Joshua Dela CruzIAM · IT Systems · Cloud Operations
Recruiter-facing portfolio lab

IAM Automation &
Human Escalation

A fictional, sanitized identity operations system demonstrating automated request validation, explainable least-privilege and segregation-of-duties policy, standard access provisioning, human exception handling, operational notifications and audit-ready evidence.

5Incident case studies
3Lifecycle runbooks
22Portfolio artifacts
2Safe lab scripts
Capabilities

What this lab demonstrates

Operational IAM work is more than creating accounts. The lab shows how access is validated, provisioned, investigated, reviewed and removed with evidence at every stage.

♻️

Identity lifecycle

Joiner, Mover and Leaver runbooks driven by authoritative employment attributes, approvals, target validation and exception handling.

JMLProvisioningDeprovisioning
🧭

Incident troubleshooting

Structured investigation across account state, authentication, policy, authorization, synchronization, provisioning and the target application.

ServiceNowEvidenceEscalation
🛡️

Access governance

Role and entitlement mapping, segregation-of-duties controls, recurring access reviews, remediation and target-state confirmation.

RBACSoDCertification
Support method

Evidence before escalation

A repeatable decision path keeps access restoration safe, reduces handoff time and preserves an audit trail.

01 · ValidateIdentity, requestor and approval
02 · CaptureError, time, resource and impact
03 · InspectAccount, authentication and policy
04 · CompareRoles, entitlements and target state
05 · ActResolve or contain within authority
06 · ConfirmValidate, document and prevent recurrence
Incident laboratory

Five realistic IAM cases

Each case includes business impact, validation, sanitized evidence, root cause, resolution, closure criteria and preventive action.

IAM-001

Repeated Active Directory lockout

Traced recurring failures to stale credentials stored in a mobile email profile.

AUTHENTICATION
IAM-002

Completed request, missing entitlement

Compared governance and target state to identify a provisioning connector timeout.

PROVISIONING
IAM-003

Conditional Access denial

Verified that compliant-device policy correctly blocked a sensitive application.

CLOUD IDENTITY
IAM-004

Failed leaver deprovisioning

Contained an active connected account after the application connector failed.

P1 SECURITY
IAM-005

Mover access conflict

Removed sensitive Finance access retained after a department transfer.

GOVERNANCE
SailPoint simulation

Operational identity governance

Aggregation and account correlation
Entitlement catalog and access requests
Provisioning transaction investigation
Orphan-account handling
Certification decisions and remediation
Audit readiness

Evidence recruiters can inspect

Architecture and trust boundaries
Joiner-Mover-Leaver runbooks
Role and entitlement matrix
Access review and remediation report
Safety-first PowerShell examples

Operate the IAM support simulator.

Run lifecycle workflows, approve access, troubleshoot incidents, conduct reviews and inspect evidence using a safe fictional dataset.