Case Studies

Intune & Windows Autopilot Modernisation

Environment: Microsoft Intune, Windows 11, Windows Autopilot, Microsoft Entra ID

Challenge: Improve the consistency, security and manageability of Windows endpoints while reducing the manual effort required to provision and support devices.

What I did: Implemented and developed Intune-based endpoint management covering device enrolment, configuration profiles, compliance policies, application deployment and endpoint security. Implemented Windows Autopilot to standardise device provisioning and support a more automated deployment process.

Outcome: Established a more consistent Modern Workplace endpoint platform with centralised policy management, automated provisioning and improved control across the Windows device lifecycle.

Entra ID, SSO & Automated User Provisioning

Environment: Microsoft Entra ID, Enterprise Applications, SSO, Conditional Access, MFA, SCIM

Challenge: Improve identity security and reduce reliance on separate application credentials and manually managed user access across business applications.

What I did: Designed, configured and deployed Microsoft Entra Enterprise Application integrations using Single Sign-On, group-based access and automated user provisioning. Implemented production SSO and SCIM provisioning for third-party platforms, including TeamViewer, and troubleshot authentication, attribute mapping and provisioning issues during deployment.

Outcome: Delivered centrally managed authentication and automated identity provisioning, reducing manual account administration and establishing a more consistent identity lifecycle using Microsoft Entra ID.

Microsoft 365 Security & Email Protection

Environment: Microsoft 365, Microsoft Defender for Office 365, Exchange Online, Entra ID

Challenge: Strengthen Microsoft 365 email security and move security controls further into the Microsoft cloud platform.

What I did: Implemented and documented Microsoft Defender for Office 365 controls, including Microsoft threat-protection policies, quarantine processes and controlled policy deployment. Tested security behaviour and produced supporting operational documentation for ongoing administration.

Outcome: Improved Microsoft 365 security governance and established centrally managed email-protection controls with documented operational processes.

Mobile Device Management – iOS & Android

Environment: Microsoft Intune, Apple Business Manager, Android Enterprise, iOS

Challenge: Establish structured mobile-device management across two organisations operating within a shared Microsoft environment.

What I did: Designed and implemented Intune enrolment and management approaches for corporate and personal mobile devices, including Android fully managed and BYOD scenarios. Integrated Apple Business Manager to support automated Apple device enrolment and applied configuration and security controls through Intune.

Outcome: Delivered a scalable mobile-management platform with more consistent enrolment, security configuration and lifecycle management across iOS and Android devices.

Microsoft 365 & Endpoint Tenant Transition

Environment: Microsoft 365, Microsoft Entra ID, Intune, OneDrive, Windows

Challenge: Transition approximately 75 user devices to a new Microsoft 365 environment following organisational consolidation.

What I did: Planned the endpoint transition, audited the existing device estate, assessed hardware lifecycle requirements and coordinated migration scheduling with users. Devices were rebuilt, enrolled into the target environment through Intune and user data protected and restored using OneDrive.

Outcome: Migrated approximately 75 endpoints while removing outdated hardware and moving users onto a more consistent cloud-managed endpoint platform.

IT Service Management & Workflow Modernisation

Environment: Freshservice, Microsoft 365, Intune, workflow automation

Challenge: Improve the structure, visibility and consistency of internal IT service delivery and replace processes that relied heavily on email and manual administration.

What I did: Helped implement and develop a modern IT service-management platform, building structured service requests and processes for common activities including starters, leavers, access requests and hardware requests. Developed operational workflows, documentation and endpoint inventory integration to improve how IT work is captured and managed.

Outcome: Established more structured and repeatable IT service processes with improved visibility, documentation and opportunities for further automation.

SolidWorks PDM Azure Connectivity Investigation

Environment: Azure, Windows, Intune, networking, Wireshark

Challenge: Following migration of a business-critical PDM environment, clients were unable to reliably connect despite successful general network connectivity and remote access.

What I did: Led technical investigation across endpoint configuration, network paths and security controls while coordinating with internal teams and third-party specialists. Used Wireshark traffic analysis and Intune policy review to compare working and failing connection scenarios.

Outcome: Identified a firewall-policy mismatch responsible for inconsistent wired and wireless behaviour, enabling the issue to be remediated and full application connectivity restored.

Other Recent Technical Work

Identity & Access

Conditional Access, MFA, Enterprise Applications, SSO, group-based access and identity lifecycle improvements.

Endpoint Security

Microsoft Defender, endpoint-security policies, device compliance and security configuration across managed endpoints.

Microsoft 365 Administration

Exchange Online, Teams, SharePoint Online, OneDrive, security configuration and operational administration.

PowerShell & Automation

PowerShell administration, repeatable operational tasks, technical investigation and workflow improvement.

Modern Endpoint Management

Windows 10/11, Intune, Autopilot, application deployment, configuration, compliance and device lifecycle management.

Technical Delivery

Complex troubleshooting, technical projects, supplier coordination, testing, documentation and operational handover.

Technical Stack

Modern Workplace & Endpoint

Microsoft Intune, Windows Autopilot, Windows 10/11, application deployment, configuration, compliance and endpoint security.

Microsoft 365

Exchange Online, Microsoft Teams, SharePoint Online, OneDrive and Microsoft 365 administration.

Identity & Access

Microsoft Entra ID, Conditional Access, MFA, SSO, Enterprise Applications, Active Directory and Entra Connect.

Device Management

Windows, iOS and Android management, Apple Business Manager and Android Enterprise.

Security

Microsoft Defender, Microsoft 365 security, endpoint protection, identity security and email security.

Automation

PowerShell administration and automation, with experience integrating cloud services and identity platforms.

Infrastructure

Microsoft Azure, Active Directory, DNS, DHCP, Hyper-V, VMware and hybrid infrastructure.

Networking & Troubleshooting

VPNs, firewalls, routing, switching, Wi-Fi, packet analysis and root-cause investigation.