Summary
Overview
Work History
Education
Skills
Languages
Timeline
Generic
Yadiel Perez Ricart

Yadiel Perez Ricart

Davie,ANT

Summary

Accomplished Security Engineer with extensive expertise in identity management and cloud security across Azure, AWS, and GCP platforms. Proficient in configuring app registrations, SSO/OAuth setups, and robust access provisioning. Skilled in automation using PowerShell and Power Automate, and experienced in managing CI/CD pipelines exclusively through Azure DevOps. Proficient with Postman for managing API connectors, enhancing system integrations. Adept at leveraging O365 integrations and Power BI for advanced data analytics and reporting.

Overview

7
7
years of professional experience

Work History

Security Engineer

Pnc
Pittsburgh
08.2022 - Current
  • Worked Azure PIM roles (Azure Active Directory), assigning roles to users, groups, Managed Identities, Azure roles, and RBAC roles.
  • Assigned roles to policies, big project, PNC with identity governance added user to policy, was attached to a group, and applied to a policy.
  • B2C SSO Gconnector for gcp federating to azure
  • B2C worked as a consultant, passing SSO, SCIM, and on-demand provisioning certificate information to third-party vendors. Making sure the URL identifiers were set up and the app connected with the cloud.
  • B2C met with the developers' team as a consultant, making sure they used Python. Java code was accurate with the API call of the OAuth 2.0 application on Azure. helped modify the code adding in infrastructure calls to the servers and including certificate information from azure. Include calls to the graph or appropriate API permissions to integrate the app with Azure OAuth.
  • Verified JWT tokens to make sure the roles were passed on the OAuth 2.0 app.
  • Used Postman to make. Graph API calls to lock down OAuth 2.0 apps via access policies, via code.
  • Used Postman tool to modify the QA or prod tenant via Graph get, post, put, patch, update, and delete with JSON code.
  • Created reports via PowerShell, Power Query, Excel, and Power BI.
  • fault protection - created a automated mfa application linked to ticketing system to read mfa inqueries and reset them automatically via helpdesk input
  • Create automated apps via Power Automate using Graph and JSON tools.
  • worked with servicenow and jira

Information Security Engineer

Highmark health
Pittsburgh
11.2021 - 05.2022
  • Worked Azure PIM roles (Azure Active Directory/Entra ID), assigning roles to users, groups, Managed Identities, Azure roles, and RBAC roles to resource groups and subscriptions.
  • Managed On-Prem AD, assigning accounts, Groups access, and setting up multi-domain connections.
  • Fraud protection: created conditional access policies for break glass accounts for disaster recovery.
  • Fraud protection - troubleshoot MFA issues.
  • Fraud protection - working toward limiting high-risk accounts via segregating role privileges to users.
  • Fraud protection - Troubleshoot reports using Splunk for identifying conflicts.
  • B2C - SSO and SCIM on-demand provisioning.
  • B2C - Set up reply URLs and users passing certificates to vendors, working as a consultant to vendors.
  • Worked with Azure AD Connect service upgrades.
  • Managed duplicate, faulty accounts, identifying AAD-sync issues.
  • Worked with agile scrum ticketing system

Jr. Cyber Security Engineer

City of Ny
New York
07.2021 - 11.2021
  • Worked Azure PIM roles (Azure Active Directory), assigning roles to users, groups, Managed Identities, Azure roles, and RBAC roles to resource groups and subscriptions to users, groups, Managed Identities.
  • Azure Active Directory created a mass bulk add of users, groups, distribution groups via PowerShell, Azure CLI, and GUI to AAD/Entra ID.
  • Fraud protection - Modified MFA sequences.
  • fraud protection - produce conditional access policies for
  • the azure plateform
  • Fix Azure Connect sync errors.
  • manage on-prem environment active directory

Sysops Engineer

Aecom
New York
02.2020 - 06.2021
  • Worked Azure PIM roles (Azure Active Directory), assigning roles to users, groups, Managed Identities, Azure roles, and RBAC roles to subscription, resource groups to users, groups, managed identities.
  • B2C worked as a consultant to developers for OAuth apps.
  • B2C - Verifying, adding API permissions, certificate information.
  • B2C - Verifying JWT tokens, making sure the roles were passed on the app.
  • B2C - Used Postman tool to verify OAuth app, need to be locked to a policy.
  • B2C - Used external, exposed app from Azure to AWS to get the website from AWS and run on Azure platform.
  • Managed Azure and AWS.
  • Used Graph API to get, post, patch, update, and delete to modify tenant via JSON code.
  • .NET - worked with developers at AECOM to make sure SharePoint's recycle bin was accessible via C# code, and the app was then coded. To run, copy files, then delete duplicates encased in a .NET executable file.
  • Created an automated O365 SharePoint onboarding app from PowerApps, Power Automate. The PowerApp used SharePoint list as a database and linked Power Automate buttons from a form to automate onboarding.
  • Managed O365 preview, Exchange mailboxes.

