Sydney-based IT support professional with hands-on experience supporting Windows, macOS and iPadOS environments and administering Microsoft 365, Active Directory, Microsoft Entra ID. I am progressing toward Microsoft 365, endpoint and identity administration roles, combining practical workplace experience with independently built Intune, Conditional Access, PIM and endpoint-security labs.
LinkedIn · Email · Sydney, Australia
My workplace experience includes:
- Provide Level 1 and Level 2 support across Windows, macOS and iPadOS environments, troubleshooting software, accounts, printing, networking and classroom technology.
- Administer Microsoft 365 services, including user access, shared mailboxes, distribution groups, Outlook, Teams, OneDrive and SharePoint.
- Investigate email-delivery issues using Exchange Online message tracing, including analysing approximately 900 bulk messages and identifying failed recipients.
- Administer identities and Active Directory security-group memberships, including account management, password resets and restoring Adobe licensing, printer and resource access by assigning the appropriate groups.
- Administer Microsoft Entra ID group memberships used to assign access, licences and cloud-based policies.
- Investigate Microsoft Entra ID authentication failures using sign-in logs and error codes, confirming whether Conditional Access policies were applied as expected.
- Provide phone-based MFA support to external users by identifying device changes, verifying registered authentication methods and confirming Microsoft Authenticator enrolment.
- Manage the Windows device lifecycle through imaging, Active Directory domain joining, application installation, post-deployment validation and preparation for onboarding, offboarding and reassignment.
- Enrol and support Apple devices through Jamf, resolving configuration-profile, certificate, Keychain, Wi-Fi and application issues.
- Build Power Automate workflows that capture Microsoft Forms submissions and automatically create help-desk tickets, streamlining walk-in support.
- Monitor and investigate security alerts across endpoint, email and identity environments, review available evidence and escalate confirmed or suspicious activity to the appropriate security teams.
- Troubleshoot network connectivity using testing device equipment, switch-port and VLAN information, patch panels and structured cabling.
- Document technical procedures and troubleshooting outcomes to create reusable support guides, checklists and knowledge-base articles.
Workplace experience and personal lab work are presented separately. The projects below were built in an independent lab environment and do not contain employer information.
| Area | Technologies and capabilities | Experience basis |
|---|---|---|
| Microsoft 365 | Microsoft 365 administration and support, Exchange Online message trace, Teams administration, Teams Phone, Outlook, OneDrive and SharePoint | Workplace |
| Identity and access | Active Directory and Microsoft Entra ID account administration, security-group membership and access troubleshooting; MFA, Conditional Access, RBAC and PIM | Workplace administration + independent labs |
| Endpoint management | Windows deployment and Jamf support; Microsoft Intune enrolment, compliance policies, Win32 application deployment, Autopilot, BYOD and MAM | Workplace support + independent labs |
| Endpoint security | Microsoft Defender alert investigation; Intune-managed Attack Surface Reduction and Defender Firewall policies with security validation | Workplace investigation + independent labs |
| Automation and scripting | Microsoft Power Automate workflow development; foundational PowerShell and Microsoft Teams PowerShell | Workplace automation + foundational scripting |
| Technical support | Windows, macOS and iPadOS support, Jamf, ticketing, Event Viewer, network troubleshooting and technical documentation | Workplace |
Designed and validated a least-privilege solution that provides temporary local administrator access only on approved devices. The design uses PIM-eligible group membership, MFA, approval, justification, a one-hour activation window and an Intune Account Protection policy.
Configured eligible rather than permanent Global Administrator access. Required MFA, justification and approval; applied time-bound activation; enabled notifications; and validated the full request, approval, activation and automatic-expiry lifecycle.
Protected organisational data in Outlook on an unmanaged iPhone using Intune App Protection Policies and Conditional Access. Validated managed-app access, PIN enforcement, browser blocking and restrictions on copy/paste and data transfer.
Built Microsoft Entra Conditional Access policies for location-based access, MFA and sign-in frequency. Tested access from a US VPN endpoint and verified the result using Entra sign-in logs and policy evaluation.
Packaged Google Chrome Enterprise as an .intunewin application, configured silent installation, requirements and MSI detection rules, assigned it to managed devices and validated the deployment through Intune reporting and endpoint checks.
Configured ASR rules through Intune Endpoint Security to reduce credential theft and Office-based attack paths. Verified policy deployment using PowerShell and Defender telemetry, then tested credential-dumping protection using Sysinternals ProcDump.
- Microsoft 365 tenant configuration, user creation, licensing, MFA and least-privilege roles
- Intune enrolment and Windows compliance policies
- Windows Autopilot and Windows Hello for Business
- Active Directory Domain Services, DNS, Group Policy and user lifecycle management
- Microsoft Defender Firewall configuration
- Intune compliance integrated with Conditional Access
- Ticketing, Event Viewer, networking and remote-support scenarios
- CompTIA Security+ (SY0-701)
- Google Cybersecurity Professional Certificate
- Cisco Junior Cybersecurity Analyst Career Path
- Currently developing toward Microsoft Certified: Endpoint Administrator Associate (MD-102)
- Planned next focus: Microsoft Identity and Access Administrator (SC-300)
I am building on my IT support foundation toward Microsoft 365 and endpoint administration roles, with a longer-term focus on identity and access management. I am developing deeper capability across Exchange Online, Microsoft Teams, Entra ID, Intune, Conditional Access and automation through workplace experience and independent labs, with an emphasis on secure administration, least privilege and clear technical documentation.