Michael Cushing headshot

ABOUT ME

Hi, I'm Michael Cushing a Cleared Systems Administrator with deep experience supporting classified VMware and Azure environments. Skilled in cloud and hybrid identity infrastructure, automation using PowerShell, deploying secure, scalable virtual desktop and endpoint solutions. Actively expanding cloud cost optimization and IaC capabilities. Holds active Secret and Interim TS clearance.

I built this page as part of the Cloud Azure Resume Challenge.

Certifications

  • VMware VCP-DCV (Mar 2025) Verify
  • Microsoft Azure Fundamentals (AZ-900) (Aug 2025) Verify
  • CompTIA Security+ (Mar 2023) Verify

Education

University of New Hampshire

B.S. Homeland Security. May 2022

Essex Technical High School

Information Technology Program. June 2018

Work

Draper

Classified Systems Administrator II Oct 2024 – Present · Cambridge, MA

  • Led monthly Horizon golden image updates for 150+ VMs; executed cutovers during classified windows while maintaining pool stability and user uptime.
  • Tuned vSphere clusters (DRS, resource pools, HA) to meet mission uptime SLAs across TS/SCI enclaves.
  • Enforced micro-segmentation with NSX (DFW rules, edge gateways, logical switching) to secure segmented zones.
  • Deployed ClearPass with 802.1X to harden wired access in classified spaces.
  • Migrated virtual backups from Veeam to Cohesity.
  • Sustained 95%+ monthly patch compliance across 100+ Windows servers/workstations using PDQ Deploy, PowerShell validation groups, and Nessus-driven remediation.
  • Automated AD hygiene across five domains—archived 30+ stale accounts/month, saving 6–8 hours per cycle and improving audit traceability with logged PowerShell workflows.
  • Maintained SOPs and Confluence documentation across classified and unclassified environments.

Riverside Research

Classified Systems Administrator May 2023 – Oct 2024 · Lexington, MA

  • Implemented and monitored Azure AD Connect for hybrid identity; administered Entra ID/M365 access in unclassified networks.
  • Applied DISA STIGs and remediated Nessus/OSCAP findings across Windows Server and RHEL; tracked RMF with IA.
  • Automated CAC-to-AD mapping and user/group provisioning with PowerShell across enclaves.
  • Owned SCCM patching, app packaging, device inventory, and compliance baselines; scheduled deployments to meet IA windows.
  • Deployed Splunk forwarders/indexers; handled Tier 2/3 incidents and tracked work in JIRA.
  • Managed vSphere/ESXi with HA for classified workloads and maintained Veeam backups/recovery.
  • Administered Cisco switching/ASA firewalls and SAN/NAS in air-gapped environments.

Fusion Worldwide

Information Technology Help Desk Technician Aug 2022 – May 2023 · Haverhill, MA

  • Supported 1,000+ endpoints via Entra ID (Azure AD), Intune, and M365 Admin; maintained hybrid sync with Azure AD Connect.
  • Provisioned Azure VMs and managed RBAC/NSGs; coordinated Microsoft licensing/contracts with vendors.
  • Automated onboarding/offboarding and device cleanup with PowerShell; enforced Intune baselines/profiles.
  • Imaged devices with MDT/PXE to accelerate deployments; resolved Tier 1/2 tickets using remote tools.

CyberArk

Security Operations Intern May 2021 - July 2022 · Newton, MA

  • Managed least-privilege permission audits supporting PAM/identity; improved access hygiene.
  • Provisioned licenses, customer vaults, and entitlements for PAM delivery.
  • Automated certificate generation and user-access troubleshooting for training systems.

University of New Hampshire — CHHS IT Work Study

IT Work Study Aug 2019 – May 2020 · Durham, NH

  • Assisted device imaging/profile configuration and basic account/access troubleshooting.
  • Delivered Tier 1 desktop/software/connectivity support; managed simulation-lab/Telehealth hardware.
  • Logged/tracked tickets in HubSpot and maintained user communication.

Essex Technical High School

Information Technology Intern Jun 2017 – Aug 2018 · Danvers, MA

  • Deployed JAMF-managed Apple devices with profiles/policies for classrooms and labs.
  • Provided routine helpdesk, classroom/lab setup, and MDM policy refresh cycles.