Technology

Systems that have to work on Monday

Around ten years in IT systems administration. Most of that time has been spent where identity, email, collaboration, endpoints and security overlap - the seams where things actually break.

~10 Years in IT
2 Core ecosystems
6 Areas of expertise

Areas of expertise

Where I am useful

Six areas that cover most of the work. They overlap constantly, which is usually the point - a migration is an identity problem, and an email problem, and a DNS problem, all at once.

  1. 01

    Identity & access management

    User and group lifecycle across Microsoft Entra ID and Google Workspace: provisioning, joiner-mover-leaver process, conditional access and MFA policy, delegated administration, service accounts and the periodic audit that removes whatever accumulated since the last one.

    • Microsoft Entra ID
    • Google Workspace directory
    • Conditional access
    • MFA
    • Least privilege
  2. 02

    Email systems

    Exchange Online and Gmail administration end to end: mail flow and transport rules, shared and resource mailboxes, delegation, archiving and retention, quarantine and spam policy, plus the SPF, DKIM and DMARC records that decide whether any of it is delivered at all.

    • Exchange Online
    • Gmail
    • Mail flow
    • SPF / DKIM / DMARC
    • Deliverability
  3. 03

    Migrations

    Tenant-to-tenant and cross-platform migrations covering mail, files, calendars, groups and identity. Discovery and inventory first, then a cutover plan with coexistence, a rollback position, and a written answer for the questions that arrive the following morning.

    • Microsoft 365 tenant-to-tenant
    • Google Workspace ↔ Microsoft 365
    • BitTitan MigrationWiz
    • Cutover planning
  4. 04

    Collaboration platforms

    SharePoint, OneDrive and Google Drive administration: sharing and external-access policy, permission structures that survive reorganisation, storage and sync troubleshooting, and SaaS administration across the wider application stack.

    • SharePoint
    • OneDrive
    • Google Drive
    • SaaS administration
  5. 05

    Endpoint management & security

    Managing Windows and macOS fleets through RMM tooling - policy, patching, monitoring and remediation - alongside the security and compliance layer: Microsoft Defender, Microsoft Purview, Fortinet firewall policy, and the network and DNS configuration underneath.

    • NinjaRMM
    • Addigy
    • Microsoft Defender
    • Microsoft Purview
    • Fortinet
    • DNS
  6. 06

    Automation & troubleshooting

    PowerShell, Microsoft Graph and GAMADV-XTD3 scripting for bulk administration, reporting and repeatable onboarding and offboarding. And the underrated half of the job: reading logs, isolating variables and finding the actual cause rather than the first plausible one.

    • PowerShell
    • Microsoft Graph
    • GAM / GAMADV-XTD3
    • Reporting

Systems & platforms

Tools I work in daily

Grouped by what they are for rather than by vendor, because that is how the problems arrive.

Identity & directory

  • Microsoft Entra ID
  • Google Workspace Admin
  • Conditional access
  • MFA
  • Delegated admin

Email

  • Exchange Online
  • Gmail
  • Transport rules
  • Email security
  • SPF / DKIM / DMARC

Collaboration

  • SharePoint
  • OneDrive
  • Google Drive
  • Microsoft 365
  • Google Workspace

Security & compliance

  • Microsoft Defender
  • Microsoft Purview
  • Fortinet
  • Endpoint hardening

Endpoint & RMM

  • NinjaRMM
  • Addigy
  • Windows
  • macOS

Migration

  • BitTitan MigrationWiz
  • Tenant-to-tenant
  • Cross-platform

Automation

  • PowerShell
  • Microsoft Graph
  • GAM / GAMADV-XTD3

Network & DNS

  • DNS administration
  • Fortinet
  • Networking

Operations

  • Halo PSA
  • MSP operations
  • Documentation
  • SaaS administration

Selected project experience

Types of work I have delivered

Note These entries describe categories of work rather than named engagements. Client environments and specifics are not published here; details can be discussed directly.

  1. Migration

    Microsoft 365 tenant-to-tenant consolidation

    Inventory and dependency mapping, identity matching, mailbox and OneDrive migration, domain cutover, DNS sequencing, and post-migration cleanup of licensing, groups and mail flow.

  2. Migration

    Google Workspace to Microsoft 365 transition

    Cross-platform move of mail, calendars, contacts and Drive content, with coexistence during cutover, user communication, client reconfiguration and a defined support window afterwards.

  3. Identity

    Identity and access remediation

    Audit of accounts, admin roles, legacy authentication and external sharing; MFA and conditional access rollout; removal of stale access; and documentation of a lifecycle process the organization could actually follow.

  4. Email

    Mail flow and deliverability repair

    Diagnosis of delivery failures and spoofing exposure across mixed sending sources, correction of SPF, DKIM and DMARC records, transport and quarantine policy tuning, and monitoring to confirm it stayed fixed.

  5. Endpoints

    Endpoint management standardization

    Bringing Windows and macOS devices under consistent RMM policy - enrollment, patching, security baselines, monitoring and alerting - with the manual steps replaced by scripted ones.

  6. Automation

    Onboarding and offboarding automation

    PowerShell, Microsoft Graph and GAMADV-XTD3 workflows covering account creation, group and license assignment, mailbox delegation, data handover and full revocation on exit.

Consulting

How engagements work

01

Assessment

A short, focused review of the current environment - identity, mail, endpoints, sharing, DNS - with findings written down plainly and ordered by risk rather than by effort.

02

Project work

Defined-scope delivery: a migration, a security remediation, an identity cleanup, an endpoint rollout. Fixed outcome, agreed cutover window, documentation at handover.

03

Ongoing support

Continuing administration and escalation support for small organizations that need someone who knows the environment, without carrying a full internal IT function.

Future services

Where IAZZUS is heading

Status IAZZUS is not an established managed-services provider. The categories below describe the service lines being built toward. Current availability is independent consulting and project work.

Microsoft 365 administration

Tenant configuration, licensing, policy and day-to-day administration.

Google Workspace administration

Directory, mail, Drive and organizational-unit policy management.

Migrations

Tenant-to-tenant, cross-platform and consolidation projects.

Identity & access

Lifecycle process, conditional access, MFA and privilege review.

Email security

Authentication records, filtering policy, phishing exposure and monitoring.

DNS & domains

Zone management, record hygiene, cutovers and registrar consolidation.

Endpoint management

Enrollment, patching, baselines and monitoring for Windows and macOS.

Small business infrastructure

Practical build-out and documentation for organizations without internal IT.

Automation

Scripted administration, reporting and repeatable operational workflows.

Describe the problem, not the solution.

Send the situation as it actually is. I will tell you whether it is something I can help with.