ITmedesSysOps & Cloud

Available for new projects

Microsoft infrastructure that simply works.

ITmedes designs, deploys and maintains Microsoft 365, Exchange and Active Directory environments — cloud and hybrid, together with XDR security and DLP data protection. From audit and plan, through a controlled migration, to a documented, handed-over environment.

M365deployments & migrations
Hybridon-prem ↔ cloud
XDR / DLPsecurity & compliance
E2Eprojects from plan to handover
  • Microsoft 365
  • Exchange Server
  • Active Directory
  • Entra ID
  • Defender XDR
  • Purview DLP
  • Intune
  • Azure
  • PowerShell

Services

Nine areas where I take real work off your IT team

I work on live production environments — from a dozen mailboxes to several thousand. The scope follows the scale: a single deployment, a migration, running the whole project, or ongoing operations.

Microsoft 365 & cloud

Designing and deploying a tenant from scratch, or cleaning up one you already have. Licensing, identity, policies, governance.

  • Tenant, domain and licensing configuration
  • Exchange Online, SharePoint, Teams, OneDrive
  • Migrations to M365 and tenant-to-tenant
  • Intune and device management

Exchange & email

Exchange on-premises, Exchange Online and hybrid setups. Migrations without data loss and without downtime for users.

  • Migrations: IMAP, cutover, staged, hybrid
  • Moving off Exchange on-prem to the cloud
  • SPF, DKIM, DMARC and deliverability
  • Transport rules, retention, signatures (CodeTwo)

Active Directory & Entra ID

Clean identity is the foundation for everything else. I design the structure, the sync and the access rules.

  • AD domain design and clean-up
  • Entra Connect / Cloud Sync, hybrid identity
  • GPO, permissions, privileged accounts
  • SSO, MFA, Conditional Access

Hybrid environments

Your server room and the cloud working as one coherent system — with controlled coexistence or a plan for gradually retiring on-prem.

  • Exchange hybrid and hybrid identity
  • Extending AD to Azure / Entra
  • Server migrations to Azure (lift-and-shift)
  • Networking: site-to-site VPN, DNS, coexistence

Security & XDR

Microsoft Defender XDR rollout: detection, incident correlation and response instead of scattered alerts nobody reads.

  • Defender for Endpoint, Identity, Office 365
  • Detection policies and incident response
  • Tenant and workstation hardening (Secure Score)
  • Phishing simulations and user awareness training

DLP & data protection

Control over what leaves the organisation and where it goes. Classification, labels, policies and reporting you can act on.

  • Microsoft Purview: DLP and sensitivity labels
  • Compliance: GDPR, NIS2
  • Retention and archiving policies
  • Insider risk and access auditing

SysOps & managed support

Ongoing care for your environment, or extra capacity for an in-house IT team that lacks cloud expertise or simply time.

  • Windows server administration
  • Monitoring, periodic reviews, automation
  • Hardened backup (Veeam, immutable copies), DR / BCP
  • Documentation and knowledge transfer

IT audit & consulting

An independent assessment of your environment and sensible recommendations — before purchasing and deployment decisions are made.

  • Infrastructure, tenant and security audit
  • Environment inventory and documentation
  • Prioritised recommendations and a roadmap
  • Advice on solution and licence selection

IT project management

Running deployments, migrations and modernisations from decision to sign-off — with a schedule, a budget, and someone who understands what the vendors are actually doing.

  • Deployment plan, schedule and budget
  • Migrations, modernisations, system integration
  • Coordinating teams and vendors, risk management
  • Technical oversight, rollback plans and acceptance

Technologies

What I work with day to day

Cloud & productivity

Microsoft 365Exchange Online SharePoint OnlineTeams OneDriveAzure IntuneAutopilot CodeTwo

Identity & directory

Active Directory DSEntra ID Entra ConnectCloud Sync GPOConditional Access MFASSO / SAML

Security & compliance

Defender XDRDefender for Endpoint Defender for IdentityDefender for Office 365 Purview DLPSensitivity Labels GDPRNIS2 BCP / DRP

Servers & virtualisation

Windows ServerExchange Server Hyper-VVMware vSphere Azure VM / IaaSVeeam Hardened backupMonitoring

Networking & infrastructure

DNS / DHCPVPN / IPsec Firewall / UTMVLAN / routing Azure VNetSite-to-Site Corporate Wi-FiCertificates / PKI

Automation & project delivery

PowerShellMicrosoft Graph API Migration scriptingSystem integration ITILRisk management Vendor coordinationTechnical documentation

How I work

A predictable path, with no surprises in production

Every project follows the same rhythm, so you always know what is happening and when.

Discovery and audit

A short call about what you have and what needs to change, then a review of the tenant, domain, mail flow and security. You get a list of risks and prioritised recommendations.

Plan and quote

A defined scope, schedule, maintenance window and rollback points. Fixed price or time and materials — your choice.

Deployment

Delivered in stages, tested first on a pilot group. Anything that touches production happens outside working hours.

Handover and care

Configuration notes, procedures and scripts are handed over to you — no vendor lock-in. After stabilisation, ongoing maintenance and periodic reviews if you want them.

Contact

Describe the situation — you will get a concrete proposal back

The engagement model adapts to what you need: a one-off deployment or migration, running the whole project, supporting your IT team, or acting as an external administrator. I work with clients across Poland — remotely, and on site for larger deployments.

Email is fastest. If you include the number of users, your current environment and the goal of the change, the first reply will already be substantive.

Contact details

Addressul. Szczęśliwa 12A
05-270 Marki, Poland
RegistrationVAT PL1251610854  ·  REGON 525145290
Response timeusually within one business day

Start with an audit

Not sure where to begin? An environment review is usually the best first step: what is misconfigured, where the security gaps are, and what can be fixed straight away at little cost.

Send a short note about what your company does and how many users you have — I will come back with a proposed scope and timeline.

Email kontakt@itmedes.pl