Special resume view

Sports and MLB Technology Resume

Sports technology, baseball decision-support product work, analytics platform judgment, and high-visibility operating experience for teams evaluating product and technical fit in baseball contexts.

Resume at a glance

Roles
16 public role records selected for Sports and MLB Technology Resume.
Evidence
128 structured evidence points, selected and deduped by claim family.
Source
MDX renders this page; adjacent JSON artifacts beside the role MDX files supply the claims.

Work Experience

Selected professional experience

Profile-matched evidence using the best available variant for this resume lens.

Scoria Software Solutions | March 2025 – Present

Founder & Principal Software Architect

  • Designed AI-enabled product workflows around explicit trust boundaries, approval paths, and immutable attribution so expert users can review, challenge, and safely act on generated recommendations instead of treating model output as opaque authority.
  • Reduced false positives by more than 50% (reaching over 95% in mature deployments) and cut human-intervention escalations from 20–30 per month to roughly one per quarter at one client, freeing security specialists to resume long-shelved SASE work.
  • Productized AI-assisted software delivery through the XLM engine and MCP toolkit family, turning natural-language intent into deterministic multi-platform application stacks that let early adopters move from concept to hands-on prototype evaluation in weeks instead of months.
  • Made the suite model- and platform-agnostic so the same tools run interchangeably across consumer apps, enterprise platforms, Azure AI Foundry, Ollama, and local models; one customer cut Azure spend 65% while dropping application latency from 3–5 seconds to 10–150 ms.
  • Architected Fumaro Sports as an MLB-first analytics platform pattern, pairing Azure Databricks lakehouse design with model-ready feature preparation, governed context, and human-reviewed decision support for analyst and scout workflows.
  • Designed Fumaro Sports around analyst and scout review loops, telemetry-aware feedback capture, staged beta evaluation, and explicit prediction/explanation boundaries so MLB-first decision surfaces can improve while keeping uncertainty visible to users.
  • Building Fumaro Sports as a live sports analytics proof of concept with a public multi-sport Next.js runtime, strict TypeScript, PostgreSQL-backed routes, Azure Databricks analytics, and MLB-first decision surfaces for governed evaluation.
  • Created developer and operator tooling for productized AI-assisted delivery, combining DevOps orchestration with release guardrails so product teams could move from feature intent to stable patches in days or hours without uncontrolled production changes.
CybersecurityGovernance/complianceOperations/service deliveryCybersecurity LeadershipIdentity ManagementAi Systems Agent Architecture
Open full role

Bedrock Information Systems LLC | January 2019 – Present

Principal Architect

  • Established a repeatable NIST CSF 2.0 control baseline with single-click audit reporting, offering transferable club-technology relevance for governed analytics, operational trust, and decision-support tooling that must show where data, controls, and decisions came from.
  • Designed Bedrock's internal and client-facing Microsoft 365 information-protection baseline, including Purview sensitivity labels, DLP policy patterns, retention controls, and classification schemas that support client data subject to CJIS, HIPAA, PCI, CUI, PII, financial, health, law-enforcement, public-safety, and other regulated-data requirements.
  • Delivered measurable advances in CJIS compliance for multiple public-sector customers, strengthening security controls while reducing administrative burden on sworn officers by 1–2 hours per day and allowing more time for street-level public safety work.
  • Translated a Microsoft Teams rollout into a five-year modernization and AI adoption roadmap across 26 priorities, a transferable club-technology planning pattern where collaboration, analytics substrate, security, user adoption, and ROI milestones must move together.
  • Implemented automated DLP and information-protection controls that detected a public-sector CJIS data exposure within five minutes of availability and applied extreme encryption and protection through Purview, including to copies stored outside Microsoft 365, while preserving NDA-safe disclosure of the incident.
  • Productized a public-sector records digitization workflow that connected legacy microfilm handling, OCR/ICR quality, PDF/A metadata, and public-records fulfillment, reducing pre-digital request turnaround from weeks or months to days or hours after a single 21-hour conversion run.
  • Operationalized AI-assisted development guardrails as a product-engineering system for small technical teams, giving non-developer engineers controlled patterns for requirements, prototypes, code review, auditability, and release discipline while accelerating delivery 50–75%.
  • Designed the rollout, training, and support path for a 2,300-user MDM workflow migration, translating device-governance requirements into an adoption path that landed with 100% success, zero data loss or service interruption, and only five support requests after a 15-minute training session.
Governance/complianceIdentity ManagementAi Systems Agent ArchitectureCybersecurity LeadershipSports Mlb TechnologyEnterprise Cloud Architecture
Open full role

