Oct 2024 – Mar 2025
ZOOMA · Senior Back End Developer
~70%
Infra Cost Cut (v1 → v2)
Marketplace
Azure Managed App
Hours
Self-Service Onboarding
Hybrid
Cloud + On-prem AD Sync
~60%
API Response Time Reduced
30+
Manual Workflows Eliminated
1000s
Real-time Synced Users
At ZOOMA, I built an Azure Managed Application published to the Azure Marketplace that establishes UKG or ADP as the source of worker truth and syncs it to Microsoft Entra ID in the cloud and to on-premise Active Directory (Entra Hybrid) in real time — provisioning, updating, and disabling accounts and running the full onboarding and offboarding lifecycle, including Exchange Online mailbox handling.
Manual, repetitive IT work to onboard and offboard employees
Worker data in UKG/ADP was not reflected in Entra ID identities
Terminated-employee mailboxes needed safe handover, not deletion
Account and mailbox lifecycle rules were applied inconsistently by hand
No packaged, deployable way to ship this automation to customers
An Azure Managed Application packaging the automation for the Marketplace
Real-time UKG / ADP → Entra ID sync, with UKG or ADP as the worker source of truth
Programmatic create / update / disable of Entra ID accounts
PowerShell Exchange Online automation for the mailbox lifecycle
Onboarding and offboarding runbooks and workflows
Consolidated a manual, per-customer v1 into a single multi-tenant Managed Application (v2)
GitHub Actions CI/CD auto-deploying new versions to all customers; few-click self-service install
Built the Azure Managed Application for the Marketplace
Implemented real-time UKG / ADP → Entra ID synchronization
Automated account create / update / disable in Entra ID
Wrote PowerShell automation for the Exchange Online mailbox lifecycle
Implemented automatic app-registration secret rotation
Handled ADP integration certificate updates
Shipped a deployable identity-automation app on the Azure Marketplace
Cut infrastructure cost ~70% ($700 → $200/month at 1,500 users) modernizing v1 → v2
Replaced a manual, per-customer v1 with a single multi-tenant Managed Application
Automated CI/CD deploys to all customers via GitHub Actions, with self-service onboarding in hours
Automated the full employee onboarding and offboarding lifecycle
Auto-converted terminated mailboxes to shared with manager delegation
Implemented automated secret rotation via service-principal automation
Eliminated repetitive, low-value IT onboarding/offboarding work
Kept Entra ID identities in sync with UKG / ADP in real time
Ensured safe, consistent handling of departing-employee mailboxes
Let customers configure, preview, and deploy the solution within hours
Reduced infrastructure cost ~70% by moving from the manual v1 to the multi-tenant v2
Removed per-customer maintenance by consolidating to one multi-tenant Managed Application
Cloud
Azure Managed Applications, App Services/Functions, Container Apps, API Management, Azure SQL, Key Vault, Storage
IaC
Bicep/ARM
Identity
Microsoft Entra ID (Azure AD)
Automation
PowerShell, Exchange Online
Integration
UKG and ADP APIs, Microsoft Graph API
Hybrid
Azure Relay (Hybrid Connections) + Relay SDK, .NET worker → on-prem AD
Backend
.NET Core, Function Apps (EP1 Elastic Premium → FC1 Flex Consumption)
Frontend
ReactJS admin UI
CI/CD
GitHub Actions (auto-deploy to all customers)
Security
App-registration secret rotation, certificate handling
Networking
VNET, private endpoints, VPN
High-performance APIs and microservices
Stripe, Shopify, Microsoft Graph, telecom
LLM workflows, document processing
OAuth, Entra ID, Cognito
Get expert input on your architecture, integrations, or scaling challenges.
Book a Call to Discuss Your Project