Experience
Selected Modern Workplace Work
Examples of hands-on engineering and project delivery across Microsoft Intune, Windows Autopilot, Microsoft 365, Entra ID, identity, security and endpoint management.
Case Studies
Intune & Windows Autopilot Modernisation
Environment: Microsoft Intune, Windows 11, Windows Autopilot, Microsoft Entra ID
Challenge: Improve the consistency, security and manageability of Windows endpoints while reducing the manual effort required to provision and support devices.
What I did: Implemented and developed Intune-based endpoint management covering device enrolment, configuration profiles, compliance policies, application deployment and endpoint security. Implemented Windows Autopilot to standardise device provisioning and support a more automated deployment process.
Outcome: Established a more consistent Modern Workplace endpoint platform with centralised policy management, automated provisioning and improved control across the Windows device lifecycle.
Entra ID, SSO & Automated User Provisioning
Environment: Microsoft Entra ID, Enterprise Applications, SSO, Conditional Access, MFA, SCIM
Challenge: Improve identity security and reduce reliance on separate application credentials and manually managed user access across business applications.
What I did: Designed, configured and deployed Microsoft Entra Enterprise Application integrations using Single Sign-On, group-based access and automated user provisioning. Implemented production SSO and SCIM provisioning for third-party platforms, including TeamViewer, and troubleshot authentication, attribute mapping and provisioning issues during deployment.
Outcome: Delivered centrally managed authentication and automated identity provisioning, reducing manual account administration and establishing a more consistent identity lifecycle using Microsoft Entra ID.
Microsoft 365 Security & Email Protection
Environment: Microsoft 365, Microsoft Defender for Office 365, Exchange Online, Entra ID
Challenge: Strengthen Microsoft 365 email security and move security controls further into the Microsoft cloud platform.
What I did: Implemented and documented Microsoft Defender for Office 365 controls, including Microsoft threat-protection policies, quarantine processes and controlled policy deployment. Tested security behaviour and produced supporting operational documentation for ongoing administration.
Outcome: Improved Microsoft 365 security governance and established centrally managed email-protection controls with documented operational processes.
Mobile Device Management – iOS & Android
Environment: Microsoft Intune, Apple Business Manager, Android Enterprise, iOS
Challenge: Establish structured mobile-device management across two organisations operating within a shared Microsoft environment.
What I did: Designed and implemented Intune enrolment and management approaches for corporate and personal mobile devices, including Android fully managed and BYOD scenarios. Integrated Apple Business Manager to support automated Apple device enrolment and applied configuration and security controls through Intune.
Outcome: Delivered a scalable mobile-management platform with more consistent enrolment, security configuration and lifecycle management across iOS and Android devices.
Microsoft 365 & Endpoint Tenant Transition
Environment: Microsoft 365, Microsoft Entra ID, Intune, OneDrive, Windows
Challenge: Transition approximately 75 user devices to a new Microsoft 365 environment following organisational consolidation.
What I did: Planned the endpoint transition, audited the existing device estate, assessed hardware lifecycle requirements and coordinated migration scheduling with users. Devices were rebuilt, enrolled into the target environment through Intune and user data protected and restored using OneDrive.
Outcome: Migrated approximately 75 endpoints while removing outdated hardware and moving users onto a more consistent cloud-managed endpoint platform.
IT Service Management & Workflow Modernisation
Environment: Freshservice, Microsoft 365, Intune, workflow automation
Challenge: Improve the structure, visibility and consistency of internal IT service delivery and replace processes that relied heavily on email and manual administration.
What I did: Helped implement and develop a modern IT service-management platform, building structured service requests and processes for common activities including starters, leavers, access requests and hardware requests. Developed operational workflows, documentation and endpoint inventory integration to improve how IT work is captured and managed.
Outcome: Established more structured and repeatable IT service processes with improved visibility, documentation and opportunities for further automation.
SolidWorks PDM Azure Connectivity Investigation
Environment: Azure, Windows, Intune, networking, Wireshark
Challenge: Following migration of a business-critical PDM environment, clients were unable to reliably connect despite successful general network connectivity and remote access.
What I did: Led technical investigation across endpoint configuration, network paths and security controls while coordinating with internal teams and third-party specialists. Used Wireshark traffic analysis and Intune policy review to compare working and failing connection scenarios.
Outcome: Identified a firewall-policy mismatch responsible for inconsistent wired and wireless behaviour, enabling the issue to be remediated and full application connectivity restored.
Other Recent Technical Work
Conditional Access, MFA, Enterprise Applications, SSO, group-based access and identity lifecycle improvements.
Microsoft Defender, endpoint-security policies, device compliance and security configuration across managed endpoints.
Exchange Online, Teams, SharePoint Online, OneDrive, security configuration and operational administration.
PowerShell administration, repeatable operational tasks, technical investigation and workflow improvement.
Windows 10/11, Intune, Autopilot, application deployment, configuration, compliance and device lifecycle management.
Complex troubleshooting, technical projects, supplier coordination, testing, documentation and operational handover.
Technical Stack
Microsoft Intune, Windows Autopilot, Windows 10/11, application deployment, configuration, compliance and endpoint security.
Exchange Online, Microsoft Teams, SharePoint Online, OneDrive and Microsoft 365 administration.
Microsoft Entra ID, Conditional Access, MFA, SSO, Enterprise Applications, Active Directory and Entra Connect.
Windows, iOS and Android management, Apple Business Manager and Android Enterprise.
Microsoft Defender, Microsoft 365 security, endpoint protection, identity security and email security.
PowerShell administration and automation, with experience integrating cloud services and identity platforms.
Microsoft Azure, Active Directory, DNS, DHCP, Hyper-V, VMware and hybrid infrastructure.
VPNs, firewalls, routing, switching, Wi-Fi, packet analysis and root-cause investigation.