Miguel.

San Francisco Bay Area

whoamiguel

Miguel Quiroz. I work the front line of identity and access inside a large federated university environment. Accounts, MFA, Conditional Access, device trust, and the person on the phone who cannot get in.

The five seconds I work in

Every login, every time

  1. 01

    Request

    Someone asks for something. A file, a console, a payroll record.

  2. 02

    Identify

    Which account is making the claim, and which domain owns it.

  3. 03

    Authenticate

    Prove it. This is where most of my tickets live.

  4. 04

    Authorize

    Being you is not the same as being allowed. Policy decides.

  5. 05

    Record

    Write down what happened, so the next person can reconstruct it.

Most breaches are not exotic. Somebody had access they should not have had, or kept access they should have lost.

Where I work

This is the job, not the ambition.

Identity work does not start in a console. It starts with a person who cannot get in and needs to be somewhere in ten minutes.

Service Desk Analyst, Tier 1

Stanford University, University IT Service Desk · contract via LeadStack

Front line owner for identity, access and endpoint issues across a federated environment spanning University IT, the School of Medicine and Stanford Health Care. Ten to fifteen incidents a shift, on the phone queue and the ticket queue at the same time.

  • Account activation, credential resets, affiliation and entitlement questions, routed to the identity domain that owns the user rather than patched locally
  • Duo MFA enrollment, token and device replacement, and federated authentication failures across identity provider, service provider and client
  • Supported Conditional Access enforcement waves, triaging live access blocks and tracing device compliance failures to root cause
  • Found duplicate and stale device records causing Conditional Access to evaluate against dead objects, and escalated with evidence
  • Issued Temporary Access Passes for users locked out of multifactor, without weakening posture
  • Certificate based device authentication, SCEP delivery and renewal failures

IT Support Specialist Intern

Pure Storage

Daily work in the Okta admin console with scoped permissions, supporting a 6,500 user global enterprise. Authentication factor resets, group and application assignment, and provisioning and deprovisioning as part of joiner, mover and leaver requests.

  • Escalated exceptions and policy questions to the identity team rather than granting ad hoc access
  • Zero Trust posture troubleshooting, separating policy driven denials from genuine connectivity faults
  • Device compliance across a mixed macOS, Windows and Linux fleet in Jamf Pro and Workspace ONE
  • Ticket triage, severity classification and routing to the correct owners across IT, identity and security

QA Test and Support Engineer

Google · via Encora

Kept a working fleet of Android test devices and gLinux workstations ready for research sessions, and sat on the other end of the line when something went wrong mid session.

  • Managed an active device fleet: build updates, peripheral configuration, and validating readiness before sessions ran
  • Worked under NDA governed data handling protocols, on unreleased hardware and builds
  • Real time first line support to research participants during live one to one sessions, against tight session timelines
  • Connectivity, peripheral and application faults diagnosed while a session was running, not afterwards

Production and Support Associate

Tesla

Three years on the production line diagnosing hardware faults and process anomalies, coordinating escalation and root cause investigation directly with engineering during critical vehicle ramp ups. Sixteen Take Charge commendations for proactive issue ownership during high pressure delivery periods.

Credentials

Held, and in progress

  • Microsoft SC-300, Identity and Access Administrator

    Studying against a lab tenant of my own rather than practice questions alone.

    In progress · exam Oct 2026
  • CompTIA A+

    Hardware, operating systems, and the troubleshooting method underneath both.

    Dec 2024
  • Year Up United, IT and Cybersecurity Training

    Enterprise IT operations, networking, and cybersecurity fundamentals.

    Mar 2025 to Jan 2026
  • Google IT Support Fundamentals

    Renewed 2025.

    May 2022
  • Cisco Networking Academy

    Introduction to Cybersecurity, and Linux Unhatched.

    2025

Projects

Three things, and one of them is running in production.

An internal documentation tool now at version eleven and approved for evaluation across the team, plus two labs at honest stages. Lab work is labelled as lab work.

Open the index

$ ls ~/projects

wrapup/ shipped, internal

entra-lab-tenant/ lab, ongoing

packet-analysis/ lab

 

$ cat PLAN.md

# label lab work as lab work

# write down what broke

If you work in identity, I would like to hear from you.

Email me