PROFESSIONAL PROFILE
Self-taught, results-focused IT Systems & Operations Engineer with a proven history of driving automation, infrastructure optimization, and seamless service delivery across diverse environments. Deeply skilled in Microsoft 365 and Windows ecosystems, with hands-on expertise in scripting, systems monitoring, and end-user support. Trusted collaborator who bridges technical teams and business units to enhance performance, security, and user experience. Known for clear communication across all levels of technical fluency and a relentless drive to improve operations through innovation. TECHNICAL SKILLS
Expertise: Active Directory BitLocker DHCP DNS Encryption Endpoint Management & Protection End-User Support Exchange & Exchange Online Management Group Policy Configuration & Creation Hyper-V PowerShell Scripting
Windows: Desktop OS 10, 11 & Server OS 2016, 2019 & 2022 M365: Azure Conditional Access Data Loss Prevention Defender for Endpoints Entra ID Entra ID Connect Identity
& Access Management Intune Mobile Device Management Multifactor Authentication OneDrive Purview Retention Policies Sensitivity Labels SharePoint & SharePoint Administration Teams & Teams Administration Tools: Anti-Virus Software AWS Backup Solutions EMC Storage Imaging & Installation of Windows OS MAC OS Multifactor Authentication Private & Public Cloud Based Computing Script-Based Automation System Monitoring Troubleshooting vCenter & VMWare
POWERSHELL SCRIPTING
Automation:
Automated daily export of active user data to CSV, securely transferring output to an external SFTP server—strengthening audit readiness and improving operational efficiency.
Developed a monthly credential rotation script for Task Scheduler to update service account passwords used in M365 data pulls— ensured compliance and enhanced security posture.
Created a script to collect journal archive emails daily, segmented data into CSVs with 10,000 rows, and automatically delivered them to external SFTP endpoints—streamlined external data handoffs and ensured data integrity.
Designed and scheduled a script to monitor a directory every 15 minutes for specific file types, archive matching files, forward them to an SFTP server, and clean up originals—enabled hands-free, real-time data workflows. Development:
Streamlined laptop configuration and hardening for newly imaged machines, accelerating deployment cycles and enforcing security protocols.
Created scripts to audit mailbox data for spam protection and approved listing validation, enhancing email hygiene and reducing support cases.
Designed a solution to merge weekly door access logs from two offices, producing a unified Excel file with unique user data for physical security tracking.
Enabled accounting staff to trigger scripts via Task Scheduler and a Visual Studio interface, automating repetitive adjustments to text values—cutting down manual intervention.
Cleaned six months of email traffic data from internal systems using PowerShell and Excel parsing, recalculated daily, weekly, and monthly message volume metrics—delivered precise reporting for operational analysis.
Developed an adaptive mailbox monitoring script that segmented collected emails by timeframe, generated separate files for weekend traffic, and adjusted for Daylight Saving Time, ensuring consistent compliance-ready snapshots.
Engineered a complete user lifecycle automation script tied to a redesigned access request form—handling account provisioning, licensing checks, external partner notifications, group memberships, and deactivation workflows with zero human input. Michael A. Schmitt
IT Systems & Operations Engineer
****.*********@*******.***
/in/michaelandrewschmitt/
Glenolden, PA 19036
` Schmitt - 2
PROFESSIONAL EXPERIENCE
Axcelus Financial Life Insurance Philadelphia, PA
Systems Engineer August 2024 – February 2025
Brought on during a transitional phase to stabilize IT operations and complete high-priority initiatives left unfinished by a previous engineer. Played a key role in maintaining SLA adherence, supporting backup infrastructure, and collaborating with HR to streamline account management processes. Ensured continuity across VMware clusters and cloud-integrated systems while preparing the environment for a Managed Service Provider handoff.
• Scripted CloudShell automation to replicate M365 group memberships, accelerating user provisioning and eliminating manual errors.
• Resolved persistent backup failures across Avamar and Druva platforms, improving reliability and reducing incident recurrence by 40%.
• Standardized Microsoft Bookings deployment, aligning usage with company policy and improving scheduling transparency across departments.
InstaMed – a J.P. Morgan Company Philadelphia, PA
IT Operations Engineer August 2018 – May 2024
As an IT Operations Engineer at InstaMed, I played a central role in sustaining enterprise-grade reliability across seven environments and four domains. Working within a lean six-person team, I partnered with AppOps and DevOps to uphold five-nines uptime and ensure seamless service delivery. My responsibilities spanned infrastructure monitoring, patching, and virtualization, while also contributing to compliance, onboarding, and remote enablement initiatives that supported the company’s transition to a fully remote workforce.
