Skip to content
View elazarf123's full-sized avatar

Block or report elazarf123

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
elazarf123/README.md

Hi, I'm Elazar Ferrer 👋

Healthcare IT & Security Specialist | Active Directory · Microsoft 365 · Entra ID · HIPAA · NIST CSF 2.0

Portfolio LinkedIn Email


🚀 About Me

I keep identity, access, and healthcare systems secure, automated, and compliant.

With 4+ years of enterprise technical operations experience—including healthcare IT support for clinical workforces—I combine identity administration, security/GRC frameworks (NIST CSF 2.0, HIPAA), and data analytics to mitigate both security risks and operational overhead.


🛠️ Technical Stack

Identity & Directory Services

Active Directory Entra ID M365 Intune Kerberos PKI / LDAPS

Automation & Data

PowerShell Python SQL Chart.js

Security & GRC Frameworks

HIPAA NIST CSF 2.0 Vulnerability Assessment


📊 Featured Security & Healthcare Projects

Project Key Technologies Description
🌐 Healthcare Data Portfolio Chart.js, HTML/CSS, CMS/HHS Data 3 Interactive Dashboards analyzing real CMS readmission, HHS breach, and FDA/NVD medical device vulnerability data.
⚙️ HIPAA Continuous Control Monitoring Python, pytest, GitHub Actions Scheduled evaluation of 6 HIPAA Security Rule technical controls with scored posture, audit-ready evidence, an exception register with mandatory expiry, and week-over-week regression detection.
🔑 IAM Access Review Engine Python, PowerShell, RBAC Joiner-mover-leaver reconciliation tool identifying orphaned accounts and privilege creep with automated remediation.
🛡️ PHI Access Anomaly Detection Python, EHR Logs, HIPAA Detection engine flagging insider threats (snooping, scraping, terminated account usage) mapped to NIST CSF 2.0.
📋 NIST CSF & HIPAA Risk Assessment GRC, Risk Register, POA&M Enterprise GRC deliverable set featuring scored NIST CSF 2.0 controls, HIPAA crosswalk, and phased remediation plan.
🔄 Healthcare BI Pipeline Python, SQL, Star Schema ETL pipeline transforming synthetic claims data into revenue-cycle KPI dashboards with strict data-quality checks.

📜 Certifications & Learning

  • Current Certifications: Google Business Intelligence · Google Data Analytics · Google Cybersecurity · Google IT Support · Healthcare IT Support (Johns Hopkins)
  • In Progress / Target: CompTIA Security+ (In Progress) · AZ-900 Azure Fundamentals

Pinned Loading

  1. healthcare-data-portfolio healthcare-data-portfolio Public

    Three interactive dashboards combining healthcare analytics + HIPAA/cybersecurity on real public data (CMS, AHRQ, HHS/OCR, FDA, CISA): readmission & PHI access-audit, HIPAA breach intelligence, and…

    HTML

  2. healthcare-bi-pipeline healthcare-bi-pipeline Public

    End-to-end BI workflow on synthetic healthcare claims - Python ETL, star-schema warehouse (SQLite), data-quality rules, and revenue-cycle KPI queries

    Python

  3. iam-access-review iam-access-review Public

    Joiner-mover-leaver access review engine - Python reconciliation of directory vs HR roster and RBAC matrix (orphaned accounts, privilege creep, MFA gaps) with gated PowerShell remediation

    Python

  4. hipaa-continuous-control-monitoring hipaa-continuous-control-monitoring Public

    Automated weekly evaluation of HIPAA Security Rule technical controls - scored posture, audit-ready evidence, exception register with expiry, and regression tracking. Python, pytest, GitHub Actions.

    Python