Los Angeles County Employees Retirement Association (LACERA) | August 2023 – June 2024

Principal Cybersecurity Architect

  • Led a five-person dedicated cybersecurity engineering team as the senior-most technical authority under the CISO, shifting the team from reactive whack-a-mole on user reports and Netskope alerts to consistent daily workflows focused on fundamentals and holistic remediation; user-submitted incidents and business disruptions fell from dozens per day to a handful per week, while GRC moved from constant chasing of IT staff to dashboard-driven work, reducing audit compliance effort from a dedicated full-time auditor to a monthly inter-team checkpoint with largely automated report generation.
  • Implemented Entra Privileged Identity Management with Just-in-Time access, eliminating 45 standing privileged accounts and all persistent admin access except a monitored break-glass account, while unifying a single audit trail and introducing M-of-N controls integrated with change management.
  • Configured and tuned Microsoft Purview DLP policies, sensitivity-labeling controls, retention policies, and compliance workflows alongside Defender operations, extending protection across regulated data categories and reducing previously unknown or unprotected sensitive-data exposure.
  • Stopped a successful phishing compromise of a high-value, high-privilege executive account with zero data extraction, zero lateral movement, and no impact to business systems, validating the effectiveness of the new privileged access and monitoring controls.
  • Deployed Pentera as a continuous red-team capability that initially surfaced hundreds of findings (thousands when correlated with Defender), consolidated after MITRE-aligned triage to approximately 360 actionable items; Critical and High severity issues (roughly 10–15 percent of the total) were closed within the first month’s change cycles, and the residual backlog was driven down to an average of 10–12 active findings, with zero-day exposures typically detected within 1–24 hours of CVE assignment and more than 80 percent remediated inside a single change cycle.
  • Paired Pentera (red team) with the Microsoft Defender / Purview suite (blue team) to institutionalize regular red-team / blue-team war-game exercises, producing a two-order-of-magnitude drop in Defender events (from hundreds of thousands to thousands per week across the enterprise) and closing nearly all historical vulnerabilities within one quarter of joint operation.
  • Built governed investigation and reporting workflows that connected operational signals, compliance evidence, and change data into practical dashboards, a transferable pattern for club-scale analytics where decision-makers need trusted policy, quality, and readiness signals.
  • Integrated security tooling and processes into existing fire-drill and disaster-recovery exercises, creating a unified operational cadence that enabled full business continuity during a real high-privilege account lockdown with zero impact to internal users, external consumers, or public-facing services.
CybersecurityGovernance/complianceCybersecurity LeadershipEntertainment Live Venue TechnologyProduct Engineering DesignCybersecurity Architecture
Open full role

Wells Fargo Bank | July 2022 – July 2023

Senior Cybersecurity Architect

  • Led governed cloud-architecture review across 128 resource-provider types, turning bespoke infrastructure choices into reusable deployment patterns transferable to sports analytics platforms that need trusted cloud standards without custom architecture review for every workload.
  • Accelerated regulated architecture review from 3-12 approvals per month to 40-50 completed reviews per week, demonstrating a transferable high-volume approval model for sports technology platforms that need faster cloud adoption without weakening governance.
  • Designed multi-layer HYOK cryptography and external key-provider governance, showing transferable encryption and key-control discipline for club-scale cloud systems that must protect sensitive operational and analytics data.
  • Developed SDLC policy-enforcement roadmaps that shifted cloud architecture approval from exception-driven review to standardized selection, a transferable governance pattern for sports analytics platforms that need repeatable controls and low-friction team adoption.
  • Translated cybersecurity, compliance, cryptography, and platform trade-offs for senior executive decision-making, a transferable pattern for sports technology leaders weighing cloud platform selection for governed analytics and operational systems under time and risk constraints.
  • Conducted comparative Azure and Google Cloud security analysis, turning provider gaps into closure plans and selection inputs transferable to sports technology teams choosing governed cloud foundations for analytics and operational data platforms.
  • Developed standardized compliance scoring for cloud services and resource-provider gaps, creating a transferable evidence model for sports analytics platforms that need repeatable approval, risk comparison, and governance decisions across data workflows.
  • Guided infrastructure teams toward ARM Templates and Azure Blueprints so cloud security requirements became repeatable deployment standards, reducing drift for sports analytics and operational platforms that need reliable, governed environments.
CybersecurityCloud/infrastructureOperations/service deliveryTraining/knowledge managementIdentity ManagementAi Systems Agent Architecture
Open full role

