Professional Summary
Overview
Work History
Education
Skills
Certification
Timeline

Ramy Barakat

Deloitte Canada
Mississauga
8
Certification
8
Years of experience

Experienced IAM Consultant specializing in identity and access management and cybersecurity. Designed and deployed Okla and Azure AD solutions, enhancing security and streamlining user provisioning. Conducted vulnerability assessments and compliance audits, delivering actionable risk mitigation reports. Committed to leveraging IAM and risk management expertise to safeguard critical assets and advance organizational security objectives.

Work History

IAM Consultant

10 Months
Deloitte Canada | 10.2025 - Current
  • Led quarterly access reviews across AWS, GCP, and Azure, ensuring 100% compliance with SOC 2, GDPR, and HIPAA, removal of all unauthorized access
  • Configured and managed Okta, Microsoft Entra ID, and Active Directory to enforce security policies, achieving SOC 2 and GDPR compliance and reducing policy violations
  • Designed, implemented, and maintained IAM solutions using Okta and Microsoft Entra ID, automating user provisioning, de-provisioning, and role-based access control, which streamlined identity lifecycle management and reduced manual account errors
  • Integrated IAM platforms with Active Directory and cloud services (Entra ID, AWS, GCP) to enable automated provisioning, reducing onboarding time and enhancing audit traceability using SAML, SCIM, and SSO
  • Created and maintained IAM policies, procedures, and automated workflows for onboarding, offboarding, and role changes, ensuring consistent security controls and facilitating faster employee transitions
  • Collaborated with business units to define roles, access rights, and approval workflows, aligning them with security standards and reducing unauthorized access incidents

Senior TechOps & Security Analyst

2 Years 4 Months
Viral Nation | 06.2023 - 10.2025
  • Maintained records of cybersecurity incidents, application performance, and system repairs, enabling faster issue resolution and enhancing protection against phishing attempts using Acronis email security solutions & Backup.
  • Managed Microsoft Azure Security Center and configured Conditional Access policies and Identity Protection, resulting in reduced unauthorized access attempts
  • Managed Microsoft Defender for Cloud, SentinelOne deploying automated threat detection that improved incident response times
  • Performed internal audits of security configurations with Entra ID Policy , EDR, Network and MDM, confirming policy compliance and uncovering several non-conformities that were remediated to strengthen the organization’s security posture
  • Co-authored and organized internal wiki in Confluence, consolidating technical documentation, manuals, and IT policies, reducing support request time by providing clear self-service resources.
  • Managed Office 365 environment and applied security recommendations through Microsoft Security & Compliance Center, enhancing user account protection and lowering phishing risk
  • Upgraded network and infrastructure systems, implementing Unifi identity enterprise solutions, which enhanced overall security posture and reduced system downtime
  • Administered Azure network security groups, cloud VPN, and firewalls, configuring secure ports , Password Manager (1Password) and policies that enhanced network protection and minimized unauthorized access
  • Managed Office 365 environment and implemented security recommendations through Microsoft Security & Compliance Center, strengthening user account protection and minimizing phishing risk.
  • Managed Jira and Confluence, created project templates and automation rules in Jira, which accelerated issue tracking and reduced manual setup time for new projects

Cyber Security Analyst

1 Year 9 Months
Elite Technology Solutions Inc | 09.2021 - 06.2023
  • Conducted periodic security audits using Network Detective Pro and RapidFire Tools, identifying violations and inefficiencies that shaped effective remediation plans
  • Led ISO 27001 and NIST CSF compliance initiatives, focusing on risk assessments that ensured alignment with security standards and reduced audit findings
  • Implemented vulnerability assessments and configured audits of operating systems, web servers, and databases, and detected patterns, insecure features, and malicious activities in the infrastructure.
  • Identified and resolved critical security issues by analyzing alerts in RapidFire Tools and Graphus, applied remediation steps, thereby preventing potential data breaches
  • Implemented and maintained security controls such as Okta Identity Protection and MFA, leveraging NIST guidelines, which strengthened compliance with ISO 27002 and lowered security incidents
  • Researched, tested, and deployed security technologies such as Email security,User security awareness ,Password manager , EDR ,IAM, PAM,IGA, establishing procedures that strengthened the organization’s security posture
  • Implemented and maintained security controls like Okla Identity Protection and MFA, aligning with NIST guidelines to enhance compliance with ISO 27002 and reduce security incidents
  • Analyzed alerts in RapidFire Tools and Graphus to identify and resolve critical security issues, applying remediation steps that prevented potential data breaches
  • Completed workshops on Azure Active Directory, vulnerability scanning, and cloud security (AWS, GCP, Azure); applied the new knowledge to harden Microsoft SQL Server, Citrix, VMware, and Jamf Protect/EDR environments, which improved security analysis accuracy and cut issue-resolution time

