Skip to content
View Derraneka's full-sized avatar

Block or report Derraneka

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Derraneka/README.md

Hi, I'm Derraneka 👋

IAM / Identity Security practitioner. I build hands-on labs in live tenants, document what breaks, and publish the evidence.


About Me

  • U.S. Air Force veteran
  • 🔐 TS/SCI cleared
  • 🎓 M.S. Cybercrime Investigation · B.S. Criminal Justice
  • 📍 San Antonio, TX

Certifications · Okta Certified Professional · CompTIA Security+ (SY0-701) · Microsoft SC-300 (in progress)


Portfolio

Two hands-on lab repositories, built in live tenants against a simulated defense contractor environment:

Repository Platform Focus
entra-id-labs Microsoft Entra ID Conditional Access, PIM, SAML SSO, entitlement management, identity governance, PowerShell + Graph API automation
Okta-Labs Okta User lifecycle, profile and attribute mapping, RBAC, Org2Org federation, SCIM provisioning

Every lab starts from a business requirement, gets implemented end to end, and is validated with evidence — sign-in logs, audit records, raw SAML assertions, or structured JSON artifacts. Each one documents what broke and why the design decision went the way it did.

Recent highlights:

  • Measured a 2m41s exposure window in a manual offboarding, then closed it to 0.463s with a PowerShell + Graph API runbook
  • Caught a user who would have been locked out tenant-wide, using report-only Conditional Access staging
  • Traced AADSTS501241 to a claim transformation on an empty source attribute — a failure that kills the entire SAML assertion, not just the claim

Current Focus

🔐 Identity governance & entitlement management 🔐 Privileged access (PIM / just-in-time) 🔐 Federation — SAML 2.0, OIDC, SCIM 🔐 Identity lifecycle automation (Microsoft Graph API, PowerShell) 🔐 Zero Trust access architecture


Career Goal

IAM Analyst / Identity Security Engineer supporting enterprise or federal environments — with an interest in ICAM programs where clearance and identity governance intersect.

📫 LinkedIn

Pinned Loading

  1. entra-id-labs entra-id-labs Public

    Hands-on Microsoft Entra ID labs — Conditional Access, PIM, SAML SSO, and identity governance in a simulated defense contractor tenant

    PowerShell

  2. Okta-Labs Okta-Labs Public

    Hands-on Identity & Access Management labs, Okta projects, and certification work.

  3. Derraneka Derraneka Public

    iam identity-security cybersecurity okta entra-id access-management