Administration:
• Coordinated cross-functional documentation updates for internal policies, improving operational transparency.
• Managed access control across multiple systems, ensuring compliance with HIPAA, PCI, and internal audit standards.
• Streamlined onboarding workflows for new hires, change requests for existing users, and delete requests for exiting users, reducing account provisioning time by 40% and account maintenance time by over 60%.
Change Management:
• Developed and maintained change logs and impact assessments for all production deployments.
• Led change control efforts for system upgrades, minimizing downtime and ensuring seamless stakeholder communication.
• Facilitated weekly changes working with Application Operations, Compliance, Security, Software Development, and SQL team members, when needed, to ensure successful completion and minimize potential downtime.
Leadership & Projects:
• Mentored junior team members on administrative best practices and systems navigation, improving team efficiency.
• Managed vendor relationships for third-party tools, negotiating renewals and coordinating implementation timelines.
• Spearheaded a cross-functional initiative to consolidate internal documentation, resulting in a 20% reduction in redundant content.
M365 Administration:
• Automated license provisioning and mailbox creation using PowerShell, reducing manual workload by 60%.
• Implemented conditional access policies and MFA enforcement, enhancing security posture across the organization.
• Administered Microsoft 365 tenant settings, including Exchange, SharePoint, and Teams configurations for 500+ users.
Process Improvement:
• Collaborated with engineering to automate audit reporting, saving 10+ hours per month in manual data collection.
• Created standardized templates and SOPs for recurring administrative tasks, improving consistency and reducing errors.
• Identified and resolved bottlenecks in user provisioning workflows, cutting turnaround time from 3 days to under 24 hours.
Security:
• Partnered with InfoSec to implement phishing simulations and track user engagement metrics.
• Managed privileged access groups and monitored usage patterns to detect anomalies and enforce least privilege.
• Supported quarterly access reviews and audit responses, ensuring alignment with SOC 2 and HITRUST requirements.
` Schmitt - 3
Systems Monitoring:
• Conducted weekly reviews of system logs and performance metrics to identify trends and potential risks.
• Documented incident response workflows and coordinated with support teams to ensure timely resolution.
• Monitored system health dashboards and alerts across multiple platforms, escalating issues to engineering as needed.
Training & Education:
• Delivered live training sessions on M365 features and security best practices to cross-functional teams.
• Maintained a centralized knowledge base for administrative procedures, increasing self-service adoption.
• Created internal guides and training materials for new tools and processes, improving onboarding experience.
User Support:
• Resolved 100+ user access and configuration requests monthly with a 98% satisfaction rating.
• Acted as liaison between users and engineering for complex troubleshooting, reducing ticket resolution time.
• Provided Tier 1–2 support for M365, VPN, and internal tools, ensuring minimal disruption to daily operations. The Risk Management Association Philadelphia, PA
Systems Administrator November 2019 – February 2020 Brought on to modernize infrastructure and streamline support operations during a critical technology refresh. Led virtualization efforts across dual private cloud environments, collaborated with vendors to enhance network security, and executed strategic server decommissioning to reduce on-prem footprint. Played a key role in upgrading domain services and implementing next-gen endpoint protection, ensuring compliance and operational resilience.
• Implemented Carbon Black Cloud Defense across the network, scripting sensor deployment and policy enforcement.
• Engineered Hyper-V virtual servers and deployed Veeam/Backupify solutions, improving scalability and data protection.
• Reconfigured Active Directory infrastructure, upgrading domain services and integrating BitLocker recovery keys for enhanced security.
Lasko Products, LLC West Chester, PA
Systems Support Lead June 2013 – August 2018
Led advanced support and infrastructure initiatives for a national manufacturer, driving endpoint security, system upgrades, and resilient server architecture. Oversaw encryption transitions, SAN migrations, and remote desktop deployments while mentoring support staff and managing vendor relationships. Played a pivotal role in modernizing enterprise systems and ensuring compliance across distributed environments.
• Transitioned device encryption from McAfee to Microsoft BitLocker, strengthening endpoint protection and compliance.
• Migrated enterprise storage from EMC VNX5300 SAN to EMC Unity 400F SAN, enhancing data accessibility and security.
• Designed and deployed a Remote Desktop Server Farm using Windows Server 2008 R2 with Failover Clustering for high availability.
EDUCATION
West Chester University, West Chester, PA
Completed 86 credits toward a Bachelor's Degree in Computer Science. Delaware County Community College, Media, PA
Associate Degree in Applied Sciences in Information Technology, Network Engineering