Microsoft Corporation | March 2021 – November 2021

Senior Customer Engineer, Global Tech Team

  • Operated at Microsoft customer-engineering scale across Fortune 500, public-sector, high-technology, and internal customers, managing 37 dedicated accounts while resolving cloud, data, security, reliability, and product-group escalations whose complexity transfers to club-scale technology decision support.
  • Advised enterprise customers on governed Microsoft 365 information-protection patterns across Purview, regulated-data discovery, sensitivity labeling, and DLP policy tuning, transferable to club-scale analytics platforms where decision support depends on trusted data boundaries and explainable access controls.
  • Converted repeated Microsoft customer-engineering demand into reusable delivery programs, engineer mentoring, and product-group feedback loops, a transferable pattern for turning field evidence into trusted platform guidance for sports decision systems without claiming sports customer delivery.
  • Served as a primary post-incident remediation resource for Microsoft’s Detection and Response Team (DART); after DART contained a global ransomware attack against a Fortune 500 transportation company, led the subsequent worldwide identity-management overhaul spanning Active Directory forests, Microsoft 365 tenants, Azure and Azure Stack deployments, and private-cloud regions across tens of thousands of endpoints and users, permanently closing the privilege-escalation and leaked-privilege lateral-movement vectors that enabled the original attack and rapidly deploying FIDO-token plus Microsoft Authenticator multi-factor authentication to the entire global user base.
  • Resolved one to two critical-situation escalations per week across strategic Microsoft accounts, including a Storage Spaces Direct defect that cascaded through SQL Always On, Exchange Online, RDS, DFS, and failover clustering, reinforcing reliability patterns relevant to time-bound sports analytics and decision platforms.
  • Helped remediate a hyperscale service outage by tracing an infrastructure-as-code workflow to the failure path, guiding rollback and permanent-fix decisions, and turning postmortem evidence into resilient rollout controls relevant to time-bound sports operations and trusted analytics platforms.
  • Delivered custom Azure Well-Architected engagements for enterprise customers whose scale exceeded standard guidance, translating cloud, data, resilience, governance, cost, and platform constraints into architecture decisions transferable to governed analytics and club-scale sports decision-support systems.
  • Published reusable PowerShell, ARM-template, GitHub, Microsoft Learn, and field-delivery assets that converted repeated Azure infrastructure, Microsoft 365, identity, cybersecurity, and reliability patterns into governed reference guidance, a transferable capacity signal for repeatable club-scale platform delivery.
CybersecurityCloud/infrastructureProduct designOperations/service deliveryCybersecurity LeadershipEnterprise Cloud Architecture
Open full role

Los Angeles County Employees Retirement Association (LACERA) | December 2020 – March 2021

Senior Cybersecurity Architect

  • Architected a board-adopted three-year technology and security maturity roadmap across eight domains, a transferable executive-planning pattern for club technology leaders who need governed platforms, trusted operating signals, and funded modernization capacity before analytics tools can scale.
  • Discovered and fully remediated hidden super-privileged Active Directory backdoor accounts that held the highest possible rights—built-in administrator, domain, enterprise, and schema administrator in Active Directory, plus synchronized Global Administrator access in Microsoft 365. These accounts were invisible in standard tools, completely excluded from audit trails and authentication records, and carried suspected logic-bomb associations; they were eliminated within two weeks of discovery.
  • Deployed identity-aware access, full-tunnel inspection, web filtering, firewall, and endpoint controls across approximately 550-600 users and endpoints, transferable to club-scale platform environments where analytics workflows depend on secure remote access and trusted endpoint visibility.
  • Stabilized workforce remote access under crisis conditions, sequencing identity, VPN, endpoint, firewall, and web-filtering controls to eliminate recurring unexpected downtime, a transferable service-operations pattern for time-bound club technology and analytics workflows.
  • Converted identity, access, visibility, shadow-IT, and high-risk access findings into five formal platform RFPs, a transferable governed-modernization pattern for club technology teams aligning service management, PMO, and security platforms around trusted operating data.
  • Defined landing-zone and core-service architecture across Active Directory, networking, Microsoft 365, and Azure so implementation teams had a coherent foundation, transferable to club-scale systems where analytics, collaboration, and security services must share governed platform patterns.
  • Created a modernization roadmap aligning identity, endpoint management, cloud enablement, business-service migration, and data-protection requirements before tool selection, a transferable governance pattern for club-scale analytics platforms that need trusted data boundaries and durable architecture decisions.
  • Planned data and information-security compliance controls for future business services, a transferable governed-analytics foundation for club technology groups that need trusted data boundaries before using operational data for decision support.
CybersecurityGovernance/complianceIdentity ManagementAi Systems Agent ArchitectureCybersecurity LeadershipSports Mlb Technology
Open full role

