- Manage IT infrastructure and security for a fully remote, 80-person healthcare technology company supporting 160+ endpoints across cloud, identity, and endpoint platforms.
- Delivered ~$100K in cost savings within the first several months through strategic vendor consolidation, licensing optimization, and infrastructure right-sizing.
- Led SOC 2 recertification to a clean pass, coordinating third-party audits and serving as the primary compliance liaison across a HIPAA-aligned environment.
- Managed third-party penetration testing end-to-end — vendor coordination through full remediation of all findings — completing all remediations on schedule.
- Reduced employee onboarding and offboarding cycle times by 35% through workflow automation, Jira Service Management enhancements, and standardized provisioning processes.
- Own and administer Drata as the primary compliance automation platform, maintaining continuous control monitoring and evidence collection across all audit domains.
- Spearheaded a company-wide security awareness program — monthly phishing simulations, mandatory training, and policy acknowledgment workflows.
- Led full VoIP platform migration from Twilio to Dialpad, managing vendor coordination, user provisioning, and cutover with zero disruption across a fully remote workforce.
- Leading enterprise migration from Google Workspace to Microsoft 365, consolidating a hybrid productivity environment while maintaining compliance and operational continuity.
- Leveraged AI-driven automation and no-code workflow tooling to accelerate IT operations, reduce manual overhead, and improve service delivery speed.
DANNY GUZMAN
Independent IT consulting for small and mid-size businesses — infrastructure, security, AI, automation, office setups, cloud migrations, and ongoing support. 7+ years building secure, audit-ready operations across regulated healthcare and technology — including $100K in cost savings, a clean SOC 2 recertification, and 35% faster onboarding cycles. ISC2 Certified in Cybersecurity (CC).
> cat ./about.md
I'm an independent IT consultant helping small and mid-size businesses run secure, reliable, and modern technology — without the overhead of building an internal team. I work across infrastructure, security, AI, automation, office setups, migrations, and ongoing support.
Over 7+ years I've stood up SOC 2 and HIPAA programs from scratch, migrated workforces across identity and productivity platforms, hardened security postures, opened offices, automated the boring parts, and consistently delivered measurable cost savings without cutting capability.
I take on defined-scope projects, ongoing retainers, and one-off advisory engagements — whichever fits your situation. Healthcare, SaaS, and professional-services SMBs are my sweet spot.
> ls ./services/
Endpoint management, identity, productivity stack, and networking — designed, deployed, and documented. Microsoft 365 buildouts, Intune rollouts, Entra ID / Okta identity, MDM/MAM, and zero-trust access. Done right the first time.
New office, relocation, or a second location? End-to-end IT buildout — network design, WiFi, conference rooms, badging, printers, structured cabling coordination, ISP procurement, and day-one provisioning. Walk in to a working office, not a project.
Google Workspace → Microsoft 365, Okta → Entra ID, on-prem → cloud, file servers → SharePoint, VoIP cutovers — planned, sequenced, and executed with zero data loss and minimal user disruption. Comms plans and rollback included.
Zero-trust access design, endpoint hardening, vulnerability management, pen-test coordination, and security-awareness programs. Pragmatic controls that satisfy auditors without breaking the business.
SOC 2 (Type I & II) and HIPAA programs from scratch or rescued from drift. Policy authoring, evidence collection, audit prep, and Drata administration. Stay audit-ready year-round, not just before the deadline.
Reliable, responsive IT support that doesn't ghost you. Tier 1–3 escalation, endpoint management, user provisioning, license requests, vendor liaison. Month-to-month retainer or burstable hours — pick what fits your team.
Roll out Microsoft 365 Copilot, ChatGPT for Business, Claude, and other AI tools without surprising your auditors. Policies, data classification, vendor evaluation, and employee training — compliant adoption from pilot to production.
AI-augmented service desk and operations. Automated ticket triage, conversational knowledge bases, agentic remediation workflows, and smart monitoring. Scale your support without scaling headcount.
Onboarding/offboarding, license requests, access reviews, and recurring IT ops turned into self-running workflows. Jira Service Management, no-code platforms, and AI-assisted automations — the bot does the form-filling; you handle the judgment.
> tail -f ./experience.log
- Led day-to-day IT operations for a managed services organization supporting a portfolio of SMB clients across healthcare and professional services sectors.
- Managed and mentored a team of IT support technicians — conducting regular 1:1s, setting performance goals, and coordinating workload distribution across client accounts.
- Served as escalation point for complex technical issues, guiding team members through resolution of high-priority incidents and ensuring SLA adherence across all engagements.
- Designed, implemented, and maintained IT infrastructure for client environments — network architecture, endpoint management, identity platforms, and cloud migrations.
- Led SOC 2 and HIPAA compliance engagements for healthcare clients — developing security policies, conducting risk assessments, and coordinating third-party audits.
- Built and administered Microsoft 365, Azure AD, and Intune environments, enforcing zero-trust access controls and device compliance policies across hybrid workforces.
- Developed standardized onboarding and offboarding workflows, reducing provisioning cycle times and eliminating access control gaps across client organizations.
- Managed vendor relationships and contract negotiations for software licensing, hardware procurement, and cloud services — consistently delivering cost savings against client IT budgets.
- Collaborated with client leadership to present IT roadmaps and risk assessments — translating technical findings into actionable business recommendations.
- Automated recurring IT operations tasks using scripting and no-code platforms, improving service consistency and freeing team capacity for higher-value work.
> ls ./skills/
IT Leadership & Strategy
Security & Compliance
Infrastructure & Platforms
Data & Automation
> cat ./credentials.json
B.S. Computer Science
-
✦Foundations of CybersecurityGoogle · Credential ID: GKK37H5VRAMKSEP 2023
-
◆SOC 2 Compliance Essential TrainingLinkedIn LearningMAR 2025
-
▲Cert Prep: Agile Analysis (IIBA®-AAC)LinkedIn LearningMAR 2025
-
✧What Is Generative AI?LinkedIn LearningMAR 2025
> tail ./transmissions/
Most SMBs don't realize their onboarding workflow is an access control gap. Here's what it costs you — and how to fix it without a dedicated IT team.
READ TRANSMISSIONRedundant licenses, forgotten contracts, and shadow SaaS add up fast. A simple framework for auditing your stack and recovering the spend.
READ TRANSMISSIONReactive IT keeps the lights on. Strategic IT protects your revenue, satisfies enterprise clients, and scales with your business. Here's the difference.
READ TRANSMISSION> ./open_channel --secure
Let's talk about your project.
Whether you're standing up a new office, planning a Microsoft 365 migration, hardening your security posture, rolling out AI tools, automating the boring parts, or just need reliable ongoing support — I'd love to hear what you're working on. Reach out by email, phone, or LinkedIn; I respond within 24 hours and the first call is always free.