Endpoint & Identity Engineer – I secure and automate 500–7,000+ devices.

Personal portfolio & CV

I design, harden, and automate Windows and macOS device fleets using Intune, Entra ID, Conditional Access, and modern Zero Trust principles.

Greater Manchester, UK — hybrid/remote-ready. I wrap identity controls with PowerShell/GitHub automation and internal portals so access, onboarding, and endpoint requests move quickly without risk.

Portrait of D'mitri Doman

Current focus

Securing and hardening devices around identity controls: Intune, Entra ID, Conditional Access, Multi-Factor Authentication (MFA), and Zero Trust baselines.

Background

8+ years across IT infrastructure, networks, and endpoint security for education, finance, and insurance.

Looking for

Hybrid or remote identity/endpoint roles where I can drive device hardening and automation.

Sectors: Education · Finance · Insurance

Where I'm focused

Securing and hardening device fleets around identity, endpoint reliability, and the tooling that keeps it running.

Identity & access

Intune, Entra ID, Conditional Access, Multi-Factor Authentication (MFA), and Zero Trust practices to keep access aligned with sector compliance needs.

Endpoint & device management

Baselines for Windows/macOS device fleets, Autopilot rollouts, patching discipline, and telemetry that keeps classrooms, trading floors, and branches stable.

Automation & web tooling

PowerShell, GitHub, and Next.js apps to automate joiners/leavers, access changes, monitoring, and admin portals so teams can move faster without risk.

What I work with

Identity-first infrastructure, endpoint management, and the automation/web tooling that supports them.

Each stack below reflects how I harden device fleets and keep teams moving: access controls, compliant devices, resilient infrastructure, automation, and the web interfaces that make it usable.

Identity, Access & Compliance

Entra IDConditional AccessMulti-factor authenticationZero TrustMicrosoft PurviewPrivileged access controlsDevice compliance policies

Endpoint Management & Security

IntuneAutopilotWindows 11/10 baselinesmacOS (Jamf)SCCM / ConfigMgrDefender & EDRPatch managementCIS benchmarks

Infrastructure & Networking

Windows ServerActive DirectoryExchangeHyper-VVeeamNetworking basics (Cisco, Extreme, VLANs)VPN and remote access

Cloud, Automation & DevOps

Microsoft 365PowerShell automationGitHub ActionsAzure DevOpsServiceNowAtlassianAzure AD ConnectMonitoring and telemetry

Web & Frontend Development

HTML5CSS3TypeScriptReactNext.jsTailwind CSSREST APIs

Featured projects

Short, honest summaries of how I solved specific problems.

MMM Beauty — Premium Salon Website & Brand System screenshot

MMM Beauty — Premium Salon Website & Brand System

MMM Beauty

Beauty / Aesthetics

Audience: Independent clinic ready for bookings

Live

Designed and built a premium, modern website and brand system for a beauty studio starting from zero online presence, with clear booking flows and permissions for staff updates.

Outcome

Clear service menu, easier bookings, and a polished digital presence with simple admin handover for role-based updates.

WordPressCustom ThemeCustom CSS
Tardi Group — Corporate Financial Services Website screenshot

Tardi Group — Corporate Financial Services Website

Tardi Group

Financial Services

Audience: Corporate services firm

Live

Built a clean, credible multi-page website for a financial services firm, focused on clarity, trust, and secure contact flows.

Outcome

More credible first impression, straightforward paths to key services, and safer enquiry handling for prospective clients.

SquarespaceCustom Layouts
Personal Portfolio — dmitridoman.co.uk screenshot

Personal Portfolio — dmitridoman.co.uk

Self

Personal Brand

Audience: Employers, recruiters, and collaborators

Live

Identity-first CV and portfolio site aligning infrastructure, endpoint, and automation experience with professional development in modern toolchains.

Outcome

Clear employer-facing story with easy access to projects, CV download, and contact details.

Next.jsTypeScriptTailwind CSS

Want the full breakdown? See detailed scopes, solutions, and results.

View all projects

What People Say

Short notes from the leaders who brought me in to steady identity, endpoint, and automation programmes.

Dmitri helped stabilise our mixed Windows/macOS device fleet and brought calm ownership to a messy Intune rollout.

Operations Director, Education Trust

He tightened Conditional Access, improved audit trails, and automated our onboarding flows so we stopped firefighting.

Head of Infrastructure, Financial Services Client

References available

If you need more detail on any project or role, I can provide contacts and additional context.

Client and manager references are available on request. Technical and managerial references come from infrastructure leads and business owners, and I'm happy to walk through decisions, constraints, and what I'd improve next time.

Interested in working together?

Hiring for identity, endpoint, or cloud/identity architecture roles? I’m happy to discuss hybrid Greater Manchester or remote UK engagements.

Email is best, but LinkedIn works too. I aim to respond within one to two working days.