City National Bank | March 2020 – July 2020

Vice President, Azure Infrastructure

  • Led a core infrastructure team of approximately six engineers (expanded to roughly eighteen during the crisis response), serving as the bank’s only pre-existing remote-access capability and the first group transitioned to full remote work in March 2020.
  • Executed rapid remote-work enablement that moved all IT staff to remote within one week and emptied the bank’s downtown Los Angeles and New York facilities to align with the governor’s emergency closure mandate; achieved 100% workforce remote transition within 30 days, with only minor adjustments required for branch-based colleagues.
  • Stabilized COVID emergency identity continuity for a national bank by scaling VPN, VDI, Microsoft 365, and Teams access behind Ping Federate, Azure AD, Microsoft Authenticator MFA, and continuous RADIUS validation, preserving secure workforce access and auditability while facilities closed.
  • Kept Active Directory as the coherent source for the emergency remote-access identity path while pairing Ping Federate, Azure AD, Microsoft Authenticator, and RADIUS middleware, reducing the risk that crisis-speed VPN and VDI expansion would fragment authentication or weaken auditability.
  • Drove Azure foundational-infrastructure strategy for regulated financial-services systems, creating roadmap and design guidance for virtual networks, identity, access, monitoring, and migration planning that transfers to club-scale data and decision-support platforms.
  • Reviewed cloud-migration designs for service refactoring, post-cutover cost control, secure access, and operational risk, reducing one-off platform decisions in ways transferable to governed sports analytics and club decision-support systems.
  • Implemented project and service-management practices that made cloud-migration deliverables, risks, adoption support, and operational readiness visible to technical staff and business stakeholders, a transferable governance pattern for club-scale analytics platforms.
  • Coordinated with security and compliance stakeholders on zero trust, SIEM/SOAR, endpoint encryption, RBAC, and disaster recovery, grounding regulated platform decisions in access governance transferable to club-scale systems and analytics operations.
Identity/accessCloud/infrastructureCanonicalTraining/knowledge managementOperations/service deliveryEnterprise Cloud Architecture
Open full role

Molina Healthcare | February 2019 – February 2020

Senior Solutions Architect (Consultant, Infosys)

  • Architected a governed Azure landing-zone and hybrid-cloud migration model for roughly 16,000 production servers, 630 applications, and more than 2 PB of regulated data, a transferable club-scale platform pattern for trusted analytics, workload migration, and executive decision support.
  • Reframed a stalled cloud-migration program into an executable delivery model by aligning executives, application owners, platform engineers, project managers, Microsoft, and ServiceNow support around shared migration decisions, owner handoffs, and delivery rituals that restored momentum.
  • Sequenced the first major migration around the most business-critical SQL Always On workload, protecting 450 TB of data with 2.7 TB of daily transactions and 12-15 SDLC environments, proving a repeatable governed data-platform pattern transferable to club analytics, model trust, and time-sensitive decision support.
  • Authored Terraform-integrated Infrastructure-as-Code and orchestration frameworks for landing-zone resources, security guardrails, and SQL workload operations, creating repeatable club-scale platform controls where analytics, infrastructure, and high-impact cutovers need reliable execution with human review.
  • Embedded controls, audit trails, and SIEM/SOAR integration points into the landing-zone architecture, creating transferable governed-analytics practices for club platforms that need trusted data lineage, operational visibility, and executive confidence in high-impact decisions.
  • Coordinated onshore and offshore consultants, permanent stakeholders, application teams, and platform engineers through a clean migration of the organization’s most complex workload, a transferable club-technology pattern for aligning analytics platforms, vendors, and operational decision makers under delivery pressure.
  • Developed reusable cloud-program patterns from migration, governance, automation, security, and communication lessons, translating regulated platform delivery into transferable practices for club-scale technology programs that need trusted analytics and executive-ready operating models.
  • Wrote a proprietary PowerShell migration-orchestration module that reduced repetitive lift-and-shift work and gave teams a consistent control plane, a transferable automation pattern for club technology groups operating reliable platforms with lean delivery capacity.
Identity/accessPrivileged AccessCybersecurityCloud/infrastructureData/AIGovernance/compliance
Open full role

