About

Senior IAM Engineer specialising in identity architecture, protocol engineering, and enterprise access governance.

Contact & Links

Expertise

Identity Protocols

  • SCIM v2 (RFC 7644) — provider and connector
  • SAML 2.0 — SP and IdP configuration, troubleshooting
  • OIDC / OAuth 2.0 — flows, scopes, PKCE, client credentials
  • FIDO2 / WebAuthn — MFA integration

Architecture

  • Multi-tenant SaaS IAM platform design
  • Zero Trust policy engine design
  • Non-human identity governance frameworks
  • API security — token handling, audit, rate limiting

Governance

  • IAM control mapping (NIST, SOC 2, ISO 27001)
  • Access certification and review campaigns
  • Separation of duties and SoD matrices
  • Audit logging design and SIEM integration

Operations

  • Prometheus metrics, health/readiness endpoints
  • SSO federation troubleshooting and MTTR reduction
  • Structured JSON audit event design
  • Docker container deployment and operations

About This Portfolio

This portfolio is evidence-first — every project includes architecture, design decisions, flows, and controls. Screenshots, repository links, and live demos are in progress and will be added as projects reach deployment milestones. The roadmap section tracks what is pending and what comes next.