16.07.2026 aktualisiert


verifiziert
Premiumkunde
100 % verfügbarSenior Cloud Architect | Azure Cloud Engineer | M365 | Terraform | AVD | Intune | Allrounder
Staudach-Egerndach, Deutschland
Deutschland +2
geprüfter Web-Designer, Netzwerkadministrator, Server-Administrator (MS 2016, MS 2019, MS 2022)info: Deutschland, Österreich, Schweiz
Über mich
Senior Cloud Architect und Azure Cloud Engineer mit Fokus auf Microsoft 365, Terraform/Bicep, Azure DevOps, AVD, Intune, Entra ID, Hybrid Hosting und Datacenter-Betrieb. Hands-on in Architektur, Migration, Betrieb, Automatisierung und Troubleshooting.
Skills
Active DirectoryMicrosoft AzureClient-Server-ArchitekturCloud ComputingCloud-EngineeringEnterprise Architecture FrameworkVPNAzure SQLAzure Active DirectoryAzure AutomationCloud PlatformIT-ArchitekturAzure PowerShellCloud TechnologiesCloudformation
Azure Cloud Engineering / IaC
Azure VMs, Azure Virtual Desktop, Azure BLOB Storage, Managed SQL, Azure Networking, Azure vWAN, Azure VPN, Private DNS Zones, Terraform, Azure Bicep, Azure DevOps Pipelines, Azure Automation Accounts, PowerShell Runbooks, Azure Cost Management, Naming Conventions, Governance, Deployment-Automatisierung
Microsoft 365 / Modern Workplace
Microsoft 365 Administration, Exchange Online, Exchange Server 2016 On-Prem, Microsoft Teams, Teams Rollout-Unterstützung, SharePoint Online, OneDrive for Business, Power Automate, Power Apps, Microsoft Forms, Bookings, Lizenzberatung
Identity / Endpoint / Security
Active Directory, Entra ID / Azure AD, AD DS, DNS, ADFS, Windows CA, SCEP, NDES, Intune Certificate Connector, Conditional Access, MFA, Microsoft Intune, MDM, Cloud-only Endpoints, GPO, Microsoft Defender
Datacenter / Virtualisierung / Storage
Hybrid Hosting, PVE/Proxmox, XEN, Azure VM, Hyper-V, Windows Server 2012 R2/2016/2019/2022, File Services, DFS, Print Services, Print & Follow, iSCSI, NFS, SMB, Local Storage, Cloud Storage
Network / Firewall / Operations
Sophos Firewall, Fortinet, SonicWall-Migration, OS-Firewall, Firewall Policies, Subnetting, Port-Tagging, LACP, VPN, VLAN, WLAN, Loadbalancing, WAF, Patch Management, Performanceanalyse, Monitoring, Betriebsdokumentation
Linux / Monitoring / Fachsysteme
Debian, PostgreSQL, MySQL, Prometheus, Grafana, Loki, Promtail, Fluent Bit, SolarWinds, Qualys, Keycloak, Citrix, OpenText Retain/Filr/GroupWise, Powerapp Gateway, Metadirectory, ERP Services, Archiving Services, Certification Services
Sprachen
DeutschMutterspracheEnglischgut
Projekthistorie
Aufbau und Pflege von Terraform-Umgebungen für Azure- und Cloud-Infrastruktur. Entwicklung von Azure Bicep Deployments, Azure DevOps Pipelines, Azure Automation Accounts, PowerShell Runbooks und wiederverwendbaren Deployment-Bausteinen.
