Cloud ยท Identity ยท Endpoint ยท Messaging

Messaging, cloud, and endpoint architecture.

Over fifteen years of IT engineering across Microsoft 365, Azure, Windows, Linux and macOS โ€” designed, documented, and run on a platform that is monitored, version-controlled and inventoried.

Certified on

  • AZ-305
  • AZ-104
  • AZ-140
  • MD-102
  • MS-101
Capabilities

Where the work sits

Six areas that overlap more than they separate โ€” most real problems land across several of them at once.

Messaging & email architecture

Exchange Online and hybrid mail flow, transport rules, routing and coexistence, and the SPF, DKIM and DMARC work that keeps a domain deliverable and hard to spoof.

Microsoft 365 administration

Tenant configuration end to end โ€” Entra ID, licensing, groups and governance, security baselines, and the compliance surface that sits across them.

Azure architecture

Subscription and landing-zone design, networking and identity boundaries, resource governance, and cost-aware choices between IaaS and PaaS.

Azure Virtual Desktop

Host pool topology, session-host image lifecycle, FSLogix profile design, scaling behaviour, and the licensing and identity prerequisites behind them.

Endpoint management

Intune configuration and compliance policy, Autopilot provisioning, application packaging and deployment, and update rings across a device estate.

Cross-platform systems

Windows, Linux and macOS treated as one estate rather than three silos โ€” with the integration and identity work needed to make that true.

Full capability detail


Support platform

Instrumented, not improvised

The tooling behind the practice. Every environment is monitored, alerted on, described in code, and inventoried.

Zabbix

Infrastructure monitoring

Metric collection, thresholds and trend history across hosts and services.

Uptime Kuma

Availability alerting

External endpoint checks with notification routing when something stops answering.

Infrastructure as code

Version-controlled Linux

Declarative configuration held in git, so changes are reviewable and rebuilds are reproducible.

Snipe-IT

Asset management

Hardware, licence and assignment records kept as a single inventory of record.

How the platform is built

Built for demonstration, run like production.

The mbeeitandsecurity.onmicrosoft.com tenant and the platform behind it exist to test, break and demonstrate real Microsoft 365, Azure and security scenarios โ€” the kind that are far more convincing when the environment underneath them is genuinely maintained.

About the practice