Microsoft & Identity

Active Directory Entra ID Microsoft 365 Intune / Endpoint Defender Azure Admin Azure Architecture

Core identity and cloud management stack. I design and implement Entra ID configurations, Conditional Access policies, Global Secure Access for ZTNA, and Just-in-Time privilege models. See related certifications.

Hardening & Security

GPO / Baselines Least Privilege JIT Access MFA / Conditional Access ZTNA Vulnerability Mgmt

Security posture improvement through audit remediation, privilege reduction, compliance baselines and post-compromise hardening. Applied across both customer and internal environments.

Infrastructure

Windows Server NPS PKI VMware Proxmox Azure Virtual Desktop Bicep / Terraform Veeam Cloud Connect

On-premises and cloud infrastructure design, deployment and migration. Includes datacenter operations, virtualization platform migrations and infrastructure-as-code deployments.

Network & Security

Sophos Fortinet Centralized Switching WAF Site-to-Site Tunnels Wazuh SIEM Zabbix Monitoring

Multi-site network infrastructure design with centralized management. Firewall migration, VPN/tunnel architecture, SIEM deployment and network monitoring. I hold a Sophos Certified Engineer credential.

Automation & Tooling

PowerShell Intune Remediations RMM Scripting GLPI Custom Dev AI-Assisted Workflows

Automation of operational tasks through scripting, Intune remediations and RMM tooling. Custom GLPI module development for Entra ID integration, license sync and AI-assisted ticket workflows.

See these skills in context