Coretek Services | August 2018 – January 2019

Senior Solutions Architect

  • Consolidated a 16,000-user merger environment into one Azure AD tenant across 32 Exchange environments and 27 Active Directory forests, a transferable pattern for club-scale technology groups that need governed identity, collaboration data, and platform access after organizational change.
  • Converted a high-risk 10,000-mailbox Exchange Online migration into a controlled seven-week execution pattern with less than 2% failure, transferable to club technology operations where collaboration, analytics, and business workflows cannot pause for platform change.
  • Turned user attributes, SIDs, passwords, groups, and profile data into explicit migration acceptance criteria, framing access continuity as a product requirement for administrators and business users during consolidation.
  • Implemented Microsoft 365 Conditional Access controls for device and user compliance, a transferable security pattern for club-scale platforms where analysts, staff, and business users need trusted access without slowing productivity adoption.
  • Standardized user, desktop, print, DNS, DHCP, VPN, and MPLS patterns after 19 acquisitions, turning fragmented access and workplace workflows into a repeatable migration experience for administrators and users.
  • Created a Microsoft 365 managed-service program and onboarded a 10,000-plus-seat pilot customer, translating delivery lessons into a repeatable service model that transfers to club-scale platform operations and governed collaboration environments.
  • Architected Project Online onboarding, offboarding, and access provisioning automation, a transferable governance pattern for club-scale decision-support platforms where role access, project workflows, and accountability need to stay repeatable under time pressure.
  • Designed secure, highly available file-sharing and virtual-desktop data architecture for collaborative media and digital content, transferable to venue and club environments where content, analytics, and operations depend on resilient access, backup, patching, and disaster recovery.
Identity/accessCloud/infrastructureOperations/service deliveryEnterprise Cloud ArchitectureIdentity ManagementAi Systems Agent Architecture
Open full role

Obsidian Availability Solutions | September 2016 – December 2018

Principal Consultant

  • Co-founded an IT consulting firm and shaped the early service portfolio through Microsoft, ServiceNow, Palo Alto, Dell, HPE, and other vendor partnerships, expanding the managed-service products available to customer environments.
  • Secured Microsoft Tier 1 / Direct CSP partner status, enabling stronger managed cloud and security offerings while improving the firm’s ability to support customer adoption directly.
  • Built repeatable customer and tenant onboarding patterns for managed-services lifecycle entry, a transferable club-scale operating pattern for moving analytics, collaboration, and venue-adjacent support services from intake to reliable operations.
  • Developed a per-unit managed-services cost model that made contract pricing more accurate, connecting technical delivery scope to financial sustainability instead of relying on broad estimates.
  • Implemented hybrid-cloud, identity, collaboration, communication, and security platforms across customer environments, creating a governed infrastructure substrate transferable to club-scale analytics, decision-support, and continuity operations.
  • Led a 16,000-plus-user communications migration across 67 sites while delivering end-user training and support, helping technical and nontechnical users adopt the new collaboration workflow after telecom consolidation.
  • Implemented an Enterprise PKI hierarchy with an offline root CA, HSM-backed key storage, and certificate issuance for 6,000+ users and devices, strengthening authentication and regulatory-aligned identity controls.
  • Led 24/7/365 critical-situation response and executive advisory work across availability, security, and business-continuity risks, transferable to club and venue technology environments where decision-support and game-day operations depend on continuity.
Operations/service deliveryEnterprise Cloud ArchitectureProduct Engineering DesignEnterprise ArchitectureCloud InfrastructureTechnical Product Design
Open full role

