Mohammed Minhaj
Electronic City
Bangalore – ****00
Mob: +91-809******* E-mail: *.******@****.**
****.******@****.**
CARRER OBJECTIVE:
Looking forward to a Microsoft Directory Services Consultant role where I can effectively utilize my expertise and experience to address technology risks, migration challenges, business changes, and opportunities in the organization to make successful contribution.
SUMMARY:
IT Administrative Professional with over 15 years of experience in implementation, migration, project, and BAU support for Confidential Core Infrastructure Solutions both on - premise AD and Azure AD.
Sound knowledge in installing, implementing and maintaining the active directory services, FSMO roles, DFS management, DNS and restoring active directory.
Having deep knowledge in active directory Architecture, ADFS, SSO and successfully migrated apps from ADFS to Azure AD. Implemented MFA globally A Result driven and an ambitious highly motivated energetic professional.
Good knowledge over Internal and External PKI Services, creating Certificate Templates and configure Certificate auto enrollment
Having good knowledge in installing KMS Services, importing the License keys.
Having deep knowledge in (AGPM) Advanced Group Policy Management.
Having onsite (Canada-Calgary) Active Directory Transition experience.
TECHNICAL SKILLS:
oActive Directory
oAGPM (Advanced Group Policy Management)
oPassword Policy Enforce (Anixis)
oDistributed File System (DFS)
oMicrosoft Key Management Service
oADMT (Active Directory Migration Tool)
oDHCP Services
oNetwork Policy Server (NPS) with Azure MFA extension
oQuest Active role Services (ARS,RMAD, Change Auditor,Enterprise Reporter)
oCertificate Services (Internal and External)
oAzure Active Directory
oAzure Enterprise Application
oAzure MFA (Multi Factor Authentication)
oAzure Conditional Access policy
oAzure Application Proxy
oAzure Active Directory Connect
oAzure SSPR ( self-service password reset)
oAzure AD Pass-through Authentication
oAzure Active Directory Domain Services
oAzure Active Directory B2B and B2C
oActive Directory Federation Services (ADFS)
oActive Directory Fine-grained password policies
Employment History
CGI Information Systems and Management Consultants (www.cgi.com)
Period: July 4, 2011 to Present. (Bangalore, India)
HP Global Soft (www.hp.com) –Sr. Technical Consultant
Period: April 7, 2010 to July 2011.
Wipro InfoTech (www.wipro.com) – Sr. Server Management Engineer
Period: August 2, 2007 to April 2010
SELLCRAFT SOFTECH (www.sellcraft.net). Server Engineer
Period: December 6, 2006 to August 2007.
EDUCATION QUALFICATION
B.Com from Lucknow University in 2002.
TECHNICAL QUALIFICATION
MCSA (Microsoft Certified Solutions Associate).
MCSE (Microsoft Certified Solutions Expert).
Azure Administrator Associate.
WORK EXPERIENCE:
Organization: CGI Information Systems and Management Consultants
Designation: Associate Consultant
Project: Suncor Energy System (Canada)
Period - Period: March 1, 2016 to Present
Role: Windows Active Directory and Azure AD Admin
Responsibilities:
Managing Microsoft Identity Management products (Active Directory, Active Directory Federation Services, and Azure, AD Connect, Office 365) serving as an enterprise-wide directory containing 100K Objects.
Managing Identity Access management of Azure Subscriptions, Azure AD, Azure AD Application Proxy, Azure AD Connect, Azure AD Pass Through Authentication
Creating and managing application integrations for identify and access management. Having Experience of Creating conditional Access policies Multifactor authentication (MFA), Resetting MFA and Resolving the MFA issues.
Creating and Managing single sign-on, enterprise directory architecture and design, directory schema, namespace, replication topology, resource provisioning, role-based access Control, user lifecycle
Successfully established and tested Azure AD Tenant for production. Provided technical direction to allow Active Directory on-Prem group to populate users
Experience in Syncing the Objects Users, Groups, Workstation from active directory to azure active directory.
