Randy Malvoisin

Identity & Access Management Security Operations Cloud Infrastructure

SC-300 Certified · 5+ Years in IT Security

[ 01 // ABOUT ]

Securing the front door to the enterprise.

I'm an IT professional with 5+ years across security operations, network engineering, and identity infrastructure. My focus is Microsoft Entra ID (Azure AD) — deploying phishing-resistant MFA, managing user provisioning and deprovisioning, and enforcing least-privilege access at scale.

I'm a Microsoft Certified Identity and Access Administrator Associate (SC-300) with a track record of strengthening access controls, reducing audit findings, and automating identity workflows through scripting.

0 Years in IT & Security
0 End Users Supported
0 Security Incidents / Year
0 Active Certifications

CLEARANCE CARD

R. Malvoisin

Sr.IT Support Specialist

STATUSACTIVE
ACCESS LEVELADMIN
MFAPASSED

[ 02 // SKILLS ]

Toolset & core competencies.

MOD-01

Identity & Access

Microsoft Entra ID Active Directory SSO SAML OAuth 2.0 RBAC / ABAC Conditional Access Access Reviews Provisioning / Deprovisioning DUO MFA / FIDO2 PAM
MOD-02

Security & Monitoring

CrowdStrike Carbon Black EDR Microsoft Sentinel Elastic EDR Splunk Fortinet Cisco Meraki
MOD-03

Cloud Platforms

Microsoft Azure AWS Google Cloud Platform VMware
MOD-04

Scripting & Automation

PowerShell Python Bash HTML5 CSS JavaScript
MOD-05

Governance & Compliance

HIPAA ITIL 4 Audit Documentation & Reporting

[ 03 // EXPERIENCE ]

Highlights of experience.

APR 2025 — PRESENT ACTIVE

Senior IT Support Specialist

Threshold Rehabilitation Services — Reading, PA

  • Supervised IT support and identity administration, leading a team of 2 technicians supporting 300+ end users across on-premise and cloud environments.
  • Led migration of on-premise Active Directory to Microsoft Entra ID (Azure AD), centralizing identity management and enabling secure SSO for cloud applications.
  • Deployed FIDO2 phishing-resistant MFA organization-wide, reducing credential-based security incidents.
  • Directed a Windows 11 migration across 300+ devices ahead of Windows 10 end-of-life, maintaining endpoint compliance.
  • Designed and implemented a network topology redesign, improving segmentation and access control enforcement.
  • Developed identity and access documentation protocols for EHR and HIPAA-compliant systems, reducing compliance errors by 40%.
SEP 2022 — APR 2025

Senior Security Analyst

Netrix — Remote

  • Managed and resolved 6,000+ security incidents annually, including unauthorized access attempts, credential compromise, and account takeovers across 50+ client environments.
  • Administered identity and access controls using Microsoft Sentinel, CrowdStrike, Elastic EDR, and Carbon Black to monitor authentication activity and detect anomalous access.
  • Performed risk assessments on 100+ business applications and systems, identifying and mitigating high-risk findings.
  • Created and optimized 100+ threat detection rules and dashboards, reducing investigation times by 30%.
  • Developed and maintained 30+ security and access-control runbooks, cutting average resolution time by 25%.
JAN 2021 — JUN 2022

Security & Network Operations Engineer

Omega Systems — Reading, PA

  • Administered firewall policies, NAT rules, ACLs, and traffic filtering to enhance network security.
  • Supported enterprise infrastructure of 150+ switches, routers, and wireless access points across multiple sites.
  • Managed endpoint security protecting 750+ workstations and servers from malware and unauthorized access.
  • Investigated and resolved 100+ security and network incidents monthly, achieving 95% SLA compliance.
  • Managed Active Directory, Azure AD (Entra ID), group policies, and user access permissions.

Bachelor of Science, Information Technology

Western Governors University

[ 04 // CERTIFICATIONS ]

Verified credentials.

SC-300

Identity and Access Administrator Associate

AZ-104

Azure Administrator Associate

AWS-CP

AWS Certified Cloud Practitioner

CCNA

Cisco Certified Network Associate

ITIL 4

Foundation Certificate in IT Service Management

SEC+

CompTIA Security+

NET+

CompTIA Network+

A+

CompTIA A+

PROJ+

CompTIA Project+

[ 05 // PROJECTS ]

Case study.

PROJECT 01

On-Prem Active Directory → Azure AD Migration

Migrated on-premises Active Directory infrastructure to Azure Active Directory (Azure AD) for improved scalability, accessibility, and security.

167accounts migrated
100%sync validated
  • Conducted a thorough assessment of the existing on-premises Active Directory structure to identify users, groups, and permissions.
  • Determined requirements for the Azure AD implementation, considering user accounts, devices, applications, and security policies.
  • Created an Azure account and set up an Azure Virtual Network (VNet) for secure communication with Azure resources.
  • Established a VPN connection between on-premises infrastructure and Azure.
  • Accessed the Azure portal and created a new Azure AD instance.
  • Defined the initial directory structure, including users, groups, and role-based access controls.
  • Exported 167 user accounts, group memberships, and permissions from the on-premises Active Directory.
  • Imported the data into Azure AD using Azure AD Connect.
  • Validated that user and group information synchronized correctly.
  • Configured Azure AD Application Proxy to enable secure remote access to on-premises applications.
  • Integrated Azure AD with cloud-based applications and services for single sign-on (SSO).
  • Implemented Azure Multi-Factor Authentication (MFA) for an added layer of security.
  • Set up conditional access policies to control access based on user and device conditions.
Azure AD Azure AD Connect VPN / VNet Application Proxy SSO MFA Conditional Access

[ 06 // CONTACT ]

Establish a connection.

Open to identity, security, and infrastructure roles. Reach out below.

Address copied