Full stack IT. Here are some things I built.
Featured
Okta access review in AWS
A quarterly Okta access review that runs itself in AWS. It checks 18 things, like a leaver whose API token still works, sends every item to the CISO in Slack, and opens a Jira ticket for each fix. Then it reads Okta again to make sure the fix really happened.
- checks, each mapped to SOC 2 and ISO 27001
- 18
- writes to Okta; it only reads
- 0
- of items decided by a person, in Slack
- 100%

More projects
okta-access-review
The command-line version. It reads Okta, compares it with an HR roster, and writes a PDF, CSVs and a SHA-256 manifest for SOC 2 and ISO 27001.
GitHub: okta-access-reviewokta-mcp-local
Connects Claude to Okta like any privileged service account: Private Key JWT from 1Password, seven scopes, and tokens that only work from one network.
GitHub: okta-mcp-localokta-mcp-gateway
Okta's MCP server behind Docker MCP Gateway. Every call is logged before it runs, and a script checks that log against Okta's own System Log.
GitHub: okta-mcp-gateway
About
Most IT people get a slice. I've owned the whole thing. Lately I've been building things with AI.
I build IT stacks with three priorities: worker efficiency, security, and simplicity.
- Let employees do their jobs without IT hurdles.
- Protect the business from inside and outside threats.
- Keep it simple so there are fewer things that can break.
I build things like the projects here because I like knowing a job really got done. If any of it is useful to you, or you want to talk shop, I'd love to hear from you.