Healthcare IT & Security Specialist | Active Directory · Microsoft 365 · Entra ID · HIPAA · NIST CSF 2.0
I keep identity, access, and healthcare systems secure, automated, and compliant.
With 4+ years of enterprise technical operations experience—including healthcare IT support for clinical workforces—I combine identity administration, security/GRC frameworks (NIST CSF 2.0, HIPAA), and data analytics to mitigate both security risks and operational overhead.
| Project | Key Technologies | Description |
|---|---|---|
| 🌐 Healthcare Data Portfolio | Chart.js, HTML/CSS, CMS/HHS Data |
3 Interactive Dashboards analyzing real CMS readmission, HHS breach, and FDA/NVD medical device vulnerability data. |
| ⚙️ HIPAA Continuous Control Monitoring | Python, pytest, GitHub Actions | Scheduled evaluation of 6 HIPAA Security Rule technical controls with scored posture, audit-ready evidence, an exception register with mandatory expiry, and week-over-week regression detection. |
| 🔑 IAM Access Review Engine | Python, PowerShell, RBAC |
Joiner-mover-leaver reconciliation tool identifying orphaned accounts and privilege creep with automated remediation. |
| 🛡️ PHI Access Anomaly Detection | Python, EHR Logs, HIPAA |
Detection engine flagging insider threats (snooping, scraping, terminated account usage) mapped to NIST CSF 2.0. |
| 📋 NIST CSF & HIPAA Risk Assessment | GRC, Risk Register, POA&M |
Enterprise GRC deliverable set featuring scored NIST CSF 2.0 controls, HIPAA crosswalk, and phased remediation plan. |
| 🔄 Healthcare BI Pipeline | Python, SQL, Star Schema |
ETL pipeline transforming synthetic claims data into revenue-cycle KPI dashboards with strict data-quality checks. |
- Current Certifications: Google Business Intelligence · Google Data Analytics · Google Cybersecurity · Google IT Support · Healthcare IT Support (Johns Hopkins)
- In Progress / Target: CompTIA Security+ (In Progress) · AZ-900 Azure Fundamentals