Carlos Arita

Hi, I'm Carlos Arita

Senior Infrastructure Engineer and former Infrastructure Manager with 15+ years supporting a global consumer goods organization through Unilever ownership, a 2024 private equity carve-out, and a 2026 merger. I led the technical separation of 400 users into a new Microsoft 365 environment, retired a 200-server on-premises estate across 8 sites in 4 countries, and rolled out Intune and Autopilot to cut device onboarding from 6 hours to 1. My depth is in identity and security: Entra ID, Conditional Access, MFA, and SSO across 100+ enterprise applications.

What I Bring to Your Organization

Infrastructure, identity, and security leadership for organizations going through change.

Infrastructure & Operations Leadership

Technical lead for infrastructure teams through ownership changes and platform transitions. Owned the on-premises estate at Unilever, then led its retirement in favor of the cloud.

Identity & Access Management

Entra ID, Conditional Access, MFA, and SSO. Owned identity and access governance across 100+ SSO-integrated enterprise applications, including certificate lifecycle and privileged access reviews.

Security & Risk Reduction

Microsoft Defender, KnowBe4, email authentication, and web hardening. Turn security findings into achievable remediations and close gaps before they become incidents.

Divestiture & Merger Integration

Separated 400 users from a Fortune 500 parent into a standalone Microsoft 365 tenant, then ran the tenant-to-tenant migration when the company merged.

Microsoft 365, Intune & Azure

Tenant builds and migrations, Exchange, SharePoint, Teams Rooms, Intune and Autopilot, and Azure infrastructure. Consolidating tools onto licensing the business already owns.

Vendor & Cross-Functional Leadership

Vendor selection, contract management, and solution reviews with partners such as CDW, Dell, and Avanade. Coordinate IT teams, vendors, and business departments across global sites.

Professional Experience

Jan 2026 – Present

Senior Infrastructure Engineer @ Evermark

Formed by the merger of Elida Beauty and Suave Brands
  • Executed the tenant-to-tenant identity and data migration from Elida Beauty into the Suave Brands tenant during the first three months of the merger.
  • Deployed Intune and Autopilot to replace manual device builds, using dynamic groups to cut onboarding from 6 hours to 1 hour per device.
  • Implementing security best practices while consolidating MSP-provided tools onto Microsoft capabilities the company already licenses, eliminating redundant costs.
  • Manage SSO enterprise applications and Azure infrastructure day to day.
Apr 2021 – Dec 2025

Senior Infrastructure Engineer @ Elida Beauty

Formed within Unilever in 2021; carved out by Yellow Wood Partners in 2024

Technical lead for the 8-person infrastructure team within a 30+ person IT department, bringing the strategy, technical design, and deliverables for migration, security, and modernization projects.

Divestiture & Cloud Transition

  • Led the technical separation from Unilever for 400 users: new Microsoft 365 tenant, Active Directory split, and migration of email, enterprise applications, SharePoint, and OneDrive, plus a full hardware rollout.
  • Led decommissioning of the entire on-premises server estate, partnering with each department to move its workloads to supported cloud services.
  • Solution architect for the on-premises consolidation program, coordinating CDW and Dell; authored the Windows Server 2022 and Azure Stack HCI migration plan.
  • Rolled out Intune and Autopilot for 400+ users; deployed 8 Microsoft Teams Certified conference rooms at US headquarters.

Identity & Security

  • Implemented organization-wide MFA using modern methods only, enforced with Conditional Access policies.
  • Managed identity for 100+ SSO-integrated enterprise applications, including certificate lifecycle, service accounts, client secret reporting, and privileged access reviews.
  • Actioned Microsoft Defender findings with the security team, advising which remediations were achievable and executing them.
  • Configured SPF and DKIM for an Amazon SES integration with NICE CXone; hardened the corporate website with Cloudflare WAF; designed secure SFTP transfers on Azure Blob and Azure Files.

Vendors & Leadership

  • Selected vendors and managed contracts; reviewed and approved solution designs from Avanade; participated in procurement workflows and PO approvals.
  • Supervised a Systems Administrator (2021–2024) and served as escalation point for high-risk identity, infrastructure, and security issues.
Feb 2011 – Apr 2021

Infrastructure Manager @ Unilever (TIGI Haircare)

Progressed from Help Desk to Network Administrator to Infrastructure Manager

Owned the on-premises environment across 200 servers and 8 sites in the US, UK, Germany, and Italy: 1,500+ identities and 800 endpoints. Technical lead for the 8-person IT team.

  • Owned server, storage, virtualization, and network infrastructure, setting the standard other global sites followed.
  • Upgraded primary and secondary domain controllers and Exchange 2010 for 700+ users; ran VMware, Hyper-V, Citrix XenServer, and Oracle VM platforms.
  • Replaced legacy network equipment with Cisco ASA firewalls, routers, and HPE 7500-series chassis switches; built Cisco site-to-site VPN tunnels with failover for every site.
  • Owned backup and data integrity with NetBackup and Backup Exec; executed live disaster recoveries of Active Directory, file servers, and Exchange.
  • Contained a ransomware infection, restoring only affected files from NetBackup overnight with zero data loss, then blocked executables from running in user profiles through Group Policy.
  • Managed SCCM and Windows imaging with standardized gold images.

Hiring for infrastructure, identity, or security?

Open to Infrastructure Manager, Senior Infrastructure Engineer, and identity-focused roles in Dallas–Fort Worth or remote.

Download resume

Let's Talk!

Selected Projects

Key Career Themes