ZAID ALBAKER
Resume

Open to Senior Systems Engineer roles

Zaid Albaker Senior Systems Engineer

Hands-on Senior Systems Engineer with over 25 years of experience managing enterprise infrastructure across cloud, virtualization, networking, and backup systems. My career spans from early days racking switches and managing core Windows environments to modern engineering with Azure IaaS/PaaS, Citrix Cloud, and Infrastructure as Code. I focus on making infrastructure reliable, automating repetitive operational tasks, and designing solid disaster recovery strategies. Over the last several years, I have focused heavily on building and managing Citrix DaaS environments inside Microsoft Azure, writing PowerShell and Bicep/Terraform automation, and keeping enterprise backup systems resilient.

0

Years Exp

0

Env Migrations

0

Deploy Time Down

0

Cloud Platforms

cloud-profile.tf
# Senior Systems Engineer Profile
resource "cloud_architect" "zaid" {
  name       = "Zaid Albaker"
  role       = "Senior Systems Engineer"
  location   = "Boston, MA"

  cloud      = ["Azure", "AWS"]
  iac        = ["Terraform", "Bicep", "PowerShell"]
  security_policy_requirements = [
    "Enterprise Security Governance & Risk Management",
    "Identity & Access Management (IAM) and Zero Trust Architecture",
    "Regulatory Compliance Automation & Audit Readiness"
  ]
  specialty = [
    "Citrix Virtual Apps and Desktops (CVAD) Architecture",
    "Desktop-as-a-Service (DaaS) Solutions Design & Optimization",
    "Azure Virtual Desktop (AVD) Enterprise Deployments",
    "End-User Computing (EUC) Modernization Strategies",
     ]
}

output "availability" {
  value = "Open to Senior Systems Engineer roles"
}

Technical Expertise

Skills & Technologies

Enterprise infrastructure with deep specialization in enterprise migration, Citrix virtualization, Infrastructure-as-Code, and operations reliability.

Azure Cloud

Azure Landing Zones, Hub-Spoke, AVD, Citrix DaaS for globally distributed enterprise environments, Azure Policy, Identity & Governance.

Infrastructure as Code

Terraform modules, Bicep, PowerShell automation, CI/CD pipelines, release quality gates, reusable IaC frameworks.

Security and Compliance

Enterprise access control, Azure Policy, DR strategy (RPO/RTO), governance, operational guardrails, Fortinet (VPN, Firewalls).

Multi-Cloud & Virtualization

Azure, OCI, VMware, Hyper-V, Kubernetes, vCenter, ESXi, enterprise storage systems.

🔥 Citrix & Virtualization

Citrix DaaS, Citrix Virtual Apps & Desktops, AVD integration, large-scale VDI architecture, image management, performance optimization, and global workforce enablement.

AI-Assisted Delivery

GitHub Copilot and Cursor workflows for faster IaC development, automation, and repeatable migrations.

Observability and Ops

Veeam backup & recovery, monitoring integrations (LogicMonitor), incident automation (ServiceNow, xMatters), runbook-driven operations.

Enterprise Systems & Networking

Active Directory, SCCM, Windows Server, Linux, SQL, DNS, VPN, LAN/WAN, VoIP systems, enterprise networking.

Portfolio

Featured Projects

Real infrastructure delivery across automation, migration, and enterprise transformation programs.

🔄 VDI Migration

Citrix DaaS Environment Migration & Landing Zone Re-Architecture

Designed and executed a full Citrix DaaS environment migration and re-architecture aligned with Azure landing zone best practices. Built a modular export framework to capture and replicate configurations, provisioned infrastructure using Bicep and PowerShell, and migrated golden images, Citrix Cloud connectors, and FAS servers. Executed phased onboarding across global business units while placing legacy VDIs into maintenance mode.

