ENNL

Mark A. Basco: based in Brussels, Belgium, speaks four languages, secures digital identities, optimizes privileged access controls, improves user lifecycle management, protects critical assets through access governance, explores the possibilities of AI, designs visually and user-friendly web experiences, captures moments through photography, wanders through hidden destinations, hikes scenic trails and new landscapes, loves a good road trip, savors in culinary delights from around the world, reads new perspectives from authors, escapes into the magic of movies and arts.

Mark A. Basco overlooking a city of red rooftops
01About

About Me.

A quick background about who I am and what I do.

Hello! I'm Mark A. Basco, an Identity & Access Management Specialist focused on securing digital identities, optimizing privileged access, and strengthening access governance. My roots in Systems Engineering and IT infrastructure have provided a rock-solid foundation for my career in cybersecurity.

Working across the IT services, manufacturing, energy, and financial sectors has equipped me to design IAM and PAM programs that balance business agility with rigorous security standards. From authoring core security policies to driving role-based access control (RBAC) frameworks, my work is about creating clarity and control within complex enterprise environments.

Most recently, I've played a central role in elevating our Privileged Access Management program to maturity level 3—acting as a strategic advisor on access governance and shaping security roadmaps that tie directly to broader organizational goals.

Outside the terminal, I explore the world through photography, road adventures, and food trips.

These interests keep me curious, grounded, and always learning—values that ultimately shape how I approach my work in cybersecurity.

This space is a living portfolio of my journey, my agentic coding explorations, and my professional work. Thanks for stopping by.

Years in IT
18+
Roles
5
Industries
4
02Skills

My Skills.

I work at the intersection of identity, cybersecurity, governance and enterprise architecture.

01 / 06

Identity & Access Management

Governing who gets access, what they can touch, and why.

I design role models, joiner-mover-leaver lifecycle flows, and certification cycles that enable enterprises to manage access securely at scale.

Worked with

SailPoint IdentityIQ Microsoft Entra ID (Azure AD) Active Directory RBAC & ABAC Design Access Certification Identity Lifecycle SSO & MFA API Integrations

02 / 06

Privileged Access Management

Securing the accounts that hold the keys to the kingdom.

I design robust privileged access strategies—elevating program maturity to level 3, leading the discovery of unmanaged accounts, defining core governance frameworks, and enforcing least privilege to minimize standing access.

Worked with

CyberArk Credential Vaulting Privileged Session Management Just-In-Time (JIT) Access Account Discovery Least Privilege Controls

03 / 06

Systems Infrastructure

Identity management only works when the core infrastructure is sound.

Drawing on a deep background in managing Windows, Exchange, SQL, and storage across global estates, I understand exactly what breaks when access controls change.

Worked with

Windows Server PowerShell Microsoft Exchange SQL Server Group Policy Storage & Backup Endpoint Security Patch Management Asset Inventory

04 / 06

Cloud & Hybrid Environments

Securing resources beyond the traditional perimeter.

Designing secure access and administration models across hybrid environments, bridging on-premise directories with distributed cloud workloads.

Worked with

AWS Microsoft Azure Google Cloud VMware Hybrid Cloud Architecture Cloud Access Governance Federated Identity

05 / 06

Security Governance & Policy

Frameworks are only effective when teams can actually act on them.

I author comprehensive IAM policies, operational procedures, and training programs—mapping practical controls directly to audit and compliance requirements.

Worked with

ISO 27001 NIST CSF DORA TIBER-EU Splunk Policy Development Control Mapping Standard Operating Procedures Pen-Test Management Security Training Agile Delivery

06 / 06

AI & Agentic Coding

Agents write the code, but architectural vision drives the product.

Through architecting personal projects like ADEL, Project 82, TripStack, Sekreto, and MLBas.co, I’ve developed a disciplined approach to agentic coding: I drive the vision and review the output, while AI agents write the code.

Built with

Claude Codex Antigravity IDE TypeScript Next.js React Supabase Firebase Mapbox

03Projects

Agentic Explorations.

Practical experiments in agentic software engineering.

These personal projects serve as a proving ground for agentic engineering. They are designed to test how AI agents can accelerate the design, implementation, security, and deployment of full-stack applications.

Case Study 01

ADEL

An engineering delivery framework designed for the AI era. ADEL maintains strict coherence from initial intent through to implementation, evidence, and closure for systems built by human-AI teams. It features six operational layers and an agent overlay, prioritizing hard evidence over mere declarations.

