Sukhmander Singh

👋 Hey there,

Sukhmander Singh

🚀 Senior IT Engineer | IAM / MDM / Collaboration Stack Automation

📍 San Francisco, United States

💡 Built and operated IAM/SSO (Okta), MDM (Jamf/Intune), and collaboration stacks (Google Workspace / M365) with automation (bash/Python, APIs) and vendor/SLA ownership. Enforce least-privilege, standardize onboarding/offboarding and asset lifecycle, drive audit readiness, and use metrics + post-incident RCAs to continuously improve service quality.

✨ Highlights
  • Automation-first approach across Okta, Jamf, Intune, and collaboration suites to reduce toil and speed delivery

  • Policy-as-code access mapping, self-service access requests, and auditable approvals for least-privilege IAM

  • Designing AI agents that answer questions and execute safe actions to reduce Tier-1/Tier-2 workload and MTTR

💼 Experience

Highlights from my journey building products and teams.

GitHub logo

GitHub

Senior IT Engineer

Mar 2024 - Present
🇺🇸 San Francisco, United StatesFull-time

Own day-to-day operation of internal IT stack across IAM/SSO, endpoint management, and collaboration platforms with an automation-first mindset.

  • Operate Okta (SSO/IAM), Jamf/Intune (MDM), and collaboration suites using scripted and API-driven workflows to reduce manual work and speed delivery

  • Define and track IT health metrics (SLA adherence, request volumes, repeat issues) to prioritize improvements and justify tooling investments

  • Drive IAM modernization: self-service access requests, policy-as-code role mapping, auditable approvals, standardized onboarding/offboarding, and asset lifecycle governance

  • Design and pilot AI agents that surface internal KB answers and perform approved actions (access requests, device checks, routine fixes) to improve MTTR and reduce Tier-1/2 load

  • Build lightweight frontends on top of automation/APIs so non-engineers can safely trigger operational runbooks

  • Develop diagnostics and remediation playbooks; lead incident triage with SMEs/vendors to cut MTTR and prevent repeats through pattern analysis

  • Run change management and knowledge programs (targeted comms, brown-bags, docs) to scale IT effectiveness and increase self-service adoption

  • Automate license removal and access audits for non-SCIM apps to enforce deprovision SLAs and reclaim unused licenses/costs


IT Engineer

Aug 2022 - Feb 2024
🇳🇱 Amsterdam, NetherlandsFull-time

EMEA IT owner, responsible for SaaS governance, onboarding flow automation, and regional IT operations.

  • Consolidated SaaS footprint by auditing non-compliant/duplicative apps, reducing manual effort and cost while improving governance and visibility

  • Increased Terraform and infra-as-code usage within IT to enable reviewable, repeatable changes to IT systems

  • Streamlined onboarding flows (accounts, access, devices) with HR/People; automated ticketing and approvals in ITSM

  • Operated as the sole EMEA IT owner supporting hundreds of employees; established incident comms, vendor SLAs, and escalation paths

  • Led European office IT build-out end-to-end (network, endpoints, conference rooms)

FreshBooks logo

FreshBooks

Information Technology Specialist

Jul 2021 - Aug 2022
🇳🇱 Amsterdam, NetherlandsFull-time

Endpoint security, MDM standardization, access review hardening, and ITSM quality improvements.

  • Implemented MDM app deployment at scale via bash automation, improving time-to-secure baseline and reducing manual packaging cycles

  • Hardened endpoint posture across Jamf, Mosyle, and Intune with standardized profiles, patch baselines, and SSO enforcement via Okta

  • Introduced asset lifecycle and access reviews tied to HR events, closing gaps in offboarding and privileged access

  • Tuned ITSM queue triage and routing; published how-to guides and runbooks to cut repeat tickets and raise CSAT

Schoeller Allibert logo

Schoeller Allibert

Information Technology Specialist

Jan 2021 - Jun 2021
🇳🇱 Hoofddorp, NetherlandsFull-time

Access request tooling and knowledge standardization across Windows/macOS/SharePoint environments.

  • Built a Power Apps + Teams onboarding portal to centralize access requests and approvals, improving auditability and cycle time

  • Authored core knowledge articles and updated support policies to standardize responses across Windows/macOS/SharePoint stacks

DXC Technology (formerly Hewlett Packard Enterprise) logo

DXC Technology (formerly Hewlett Packard Enterprise)

Team Lead - IT Operations

Sep 2018 - Jun 2020
🇮🇳 Bangalore, IndiaFull-time

Global team leadership, incident strategy, and workflow automation for enterprise support operations.

  • Led ~100 engineers across regions; implemented KPI/SLA dashboards, incident bridge leadership, and RCA cadence with app/network teams

  • Automated ServiceNow workflows to remove manual steps, enforce approvals, and create audit trails for access changes

  • Established vendor and inter-team escalation paths with measurable SLAs to improve responsiveness on complex incidents


IT Operations Analyst (Escalations Management Team)

Apr 2017 - Sep 2018
🇮🇳 Bangalore, IndiaFull-time

High-severity incident response, knowledge scaling, and access control standardization.

  • Resolved high-severity outages; created repeatable runbooks and post-incident actions that reduced repeat incidents

  • Mentored new engineers; standardized AD/Workspace and collaboration admin procedures to tighten access control

Hewlett Packard Enterprise logo

Hewlett Packard Enterprise

IT Operations Analyst

Aug 2015 - Mar 2017
🇮🇳 Bangalore, IndiaFull-time

L2 support across Windows, M365/SharePoint, and network incidents.

  • Drove L2 troubleshooting across Windows/M365/SharePoint and network issues; documented fixes and escalations for faster L1 handoffs

🛠️ Skills

A sample of the capabilities I bring to every engagement.

Okta / IAM
Jamf & Intune (MDM)
Google Workspace & M365 administration
Automation with Python / bash / APIs
Terraform / Policy-as-code
Incident response & RCA
ServiceNow / ITSM workflow design
Endpoint Security & Compliance
Access Reviews / Least Privilege
Team Leadership & Incident Management

🤝 Let us collaborate

Share a little context about the work you have in mind and I will follow up promptly.

Let me know how we can create impact together.

📍 Based in San Francisco, United States

At least 10 words (max 250).0/250 words