About
Senior IAM Engineer specialising in identity architecture, protocol engineering, and enterprise access governance.
Expertise
Identity Protocols
- SCIM v2 (RFC 7644) — provider and connector
- SAML 2.0 — SP and IdP configuration, troubleshooting
- OIDC / OAuth 2.0 — flows, scopes, PKCE, client credentials
- FIDO2 / WebAuthn — MFA integration
Architecture
- Multi-tenant SaaS IAM platform design
- Zero Trust policy engine design
- Non-human identity governance frameworks
- API security — token handling, audit, rate limiting
Governance
- IAM control mapping (NIST, SOC 2, ISO 27001)
- Access certification and review campaigns
- Separation of duties and SoD matrices
- Audit logging design and SIEM integration
Operations
- Prometheus metrics, health/readiness endpoints
- SSO federation troubleshooting and MTTR reduction
- Structured JSON audit event design
- Docker container deployment and operations
About This Portfolio
This portfolio is evidence-first — every project includes architecture, design decisions, flows, and controls. Screenshots, repository links, and live demos are in progress and will be added as projects reach deployment milestones. The roadmap section tracks what is pending and what comes next.