Senior Azure Engineer based in Budapest, Hungary, with over 14
years of enterprise IT experience. Specialising in Microsoft Azure
infrastructure, endpoint management with Intune, and Azure
Security — including Microsoft Sentinel, Defender XDR, and
Defender for Cloud.
// Core Skills
Microsoft Azure
Entra ID / Azure AD
Azure Virtual Desktop
Microsoft Intune
Microsoft Defender
Windows Server
PowerShell
Microsoft 365
Microsoft Sentinel
// Certifications
AZ-900
Azure Fundamentals
AZ-104
Azure Administrator Associate
AZ-500
Azure Security Engineer Associate
AZ-140
Azure Virtual Desktop Specialty
// Core Expertise
Azure Services
// 01
Azure Monitor & Observability
Deployment and migration of Azure Monitor Agent (AMA) across
hybrid environments. Log Analytics workspace setup, alert rules,
and monitoring dashboards.
AMA
Log Analytics
Azure Monitor
Hybrid
// 02
Hybrid Patch Management
Cloud-only patching replacing legacy WSUS. On-premises server
onboarding to Azure ARC for centralised update management across
hybrid infrastructure.
Azure ARC
Update Manager
WSUS Migration
Hybrid
// 03
Identity & Access Management
Microsoft Entra ID administration, Conditional Access policies,
role-based access control, and identity security hardening for
enterprise environments.
Entra ID
Conditional Access
RBAC
SSO
// 04
Azure Virtual Desktop
AVD environment design, deployment, and ongoing management. Host
pool configuration, session host management, FSLogix profiles,
and user access setup.
AVD
FSLogix
Host Pools
AZ-140
// 05
Microsoft 365 Administration
M365 tenant management, Exchange Online, SharePoint, Teams
administration, DNS configuration, and licence management for
enterprise organisations.
M365
Exchange Online
Teams
DNS
// 06
Infrastructure as Code
Automated Azure infrastructure deployment using Terraform.
Repeatable, version-controlled environments for consistent and
scalable cloud operations.
Terraform
Azure
IaC
Automation
// Endpoint Management
Microsoft Intune
// 01
Windows Autopilot
Zero-touch Windows 11 device deployment. Autopilot profiles,
deployment groups, and end-to-end enrollment without manual IT
intervention.
Autopilot
Windows 11
Zero-Touch
// 02
Android Enrollment
Corporate and BYOD Android device management. Work Profile
separation for personal privacy, fully managed corporate
devices, and app deployment.
Android
BYOD
Work Profile
Corporate
// 03
Compliance & Configuration
Device compliance policies, configuration profiles, and security
baselines. Ensuring all endpoints meet corporate security
standards before granting access.
Compliance
Config Profiles
Security Baselines
// 04
App Deployment
Enterprise application deployment and management via Intune.
Win32 apps, store apps, line-of-business apps, and custom
deployment configurations.
Win32
App Management
LOB Apps
// 05
Update Management
Windows Update for Business policies, update rings, and feature
update management. Controlled rollout of patches across device
fleets.
WUfB
Update Rings
Patch Management
// 06
Intune & Defender Integration
Integration between Intune and Microsoft Defender for Endpoint.
Device compliance linked to security posture for conditional
access decisions.
Defender
Conditional Access
Security
// Security Operations
Microsoft Security
// My Security Journey
Microsoft Security became part of my work in February 2026 at XAPT — starting with Defender for Endpoint through Intune, then expanding into Defender for Office 365 and Defender for Cloud Apps. I handled real incidents: suspicious sign-ins, compromised accounts, and a significant CVE backlog surfaced by DRATA compliance scanning. I worked through each finding, assessed the risk, and resolved what I could. Now I'm preparing for the SC-200 exam — planned for October 2026 — and actively building my KQL skills to work independently in Sentinel.
