruption.

## Education

### The University of Michigan, Ann Arbor, MI

- College of Literature, Science, and the Arts (LSA) | Biochemistry, Economics, and Data Science
- School of Music, Theatre, and Dance (SMTD) | Design & Production, Stage Management, Lighting Design & Electrics, Sound Engineering, and Music Production

### Detroit Country Day School, Beverly Hills, MI

- High School Diploma | College Preparatory Curriculum

## Skills

**AI Systems, Safety & Applied LLM Engineering**
Azure AI Foundry, Ollama/local models, hybrid multi-model routing, Model- and platform-agnostic XLM (LLM/SLM) orchestration, AI-assisted development guardrails, MCP toolkits, Deterministic guardrails, immutable attribution, secure LLM deployment patterns, continuous red-team/blue-team exercises, adversarial safety-control testing, prompt-injection and jailbreak evaluation, token optimization, model evaluation frameworks

**Azure Data, Analytics & AI Platforms**
Azure Databricks, Databricks lakehouse architecture, feature preparation, lakehouse-oriented sports analytics, reusable reference architectures, governed analytics platforms, production readiness, Cloud Adoption Framework, Azure Well-Architected Framework for analytics and AI workloads, workload modernization, data landing zones

**Cybersecurity Architecture, Detection & Operations**
Cybersecurity architecture, cloud security architecture, risk management, privileged-access overhauls, change-integrated security scanning, Zero Trust architecture, GRC / ServiceNow integration, SIEM, SOAR, SASE, XDR and vulnerability management, REST and GraphQL API security, Microsoft Purview, Microsoft Defender

**Product Design, Technical UX & Sports Decision Support**
schema-driven UI, design systems, component systems, technical-user experience, sports decision support, telemetry-informed iteration, executive-ready tradeoff framing, product requirements, workflow mapping, product strategy, design-to-production delivery, Stakeholder interviews, cross-functional design reviews, information architecture

**Soft Skills & Cross-Functional Practice**
Executive communication, stakeholder alignment, project and program coordination, vendor evaluation, RFP demonstration leadership, proof-of-concept facilitation, technical mentoring, change adoption, non-technical stakeholder training

**Identity, Access & Cryptography**
Service-principal and workload-identity lifecycle governance, workload identities, managed identities, service principals at scale, RBAC and least-privilege design, secrets-management patterns, Entra ID Governance lifecycle workflows, Microsoft Graph and Azure Management API identity automation, Microsoft Entra ID / Azure AD, Entra ID Governance, CyberArk privileged-access integration governance, Privileged Identity Management (PIM), Entra B2B/B2C, external identity, and CIAM patterns, Tenant access boundaries and multi-tenancy control patterns

**Infrastructure as Code, DevOps & Supply Chain**
Azure DevOps, GitHub, CI/CD pipelines, repository governance, Infrastructure as Code, ARM Templates, Policy as Code, Terraform, PowerShell, full lifecycle automation across heterogeneous targets, private-cloud, configuration management patterns

**Compliance, Governance & Control Assurance**
NIST CSF 2.0, continuous control monitoring, audit automation, CJIS, law-enforcement and public-safety data protection, HIPAA, PCI, CUI, PII, financial and health data protection, control translation for customer and sector-specific governance models, control evidence and reporting, standards libraries, secure architecture review

_Generated from structured resume artifacts for Enterprise and Cloud Architecture Resume; document version v26.8.20._
