Hi, my name is

Ayhan Polat.

I build and run reliable IT infrastructure.

I'm a systems & infrastructure engineer with 15+ years building, securing, and operating IT environments—Windows/AD, hybrid cloud, networking, and security—for 200+ user organizations and SMB clients. Hands-on from server ops through automation.

01. About Me

Systems & infrastructure engineer with 15+ years building, securing, and operating IT environments for 200+ user organizations and SMB clients. Hands-on across Windows/Active Directory, hybrid cloud (AWS & Azure), networking, virtualization, and security — from help desk and server ops through architecture and automation.

I design and run reliable infrastructure: Microsoft 365, AD/GPO, Exchange, VMware/Hyper-V, Linux, DNS/DHCP/VPN/firewalls, endpoint protection, backup/DR (Veeam/Acronis), and IaC with Terraform & Ansible. Recent focus includes cost-effective cloud migrations, hardening hybrid networks (SD-WAN, VLAN, Wi-Fi), and reducing incidents through patching, policy, and practical security controls.

I use modern AI tools to accelerate ops work — scripting, runbooks, troubleshooting, and documentation — with human review and change control on anything that touches production. I'm not an ML engineer; I apply AI as a force multiplier for systems, cloud, and security work.

After relocating from Türkiye to the United States, I took hands-on technical field roles while re-establishing my systems and infrastructure career. My core background remains enterprise IT—nearly a decade administering environments for 200+ users (Active Directory, hybrid cloud, networking, security)—now continued through systems and infrastructure work at ElbiNet.

Certifications: AWS Certified Solutions Architect · CompTIA Security+ · Network+ · A+ (and related CompTIA specialist badges).

Open to mid-level IC roles in systems administration, systems/network engineering, cloud administration, and infrastructure — W2 or contract. Based in Austin, TX; open to remote/hybrid and willing to relocate within the U.S. when the role is the right fit. US work authorized.

Let's connect if you need someone who can own the stack end-to-end — design, implement, operate, and harden.

02. Skills

Hardware & Troubleshooting

Hardware Configuration
Hardware Troubleshooting
System Configuration
System/Network Configuration
Troubleshooting

Operating Systems & Software

Linux
Mac Support
Operating Systems
Systems Administration
Active Directory
Microsoft 365
Windows Server

Networking & Infrastructure

Cloud Networking
DHCP
Domain Name System (DNS)
Network Management
Network Troubleshooting
Networking
Routing And Switching
Software Defined Networking
Virtual Private Networking (VPN)
Wide Area Network (WAN)

Cloud & Virtualization

Cloud Computing
Amazon Web Services (AWS)
Microsoft Azure
Infrastructure as Code (IaC)
Virtualization
VMware
Hyper-V

Security & Compliance

Access Control
Cryptography
Cyber Forensics
Cybersecurity
Data Security
Firewall Configuration
Information Security Management
Malware Identification
Mobile Device Security
Network Security
Security Awareness
Security Configuration
Security Management
Security Policies
Threat Detection
Threat Management
Vulnerability Management

Backup & Disaster Recovery

Backup And Recovery
BCDR
Disaster Recovery Planning

Service Desk & Support

Help Desk
IT Support
Technical Support

Mobile & Device Support

Mobile Device Support
Mobile Device Security

AI-Enabled OperationsAI-ready

AI-Assisted Scripting
AI-Assisted Runbooks & Docs
AI-Assisted Troubleshooting
Human-in-the-Loop Change Control

03.Education & Certifications

Education

Computer Sciences @ Kahramanmaras University

Kahramanmaras, Turkiye2008

Certifications

04. Experience

Senior Systems & Infrastructure Engineer @ ElbiNet

Austin, TXApril 2025 - Present

  • Lead systems, cloud, and security work for SMB clients—hands-on design, build, operate, and harden across hybrid infrastructure, Microsoft 365/Active Directory, networking, virtualization, backup/DR, and practical cybersecurity.
  • Design and operate hybrid infrastructure (Windows Server, AD/GPO, Microsoft 365, VMware/Hyper-V, Linux) with a focus on reliability, security, and cost control.
  • Lead cloud migrations and modernizations on AWS and Azure; use Infrastructure as Code (Terraform, Ansible) to standardize provisioning, cut deployment time (~50%), and reduce configuration errors (~80%).
  • Plan and implement network upgrades (SD-WAN, SDN, VLAN, VPN, Wi-Fi 6, firewalls); improved network performance (~40%) and supported secure hybrid work.
  • Build practical security programs: endpoint protection, network security, encryption/PKI, patching, and HIPAA/PCI-DSS-oriented controls; reduced security incidents (~70% in targeted environments).
  • Define backup and disaster recovery (Veeam, Acronis, BCDR) aimed at high availability (99.9% uptime targets) and faster recovery; drive IT cost optimization (typically 20–40% savings).
  • Automate recurring ops and use AI tools to accelerate scripting, runbooks, troubleshooting, and documentation—with human review before production changes.
  • Act as trusted technical lead for SMB clients: roadmaps, vendor selection, and translating business needs into maintainable systems.