// 01
Unified Portal
[ Coming Soon ]
// 02
Connectors
[ Coming Soon ]
// 03
Incidents & Alerts
[ Coming Soon ]
// 04
Threat Intelligence
[ Coming Soon ]
// 01
Device Onboarding
[ Coming Soon ]
// 02
Threat Detection
[ Coming Soon ]
// 03
Vulnerability Management
[ Coming Soon ]
// 04
EDR & Incidents
[ Coming Soon ]
// 01
Anti-Phishing
[ Coming Soon ]
// 02
Safe Links & Attachments
[ Coming Soon ]
// 03
Threat Explorer
[ Coming Soon ]
// 04
Attack Simulation
[ Coming Soon ]
// 01
Identity Threat Detection
[ Coming Soon ]
// 02
Lateral Movement
[ Coming Soon ]
// 03
Compromised Accounts
[ Coming Soon ]
// 04
Identity Posture
[ Coming Soon ]
// 01
Cloud App Discovery
[ Coming Soon ]
// 02
Shadow IT
[ Coming Soon ]
// 03
App Governance
[ Coming Soon ]
// 04
Session Policies
[ Coming Soon ]
// 01
Analytics Rules
[ Coming Soon ]
// 02
KQL Queries
[ Coming Soon ]
// 03
Playbooks
[ Coming Soon ]
// 04
Workbooks
[ Coming Soon ]
// 01
Secure Score
[ Coming Soon ]
// 02
CSPM
[ Coming Soon ]
// 03
Regulatory Compliance
[ Coming Soon ]
// 04
Workload Protection
[ Coming Soon ]
// Artificial Intelligence
AI & Agents
Currently exploring and building with AI technologies — including
Microsoft Copilot, Azure AI Foundry, and Claude AI. This section
will grow as projects are completed and deployed.
// Coming Soon
Microsoft Copilot
Enterprise AI assistant integration and deployment across
Microsoft 365 environments.
Copilot
M365
// Coming Soon
Azure AI Foundry
Building generative AI applications with Microsoft's Azure AI
platform.
Azure AI
Foundry
// Delivered Solutions
Portfolio
// Case Study 01
Azure Monitor Agent Migration
140 Servers
Hybrid Environment
// Challenge
Legacy Microsoft Monitoring Agent (MMA) was reaching
end-of-support across a hybrid environment of 140 Azure and
on-premises servers. A migration to the modern Azure Monitor
Agent was required without disrupting monitoring coverage.
// Solution
Planned and executed a full MMA to AMA migration across all
140 hybrid servers. Deployed Data Collection Rules (DCRs),
validated log ingestion into Log Analytics workspaces, and
decommissioned the legacy agent with zero monitoring gaps.
// Result
All 140 servers successfully migrated to AMA. Modern
monitoring infrastructure in place with improved
performance, centralised data collection rules, and full
readiness for future Azure Monitor features.
Azure Monitor Agent
Log Analytics
Data Collection Rules
Hybrid Infrastructure
// Case Study 02
Cloud-Only Patch Management with Azure ARC
140 Servers
Hybrid + On-Prem
// Challenge
Organisation was running WSUS for on-premises server
patching — a high-maintenance legacy solution lacking
visibility and central control across hybrid infrastructure.
// Solution
Decommissioned WSUS and migrated to Azure Update Manager.
Enrolled all on-premises servers into Azure ARC, configured
patching schedules, maintenance windows, and compliance
reporting from the Azure portal.
// Result
140 servers managed from a single cloud-based pane of glass.
WSUS fully retired. Patch compliance visibility improved
with automated reporting and centralised control over both
Azure and on-premises infrastructure.
Azure ARC
Azure Update Manager
WSUS Decommission
Patch Management
Hybrid Cloud
// Case Study 03
Full Microsoft Intune Deployment
300 Devices
Windows + Android
// Challenge
Organisation needed a modern cloud-based endpoint management
solution for a mixed device fleet of Windows 11 laptops and
Android devices — including both corporate-owned and BYOD
devices.
// Solution
Implemented Microsoft Intune end-to-end. Windows 11 enrolled
via Autopilot for zero-touch deployment. Android devices
enrolled in two profiles — BYOD with Work Profile
separation, and fully managed corporate devices. Deployed
apps, compliance and configuration policies across all 300
devices.
// Result
300 devices fully managed under Intune. Zero-touch Windows
deployment via Autopilot reduced IT onboarding time
significantly. Android BYOD users maintain personal privacy
while corporate data stays protected.
Microsoft Intune
Windows Autopilot
Android BYOD
Corporate Android
Compliance Policies
App Deployment
// Side Projects
Lab (Apps)
App development started as a side interest — now I'm building
CommentBase, a mobile app for commenting and sharing opinions, based
on an idea I've had for years.
// 01
CommentBase
In Development
A mobile app built around commenting and sharing opinions.
Features include user authentication, per-comment moderation,
in-app notifications, and an admin dashboard.
// Screenshots
// Download
[ Google Play — Coming Soon ]
React Native
Expo
Supabase
Resend
// Progress Log
Updates
// LOADING...
// Blog
Blog
// LOADING...
// Get In Touch
Contact
Open to connecting with fellow engineers, potential
collaborators, and anyone interested in Azure, AI, or what I'm
building here.