Identity engineering · Authentication & access
Protecting access at the point of sign-in.
I configure hybrid identity connectors, integrate applications with Microsoft Entra ID through SAML and extend multi-factor authentication to services using on-premises RADIUS authentication proxies.
Make authentication part of the security design
Staff need access to applications and services, while the airport needs to establish who is requesting that access. My focus is the point where those needs meet: connecting services to organisational identity and adding verification beyond a password.
The aim is to reduce reliance on passwords alone while keeping everyday sign-in practical. That means considering the person using the service alongside the systems responsible for authenticating them.

Connect hybrid identity to application sign-in
I configure hybrid identity connectors between on-premises and cloud identity services. Alongside that work, I use Microsoft Entra ID, the identity platform behind Microsoft 365, as the authentication source for connected applications and services.
I configure SAML-based single sign-on so applications can use organisational authentication. This brings the application and identity provider into a shared sign-in process, rather than requiring staff to manage a separate sign-in for each integrated service.
Extend MFA through the right authentication path
I configure multi-factor authentication to add an identity check beyond the password. My work also includes on-premises authentication proxies for services using RADIUS, integrating those authentication requests with MFA.
SAML federation and RADIUS integration serve different requirements. I work across both: application sign-in through an identity provider, and authentication proxies for services that use RADIUS. The integration needs to fit the service’s supported method while maintaining the intended checks for the person signing in.
The result
Organisational identity, backed by MFA.
I have connected applications and services to organisational authentication and configured MFA integrations across supported sign-in methods. The work makes identity a practical part of protecting access to the airport’s services.
The value is a more consistent sign-in experience for integrated applications, backed by additional authentication checks and a clearer relationship between the user, the identity service and the application.