Active Directory Federation Services (ADFS), SAML, web Single Sign-on (SSO), OAuth and related authentication technologies.
Assist in the scripting of AD user and contact object updates using PowerShell to facilitate synchronization to Azure AD. Having experience with Various Powershell module (Azure ad, Active Directory)
Experience Configuring and managing AzureAD Connect, AzureAD Connect health, Microsoft Azure Active Directory.
Provided/presented migration statistics, issues/resolution, and deliverables to leadership, detailing user, group, and physical device success percentages, tracking milestones for what had been migrated or was still in need of migration
Provide end to end support for the migration of all the Directory objects, from the source (Multiple Domains), to the target Single Domain.
Monitoring the Licenses for Azure Ad issues, resolving the Licenses Issue for Azure AD Users. Assigning the licenses Group based.
Familiarity in the following areas: single sign-on, enterprise directory architecture and design, directory schema, namespace, replication topology, resource provisioning, role-based access Control, user lifecycle.
Configured and resolved Azure AD Connect sync issues, various types of Data issues and Attribute issues.
Having Experience of Creating and managing the users, groups and dynamic groups in Azure AD.
Azure Active Directory creating and managing Application, SAML, web Single Sign-on (SSO), OAuth and related authentication technologies.
Configure and managing SSPR (self-service password reset) in Azure Active Directory.
Configure and managing PTA (Pass-through authentication) and troubleshoot PTA authentication issues.
Configure and managing Azure Active Directory Application Proxy.
Adding the Domain in Teams Federation, Domain External Collaboration and SharePoint.
Configure and managing Azure Active Directory Domain Services.
Extended on-Prem Active Directory to Azure Cloud (IaaS).
Manage & support a large client base Windows 2008 R2/2012 and 2016 in a multi domain/forest Active Directory of more than 3500 windows server on 24x7x365 basis in an enterprise infrastructure.
Primary responsibility for the Active Directory Administration to provide strategic and tactical direction for the Active Directory Services, Identity and Access Management, Roles Based Access Control and Segregation of Duties.
Worked on Active Directory (AD) Domain Consolidation. Service delivery of the Azure Active Directory and the Identity Management team within Microsoft cloud platform (O365 Identity, Azure etc.) Designed and implemented a new ROLE BASED admin mode l with deployment of Quest Roles.
Configure and managing Fine-grained password policies.
Creating Organizational Units (OU’s) and setting up Group Policy Objects (GPO) through AGPM (Advanced Group Policy Management).
Created Forests and Domains and raised functional levels. Created trust relationships. Managed, created, deleted Local groups, Global groups, and Universal groups. Verified and resolved Group Policy problems; Imported and exported GPO settings.
Strong hands-on administration experience on Windows 2012 server - Forest, Domain trust, AD, DFS, DNS, WINS, DHCP, Group Policy, Distribution lists.
Expert level knowledge at Active Directory LDAP service, Certificate services (PKI), AD Site Topology - all under a multi-site multi-domain Windows 2012, 2016 environment.
Expertise in Active Directory Design and support (GPOs, AD Schema, OUs, LDAP, Sites, Replication, etc.)
Creating, Testing and implementing GPO's in QA, Dev and Production Environment.
Reviewed the necessary implementation\migration run book and recommended optimizing the FSMO roles, configuring time services, configuring GC's, setting up Quest Recovery Manager, optimizing event logs.
Configure and managing NPS Server with Azure MFA extending.
Managing, installing and troubleshooting Microsoft windows active directory, DNS, DHCP services on windows server 2008, 2012 and 2016 platforms.
Ticket queue maintenance, execution of change controls, followed the SOP’s and resolving the Issues.
Managing and maintaining services to client as per agreed contract and SLA's are achieved
Reporting daily operational issues in daily review meetings with account management.
Reporting outage incidents and ensuring RCA's are provided to client. Keep track of RCA records towards timely completion from team
Good command over ticketing tools such as Remedy, Service now.
