Portfolio

A few examples of the kind of practical, infrastructure-first work SD Tech Solutions delivers: cloud migrations, secure remote access, and self-hosted tools that keep costs predictable.

M365 & Cloud Migrations

Cloud-first environments built around SharePoint Online, M365, and the right mix of on-prem and IaaS where it actually makes sense.

  • Design and implement cloud-based SharePoint architectures: hubs, site collections, libraries, and permissions that map to how teams really work.
  • Migrate file servers to SharePoint Online and OneDrive using SPMT and other Microsoft tooling, with minimal disruption to end users.
  • Build Power Automate flows for approvals, document routing, notifications, and integrations with line-of-business apps.
  • Extend beyond M365 when needed: Azure VMs, storage, and networking for IaaS workloads; AWS or other cloud platforms where they fit better.
  • Stand up and maintain Windows Server and Linux workloads (web servers, application servers, and support services) alongside your cloud stack.
  • Integrate firewalls and network gear so remote access and site-to-site links are ready for hybrid environments from day one.
M365 & Cloud

VPN & Zero-Trust Style Access

WireGuard and firewall-centric designs that lock down access while keeping admins and users productive.

  • Design and deploy WireGuard hub-and-spoke VPNs for remote staff, branch offices, and admin access.
  • Run SSH over VPN for administration and Samba/SMB over VPN for file access instead of leaving ports open to the internet.
  • Configure hardware firewalls (WatchGuard, SonicWall, and similar) that sit next to the gateway: packet filtering, ACLs, and sane defaults.
  • Implement allowlists / denylists (IP, geo, and category filtering) to block adult content, gambling, and other high-risk categories by policy.
  • Enforce mandatory MFA/2FA: Microsoft Authenticator for WireGuard / Azure-backed logins, Duo or equivalent for firewall and admin access.
  • Use Intune, Azure AD sign-in logs, and firewall reporting for monitoring, alerting, and basic zero-trust-style telemetry.
Network & Security

Self-Hosted osTicket & KB

A lightweight, self-hosted IT ticketing portal with a strong self-help knowledge base, built on repurposed hardware.

  • Deployed on a repurposed workstation running Ubuntu Server with a full LAMP stack (Apache, MySQL/MariaDB, PHP).
  • Implemented osTicket as the core ticketing platform, tuned for a small office with fewer than 40 users.
  • Integrated OAuth authentication with the organization’s AD DS environment, so users sign in with existing accounts.
  • Configured email piping, auto-responses, priorities, and SLAs aligned to internal workflows and KPIs.
  • Designed a prominent self-help knowledge base with curated categories, canned responses, and “how-to” content to deflect common tickets.
  • Set up regular backups to the existing backup server so ticket history and KB content are protected.
  • Delivered a fully CAPEX-focused solution: no SaaS lock-in, no recurring per-seat licensing, and the ability to customize as the team grows.
ITSM & Automation