Enterprise Active Directory Automation
PowerShell-based provisioning, user lifecycle management, and automated group membership auditing for large-scale AD environments.
I help organizations design, stabilize, and modernize enterprise infrastructure across networking, Windows Server, Active Directory, and automation—with a focus on operational resilience and measurable outcomes.
A track record of delivering enterprise infrastructure at scale across European institutions.
High-impact outcomes across enterprise infrastructure, automation, and operational excellence.
Supported enterprise infrastructure across three EU institutions, including the European External Action Service (EEAS) and the European Parliament, ensuring 24/7 operational continuity for critical diplomatic and legislative functions.
Designed and implemented PowerShell automation for administrative tasks, reducing manual user provisioning and group management overhead by over 95% in large-scale Active Directory environments.
Developed Python tools for operational reporting and log analysis, enabling proactive anomaly detection and performance monitoring across hundreds of Windows and Linux servers.
Built a growing technical knowledge base with over 12 published articles covering networking, Windows, Linux, automation, and troubleshooting—establishing a consistent record of engineering documentation and knowledge sharing.
Managed enterprise network and server environments in international operational contexts, spanning multiple countries and time zones, with a consistent focus on high availability, security segmentation, and disaster recovery readiness.
Practical solutions built to solve real infrastructure challenges.
PowerShell-based provisioning, user lifecycle management, and automated group membership auditing for large-scale AD environments.
Python tool that aggregates and correlates security and system logs from hundreds of servers to identify patterns and anomalies.
Custom script to parse IIS logs, extract key metrics (response times, error rates), and generate daily operational dashboards.
A modular library of reusable PowerShell functions for network diagnostics, server health checks, and automated remediation tasks.
Controlled lab environment for enumerating SMTP capabilities and validating mail-service security configurations using Nmap and custom scripts.
Python application that automatically discovers network topology (CDP/LLDP) and generates structured documentation and diagrams.
Real-world challenges, engineered solutions, and measurable outcomes across enterprise environments. Problem → Solution → Result.
Problem: Multi-site latency and inconsistent policy enforcement across 10+ geographically dispersed delegations.
Solution: Centralized Active Directory with optimized replication, standardized GPOs, and automated site-link monitoring via PowerShell.
Outcome: Achieved 99.9% policy consistency across all sites. Reduced replication-related incidents by 85%.
Problem: Manual user provisioning and de-provisioning took over 2 hours per request, with frequent human errors in group assignments.
Solution: End-to-end PowerShell automation orchestrating AD, Exchange, and file-server permissions with validation logic and approval workflows.
Outcome: Provisioning reduced to 5 minutes. Zero manual errors. Audit compliance improved to 100%.
Problem: Security and system logs from 200+ servers generated terabytes of data, making threat detection and root-cause analysis nearly impossible.
Solution: Custom Python-based log aggregator with anomaly detection, correlation rules, and a lightweight web dashboard for real-time monitoring.
Outcome: Reduced Mean Time to Detect (MTTD) by 70%. Enabled proactive remediation of critical issues before user impact.
Problem: Production mail-flow changes carried high risk, as there was no isolated environment to validate SMTP, EHLO, and certificate configurations.
Solution: Built a fully isolated lab replicating production PKI, DNS, and SMTP topology using virtualized infrastructure and custom Nmap automation.
Outcome: All mail changes now validated in lab first. Production incidents related to mail flow dropped by 90%.
Problem: Network topology diagrams were manually drawn and quickly became outdated, causing delays in incident response and capacity planning.
Solution: Python scripts leveraging CDP, LLDP, and SNMP to auto-discover devices and generate structured, version-controlled documentation.
Outcome: Live, accurate network maps accessible to the entire team. Incident resolution time improved by 40%.
Problem: Infrastructure engineers spent 15+ hours per week on repetitive maintenance tasks across hundreds of Windows servers.
Solution: Developed a custom PowerShell module with reusable functions for health checks, automated patching, and batch configuration updates.
Outcome: Reduced routine maintenance time by 80%. Freed up senior engineers for strategic project work.
Practical engineering, structured troubleshooting and clear operational ownership.
I work across the full infrastructure lifecycle: design, implementation, incident response, stabilization, optimization and documentation.
My operating model is simple: scope, logs, restore, stabilize, investigate, communicate, implement and document.
I build scripts and operational tools that convert repetitive tasks into consistent, auditable workflows.
I focus on practical infrastructure controls: segmentation, access discipline, reliable backups, visibility and documented recovery paths.
Service areas are scoped around business outcomes rather than fixed generic packages.
Core platforms and tools used across enterprise operations, automation and infrastructure assurance.
Practical guidance focused on diagnosis, validation and repeatable engineering methods.
Enumerate SMTP capabilities and validate exposed mail-service features in a controlled lab.
A structured approach to diagnosing domain authentication failures caused by DNS issues.
Useful commands for connectivity, DNS, remote administration, event logs and operational checks.
For consulting, troubleshooting, project work, training or senior infrastructure opportunities.