Service Coordinator @ Agora Refreshments

Austin, TXFebruary 2025 - Present

  • Coordinate technical field service for a new branch: equipment installs, troubleshooting, repairs, and day-to-day service operations. Focus on uptime, clear documentation, and fast response for customer-facing systems (including micro-market kiosks and related hardware).
  • Stand up and run branch service operations: intake, prioritization, dispatch, and close-out of service work.
  • Install, troubleshoot, and repair equipment and kiosk-related systems; reduce downtime with proactive maintenance.
  • Optimize routes and parts/inventory so technicians spend more time fixing, less time waiting.
  • Write simple runbooks/process notes and keep customer communication clear during outages and service visits.
  • Partner with vendors and internal teams to resolve recurring issues and improve first-visit fix rates.

Field Service Specialist @ Compass Group (Canteen)

Austin, TXNovember 2023 - February 2025

  • Field technical specialist supporting vending, coffee, and micro-market environments—hands-on install, maintenance, and troubleshooting for equipment and customer-facing digital systems (kiosk computers, related hardware, and site Wi-Fi). Focused on uptime, first-visit fixes, and clear remote + on-site support.
  • Install, configure, and maintain vending/micro-market systems including kiosk computers and supporting hardware; keep sites operational with proactive maintenance (~99% uptime focus).
  • Support site connectivity for micro-markets (Wi-Fi / basic network troubleshooting) so kiosks and payments stay online.
  • Deliver remote and on-site technical support; prioritize tickets/calls and drive high first-visit / first-contact resolution.
  • Optimize service routes and parts inventory; reduced response time (~30%) through better planning and stock readiness.
  • Follow preventative maintenance and safety procedures; extend equipment life and stay compliant with company standards.
  • Document recurring issues and work with vendors/internal teams to fix root causes, not just one-off repairs.

IT Administrator @ Ceren Ithalat ve Dagitim A.S.

Istanbul, TurkiyeJanuary 2015 - November 2023

  • Owned enterprise IT for a 200+ user org—systems admin, hybrid cloud, networking, security, virtualization, and service desk. Hands-on AD/Windows/Linux, Microsoft 365, VMware/Hyper-V, firewalls/VPN, backup/DR, and automation (Terraform, Ansible). ~99.9% uptime focus while modernizing infrastructure and cutting cost and risk.
  • Administered Windows Server and Active Directory (users/groups, GPO, identity); supported Exchange and Microsoft 365 for multi-device users.
  • Operated VMware/Hyper-V and Linux (Ubuntu, CentOS): patching, hardening, capacity, production support.
  • Led AWS and Azure cloud migrations; better scale/availability and ~30% infrastructure cost reduction.
  • Ran secure networks: SD-WAN, VLANs, site-to-site VPN, firewalls, wireless; stable hybrid connectivity.
  • Security ops: endpoint protection, encryption/PKI, patching; ~30% fewer security incidents; compliance-minded controls.
  • Backup/DR and failover; ~25% faster recovery in targeted scenarios; protected critical systems.
  • Owned end-user service desk (Windows, Linux, macOS) for 200+ users: triage, resolution, escalation, and clear documentation.
  • Automated with Terraform and Ansible; ~40% lower operational overhead and faster repeatable changes.
  • Improved MDM/endpoint and software deployment practices (SCCM-class tooling where used) to standardize devices.
  • Partnered with leadership on IT priorities, vendors, and roadmaps—business needs to maintainable systems, still hands-on.

Computer Teacher @ Turkish Employment Agency (ISKUR)

Istanbul, TurkiyeJune 2013 - January 2015

  • Delivered IT training for adult learners—fundamentals of computing, practical labs, and progress tracking. Focus on clear instruction, hands-on exercises, and adapting content to different skill levels.
  • Designed and ran classroom IT courses combining theory with practical labs.
  • Taught core computer skills and troubleshooting basics to prepare learners for workplace use.
  • Tracked progress, gave feedback, and adjusted teaching pace for mixed-level groups.
  • Built simple lesson materials and demos that made technical topics easier to apply.

Founder / IT Specialist @ Elbistan Bilisim

Istanbul, TurkiyeOctober 2009 - June 2013

  • Founded and ran a small IT services practice for local businesses and educational institutions—hands-on networks, servers, security, and day-to-day technical support. Owned the full cycle: assess needs, implement, support, and improve.
  • Designed and deployed LAN/WAN basics, servers, and security controls for SMBs and schools (connectivity, access, backups where needed).
  • Installed and maintained Windows/server environments and client systems; troubleshooting, patching, and ongoing admin support.
  • Implemented practical security and network hygiene (firewall/VPN patterns, segmentation where appropriate, endpoint basics).
  • Built simple automation/scripts and repeatable setup steps to speed delivery and reduce repeat work (~35% efficiency gain on recurring tasks).
  • Managed client relationships end-to-end; strong retention through reliable support and clear communication (~95% client retention where tracked).
  • Scoped projects, vendors, and priorities as a one-stop technical owner—foundation for later enterprise systems and infrastructure roles.
  • Focus: systems & network implementation, SMB IT support, security basics, and operational ownership—not pure sales.

