01
Assessment
A short, focused review of the current environment - identity, mail, endpoints, sharing, DNS - with findings written down plainly and ordered by risk rather than by effort.
Technology
Around ten years in IT systems administration. Most of that time has been spent where identity, email, collaboration, endpoints and security overlap - the seams where things actually break.
Areas of expertise
Six areas that cover most of the work. They overlap constantly, which is usually the point - a migration is an identity problem, and an email problem, and a DNS problem, all at once.
01
User and group lifecycle across Microsoft Entra ID and Google Workspace: provisioning, joiner-mover-leaver process, conditional access and MFA policy, delegated administration, service accounts and the periodic audit that removes whatever accumulated since the last one.
02
Exchange Online and Gmail administration end to end: mail flow and transport rules, shared and resource mailboxes, delegation, archiving and retention, quarantine and spam policy, plus the SPF, DKIM and DMARC records that decide whether any of it is delivered at all.
03
Tenant-to-tenant and cross-platform migrations covering mail, files, calendars, groups and identity. Discovery and inventory first, then a cutover plan with coexistence, a rollback position, and a written answer for the questions that arrive the following morning.
04
SharePoint, OneDrive and Google Drive administration: sharing and external-access policy, permission structures that survive reorganisation, storage and sync troubleshooting, and SaaS administration across the wider application stack.
05
Managing Windows and macOS fleets through RMM tooling - policy, patching, monitoring and remediation - alongside the security and compliance layer: Microsoft Defender, Microsoft Purview, Fortinet firewall policy, and the network and DNS configuration underneath.
06
PowerShell, Microsoft Graph and GAMADV-XTD3 scripting for bulk administration, reporting and repeatable onboarding and offboarding. And the underrated half of the job: reading logs, isolating variables and finding the actual cause rather than the first plausible one.
Systems & platforms
Grouped by what they are for rather than by vendor, because that is how the problems arrive.
Selected project experience
Note These entries describe categories of work rather than named engagements. Client environments and specifics are not published here; details can be discussed directly.
Inventory and dependency mapping, identity matching, mailbox and OneDrive migration, domain cutover, DNS sequencing, and post-migration cleanup of licensing, groups and mail flow.
Cross-platform move of mail, calendars, contacts and Drive content, with coexistence during cutover, user communication, client reconfiguration and a defined support window afterwards.
Audit of accounts, admin roles, legacy authentication and external sharing; MFA and conditional access rollout; removal of stale access; and documentation of a lifecycle process the organization could actually follow.
Diagnosis of delivery failures and spoofing exposure across mixed sending sources, correction of SPF, DKIM and DMARC records, transport and quarantine policy tuning, and monitoring to confirm it stayed fixed.
Bringing Windows and macOS devices under consistent RMM policy - enrollment, patching, security baselines, monitoring and alerting - with the manual steps replaced by scripted ones.
PowerShell, Microsoft Graph and GAMADV-XTD3 workflows covering account creation, group and license assignment, mailbox delegation, data handover and full revocation on exit.
Consulting
01
A short, focused review of the current environment - identity, mail, endpoints, sharing, DNS - with findings written down plainly and ordered by risk rather than by effort.
02
Defined-scope delivery: a migration, a security remediation, an identity cleanup, an endpoint rollout. Fixed outcome, agreed cutover window, documentation at handover.
03
Continuing administration and escalation support for small organizations that need someone who knows the environment, without carrying a full internal IT function.
Future services
Status IAZZUS is not an established managed-services provider. The categories below describe the service lines being built toward. Current availability is independent consulting and project work.
Tenant configuration, licensing, policy and day-to-day administration.
Directory, mail, Drive and organizational-unit policy management.
Tenant-to-tenant, cross-platform and consolidation projects.
Lifecycle process, conditional access, MFA and privilege review.
Authentication records, filtering policy, phishing exposure and monitoring.
Zone management, record hygiene, cutovers and registrar consolidation.
Enrollment, patching, baselines and monitoring for Windows and macOS.
Practical build-out and documentation for organizations without internal IT.
Scripted administration, reporting and repeatable operational workflows.
Send the situation as it actually is. I will tell you whether it is something I can help with.