Infrastructure Platform & Security Engineer

Hi, I'm Deep Shah

Infrastructure Platform & Security Engineer

Infrastructure Platform & Security Engineer with deep expertise in Microsoft Azure, Intune, Active Directory, and Windows Server environments. Passionate about building resilient, secure, and scalable infrastructure platforms — from cloud architecture and endpoint management to cybersecurity operations and platform engineering.

About Section Hook

Technical Expertise

Microsoft AzureCybersecurityMicrosoft IntuneScripting & AutoFirewall AdminVirtualization

Microsoft Azure

SentinelAzure ADB2CVMsStorageDNS ZonesVirtual WANPiMSSO

Cybersecurity

SIEMIncident ManagementMicrosoft DefenderNetwork SecurityThreat Management

Microsoft Intune

Windows AutopilotAndroid Zero-touchApple Zero-touchEnterprise Mobility

Scripting & Auto

PowerShellBashPython

Firewall Admin

FortiGateIP SubnettingVLANACLWANVPN

Virtualization

VMware ESXi

Professional Journey

Jan 2026 – Present

Infrastructure Platform & Security Engineer

Canadian Bankers Association

Architect and maintain secure, highly available Azure infrastructure platforms for a national financial association. Drive platform engineering initiatives across cloud, on-premises, and hybrid environments while leading security operations, endpoint management, and infrastructure automation to support enterprise-grade compliance and operational resilience.

  • Architected and maintained Azure cloud infrastructure, improving platform availability and reducing operational overhead through automation and IaC best practices.
  • Led security operations including SIEM monitoring, incident response, and vulnerability management to safeguard critical financial systems.
  • Engineered enterprise endpoint management solutions via Microsoft Intune and Autopilot, ensuring zero-touch provisioning and policy compliance across all devices.
  • Designed and deployed Azure Virtual Desktop (AVD) infrastructure with FSLogix profile containers, enabling secure and seamless remote workforce access.
  • Strengthened hybrid network security posture through firewall policy management, VPN configurations, and identity governance with Entra ID and Privileged Identity Management (PIM).
Oct 2024 – Dec 2025

Azure Lead / Network Analyst

Canadian Bankers Association

Lead the management, design, and maintenance of Azure infrastructure, enhancing scalability and security. Collaborate on cybersecurity strategies, support on-premises infrastructure, and architect Intune solutions for enterprise endpoint management.

  • Optimized Azure infrastructure to improve scalability and enhance security protocols.
  • Implemented Intune solutions, streamlining endpoint management and improving compliance.
  • Contributed to on-premises and cloud network security by coordinating cybersecurity initiatives.
Aug 2022 – Oct 2024

Sr. System Administrator

Wakefield Canada Inc.

Streamlined device enrollment, reduced setup times, and improved security compliance across 500+ devices. Led disaster recovery sessions, deployed and secured systems, and managed SIEM for enhanced threat detection.

  • Reduced setup time by 30% through streamlined enrollment of devices.
  • Decreased unauthorized access incidents by 15% through account management.
  • Led disaster recovery sessions improving recovery objectives by 20%.
Nov 2021 – Aug 2022

IT System Analyst

Opentext

Managed macOS and Windows systems, reduced incidents through JAMF PRO and SCCM, and improved system uptime by 15%.

  • Achieved 95% first contact resolution rate.
  • Reduced incident reports by 20% through effective macOS management.
Jul 2020 – Oct 2021

IT Helpdesk Technician

St. Catharines Public Library

Provided IT support to staff and patrons, resolving 100+ issues weekly and ensuring smooth library operations.

  • Resolved 100+ issues weekly with a 98% satisfaction rate.
  • Reduced equipment shortages by 15% through inventory management.

Featured Projects

Azure Virtual Desktop (AVD) Infrastructure Implementation

Canadian Bankers Association

Designed and deployed a scalable AVD infrastructure. Integrated Hydra AVD Manager for administration and FSLogix profile containers for a seamless, consistent user environment. Delivered a secure, cost-optimized, and highly available remote work solution.

Azure Virtual DesktopHydra AVD ManagerFSLogixAzure ADAzure StorageAzure Monitor

Azure AD B2C Integration - Infrastructure Technical Lead

Castrol - Wakefield Canada Inc

Spearheaded the integration of Azure AD B2C. Conducted thorough research, implemented a successful Proof of Concept (PoC), and presented the showcase to stakeholders. Driving the transition to QA and production.

Azure AD B2CEntra ID

Mulesoft Integration Platform Implementation

Castrol - Wakefield Canada Inc

Managed the infrastructure transition from Boomi to Mulesoft. Key achievements include IPsec VPN setup linking on-premises infrastructure to Mulesoft, Single Sign-On (SSO) configuration using Entra ID, and custom domain implementation.

MulesoftIPsec VPNEntra IDSSL Certificates

Intune - Windows Autopilot

Castrol - Wakefield Canada Inc

Implemented Windows Autopilot for efficient, streamlined setup and pre-configuration for new devices, simplifying the entire Windows device lifecycle and reducing deployment effort.

Microsoft IntuneWindows AutopilotAzure AD

Intune Zero touch deployment for Android And IOS

Castrol - Wakefield Canada Inc

Combines Samsung Knox and Apple Business Manager for seamless deployment from purchase to repurposing. Ensures devices arrive with enforced management settings.

Microsoft IntuneSamsung KnoxApple Business ManagerAndroid Zero-touchiOS Zero-touch

Certifications

Continuous learning and validation of skills through industry-recognized certifications.

Administering Windows Server Hybrid Core Infrastructure (AZ-800)

Microsoft

Microsoft Certified: Azure Administrator Associate (AZ-104)

Microsoft

Certified in Cybersecurity (ISC2)

(ISC)²

Technical Support Fundamentals

Google