Azure Citrix DaaS Bicep PowerShell Landing Zones VDI Migration Automation

Azure Virtual Desktop iconAVD Migration

Azure Subscription Migration and AVD QA-RUN / QA-TEST Factory

Designed and delivered a full migration of the QA virtual desktop estate to a new Azure subscription and landing zone model. Migrated two Shared Image Galleries, created separate resource groups for QA-RUN and QA-TEST, and published two AVD host pool fields with high-performance VM sizing (8-16 vCPU, 32-64 GB RAM). Automated image refresh by draining, deleting, and recreating session hosts from updated gallery versions.

Azure Subscription Migration AVD QA-RUN QA-TEST Shared Image Gallery Azure PowerShell Host Pool Automation

🏗️ Azure Platform

Enterprise AVD & Citrix Platform Architecture

Architected a cloud-native digital workspace platform with automated provisioning, identity integration, and secure access controls. Enabled high availability, scalability, and centralized management for enterprise desktop delivery.

Azure AVD Citrix Identity Automation

⚙️ Automation

Citrix Monthly Maintenance Automation Factory

Designed and delivered an enterprise automation framework for monthly Citrix maintenance across all environments using PowerShell Universal. Automated golden image updates, VM snapshot lifecycle, test-first catalog publishing, tester approval gates via Power Automate, production promotion, snapshot cleanup, and FSLogix/UPL profile cleanup workflows.

PowerShell Universal PowerShell Citrix DaaS Azure Automation Power Automate Snapshot Lifecycle

🤖 AI + Automation

AI-Assisted Migration & Deployment Modules

Developed reusable AI-assisted infrastructure modules and validation pipelines to accelerate deployments and reduce operational risk. Integrated modern tools and IaC frameworks for faster, more reliable delivery.

AI Automation Copilot IaC DevOps

📊 Azure Dashboard

Azure & Citrix Automation Dashboard

Engineered a centralized PowerShell automation dashboard to manage Azure VM lifecycle, snapshots, and Citrix DaaS publishing. Enabled secure, button-driven operations for infrastructure teams.

PowerShell Azure Automation Citrix Operations

🌐 Hybrid Infra

Enterprise Infrastructure Modernization

Delivered modernization across networking, virtualization, storage, and backup systems in hybrid enterprise environments, focused on resilience, performance, and security.

VMware Active Directory FortiGate Veeam Hybrid Cloud

🛡️ Backup + DR

Veeam Backup & DR Cluster (HA & Recovery Assurance)

Designed and deployed a highly available Veeam backup and disaster recovery platform for centralized enterprise data protection. Implemented backup, replication, and offsite copy strategies with SureBackup validation and automated restore testing. Built PowerShell automation for job management, monitoring, and policy enforcement.

Veeam HA Design DR Strategy SureBackup PowerShell Cloud Backup

☁️ Azure Migration

Veeam Microsoft 365 Migration & Cloud Re-Architecture

Migrated Veeam Backup for Microsoft 365 from a legacy subscription to a modern Azure-based architecture. Developed Terraform and PowerShell modules for resource groups, networking, and subnet provisioning. Executed migration of Exchange, SharePoint, and OneDrive backup workloads with minimal disruption.

Azure Terraform PowerShell Veeam M365 IaC Automation

🌐 Networking

Cisco Meraki Enterprise WiFi Deployment

Designed, configured, and deployed Cisco Meraki wireless infrastructure across 2 warehouses and 5 office locations. Implemented segmented SSIDs and security rules for corporate, guest, and operational traffic. Optimized wireless coverage for high-density environments with ongoing cloud-based monitoring.

Cisco Meraki WiFi Design SSID Network Security Multi-Site

🔒 Security

FortiGate VPN & Endpoint Security Management

Designed and maintained FortiGate VPN infrastructure for secure enterprise remote access. Managed endpoints with FortiClient EMS, enforcing policy, compliance, and centralized control of remote devices. Maintained high availability and secure connectivity for enterprise users.

FortiGate VPN FortiClient EMS Endpoint Security

📱 Endpoint Mgmt

Microsoft Intune Endpoint Management & Migration

Designed and implemented Microsoft Intune for centralized endpoint management and security. Migrated 350+ mobile devices from MobileIron to Intune with minimal disruption. Implemented compliance policies, configuration profiles, and Conditional Access for stronger security posture.