IT Associate

City of Ny
New York
06.2019 - 02.2020
  • Configured and installed Cisco desk-phones assigning number range from pool through mac address of device Voip phones.
  • Troubleshot problems related to outages network infrastructure and performance.
  • Managed desktops in Windows domain with several servers for multiple applications and deployed firewalls to
  • connect and protect users.
  • Trained team members and users in newly implemented and procedures to enhance business productivity.
  • Imaged OS and software deployments throughout system used clonezilla third party freeware to clone images for
  • windows 10 migrations on tablets/desktop pc/s
  • Installed wiring, cabling and devices to establish, repair and improve network operations.
  • Troubleshot and resolved issues with peripheral devices such as printers and copiers for end users.
  • Created user accounts using AD
  • Work with cisco catalist 4900 switches/ 3900 routers monitor connectivity configure new devices

Jr. Systems Engineer

Epiq
New York
11.2018 - 02.2019
  • Imaged pcs for distribution of new projects Managed thin client's platform applying custom template Created mailboxes with exchange and 2016 and distribution groups
  • Rewired and moved faulty connections network/desktop.
  • Created batch script used heavily to auto map network drives to desktop as shortcut per specific user account.
  • Ran excel template power-shell script to auto add users to active directory
  • Modified custom power-shell script to auto add users to exchange server
  • Modified and ran power-shell script for archiving exchange mailboxes

Jr. Network Engineer

Lacoste
New York
06.2018 - 11.2018
  • Troubleshoot network connection problems remotely across the country/canada
  • Configure live cisco 890 series routers remotely for changes in Infrastructure Configure new Cisco 890 routers for

deployment using template

  • Add external Verizon cradle point gateway for backup fail-over connection
  • Monitor networks using solar winds software
  • Setup and managed cisco VOIP phones and voicemail for corporate employee
  • Supported Mac desktops and laptops printer/troubleshooting issues Resolved windows 7/10 issues
  • Managed exchange sever 2010
  • Managed VMware virtual production servers
  • Managed windows server 2008/2016

Network Engineer

Healthsun
Miami
06.2017 - 07.2018
  • Created script to auto create outlook profiles per user account to be auto configured to the new exchange server
  • Managed Citrix terminal virtual servers
  • Monitor networks using solar winds software
  • Managed Active directory windows server 20012R2
  • Patch panel on cisco switch's
  • Troubleshoot thin client's using centralized manager windows 7/server 2012 1000+ users inperson remote sites and or phone remotely
  • Imaged systems using WDS
  • Managed VOIP cisco Phones
  • Configured port security on cisco catalyst switch Configured and managed cisco 2900 series routers
  • Exchange enterprise 2016 manage user accounts
  • Troubleshoot/install network printers/add printers central divers to print server.

Education

Bachelor of Science - Information Technology

Florida International University
Miami
08-2014

Associate of Arts - Business Administration

Broward College
Davie
04-2008

Skills

➢ Cloud Projects worked during tenure

➢ Azure

  • Administer Azure active directory entra id
  • via powershell, graph api, gui, azure cli

B2C Create and manage Enterprise App registrations

Fraud protection MFA management, conditional access policies, sciem logging

Create workflows within power automate connecting o365

  • Net created app executable for sharepoint resource

Implemented and managed virtual networks with assigned to azure VM’s

Set public DNS zones

Configure load balancer

Create scripts with PowerShell automating azure active directory groups and app registrations

➢ AWS Ec2, route 53, cloud trail, s3, iam

  • VPC (created an infrastructure with public and private subnets, routed the private subnet via Nat gateway created and internal router to route servers (data and web(public))

➢ Manage o365 platform

  • Manage exchange server

Administer SharePoint Program Websites

Design and tie-in custom PowerApps

Build custom workflow scripts through power automate

➢ Cisco Networking:

  • Dynamic routing: WAN, STATIC, EIGRP, RIP-V2, OSPF,
  • Segmenting networks: DHCP, DNS, VTP, VLAN's,
  • Securing network: ACL’s, port security, site-to-site
  • Create conditional policy for external network MFA enforcement
  • Create app registrations on azure configured tied to code on S3 on Aws
  • Create PowerShell script automating app registrations on azure with AAd group manipulation
  • Created timesheet power-app from scratch integrated Sharepoint to use for org to keep track to track of time vested
  • Created 7 yr retention policy for client on Sharepoint(whole site/labels) via admin center
  • Created power-automate flow/PowerShell script to autosync security groups to o365 groups on Aad for use on SharePoint onboarding app assignation
  • Fix multi Azure connect sync errors for user access
  • Upgrade Azure AD connect
  • Audited on-prem system using change Auditor pull change reports for manager upgrade project/review logs for azure
  • Migrate using auto PowerShell script All files from olderSharePoint 2013 site to SharePoint onlineMicrosoft Azure Architecture
  • Manage from PowerShell and Azure Portal
  • Administer Azure Directory Active users and well maintain groups
  • Create and manage Enterprise App registrations
  • Create workflows within power automate connecting o365
  • Used Azure Active directory connect to migrate users from on premises
  • Implemented and managed virtual networks with assigned to azure VM’s
  • Set public dbz zones
  • Configure load balacer
  • Create scripts with powershell

Languages

English
Proficient
C2
Spanish
Proficient
C2
French
Elementary
A2

Timeline

Security Engineer

Pnc
08.2022 - Current

Information Security Engineer

Highmark health
11.2021 - 05.2022

Jr. Cyber Security Engineer

City of Ny
07.2021 - 11.2021

Sysops Engineer

Aecom
02.2020 - 06.2021

IT Associate

City of Ny
06.2019 - 02.2020

Jr. Systems Engineer

Epiq
11.2018 - 02.2019

Jr. Network Engineer

Lacoste
06.2018 - 11.2018

Network Engineer

Healthsun
06.2017 - 07.2018

Bachelor of Science - Information Technology

Florida International University

Associate of Arts - Business Administration

Broward College
Yadiel Perez Ricart