Building a Secure Wallpaper Distribution Agent for Windows
How a PowerShell agent uses Intune, privilege separation, SHA-256 validation, atomic promotion, and per-user application to manage Windows wallpapers safely.
From Autounattend.xml to a Security-Conscious Windows Provisioning Pipeline
An engineering case study on converting a working Windows unattended installation into a reusable PowerShell provisioning pipeline without publishing operational secrets.
Deploying RustDesk with Microsoft Intune
How a RustDesk MSI became a configured and verifiable Microsoft Intune Win32 application with multi-context configuration, logs, service checks, and custom detection.
Building a Safe Lifecycle for Hybrid Windows Devices
A technical case study on fail-closed lifecycle automation for hybrid Windows devices, including identity correlation, staged enforcement, recovery, and a read-only API.
How I Designed a Layered Backup Strategy for an On-Premises Company Environment
How a layered recovery design combines user-data protection, shared-folder backups, PostgreSQL-aware recovery, Proxmox backups, secondary storage, and an offsite copy.
Hello World: My Journey into Cybersecurity
The original introduction to this site, preserved as a record of the transition from infrastructure operations toward cybersecurity engineering.