  • Framework
  • Playbook
  • Template
  • AGENTS.md

Case Study 02

Sekre.to

A zero-knowledge secret-sharing application that performs end-to-end encryption directly in the browser via the Web Crypto API. It generates self-destructing links that ensure highly sensitive information permanently vanishes after a set time or view limit.

  • Next.js
  • Supabase
  • Tailwind CSS
  • Web Crypto API

Case Study 03

MLBas.co

A high-performance, secure URL shortener that converts long links into clean, shareable URLs. Built with security at the forefront, it features built-in rate limiting, strict URL sanitization, and real-time malicious link detection via the Google Safe Browsing API.

  • Next.js
  • Supabase
  • Tailwind CSS
  • Google Safe Browsing API

Case Study 04

Project 82

A personal interactive atlas charting my journey across all eighty-two Philippine provinces. Built from official geographic boundary data, it features an engaging scratch-map interface and a precise Metro Manila inset—mapping the places I've called home and the destinations still on my itinerary.

  • Next.js
  • Mapbox GL
  • Supabase
  • PSGC data
04Experience

Experience.

A winding journey through my career.

IT CompanyJun '08 – May '12

Technical Engineer

I provided end-to-end technical support across a wide range of enterprise IT environments, eventually specializing as the subject matter expert for Storage and Backup solutions.

ManufacturingAug '08 – Feb '12

IT Consultant

Embedded within a global manufacturing client, I managed local network and Active Directory operations, collaborated on international infrastructure projects, and drove user training for security best practices.

Oil & EnergyMay '12 – Jan '14

Systems Administrator

I owned the core IT infrastructure and led major architectural shifts—including greenfield Active Directory deployments, enterprise Exchange migrations, and a complete redesign of the service desk.

Investment & BankingJan '14 – Mar '22

IT Security - IAM

Working within a global cybersecurity team, I managed the end-to-end identity lifecycle, drove UAM and PAM operations, and strengthened the firm’s security posture through stringent audit and access control frameworks.

FintechApr '22 – Present

User Access Specialist

I serve as the primary advisor on user access and IAM policy, leading our Privileged Access Management program to maturity level 3 while aligning our access governance with strict regulatory standards.

05Bio

Beyond Work.

A visual journey of life, passions, and the places that have inspired me outside of my professional endeavors.

I was born and raised in Alaminos, Pangasinan—a quiet town surrounded by rice fields and fruit trees. I spent my early years there with my grandparents before moving to Caloocan City for high school. It was there, upon getting our first home computer (a Pentium 4 running Windows XP), that my fascination with technology began. That curiosity led to an IT degree from Colegio de San Juan de Letran in Manila, sparking a career that has spanned diverse roles, industries, and technological shifts ever since.

When I'm not at a keyboard, I'm usually reading, watching films, or lost in a good audiobook. I stay active through badminton, bowling, and the gym, and I'm always game for a spontaneous food trip or travel adventure with friends.

My love for travel started early. As a kid, I spent hours watching travel documentaries and memorizing capital cities, fascinated by the world beyond my hometown. Today, traveling is less about checking off landmarks and more about the perspective it brings. It teaches adaptability, builds resilience in unfamiliar situations, and constantly reminds me of how much there is still to learn.

One specific goal has anchored this passion: setting foot in all eighty-two provinces of the Philippines. So far I have reached 36—some I have lived in, some I know well, and some I only passed through on the way somewhere else. Growing up in Pangasinan, I assumed I knew my own country. But counting the provinces has shown me just how much of it I have yet to discover.

Follow the count on Project 82

Travel sparks creativity, builds resilience, and constantly pushes me to step out of my comfort zone.

Travel log

Places I've Explored

A visual journey of destinations that have inspired me.

Total explored
0 countries
Regions
0 regions
Click to control the map

Scroll to zoom · Drag to spin · Hover a country

Map loading...
06Social

Connect With Me.

Find me on these platforms or see what I'm up to.

07Contact

Get In Touch.

Have a question or want to work together? Feel free to reach out!

© 2011-2026 Mark A. Basco. All rights reserved.

Designed with ♥ and coded with Tailwind CSS, Next.js & GSAP.

Disclaimer: This personal website contains thoughts, ideas, and opinions that are my own and they do not necessarily reflect those of my employer.