Orion Technology Services | June 2015 – August 2016

Senior Solutions Engineer, Engineering Team Lead

  • Led a 12-month ITIL managed-services overhaul that strengthened onboarding, SLA discipline, support efficiency, and escalation paths, transferable to club-scale technology operations where analytics and venue services need predictable run-state control.
  • Designed incident, event, standard request, access, and problem-management workflows as reusable service-operation patterns, converting reactive support behavior into clearer expert-user paths for managed-service delivery.
  • Modeled ServiceNow and ConnectWise integrations for incident, event, problem, and change workflows, improving the service-data foundation transferable to club-scale analytics support, systems tracking, and venue operations control.
  • Architected Microsoft 365 and SharePoint Online migrations, including a 150-plus-site-collection environment, moving collaboration content into governable tenant structures transferable to club-scale knowledge, analytics, and decision-support workflows.
  • Designed and deployed Microsoft Project Online PMO solutions for six organizations, automating project structure, portfolio visibility, and delivery workflows for customer teams managing complex work.
  • Architected Hyper-V and VMware private-cloud environments integrated with Azure ExpressRoute and Azure Backup, a transferable club-scale platform pattern for resilient analytics, workload isolation, and venue-adjacent recovery needs.
  • Built real-time availability monitoring with rapid on-call escalation and prescriptive analytics, helping the Network Operations Center detect integration and automation failures before they disrupted club-scale platforms or venue-adjacent service commitments.
  • Developed technical training and LMS resources for internal and customer teams, improving adoption of new service processes across audiences with mixed technical depth.
Identity/accessGovernance/complianceOperations/service deliveryEnterprise Cloud ArchitectureIdentity ManagementAi Systems Agent Architecture
Open full role

Detroit IT / Core 3 Solutions | June 2014 – February 2015

Senior Systems Administrator

  • Designed and delivered migration from hosted Citrix, Exchange, and Windows file services into Office 365, preserving document access and collaboration continuity for users who depended on shared information systems.
  • Planned a multi-state network overhaul across ISPs, Cisco UCM voice, VPN, MPLS, hardware refresh, and disaster-recovery services, showing transferable continuity planning for distributed club or venue technology operations.
  • Administered VMware private-cloud VDI and sandbox environments for multiple software-development teams, treating developer workspaces as an internal product surface for experimentation, collaboration, and reliable delivery work.
  • Provided Tier 2 and Tier 3 escalation for service-desk resources and managed-services customers, translating recurring incidents into durable fixes and clearer support paths for technical users.
  • Implemented availability-management and disaster-recovery practices for customer environments, strengthening reliability for mission-critical systems that had to stay aligned with service expectations.
  • Coordinated client project plans, milestones, vendors, risks, and deliverables so internal leadership and customer stakeholders had clearer visibility into active engagement status and trade-offs.
  • Managed build-out, quality assurance, and deployment of client project engagements, reducing handoff risk between design, implementation, and managed-services support.
  • Reported project status, milestones, issues, risks, and deliverables to internal leadership, improving decision visibility into active customer work and enabling earlier escalation of delivery concerns.
Identity/accessCloud/infrastructureIdentity ManagementAi Systems Agent ArchitectureCybersecurity LeadershipSports Mlb Technology
Open full role

Detroit Country Day School | June 2013 – June 2014

Senior Systems Analyst, Helpdesk Lead

  • Refreshed Track-It! ITSM usage by defining ticket classification, escalation, and prioritization standards, creating clearer service expectations for a high-touch user community that included faculty, staff, students, parents, alumni, and guests.
  • Developed SCCM-based imaging and systems-management practices for approximately 2,500 workstations, showing transferable endpoint-platform discipline for club-scale environments with shared workstations, devices, and support demand.
  • Designed and deployed mobile laptop fleets across campuses with limited dedicated technology-center space, showing transferable device-fleet planning for venue-like environments where users need technology without facilities changes.
  • Coordinated EUC and classroom-technology vendor escalations, repairs, RMAs, and warranty service, protecting user-facing continuity while keeping hardware lifecycle issues visible to leadership.
  • Supported school-issued software adoption with account migration assistance, user training, and knowledge resources, reducing friction for faculty and staff adopting Office 365 and classroom solutions.
  • Advised academic and administrative stakeholders on technology needs and modernization options, connecting endpoint decisions to educational delivery, operational productivity, and user adoption constraints.
  • Collaborated with academic and administrative departments to identify technology needs, improving alignment between classroom support workflows, operational productivity, and educational delivery.
  • Managed student-information system improvements that strengthened data accessibility for staff and faculty, showing transferable governed-records discipline for club-scale systems where operational users depend on accurate administrative data.
Operations/service deliveryCybersecurity LeadershipSports Mlb TechnologyEntertainment Live Venue TechnologyProduct Engineering DesignEnterprise Cloud Architecture
Open full role

