Skip to the content.

đŸ›ī¸ Identity & Access Governance

â†Šī¸ Back to Portfolio Home
📁 Back to Projects Index


Overview

This section demonstrates identity and access governance delivery across business-critical platforms, with a focus on secure access design, authentication controls, regulated data access, platform permissions, BI governance, vulnerability risk management, and audit-ready evidence.

The projects show practical ownership of access governance and security controls across identity, application access, financial data platforms, file transfer services, BI platforms, and Windows Server environments.


Project Index

Domain Evidence Focus Skills
đŸĻ Financial Data Access Governance Financial services access governance for sensitive reporting platforms, including RBAC, privileged access, least privilege, approvals, recertification, and audit-ready evidence. RBAC PIM Entra ID Least Privilege Access Reviews
🔐 MFA Authentication Support MFA deployment and authentication support, including onboarding, enrolment validation, sign-in triage, exception handling, stakeholder communication, and support documentation. MFA Conditional Access Entra ID Sign-in Logs KQL
📁 Secure File Transfer Governance Secure file transfer governance, including folder permissions, access reviews, operational checks, service-owner coordination, configuration evidence, and support documentation. NTFS Permissions Access Reviews SFTP Change Management
đŸ›Ąī¸ Vulnerability and Risk Management Vulnerability remediation across Windows Server environments, including Qualys review, patch coordination, risk prioritisation, asset validation, exception awareness, and evidence capture. Qualys CVSS Patch Management Risk Prioritisation Windows Server
📊 BI Platform Access Governance Qlik and Tableau access governance, JML lifecycle controls, licence management, access review preparation, stakeholder validation, and operational process improvement. JML Qlik Tableau Licence Management Access Reviews

🔒 All evidence is public-safe, sanitised, and excludes confidential data, client information, or sensitive operational details.