Skip to content
View rahatislamanik-spec's full-sized avatar
💭
Building M365 security labs · Open to IT Admin roles in GTA
💭
Building M365 security labs · Open to IT Admin roles in GTA

Block or report rahatislamanik-spec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Hi, I'm Rahat 👋 — an IT Systems Administrator focused on Microsoft 365, Identity (Entra ID), and cloud infrastructure.

I specialize in building secure, scalable environments across Microsoft 365, Azure, and hybrid identity systems. My work combines hands-on administration with automation, using PowerShell and Microsoft Graph to reduce manual effort and improve operational reliability.

I’ve managed complete IT environments across multi-site operations, maintaining 95%+ uptime, resolving 35–40 weekly tickets with high first-contact resolution, and reducing manual workload by over 40% through automation.

My core focus areas include:

Microsoft 365 and Entra ID (Conditional Access, MFA, Zero Trust)

Endpoint management and security (Intune, Defender)

Cloud infrastructure (Azure, AWS)

IT automation (PowerShell, Graph API, AI-assisted workflows)

I build projects that simulate real enterprise environments — not just configurations, but full operational systems with security, compliance, and automation built in. My portfolio includes Microsoft 365 security operations platforms, identity governance toolkits, and end-to-end cloud infrastructure deployments.

Currently, I’m deepening my expertise in Azure administration and identity security (AZ-104, SC-900 in progress), with a long-term focus on cloud security and Zero Trust architecture.

Based in Toronto, open to opportunities in IT Systems Administration, Microsoft 365, and cloud infrastructure roles.

━━━━━━━━━━━━━━━━━━

🎓 Education

Postgraduate Diploma — Cloud Computing & Network Administration George Brown Polytechnic, Toronto · Graduated May 2026 · GPA: 3.55 / 4.0

Bachelor of Arts — Communication & Media Studies Simon Fraser University, Burnaby BC

━━━━━━━━━━━━━━━━━━

🏆 Certifications — 11 Completed · 2 In Progress

Microsoft & Networking

✔ Microsoft Certified: Azure Fundamentals (AZ-900) ✔ Microsoft 365 Certified: Fundamentals (MS-900) ✔ Cisco Networking Essentials — Cisco Networking Academy / George Brown College

8× Anthropic AI Certified

✔ Claude with Amazon Bedrock ✔ Claude Code in Action ✔ Building with the Claude API ✔ Introduction to MCP (Model Context Protocol) ✔ Introduction to Subagents ✔ Introduction to Agent Skills ✔ AI Fluency: Framework & Foundations ✔ Claude 101

In Progress

⏳ Microsoft Certified: Azure Administrator Associate (AZ-104) ⏳ Microsoft Certified: Security, Compliance & Identity Fundamentals (SC-900)

━━━━━━━━━━━━━━━━━━

☁️ Featured Projects

🔹 Enterprise IT Security Operations Toolkit

Multi-phase Microsoft 365 security operations platform — 30+ PowerShell scripts across 8 operational phases covering identity governance, endpoint security, Defender operations, BYOD Conditional Access governance, and compliance reporting via Microsoft Graph. Real M365 E3/E5 lab execution with live CSV evidence. Secure Score: 146.26 / 204.

Live Site: https://rahatislamanik-spec.github.io/Enterprise-IT-Security-Operations-Toolkit/


🔹 Enterprise IT Network Diagnostics Toolkit

Multi-script PowerShell network diagnostics platform — 9 scripts covering DNS resolution, connectivity testing, port scanning, Wi-Fi analysis, SSL/TLS certificate checks, latency baseline, rogue device detection, and ARP security auditing. All scripts generate professional HTML reports. 27 real diagnostic files collected and sanitized from a live network environment.

Live Site: https://rahatislamanik-spec.github.io/Enterprise-IT-Network-Diagnostics-Toolkit/


🔹 Meridian Institute — Microsoft 365 Security Operations Lab

Multi-phase Microsoft 365 enterprise simulation built in a real developer tenant — covering identity governance, Conditional Access (8 policies), Intune endpoint management, Purview DLP, and PowerShell automation across 27 managed users and 4 admin centers.

Live Site: https://rahatislamanik-spec.github.io/Meridian-Institute-M365-Lab/phase-1/


🔹 Project Arabesque — NBS IT Automation System

End-to-end IT onboarding and offboarding automation system built for Canada's National Ballet School — entirely on Microsoft 365. No new software. No vendor contracts. Three SharePoint systems, two automated cloud flows, four email automations, zero manual steps.

Live Site: https://rahatislamanik-spec.github.io/Project-Arabesque/


🔹 Aurelian Financial Group — Enterprise Network Case Study

Cisco Packet Tracer enterprise network build: 4-VLAN segmentation, router-on-a-stick, DHCP relay, ACLs, and SSH hardening — with 8 real issues diagnosed and resolved in STAR format. Every misconfiguration documented, not just the clean final state.

Live Site: https://rahatislamanik-spec.github.io/Aurelian-Enterprise-Network-Case-Study/


🔹 TechSolutions Inc. — Microsoft 365 Enterprise Deployment

Complete M365 deployment for a 300-employee Canadian organization — identity, security, DLP, Insider Risk Management, Adaptive Protection, Viva Engage, and Power Automate automation, all configured and verified in a live tenant.