University of Michigan, Information & Technology Services | June 2011 – September 2012

IT Engineer

  • Led asset and configuration data work for the BMC Remedy to ServiceNow transition, defining import logic and data relationships so service teams retained the operational context needed for reliable support workflows.
  • Managed asset governance and lifecycle processes for more than 25,000 endpoints and peripherals serving over 100,000 daily users, giving leadership clearer visibility into assignment, use, location, and disposition at institutional scale.
  • Supported Configuration Management integration with Microsoft System Center and SAP Business Objects reporting, converting endpoint and asset data into governed business intelligence for operational technology decisions.
  • Onboarded critical university departments into a shared-services model for end-user systems administration, showing transferable support-model migration for high-visibility operational groups.
  • Helped plan touchless migration, application upgrade, workstation refresh, and support-model workflows for 25,000 users across more than 100 departments, reducing disruption during enterprise service consolidation.
  • Developed and delivered ITIL training and help-desk knowledge content that standardized incident, request, service-transition, and operational practices for technical support users adopting shared service workflows.
  • Maintained campus computing sites and laboratories across workstations, printers, network infrastructure, and physical environments, showing transferable venue-like technology operations at institutional scale.
  • Developed procurement, lifecycle-management, and disposition workflows for end-user assets, giving university IT a cleaner product-operations path from purchase through retirement.
Data/AIOperations/service deliveryAi Systems Agent ArchitectureSports Mlb TechnologyEntertainment Live Venue TechnologyProduct Engineering Design
Open full role

Battery Giant / Energy Products | January 2007 – December 2010

IT Manager

  • Directed infrastructure, security, networking, identity, remote-server, ERP, and POS operations for a retail franchise technology environment, giving branch offices and franchisees a standard operating foundation for growth instead of ad hoc local systems.
  • Designed and deployed standardized franchise technology kits, procurement processes, training resources, and escalation paths that helped expand the franchise platform from 2 stores to 11 in 18 months, with plans established for 30 additional stores in the following year.
  • Built a centralized product-information platform spanning 250,000 products and 3,000,000+ applications, creating transferable evidence for governed lookup, cross-reference, pricing, and inventory data that club-scale operations could depend on for decision support.
  • Implemented centralized ledger, inventory-control, and POS data patterns across QuickBooks, Microsoft Dynamics, and CounterPoint SQL, showing transferable governed-operations data discipline for multi-location club or venue technology environments.
  • Rescued all data and transactions after a vendor-inflicted total system failure, preserving business continuity and financial integrity with no business-operations impact.
  • Rebuilt disaster-recovery and network design practices for mission-critical systems, giving transferable continuity evidence for club or venue technology operations where service interruption would affect time-bound business workflows.
  • Established IT governance, security-awareness training, policy, and procedure standards for franchise technology users, reducing operational risk while giving franchisees clearer support expectations and repeatable compliance practices.
  • Managed IT staff, vendors, contractors, and affiliated service providers, aligning hiring, dismissal, procurement, and operational oversight with the franchise’s growth and support needs.
Identity/accessCybersecurityCloud/infrastructureOperations/service deliveryIdentity ManagementCybersecurity Leadership
Open full role

Detroit Country Day School | June 2005 – August 2006

Systems Analyst

  • Established the school's Active Directory foundation by helping consolidate six separate Kerberos realms into one AD forest, turning an early support/admin assignment into hands-on directory design and build experience.
  • Developed imaging and systems-management practices for approximately 2,500 workstations across four campuses, showing transferable endpoint administration discipline for club-scale technology environments with many shared devices and users.
  • Modernized legacy servers and workstations from Windows NT and Windows 98 SE to Windows Server 2003 and Windows XP, reducing operational risk while giving classrooms and administrative teams a more supportable platform.
  • Supported account and data migration into the new Active Directory environment, pairing technical rollout with training, knowledge resources, and getting-started seminars so students and faculty could adopt the change with less disruption.
  • Coordinated repairs, RMAs, warranty work, and vendor escalations for classroom and end-user technology, protecting daily operations when device or software issues threatened user-facing service continuity.
  • Researched and recommended emerging classroom technologies by connecting infrastructure choices to the academic user experience instead of treating support as a purely back-office function.
  • Led incident, request, and change-management practices for end-user systems during endpoint modernization, giving technical and nontechnical users a clearer path for support while shared technology platforms changed.
  • Developed service workflows and endpoint protocols for classroom technology, improving prioritization, escalation, and access-control practices for a high-touch academic user community.
Identity/accessData/AIIdentity ManagementCybersecurity LeadershipIdentity AccessCybersecurity Architecture
Open full role

