ERNESTO J. DÍAZ

Lead Systems Administrator  |  IT · Security · Automation · Cloud

Lead Systems Administrator with 15+ years designing and securing enterprise-grade infrastructure across fintech, healthcare, MSP, and education—specialized in cloud platforms, identity, automation, and security hardening.

Professional Summary

Lead Systems Administrator with 15+ years of experience across fintech, healthcare, MSP, and higher education. Specialized in AWS/Azure, virtualization, identity systems, security hardening, and automation. Known for driving cross-team initiatives, building scalable systems, reducing attack surfaces, and leveraging PowerShell and AI-assisted tooling to improve IT workflows and reduce operational overhead.

Professional Experience

Lead Systems Administrator
Feb 2022 – Present
Shift4 Payments · Fintech
  • Manage AWS infrastructure, performance monitoring, and high-availability configurations for critical systems.
  • Led enterprise server migration (100+ systems), improving uptime by ~20%.
  • Implement and maintain Okta SSO integrations for platforms like Slack, GitLab, Salesforce, and Monday.com.
  • Oversee Ivanti patch management, AV automation, and endpoint hardening for Windows/macOS fleets.
  • Drive asset management programs and support infrastructure for M&A expansions.
  • Migrated 20+ domains to Cloudflare to improve DNS security and threat mitigation.
  • Deliver Tier IV support, including Duo MFA, GPO, escalated incidents, and complex troubleshooting.
  • Develop custom PowerShell scripts to automate repetitive tasks and improve SLA performance.
  • Participate in forensic analysis and security investigations alongside Security and Network teams.
  • Actively adopt AI-assisted tooling to accelerate troubleshooting and script development.
AWS Systems Administrator
May 2021 – Feb 2022
Ironistic · Digital Agency / Hosting
  • Managed full AWS stack including EC2, ELB, S3, IAM, and Route 53 for 500+ hosted websites.
  • Maintained uptime and security of mixed Linux/Windows hosting environments.
  • Administered 45+ servers, managed lifecycle upgrades, and handled Plesk hosting operations.
  • Configured and managed Cloudflare DNS and security settings.
  • Supported clients through Pentest results, remediation, and infrastructure issues.
Senior / Lead Systems Administrator
2019 – 2021
Stetson University · Higher Education
  • Administered 60+ Windows servers across VMware ESXi and Hyper-V environments.
  • Built the first VMware cluster for the College of Law and migrated 30+ servers from Hyper-V to ESXi.
  • Led Tenable-based vulnerability remediation and patching programs.
  • Led a university-wide Microsoft MFA rollout and a SharePoint-to-Teams migration initiative.
  • Managed Druva-based backups and ongoing server maintenance for critical services.
Chief Information Officer
2017 – 2019
Millennial Networks · MSP
  • Provided full-stack MSP support to 50+ clients across servers, networks, and EMR platforms.
  • Designed and deployed VMware environments, Azure, Office 365, VoIP, and hosting solutions.
  • Trained and mentored a team of 5 junior admins while scaling MRR to ~$25K.
  • Reduced AWS spend by ~5% through usage analysis and right-sizing.
Systems Administrator
2014 – 2017
Eastern Consulting Group · Healthcare
  • Led migration to Windows Server 2012 R2 across 9 regions.
  • Delivered EMR training to 100+ medical staff and supported multi-office infrastructure.
  • Designed WAN/LAN using IPSec VPN, and created disaster recovery documentation.
  • Managed VMware vSphere and core server infrastructure for medical practices.
Systems Administrator
2009 – 2014
Droguería Betances · Distribution / Healthcare
  • Maintained AS/400, servers, and networking for 24/7 operations.
  • Designed an iPad ordering system that generated ~$20M in its first year.
  • Built DR plans and Windows Failover Clusters for critical services.
  • Managed SFTP integrations for secure medical data workflows.
  • Led a company-wide Windows 7 migration project.

Core Competencies

Cloud & Infrastructure
AWS (EC2, S3, Route 53, IAM) Azure VMware ESXi Hyper-V
Identity & Security
Active Directory Okta SSO Duo MFA Cloudflare Ivanti EPM Security Hardening Splunk / SIEM
Automation & AI
PowerShell Automation AI-assisted scripting Workflow optimization Predictive monitoring concepts
Networking & OS
FortiGate Firewalls IPSec VPN DNS · VLANs Windows Server Linux (CentOS/Ubuntu) macOS
Web & Tooling
Apache / Nginx WordPress Plesk / cPanel Icinga CloudWatch Jira · Confluence LanSweeper Ninite

Key Achievements

  • Promoted multiple times into Lead Systems Administrator roles (Stetson University, Shift4 Payments).
  • Scaled MSP operations at Millennial Networks to ~$25K MRR while leading a small technical team.
  • Designed an iPad ordering system generating ~$20M in its first year of operation.
  • Migrated a datacenter to a co-location facility connecting 9 offices via secure networking.
  • Delivered large-scale MFA deployments and cloud migration projects across industries.

Languages

English – Fluent Spanish – Fluent