Cyber Security Specialist

3 Years 1 Month
Glorious Tours | 08.2018 - 09.2021
  • Performed regular vulnerability assessments and security audits using Nessus and internal scripts, uncovering critical gaps that guided remediation and improved the organization’s security posture
  • Identified and remediated potential and actual security vulnerabilities across Servers & Endpoints , applying patches and configuration changes that prevented unauthorized access
  • Applied patches and updates to Windows, macOS, and Linux servers and endpoints using WSUS and MDM, closing identified vulnerabilities and strengthening overall system security
  • Developed and implemented security policies, procedures, and best practices across Okta and 1Password, creating consistent access controls and reducing policy-violation incidents
  • Sourced and recommended IT equipment vendors, negotiating contracts that ensured compliance with security requirements and aligned with organizational budget constraints
  • Prepared and presented security incident reports using Microsoft Defender for Office 365 and Azure AD logs, identifying trends and recommending mitigation steps that enabled the team to focus on high-risk issues
  • Maintained service quality by adhering to Glorious Tours’ security standards and change-management procedures, ensuring consistent compliance across Microsoft Office 365 and Microsoft Intune
  • Monitored and maintained computer systems and networks using Datto Network Manager and Cisco Meraki, resolving incidents to achieve a 95% issue-resolution rate
  • Sourced and recommended IT equipment vendors, negotiating contracts that met security requirements and improved cost efficiency for the organization
  • Deployed newly procured Windows and macOS computers, laptops, and mobile devices using Microsoft Intune & Jamf, cutting deployment time in half
  • Managed hardware inventory and generated status reports for over 400 Windows, macOS, and mobile devices using the RMM tool, enabling the IT team to quickly identify and resolve equipment issues

Education

Diploma - IT Professional

TriOS College | Mississauga | 01-2022

GPA: Diploma with Distinction

Bachelor's Degree

Helwan University | 01-2011

Skills

• Endpoint Security:
Endpoint Protection & EDR Microsoft Defender for Endpoint
Malwarebytes
McAfee
Datto EDR
Webroot SentinelOne
Jamf Protect
Endpoint Detection And Response (EDR/XDR)
Next-Generation Antivirus (NGAV)
CrowdStrike Falcon
Elastic Defend.
• Email Security:
Email Security Graphus
Acronis Email Security Perception Point
Exchange Online Protection (EOP)
Proofpoint
Mimecast
Cisco Secure Email
Office 365.
• Identity & Access Management:
Okta Administration & SSO
Identity & Access Management IAM
PAM
PIM
IGA (Okta
Ping Identity
CyberArk )
Microsoft Entra ID Identity Protection
MFA & Conditional Access
SAML
Role-Based Access Control (RBAC)
User Lifecycle Management
M365 RBAC.
• Security Operations & Monitoring:
Incident Response & Security Operations
Security analysis
vulnerability scanning (RapidFire Tools
Network Detective Pro
Nessus)
Vulnerability Management
Backup ( Azure Backup
Backup Radar
Acronis
Datto saas protection
Google takeout)
Whitelisting applications (Threatlocker)
MDM (Microsoft Intune
Apple Mosyle
Jamf)
OS Deploying patch updates
Atlassian products (Confluence)
Unix-based systems administration
Kali Linux
Fedora Linux
CentOS
Red Hat.
Digital Forensics (FTK Manager)
SIEM ( Splunk
QRadar )
SOAR ( Microsoft Sentinel )
IDS/IPS.
Cloud & Directory Services:
Entra ID
GCP & AWS
and Google Workspace
Google Workspace Security
Microsoft Azure Active Directory
Azure Active Directory Connect synchronization services
Azure defender for cloud
AWS Security hub
Active Directory.
• Network & Infrastructure:
Network Security & Firewalls
Network administration & security Cisco Meraki
Cisco Catalyst
Datto Network Manager
RMM tool
Datto DNA
Unifi network systems
Firewalls
SonicWall
Meraki
Azure Firewall
Webtitan Cloud.
virtualization:
Citrix
VMware
RDP
MS Hyper-V
VirtualBox.
Compliance & Audits:
Security Audits & Compliance
ISO 27001 & NIST CSF
SOC2
Risk Management
Vanta
MITRE ATT&CK Framework
Microsoft Purview Governance.
• Scripting & Automation:
PowerShell Scripting
Python
GAM for Google Workspace
• Ticketing Systems :
ServiceNow
Jira
Zendesk
Autotask

Certification

  • Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900).
  • CompTIA A+ Certified (220-1001 & 220-1002)
  • CompTIA Security+ Certified (SY0-601)
  • CCNA Cisco Certified (200-301)
  • Microsoft 365 Certified: Modern Desktop Administrator Associate (MD100&MD101)
  • Microsoft Certified: Azure Data Fundamentals (DP-900)
  • Microsoft Certified: Azure Database Administrator Associate (DP-300)
  • Microsoft Certified: Azure Fundamentals (AZ-900).

Timeline

IAM Consultant

Deloitte Canada
10.2025 - CurrentRead More

Senior TechOps & Security Analyst

Viral Nation
06.2023 - 10.2025Read More

Cyber Security Analyst

Elite Technology Solutions Inc
09.2021 - 06.2023Read More

Cyber Security Specialist

Glorious Tours
08.2018 - 09.2021Read More

TriOS College

Diploma from IT Professional
Read More

Helwan University

Bachelor's Degree
Read More
Ramy Barakat