Education

Education

The University of Michigan, Ann Arbor, MI

  • College of Literature, Science, and the Arts (LSA) | Biochemistry, Economics, and Data Science
  • School of Music, Theatre, and Dance (SMTD) | Design & Production, Stage Management, Lighting Design & Electrics, Sound Engineering, and Music Production

Detroit Country Day School, Beverly Hills, MI

  • High School Diploma | College Preparatory Curriculum

Skills

Selected skills

Skills are selected from shared JSON skill records referenced by the selected role evidence.

AI Systems, Safety & Applied LLM Engineering

Deterministic guardrails (Expert), immutable attribution (Expert), continuous red-team/blue-team exercises (Expert), adversarial safety-control testing (Expert), model evaluation frameworks (Expert), secure LLM deployment patterns (Expert), Azure AI Foundry (Expert), AI-assisted development guardrails (Expert), Model- and platform-agnostic XLM (LLM/SLM) orchestration (Advanced), MCP toolkits (Advanced), Ollama/local models (Advanced), hybrid multi-model routing (Advanced)

Product Design, Technical UX & Sports Decision Support

Stakeholder interviews (Expert), workflow mapping (Expert), information architecture (Expert), product requirements (Expert), cross-functional design reviews (Expert), technical-user experience (Expert), product strategy (Expert), design-to-production delivery (Expert), executive-ready tradeoff framing (Expert), design systems (Advanced), component systems (Advanced), baseball analytics (Advanced)

Soft Skills & Cross-Functional Practice

Executive communication (Expert), stakeholder alignment (Expert), technical mentoring (Expert), non-technical stakeholder training (Expert), project and program coordination (Expert), vendor evaluation (Expert), RFP demonstration leadership (Expert), proof-of-concept facilitation (Expert), change adoption (Advanced)

Azure Data, Analytics & AI Platforms

Azure Databricks (Expert), Databricks lakehouse architecture (Expert), data landing zones (Expert), governed analytics platforms (Expert), reusable reference architectures (Expert), workload modernization (Expert), production readiness (Expert), Cloud Adoption Framework (Expert), Azure Well-Architected Framework for analytics and AI workloads (Expert), Data engineering (Advanced), feature preparation (Advanced), lakehouse-oriented sports analytics (Advanced)

Identity, Access & Cryptography

Microsoft Entra ID / Azure AD (Expert), Entra ID Governance (Expert), entitlement management (Expert), Privileged Identity Management (PIM) (Expert), Just-in-Time access (Expert), Conditional Access (Expert), FIDO / MFA (Expert), workload identities (Expert), managed identities (Expert), service principals at scale (Expert), RBAC and least-privilege design (Expert), Just Enough Administration (JEA) (Expert)

Cybersecurity Architecture, Detection & Operations

Cybersecurity architecture (Expert), cloud security architecture (Expert), Zero Trust architecture (Expert), Microsoft Defender (Expert), Microsoft Purview (Expert), SIEM (Expert), SOAR (Expert), SASE (Expert), XDR and vulnerability management (Expert), endpoint protection (Expert), incident response (Expert), post-incident remediation (Expert)

Microsoft Purview, DLP & Information Protection

Microsoft Purview Data Loss Prevention across Microsoft 365 and endpoints (Expert), Teams DLP (Expert), sensitivity labels (Expert), auto-labeling (Expert), retention labels and policies (Expert), data classification (Expert), sensitive-data discovery and mapping (Expert), DLP policy authoring (Expert), AD RMS to Azure Information Protection (AIP) to Microsoft Information Protection (MIP) to Purview modernization (Expert)

Cloud, Network & Enterprise Infrastructure

Microsoft Azure (Expert), private cloud architecture (Expert), Azure Landing Zones (Expert), Azure Policy (Expert), Landing Zone Accelerator patterns (Expert), hybrid cloud architecture (Expert), Azure Well-Architected Framework (Expert), geo-resiliency (Expert), high-availability patterns (Expert), vendor-agnostic infrastructure schemas (Expert), Google Cloud Platform (GCP) (Advanced), Azure / GCP security and third-party-risk comparisons (Advanced)