Modern workplace engineer focused on Intune, Entra ID, Apple device management, and enterprise endpoint operations.
Auckland-based, Microsoft-certified, and most at home in the part of IT where identity, devices, security baselines, and day-to-day user experience all have to work together cleanly at scale.
Intune and AutopilotEntra ID and Conditional AccessmacOS, iOS, and Apple Business ManagerAVD, PowerShell, and Graph API
A few examples of the kinds of platform, endpoint, and identity work I tend to enjoy most in enterprise environments.
Identity + Apple
Apple Account Federation with Entra ID
Rolled out federation to simplify sign-ins for managed Apple users and reduce friction around Apple IDs in a large end-user environment.
Cut login-related tickets by 40%.
Improved the day-to-day experience for Apple users and support teams.
Deployment
Autopilot rollout for a new overseas office
Designed and delivered the company's first Autopilot deployment for an offshore team, giving the business a cleaner way to onboard devices without local IT handling every setup.
Reduced setup time and manual touch points.
Created a more repeatable deployment path for future rollouts.
Mac management
Jamf to Intune migration support
Worked on macOS management transition into Intune, helping standardise policy, enrollment, and device management across a modern Microsoft-first environment.
Supported a lower-cost management model.
Helped bring Apple devices closer to the wider M365 stack.
Operations
AVD and endpoint platform operations
Supported AVD and endpoint environments where stability, patching, and clean day-to-day operations mattered just as much as project delivery.
Worked across ongoing platform care, not just one-off project work.
Built experience balancing user impact, uptime, and security hygiene.
Core Expertise
The platforms and problem areas I keep coming back to.
The focus is less on collecting tool names and more on the Microsoft and endpoint stack I actually work with in real enterprise environments.
Years working in Microsoft-heavy enterprise environments across New Zealand and Europe
7,200+
Endpoints and mobile devices supported across NTT, Air New Zealand, and SkyCity environments
40%
Reduction in login-related tickets at SkyCity after Apple Account Federation with Entra ID
Experience
Where the experience comes from
A mix of internal enterprise roles, project delivery, and hands-on platform support across New Zealand and Europe.
Current
Vector, Auckland
Senior Digital Workplace Engineer
SME for Intune and endpoint management, with broader involvement across the M365 platform, at one of New Zealand's largest energy infrastructure companies.
SkyCity Group
SkyCity Group, Auckland
Technical Specialist EUC
Level 3/4 endpoint support, security baselines, and Apple device management across a large entertainment environment.
Reduced login-related tickets by 40% via Apple Account Federation with Entra ID.
Designed the company's first Autopilot deployment for an overseas office.
Automated Microsoft Teams Rooms firmware management with Crestron XIO.
Supported and maintained the AVD platform, including patching and ensuring stable day-to-day operation.
NTT
NTT, Auckland
Professional Services Engineer
Enterprise client implementations and Air New Zealand estate support across 6,000+ endpoints.
Cut device setup time by 50% with automated Windows 11 and Autopilot deployment.
Assisted in migrating macOS fleet from Jamf to Intune, reducing licensing costs.
Standardised endpoint configurations to improve security compliance.
Supported and maintained the AVD platform using Nerdio, including patching and ensuring stable day-to-day operation.
Earlier roles
Dunedin, Queenstown and Frankfurt
HeadQuarters N.D.C. · Dimension Data · Triton Partners · Misumi Europe
Support and infrastructure roles
IT Service Technician covering desktop support, server maintenance, and networking across Dunedin and Queenstown (HeadQuarters N.D.C., 2015–2017)
Desktop support and Windows environment management for Contact Energy in Dunedin (Dimension Data, 2018–2019)
IT support for a Frankfurt investment firm across Windows 10, M365, and Exchange Online (Triton Partners, 2019–2020)
Desktop support for a mechanical components company in Frankfurt, handling Windows 10 and Office 365 (Misumi Europe, 2020–2021)
About
How I think about modern workplace engineering.
I'm an Auckland-based workplace engineer, originally from Germany. Most of my recent work sits at the overlap of Microsoft 365, Intune, and Apple device management, the stuff that keeps identity, devices, and policy working together without users noticing.
I'm most interested in the practical end of this: cleaner endpoint standards, stronger identity controls, better Apple and Microsoft integration, and automation that actually removes admin work instead of adding another layer to manage.
Cloud has been the main focus for a few years now, and AI is where that's heading next, less interested in the hype, more in where automation and intelligent tooling can take real repetitive work out of managing large environments.
Most of that automation happens through PowerShell and Graph API, scripting the repetitive parts of identity and device management so they don't need a human doing them by hand.
If you're working in the modern workplace, endpoint, or M365 space and want to connect, swap ideas, or talk through a project, send me an email. I usually reply within a day or two.