Enterprise Engineering & Systems Architecture

Projects & Technical Case Studies

Real-world systems engineered, deployed, and operated across ASSERSAN, SOCAR, and Üstay. Every case study is grounded in verified operational evidence, free from exaggerated metrics or speculative claims.

Domain Boundary: Products vs. Projects

Independent consumer-facing software platforms like Revalune are positioned under Products. This section presents enterprise infrastructure architectures, systems administration, network engineering, and operational case studies.

Priority Work

Featured Project

Selected engineering initiatives backed by verified operational evidence across identity governance, endpoint DLP, and infrastructure continuity.

Identity & Access ManagementASSERSAN
2025 – Present

Enterprise Identity, OU Architecture, and GPO Governance

Active Directory Domain Setup, Hierarchical OU Architecture, and ADAudit Plus Directory Auditing

Active Directory domain deployment, department-based hierarchical OU architecture, centralized GPO security policy governance, and directory audit event monitoring with ADAudit Plus at ASSERSAN.

Active Directory Domain ServicesGroup Policy Objects (GPO)OU ArchitectureADAudit Plus+2
Role:IT Manager
Case Study
Endpoint SecurityASSERSAN
2025 – Present

Endpoint Data Protection & DLP Policy Governance

KVKK-Aware Sensitive Data Protection and Endpoint Hardening via ManageEngine Endpoint Central DLP

Configuration of sensitive data filters (TCKN, financial data, confidential documents) and peripheral interface controls using ManageEngine Endpoint Central DLP at ASSERSAN to prevent unauthorized endpoint exfiltration.

ManageEngine Endpoint Central DLPData ClassificationSensitive Data FilteringUSB & Peripheral Control+2
Role:IT Manager
Case Study

Competency Areas

All Case Studies by Technical Domain

Identity, Directory, and Access Governance

Active Directory domain setup, hierarchical OU architecture, centralized GPO governance, and directory auditing.

Identity & Access ManagementASSERSAN
2025 – Present

Enterprise Identity, OU Architecture, and GPO Governance

Active Directory Domain Setup, Hierarchical OU Architecture, and ADAudit Plus Directory Auditing

Active Directory domain deployment, department-based hierarchical OU architecture, centralized GPO security policy governance, and directory audit event monitoring with ADAudit Plus at ASSERSAN.

Active Directory Domain ServicesGroup Policy Objects (GPO)OU ArchitectureADAudit Plus+2
Role:IT Manager
Case Study

Endpoint Security & Data Loss Prevention (DLP)

Sensitive data filtering, peripheral interface restrictions, USB controls, and departmental exception governance.

Endpoint SecurityASSERSAN
2025 – Present

Endpoint Data Protection & DLP Policy Governance

KVKK-Aware Sensitive Data Protection and Endpoint Hardening via ManageEngine Endpoint Central DLP

Configuration of sensitive data filters (TCKN, financial data, confidential documents) and peripheral interface controls using ManageEngine Endpoint Central DLP at ASSERSAN to prevent unauthorized endpoint exfiltration.

ManageEngine Endpoint Central DLPData ClassificationSensitive Data FilteringUSB & Peripheral Control+2
Role:IT Manager
Case Study

Enterprise Network Infrastructure & Traffic Inspection

Firewall/gateway routing, managed switch segmentation, subnet optimization, and Wireshark protocol analysis.

Network InfrastructureASSERSAN
2025 – Present

Enterprise Network Infrastructure, Traffic Security & Packet Analysis

Subnet Optimization, Port Mirroring, and Wireshark Packet Analysis via Grandstream GCC6010 / GWN7822P

Enterprise network infrastructure setup, subnet optimization, and packet-level traffic inspection using port mirroring and Wireshark across Grandstream GCC6010 gateway and GWN7822P managed switches at ASSERSAN.

Grandstream GCC6010Grandstream GWN7822PSubnet DesignPort Mirroring+2
Role:IT Manager
Case Study

Cloud Messaging Platforms & Migration Architecture

Migration planning from on-premises email to Microsoft 365, licensing tier analysis, and web hosting troubleshooting.

Cloud PlatformsASSERSAN
2025 – Present

Microsoft 365 Cloud Migration Architecture and Licensing Planning

On-Premises Email to Cloud Migration Design, License Planning, and Web Server Troubleshooting

Architectural planning for on-premises email migration to Microsoft 365, licensing tier planning, and web server troubleshooting across IIS, Plesk, and ModSecurity environments at ASSERSAN.

Microsoft 365Exchange Online ArchitectureLicensing PlanningIIS+2
Role:IT Manager
Case Study

Enterprise Systems Administration & Operations

Large-scale L1/L2 technical support, server virtualization, industrial hardware maintenance, and IT asset inventory.

Systems OperationsSOCAR TÜRKİYE
2022 – 2025

Enterprise IT Operations & Asset Tracking at 500+ User Scale

500+ User Scale L1/L2 Technical Support, Active Directory Administration, IT Inventory, and Barcode Systems

L1/L2 technical support for 500+ end users, Active Directory user and group administration, IT asset and inventory management, and operational maintenance of industrial handheld terminals and barcode systems at SOCAR Türkiye.

Active DirectoryL1 / L2 SupportAsset & Inventory ManagementHandheld Terminals & Barcode Systems+2
Role:IT Support Specialist
Case Study
Enterprise InfrastructureÜSTAY İNŞAAT
2018 – 2022

Server Virtualization, Network Security, and Infrastructure Operations

Windows Server, Hyper-V, Fortigate Firewall, VLAN, and VPN Network Infrastructure Management

Windows Server, DNS, and DHCP services management, Hyper-V server virtualization operations, Fortigate firewall administration, corporate VLAN and VPN network infrastructure management, and Office 365 support at Üstay İnşaat.

Windows ServerHyper-V VirtualizationDNS & DHCPFortigate Firewall+2
Role:IT Systems and Network Specialist
Case Study

Public Engineering & Information Governance Statement

All case studies are documented in strict compliance with corporate confidentiality and information security baselines. Internal IP addresses, internal Fully Qualified Domain Names (FQDNs), directory GUIDs, password hashes, or firewall rule definitions are never published. Architectures are shared solely at the level of systems design and operational engineering methodology.