Technologien: Terraform, Azure Bicep, Azure DevOps, Azure Pipelines, PowerShell, Azure Automation, Runbooks, ARM, Power Automate, Microsoft Forms, Intune, Naming Conventions, Infrastructure as Code
Administration:
Sharepoint Online nach Migration von Sharepoint Server
OneDrive für Business Administration und MIgration der Daten von Netzlaufwerken
Komplette Administration über Microsoft 365
Office 365 mit Teams und Bookings-Integration
Dynamics 365 Business Central CRM-Plattform, derzeitige Einbindung in Buchhaltung und Vertrieb, weitere Lösung für Customer Voice in Arbeit
Azure Active Directory mit VPN Site-to-Site Anbindung
MFA Integration mit Yubico YubiKey's
Erstellung SFTP-Server in Azure zur Anbindung der Web-Server (RZ Nürnberg) per VPN IPSec-Verbindung für Backup in 3. Ebene
Migration der kompletten Serverlandschaft in die Cloud
Virtual Windows Desktop über Azure Cloud und Hostpool
Ubiquiti Unifi Controller auf Azure Cloud VM Linux Ubuntu
WLAN-Management über SSL gesicherte Website
WLAN-Hotspot mit Facebook Page verknüpft
VoIP über VLAN hinter Sophos XG Firewall (Hardware) und TP-Link T1600G-52TS (JetStream 48-Port Gigabit Smart Switch with 4 SFP Slots)
Loadbalancing über Sophos Firewall
Sophos Firewall Box mit VPN-SSL Anbindung zur Authentifizierung für User
Azure VPN Site-to-Site und Point-to-Site
Druckeranbindung (Drucken per Ablage in bestimmten Ordner)
MDM über Microsoft Intune (Windows und Android Endgeräte)
VoIP über Sipgate mit Mobilfunk (eSIM und Einbindung in die Cloud)
Sophos Firewall Azure Appliance
Sophos Firewall Hardware Appliance
Sophos RED Tunnel
WLAN Radius Cloud
Azure Always-On VPN Device-Tunnel (Split- und Force-Tunnel)
MS Teams VoIP
Sharepoint Online nach Migration von Sharepoint Server
OneDrive für Business Administration und MIgration der Daten von Netzlaufwerken
Komplette Administration über Microsoft 365
Office 365 mit Teams und Bookings-Integration
Dynamics 365 Business Central CRM-Plattform, derzeitige Einbindung in Buchhaltung und Vertrieb, weitere Lösung für Customer Voice in Arbeit
Azure Active Directory mit VPN Site-to-Site Anbindung
MFA Integration mit Yubico YubiKey's
Erstellung SFTP-Server in Azure zur Anbindung der Web-Server (RZ Nürnberg) per VPN IPSec-Verbindung für Backup in 3. Ebene
Migration der kompletten Serverlandschaft in die Cloud
Virtual Windows Desktop über Azure Cloud und Hostpool
Ubiquiti Unifi Controller auf Azure Cloud VM Linux Ubuntu
WLAN-Management über SSL gesicherte Website
WLAN-Hotspot mit Facebook Page verknüpft
VoIP über VLAN hinter Sophos XG Firewall (Hardware) und TP-Link T1600G-52TS (JetStream 48-Port Gigabit Smart Switch with 4 SFP Slots)
Loadbalancing über Sophos Firewall
Sophos Firewall Box mit VPN-SSL Anbindung zur Authentifizierung für User
Azure VPN Site-to-Site und Point-to-Site
Druckeranbindung (Drucken per Ablage in bestimmten Ordner)
MDM über Microsoft Intune (Windows und Android Endgeräte)
VoIP über Sipgate mit Mobilfunk (eSIM und Einbindung in die Cloud)
Sophos Firewall Azure Appliance
Sophos Firewall Hardware Appliance
Sophos RED Tunnel
WLAN Radius Cloud
Azure Always-On VPN Device-Tunnel (Split- und Force-Tunnel)
MS Teams VoIP
Betriebsunterstützung, Weiterentwicklung und projektbezogene Umsetzung in mehreren Endkundenumgebungen. Analyse von AVD-Tickets, Betrieb Azure-gehosteter Serverinfrastruktur, Updates, Patches, Performanceanalyse, Netzwerk- und M365-Themen.
Technologien: AVD, Azure Server, Terminalserver, Datenbankserver, Applikationsserver, Printserver, M365, Netzwerk, Patch Management, Performanceanalyse, Projektumsetzung

exali Berufshaftpflicht-Siegel
Das original exali Berufshaftpflicht-Siegel bestätigt dem Auftraggeber, dass die betreffende Person oder Firma eine aktuell gültige branchenspezifische Berufs- bzw. Betriebshaftpflichtversicherung abgeschlossen hat.
Versichert bis: 01.01.2027