santosh choudhary
cloud support enginner
delhi, India
#OpenToWork
About
Cloud & Security Engineer with 8+ years of experience across AWS, Microsoft Azure, and enterprise SaaS platforms, including Microsoft 365, with strong expertise in cloud security, endpoint security, identity & access management (IAM), and infrastructure operations.
Experienced in designing and securing enterprise environments using Microsoft Defender XDR, Microsoft Intune (MDM/MAM), Jamf Pro, Azure AD / Entra ID, Conditional Access, Identity Protection, and cloud-native security controls to strengthen security posture and support Zero Trust initiatives.
Hands-on experience with AWS infrastructure management, Terraform automation, CI/CD pipelines using Jenkins, and monitoring/observability using Amazon CloudWatch and Grafana.
Skilled in security operations, incident response, vulnerability management, threat detection & remediation, and securing SaaS applications across enterprise environments. Strong experience in ServiceNow ITSM processes including Incident, Problem, and Change Management, along with IT asset lifecycle and endpoint governance.
Proven ability to implement Zero Trust security models, enforce compliance frameworks such as CIS and NIST, reduce operational risk, and collaborate with cross-functional infrastructure, security, and business teams to deliver secure, scalable, and compliant cloud solutions.
What I'm looking for
Seeking JAMF Pro and Cloud support Engineer opportunities in AWS, Azure, Endpoint Security, IAM, Intune, Defender, Terraform, and enterprise cloud security.
Experience
Cloud & Security Engineer
DreamFolks Services Pvt. Ltd.
May 2024 – Present
Configured and optimized Microsoft Defender XDR, Defender for Endpoint, and Defender for Office 365 to enhance threat detection and reduce false positives.
Administered JAMF Pro to manage and secure macOS, iOS, and iPadOS devices.
Hands-on experience with SaaS platforms, including administration.
Hands-on experience with SCCM/MECM, Windows OS patching (Windows 10/11, Windows Server) WSUS integration and troubleshooting SCCM logs analysis (WUAHandler) Resolve issues related to WSUS and ADRs Support audit, security, and vulnerability management teams Troubleshoot SCCM client issues (agent health, policy failures) PowerShell for patching automation and reporting Designed and administered Microsoft Intune (MDM/MAM) for endpoint security, compliance, and policy enforcement across multi-platform environments.
Deployed security baselines, compliance policies, and configuration profiles; integrated Intune with Defender for Endpoint and resolved deployment issues.
Acted as L3 escalation point, handling incident response, RCA, remediation, and stakeholder communication within SLA.
Administered AWS services (EC2, S3, IAM, VPC, RDS) including S3 policies, versioning, lifecycle, and Glacier.
Implemented AWS security (WAF, Shield, GuardDuty) and secure networking (VPC Peering, Transit Gateway); automated using Terraform, AWS CLI, and Jenkins (CI/CD).
Monitored systems using CloudWatch, Grafana, Zabbix; managed DMS, DataSync, backups, and replication; handled ServiceNow incidents, problem management, and asset lifecycle.
Microsoft Defender XDRJAMF ProTerraform
Cloud & Security Engineer
Meridian Solutions Pvt. Ltd.
Oct 2022 – Sep 2023
Administered JAMF Pro to manage and secure macOS, iOS, and iPadOS devices.
Configured and optimized Microsoft Defender XDR, Defender for Endpoint, and Defender for Office 365 and endpoints to enhance threat detection and reduce false positives.
Managed device enrollment (Prestage & User-Initiated) with Apple Business Manager (ABM) integration.
Deployed configuration profiles, JAMF policies, software updates, and application distribution.
Maintained device inventory, smart/static groups, and ensured compliance.
Executed software updates, application deployment, and app distribution via JAMF.
Performed remote management (wipe, lock, re-enrollment) and provided macOS troubleshooting support.
Identity & Access Management (IAM – Okta): Managed Okta IAM for user provisioning, access control, SSO, and MFA.
Configured RBAC (roles & groups) and integrated Okta with enterprise apps and Azure AD/LDAP.
Troubleshot authentication issues and access-related incidents.
JAMF ProMicrosoft Defender XDROkta IAM
Technical Support Engineer
Aham Co-Services Pvt. Ltd.
Apr 2022 – Sep 2022
Administered JAMF Pro for macOS/iOS device management, including enrollment, policies, and configuration profiles.
Managed Apple Business Manager, device inventory, app deployment, and compliance reporting; performed remote management and troubleshooting.
Configured and optimized Microsoft Defender for Endpoint, and Defender for Office 365 and to enhance threat detection and reduce false positives.
Administered AWS services (EC2, S3, IAM, VPC, RDS) with S3 lifecycle, versioning, and Glacier storage.
Implemented AWS security (WAF) and secure networking (VPC Peering, Transit Gateway) automated using Terraform, AWS CLI.
JAMF ProMicrosoft DefenderTerraform
Technical Support Engineer
Bliss Connect India Pvt Ltd.
May 2021 – Mar 2022
Administered JAMF Pro and Apple Business Manager for macOS/iOS device management, enrollment, policies, and remote support.
Managed AWS infrastructure (EC2, S3, IAM, VPC, RDS) and implemented security using WAF, Shield, Guard Duty with Terraform & CI/CD (Jenkins).
Configured and optimized Microsoft, Defender for Endpoint, and Defender for Office 365 and to enhance threat detection and reduce false positives.
Monitored systems (CloudWatch, Grafana, Zabbix) and handled data management and ServiceNow ITSM operations.
JAMF ProTerraformCloudWatch
Technical Support Engineer
Sysnet Global Technology Pvt. Ltd.
Dec 2017 – Jul 2019
Resolved hardware and software issues, OS installations, and Outlook/email configurations across Windows, Windows Server, macOS, and Linux environments, ensuring minimal downtime.
Configured and optimized Microsoft Defender for Endpoint, and Defender for Office 365 to enhance threat detection.
Managed incident tickets and service requests using ITSM tools, ensuring prompt resolution within SLA.
Performed IT asset management, including asset tracking, inventory updates, and lifecycle management.
Provided end-user support and system troubleshooting across Windows, Windows Server, macOS, and Linux, improving performance and user satisfaction.
Microsoft DefenderITSM toolsWindows Server
Education
Bachelor of Computer Applications (BCA)
2023
Certifications
Microsoft Certified: Azure Administrator Associate (AZ-104)
Microsoft
2023 – No expiry
Diploma in Hardware & Networking (JCHNE + Cloud)
Jetking
2018 – No expiry
AWS Certified Solutions Architect – (SAA-C03)
AWS
2026
JAMF 100 Certification
JAMF
2026
Skills
apple business managerservice nowasset managementsecurity administratior,endpoint device managmentaws workspacesm365 administratordefenderazureaws cloud supportiosmac supportwindows supportintune administratorjamf pro