Live Site: https://rahatislamanik-spec.github.io/TechSolutions-Microsoft365/


🔹 TechNova Inc. — Azure Cloud Infrastructure

Hub-and-spoke Azure infrastructure built from a blank subscription — no templates, no guided labs, no safety net. VNets, Bastion, RBAC, Load Balancer, Key Vault, and Azure Backup across 16+ services. Zero public IPs on production VMs. Total cost: ~$40.

Live Site: https://rahatislamanik-spec.github.io/TechNova-Azure-Infrastructure/


🔹 Café Nimbus — AWS Cloud Infrastructure Case Study

Five-phase AWS architectural engagement — from one broken server to a self-operating cloud. S3, EC2/LAMP, custom VPC, ALB + Auto Scaling (Multi-AZ), and Lambda + EventBridge serverless automation across 13 services. Zero manual steps at end state.

Live Site: https://rahatislamanik-spec.github.io/Cafe-Nimbus/


🔹 anik.local — Windows Server 2022 Enterprise Domain

Full enterprise Windows Server domain built inside UTM on Apple Silicon — no rack, no x86 hardware. AD DS, multi-site DHCP, Group Policy, file services, and workstation integration, documented across 107+ screenshots.

Live Site: https://rahatislamanik-spec.github.io/Windows-Server-2022-Enterprise-Domain/


🔹 Project Northstar — AI Career Intelligence Platform

AI-assisted career intelligence platform exploring ATS analysis, automation workflows, opportunity scoring, and cloud/IT job intelligence.

Live Site: https://rahatislamanik-spec.github.io/Project-Northstar/

━━━━━━━━━━━━━━━━━━

🔧 Technical Skills

Microsoft 365 & Identity Microsoft 365 · Entra ID (Azure AD) · Exchange Online · SharePoint Online · Teams · OneDrive · Intune MDM/MAM · Microsoft Defender for Office 365 · Defender for Endpoint · Microsoft Purview · Conditional Access · MFA · RBAC · Zero Trust · PowerShell · Microsoft Graph API

Cloud & Infrastructure Microsoft Azure · Azure VMs · VNets · NSGs · Azure Bastion · Key Vault · Azure Backup · Recovery Services Vault · RBAC · AWS · EC2 · VPC · S3 · ALB · Auto Scaling · Lambda · SNS · EventBridge · IAM

Systems Administration Windows Server 2019/2022 · Active Directory · Group Policy · Linux Administration · DNS · DHCP · Endpoint Management · Windows Autopilot · BitLocker

Networking TCP/IP · DNS · DHCP · VLANs · VPN · LAN/WAN · NSGs · Cisco Networking · Network Troubleshooting · Cisco Packet Tracer

Automation & AI PowerShell · Microsoft Graph API · Azure CLI · Power Automate · REST APIs · Claude API · Amazon Bedrock · MCP · AI Agents · Subagents · Agent Skills

━━━━━━━━━━━━━━━━━━

🚀 Career Interests

  • Microsoft 365 & Identity Administration
  • Cloud & Infrastructure Operations (Azure · AWS)
  • IT Systems Administration
  • Endpoint Security & Compliance (Intune · Defender)
  • AI-Enabled IT Automation
  • Cloud Security Operations
  • Entra ID & Zero Trust Architecture

━━━━━━━━━━━━━━━━━━

📍 Toronto, ON · Canadian Permanent Resident · linkedin.com/in/rahatislamanik

Pinned Loading

  1. Enterprise-IT-Security-Operations-Toolkit Enterprise-IT-Security-Operations-Toolkit Public

    8-phase Microsoft 365 security operations platform — 30+ PowerShell scripts covering identity governance, Defender XDR, BYOD Conditional Access, compliance reporting, and incident response via Micr…

    PowerShell 1

  2. Enterprise-IT-Network-Diagnostics-Toolkit Enterprise-IT-Network-Diagnostics-Toolkit Public

    9-script PowerShell network diagnostics toolkit — DNS, connectivity, port scanning, Wi-Fi analysis, SSL/TLS checks, latency baseline, rogue device detection, and ARP auditing. All scripts generate …

    PowerShell 2

  3. Meridian-Institute-M365-Lab Meridian-Institute-M365-Lab Public

    6-phase Microsoft 365 enterprise security lab — Entra ID, Intune, Defender XDR, Conditional Access (8 policies), Purview DLP, and PowerShell automation across 27 managed users. Secure Score improve…

    HTML 1

  4. AD-Identity-Operations-Toolkit AD-Identity-Operations-Toolkit Public

    9-phase Active Directory identity governance toolkit for financial institutions — stale accounts, privileged access, hybrid identity sync, Kerberoasting detection, and OSFI E-21 aligned executive r…

    PowerShell

  5. EntraID-AWS-SAML-SSO-Integration EntraID-AWS-SAML-SSO-Integration Public

    Microsoft Entra ID to AWS SAML 2.0 SSO integration — Zero Trust identity federation, cross-cloud IAM, and single sign-on between Microsoft and AWS environments.

    1

  6. NorthBridge-Passwordless-Modernization NorthBridge-Passwordless-Modernization Public

    Microsoft Entra ID passwordless authentication design record for a regulated Canadian financial institution — Windows Hello for Business, FIDO2, Microsoft Authenticator, TAP, and Conditional Access.

    PowerShell