Intune Endpoint Manager MobileIron Compliance

🏭 Enterprise Azure

SHIRAZ Azure Enterprise Deployment

Delivered an Azure transformation program across multi-site warehouse operations. Deployed Windows Server, SQL platforms, endpoint fleets, and industrial device integrations using automated infrastructure and operational runbooks.

Azure Hub-Spoke Terraform Bicep DR Runbooks

⚙️ Azure Modernization

Lucas Voice Picking System Modernization

Led an Azure deployment and modernization of the Lucas voice picking system, supporting large-scale warehouse automation. Architected Azure VM and SQL environments, integrated Zebra printing, and secured 50+ voice devices through enterprise gateway services.

Azure VMs Azure SQL Device Integration Operations

Career History

Work Experience

Jul 2022 - Present

Clean Harbors - Boston, MA

Senior Systems Engineer

Own Azure-hosted Citrix Cloud environments, virtualization, and backup modernization with production-focused automation and reliability engineering.

  • Run Citrix DaaS on Azure across networking, image lifecycle, tuning, and escalations.
  • Built reusable PowerShell, Terraform, and Bicep automation for patching and rollouts.
  • Led enterprise Windows 10 to Windows 11 Citrix migration with Azure and GPO redesign.
  • Implemented release gates, validation pipelines, and automated runbook/report generation.
  • Modernized Veeam to HA with SQL Always On and migrated Microsoft 365 repositories to Wasabi.

Sep 2009 - Jan 2022

Empire Merchants North - Coxsackie, NY

Senior Network Engineer

Managed multi-site infrastructure covering servers, storage, virtualization, security, and backup operations.

  • Administered AD, DNS, DHCP, shares, and Group Policy across business locations.
  • Built VMware vSphere clusters and implemented VMware SRM for disaster recovery.
  • Led Windows Server modernization supporting critical business applications.
  • Managed Veeam backup operations and verified DR readiness through regular drills.
  • Deployed FortiGate firewalls, VPNs, and enterprise wireless with Meraki/Aerohive.

Sep 2003 - May 2009

United States Army Corps of Engineers - Basrah, Iraq

Senior Network Engineer

Delivered mission-critical network and communications engineering in a high-tempo deployed environment.

  • Maintained secure and non-secure communications infrastructure across multiple sites.
  • Coordinated field deployment of server and network infrastructure.
  • Supported Windows Server, Active Directory, Exchange, storage, LAN/WAN, and VPN.
  • Provided technical direction to sustain operational continuity for mission teams.

Credentials

Certifications

Azure Solutions Architect Expert (AZ-305)

Microsoft

Verified

Azure Virtual Desktop Specialty (AZ-140)

Microsoft

Verified

Azure Administrator Associate (AZ-104)

Microsoft

Verified

Citrix Certified Professional – Virtualization

Citrix

Verified

Citrix Certified Associate – Virtualization

Citrix

Verified

Interactive Tool

Cloud Maturity Assessment

Question 1 of 5

How is your cloud infrastructure managed?

Open Source Activity

GitHub

Snapshot

Public Repos

Focus: IaC modules, migration automation, and enterprise runbooks.

Featured Repo

Azure and enterprise migration templates with script-driven deployment operations.

View GitHub Profile

Infrastructure Reliability

Multi-Cloud Status

Status links point to live provider dashboards.

Let's Connect

Open to Opportunities

Looking for Senior Systems Engineer, Principal Engineer, or Citrix Cloud Lead roles. Also open to advisory and consulting engagements.

Reach me directly

Email: zdalbaker@gmail.com

Location: Boston, Massachusetts, United States

LinkedIn: View LinkedIn Profile

GitHub: github.com/zalbaker

⤓ View Resume

Ask Zaid

AI Assistant

Ask me about experience, projects, certifications, or migration delivery.

Ask Zaid anything