Organization: CGI Information Systems and Management Consultants
Designation: Lead Analyst
Project: Foresters (Canada), Rexel (US & Canada), RSA (Canada),
Purolator (Canada), MATW (US), KU (US)
Period - Period: 4 July, 2011 to February 2016
Role: Windows Active Directory and Server Administrator
Administration and troubleshooting of entire company active directory multi-domain infrastructure.
Administration and troubleshooting ADFS 3.0, PKI, ADRMS,DFS,LDAP, AD LADP, Active Directory, ISA, IIS, Cluster, Windows 2003, 2008, 2012.
Managing critical changes in the AD such as OU, Group, Group Policy, Site and Subnet with CAB meeting approval.
Responsible for DHCP scope and DNS record addition / deletion with AD-Integrated zone.
Centralized Active directory domain and forest level back and restore using Quest software
Managing end to end windows server and Active Directory related request / issues.
Basic Powershell administration for Active Directory related request
Managing and maintaining HP servers using SMH page and logging call with HP to fix the hardware related issue
Handling projects like Migrating windows 2003 DC to windows 2008 DC, AD Site creation, DC demotion and promotion, Quest software migration and supporting ADFS migration
Escalated issue, Root Cause Analysis (RCA) and handling Projects
Project experience:
Domain Controller migration from Windows 2003 R2 to Windows 2008 R2.
Setting up new Pre-Production Domain as replica of Production Domain
Configured ADFS with relying party trust using SAML authentication protocol
Supporting migrating server from native environment to Cloud environment
Organization: HP Global Soft, Bangalore
Designation: Technical Consultant
Project: Procter & Gamble
Period - Period: April 7, 2010 to July 2011
Role: Windows Active Directory and Server Administrator
We manage 4000 ++ Servers on Windows 2000/2003 Platform for P&G spanned across 2 Datacenters and Remote Sites in 3 Regions EMEA, North America and Asia Pacific from Offshore with Team strength of 25 SA’s.
MY CONTRIBUTION:
Installation and configuration Active Directory, Group policy and Resultant set of Policy.
Installation configuration of DNS, DHCP, Active Directory site & Services etc.
Installation and maintenance of Windows Servers NT, 2000, Window 2003 and 2008 Server. Backup & restoration of Active Directory.
Perform AD defragmentation, size & transfer the FSMO roles in case of any issue or Maintenance Activity.
Server OS and IIS Harding, setting up performance counter and providing reports.
Configuration / Tuning memory, increasing the page files size as per owner demand.
Configuration Raid level 0, 1, 5 and 1+0 on IBM, DELL, Compaq and HP servers.
Giving advice to the owners to make server performance and application performance better.
Any types of troubleshooting in windows 2003, 2000 and NT Server.
Attend the meeting with customers and understand there problems and resolved there issue.
Installation, configuration and troubleshooting of Symantec antivirus (10.0.x) across country. Working on SEP11.
Giving support to L1 & L2 by mails and via phone.
Responsible for the daily operation, monitoring, troubleshooting, and maintenance of the Servers.
Installation of WINS, DNS, DHCP, RAS services in a multi-subnet environment.
Installation and Implementation of Terminal Services on Windows 2003 Server and Configuration of thin client.
Updating of Windows 2000 Server, Software update services, critical update etc.
For Critical Server issue, coordinating with Microsoft and resolve the problems.
Configuration teaming, NLB and server clustering etc. in Windows 2003.
Installation & configuration Windows 2008 DC, RODC, NAP etc.
Backup and restore of system state, Information stores and drives through NetBackup utility.
Server memory dump Debug & Analysis the Root Cause.
Configuration & Management VM ESX 4.0, knowledge about P2V, VMotion, DRS and HA.
Installing & upgrading Firmware, PSP, and configuration of ILO etc.