IT Specialist @ SEAS Organization LTD

Istanbul, TurkiyeJanuary 2008 - October 2009

  • IT specialist supporting servers, networking, and day-to-day technical operations. Hands-on work across infrastructure reliability, basic security, and user support—early foundation for systems administration roles.
  • Administered and supported servers and core network services (TCP/IP, DNS, DHCP) for business operations.
  • Helped maintain high-availability style services with a focus on uptime and quick incident response (~99.9% uptime targets where applicable).
  • Configured and troubleshot network connectivity and related infrastructure issues for users and sites.
  • Applied basic security practices and IT policies; supported consistent access and safer endpoint/server posture.
  • Provided technical support and guidance; mentored junior teammates on routine tasks and troubleshooting.
  • Documented common fixes and operational steps to speed recovery and reduce repeat issues.
  • Focus: servers, networking fundamentals, reliability, and hands-on support—not management track.

05.Some Things I've Built

Hands-on systems and infrastructure work—not slide-only architecture. Where it helps, I use AI tools to draft scripts, runbooks, and docs, then validate everything with lab tests and human change control before production.

Active Directory Optimization

Redesigned Active Directory structure and GPO strategy for a large user base—cleaner OU design, automated software deployment, and tighter access control. Result: ~60% faster logins and simpler day-to-day user management. Used AI tools to draft GPO change notes and runbooks, then validated every change in a lab before production.

  • Active Directory
  • GPO
  • Windows Server
  • AI-assisted docs

Cloud Migration with Infrastructure as Code

Migrated workloads to AWS and Azure with Terraform and Ansible: repeatable provisioning, Linux lift-and-shift, and encryption baselines. ~30% cost reduction and ~60% faster deployments. AI assisted first drafts of modules and cutover checklists; all plans were reviewed, tested, and applied under change control.

  • AWS
  • Azure
  • Terraform
  • Ansible

Network Upgrade with SDN

Hands-on company-wide network refresh using Software Defined Networking—new topology, centralized control, VLAN/VPN patterns, and security hardening. ~40% better performance and fewer exposure points. Documented design decisions and ops procedures with AI-assisted write-ups, then verified against the live design.

  • SDN
  • VPN
  • VLAN
  • Network Security

Automated Patch Management

Built an automated patch pipeline with Microsoft SCCM-class tooling: rings, maintenance windows, and reporting. ~75% fewer known vulnerabilities and ~20 hours/week less manual patching. AI helped turn tribal knowledge into clear patch runbooks and exception workflows before rollout.

  • SCCM
  • Patching
  • Windows
  • Runbooks

Linux Server Infrastructure & Automation

Built and operated Ubuntu/CentOS server estates with Ansible automation, hardening baselines, and monitoring-minded ops. ~99.9% uptime focus for critical services. Used AI to accelerate playbook and script drafts; production changes only after peer-style review and dry-run checks.

  • Linux
  • Ansible
  • Hardening
  • Automation

Cybersecurity Hardening & Incident Readiness

Rolled out practical security controls: NGFW/IDS-IPS patterns, endpoint protection, encryption/PKI, and a lightweight forensics/IR playbook. ~70% fewer incidents and faster response in targeted environments. AI supported log triage notes and IR documentation—evidence handling and decisions stayed human-owned.

  • Firewall
  • Endpoint
  • PKI
  • IR

Disaster Recovery & Business Continuity

Designed backup/DR with off-site replication and failover patterns (Veeam/Acronis-class tooling). Clear RTO/RPO minded recovery steps and tabletop-friendly docs so the business can continue under failure scenarios. AI helped structure DR runbooks; restore tests validated the real procedures.

  • Backup
  • DR
  • Veeam
  • BCDR

Cross-Platform Mobile Device Management

Deployed MDM for iOS, Android, and macOS fleets: policy enforcement, remote wipe, and standardized onboarding. ~50% less device management overhead. AI-assisted policy explainers and user-facing setup guides, aligned with security requirements before publish.

  • MDM
  • iOS
  • Android
  • macOS

06. What's Next?

Get In Touch

I'm open to mid-level systems, network, cloud, and infrastructure roles (W2 or contract)—remote/hybrid or on-site, and willing to relocate in the U.S. when it's the right fit. Whether you have a role in mind or just want to say hi, I'll do my best to get back to you.

Say Hello