Working on HP Call Log toll (HP Service Desk & Service Manager)
Organization: Wipro InfoTech (www.wipro.com)
Designation: Server Engineer
Project: HDFC BANK LTD (Mumbai)
Period - Period: August 2, 2007 to April 2010
Role: Windows Active Directory and Server Administrator
Maintaining across over India Servers and giving remotely 24/7 support, and make all the server live.
Installation and configuration Active Directory, Group policy and Resultant set of Policy. Installation configuration of DNS, DHCP, Active Directory site & Services etc.
Installation and maintenance of Windows Servers NT, 2000, Window 2003 and 2008 server. Backup & restoration of Active Directory.
Perform AD defragmentation, size & transfer the FSMO roles in case of any issue or maintenance Activity.
Server OS and IIS Harding, setting up performance counter and providing reports.
Configuration / Tuning memory, increasing the page files size as per owner demand.
Configuration Raid level 0, 1, 5 and 1+0 on IBM, DELL, Compaq and HP servers.
Giving advice to the owners to make server performance and application performance better.
Any types of troubleshooting in windows 2003, 2000 and NT Server.
Attend the meeting with customers and understand there problems and resolved there issue.
Installation, configuration and troubleshooting of Symantec antivirus (10.0.x) across country. Working on SEP11.
Giving support to Helpdesk Engineers by mails and via phone.
Responsible for the daily operation, monitoring, troubleshooting, and maintenance of the Servers.
Installation of WINS, DNS, DHCP, RAS services in a multi-subnet environment.
Installation and Implementation of Terminal Services on Windows 2003 Server and Configuration of thin client.
Updating of Windows 2000 Server, Software update services, critical update etc.
For Critical Server issue, coordinating with Microsoft and resolve the problems.
Configuration teaming, NLB and server clustering etc. in Windows 2003.
Installation & configuration Windows 2008 DC, RODC, NAP etc.
Backup and restore of system state, Information stores and drives through NetBackup utility.
Server memory dump Debug & Analysis the Root Cause.
Configuration & Management VM ESX 4.0, knowledge about P2V, VMotion, DRS and HA.
Organization: SELLCRAFT SOFTECH (www.sellcraft.net)
Client: Tata Consultancy Services (Mumbai)
Designation: Server Engineer
Project: Amarchand Mangaldas Law Firm
Period - Period: December 6, 2006 to August 2007
Role: Windows Active Directory and Messaging Administrator
Installation and maintenance of Windows Servers 2003 (Enterprise Edition).
Installation and configuration Active Directory, Group policy and Resultant set of Policy.
Backup and restore of system state, Information stores and drives through NetBackup utility.
Installation, configuration, monitoring and troubleshooting of 2003 Enterprise Edition.
Configurations OWA, routing group, storage group, Recovery Storage group Query based distribution group exmerge utility for importing and exporting data etc. Configuration of Microsoft Outlook client, and taking the backup and restoring Exchange server.
Configuration and maintenance IMSS (InterScan Messaging Security Suit ver. 5.5).
Installation and configuration of VMware Workstation ver.5.5.1.
Good knowledge over level of Raid 1, 0, 5.
Configuration and maintenance Active/Passive Clustering.
Configuration IBM Director for any kinds of system and network related problem alerts.
Responsible for the daily operation, monitoring, troubleshooting, and maintenance of the Servers and network equipment’s.
Installation, configuration and maintenance of Outlook clients and providing support to Desktop admin.
Installation and Implementation of Terminal Services on Windows 2003 Server and Configuration of thin client.
Installation and configuration Antivirus server (Trend micro) and their clients
Configuration and monitoring of Raid level -0, 1 and 5.
Installation of WINS, DNS, DHCP, RAS services in a multi-subnet environment.
Installation and maintenance of Database Servers, Web servers, Printer servers and other application servers
PERSONAL INFORMATION
Father’s Name: Mr. Shujat Ali
Date of Birth: 6 November 1981
Gender: Male
Languages Known: English, Hindi
Marital Status: Married
Nationality: Indian
Place
Date (Mohammed Minhaj)