Summary
Overview
Work history
Education
Skills
Certification
KEY PROJECTS & ACHIEVEMENTS
Cloud Projects (Hands-On & Real-World)
References
Timeline
Generic

Obed Owusu

Harlow ,Essex

Summary

Versatile 2nd/3rd Line Support & Azure Infrastructure Engineer with 5+ years’ experience delivering end-to-end IT solutions across identity, networking, hybrid cloud, and business applications. Proven expertise in Active Directory & Entra ID management, Azure networking (including Site-to-Site VPN), Cloud PC deployment, and Intune lifecycle management, with a strong focus on automation and process improvement using PowerShell, Logic Apps, and ARM/Bicep templates. Skilled in email security and deliverability troubleshooting (MXToolbox, DKIM/SPF/DMARC), multi-factor authentication deployments (Duo MFA, Conditional Access, MFA), and secure business application provisioning (Sage 50, network drive mapping). Adept at leading 2nd line escalations, collaborating with cyber security and operations teams, and implementing monitoring, backup, and Disaster recovery strategies to ensure system reliability, compliance, and business continuity. Passionate about driving innovation, reducing downtime through proactive monitoring, and building secure, scalable cloud and hybrid environments.

Overview

6
6
years of professional experience
2
2
years of post-secondary education
1
1
Certification

Work history

Senior Associate Engineer – 2nd/3rd Line (MSP)

Lifeline IT
Remote/Peterborough
09.2024 - Current
  • Owned escalated incidents across AD/Entra ID, Azure networking, VPNs, and email flow issues.
  • Configured Site-to-Site VPNs for hybrid connectivity, monitored tunnel stability, and implemented failover plans.
  • Used MXToolbox and message trace logs to diagnose mail flow failures, missing DKIM/SPF records, and improve domain deliverability.
  • Deployed Intune compliance policies & Conditional Access rules, achieving 95% device compliance across client base.
  • Automated user lifecycle management with PowerShell & Logic Apps, reducing manual effort by 60%.
  • Tuned Mimecast & Barracuda filtering policies, cutting phishing incidents by 80%.
  • Authored SOPs for VPN setup, AD health checks, DR drills, and email security workflows.

2nd line technical support engineer

News UK
Hybrid/Peterborough, Cambridgeshire
05.2023 - 08.2024
  • Provided advanced troubleshooting for AD replication, GPO conflicts, DNS/DHCP issues, and VPN connectivity.
  • Configured Cloud PCs and supported remote workers, mapped network drives, and deployed software packages.
  • Deployed enterprise security tools (Darktrace, SonicWall, Mimecast, Bitwarden).
  • Supported Mimecast policy management and phishing investigation escalations.

Junior Azure Cloud Administrator (Intern)

Firebrand Training
Remote
01.2024 - 03.2024
  • Built Azure labs with VNets, NSGs, Load Balancers, and configured hybrid identity with AD Connect.
  • Assisted with hybrid AD Connect setup and tested Site-to-Site VPNs for lab workloads..
  • Gained experience with Azure Monitor, Log Analytics, and alert configuration.

1st/2nd Line Support

ONTRAQ LTD
Chelmsford, Essex
11.2019 - 04.2023
  • Administered AD, GPOs, and hybrid identity sync for multiple clients.
  • Configured and supported Duo MFA rollout to secure VPN access and admin accounts.
  • Installed and configured Sage 50/200 across departments, set UNC paths for data shares, and trained end-users.
  • Documented standard drive mapping processes and troubleshooting steps in IT Glue.
  • Assisted with M365 migrations, Intune setup, and hybrid identity synchronization.

Education

NVQ Level 3 - Business Studies

Harlow College
Harlow
09.2014 - 06.2016

Skills

    Identity & Access Management Cloud & Azure Networking & Connectivity Automation & Scripting Security & Email Protection

  • Microsoft AD DS, Entra ID (Azure AD), RBAC, Conditional Access, MFA, AD Connect, Hybrid Join
  • Group Policy Objects configuration, trust relationships, replication troubleshooting, ACL modifications
  • Privileged Identity Management (PIM) exposure, identity lifecycle automation

  • Azure Virtual Machines, Virtual Networks, Site-to-Site VPNs, Azure Firewall basics
  • Azure Cloud PC deployment & management, Azure Backup & Site Recovery
  • Azure Monitor, Log Analytics, Defender for Cloud, cost optimization
  • Intune, Autopilot, configuration profiles, MDM lifecycle management
  • Microsoft 365 (Exchange Online, SharePoint, Teams) migrations


  • DHCP, DNS, SSL certificate management, subnetting/routing, drive/printer mapping
  • Troubleshooting VPN tunnels, network ACLs, firewall rules
  • Email flow diagnostics: MXToolbox for SPF/DKIM/DMARC lookups & mail trace analysis

  • PowerShell (bulk AD provisioning, mailbox permissions, reporting, stale object cleanup)
  • Azure Logic Apps workflows, Intune compliance automation, Bicep/ARM templates (learning)

  • Mimecast, Barracuda, MessageLabs, Defender for Endpoint, Sophos, SonicWall, Darktrace
  • DKIM/SPF/DMARC troubleshooting, phishing remediation workflows, policy tuning

Certification

CERTIFICATIONS

  • Microsoft Certified: Azure Fundamentals (AZ-900)
  • In Progress: Microsoft Certified: Azure Administrator (AZ-104)
  • In Progress: CompTIA Network+
  • Cloud Management with Intune (2024)

KEY PROJECTS & ACHIEVEMENTS

  • Hybrid Connectivity: Designed & deployed Site-to-Site VPNs connecting on-premises networks to Azure VNets, improving uptime and secure access to cloud workloads.
  • Cloud PC Rollout: Provisioned Cloud PCs with Intune compliance policies and Autopilot for secure remote work enablement.
  • Email Security & Deliverability: Used MXToolbox to diagnose SPF/DKIM/DMARC issues, implemented fixes, and improved mail flow success rates.
  • Multi-Factor Security: Rolled out Duo MFA for VPN and privileged accounts, reducing unauthorized access risk by 90%.
  • Automation & Efficiency: Automated user onboarding with Logic Apps + PowerShell, saving 60% manual time per hire.

Cloud Projects (Hands-On & Real-World)

  • Automated Azure Onboarding: Built Logic Apps workflow integrated with Azure AD, M365, and Conditional Access for provisioning, license assignment, email notification, and MFA enforcement.
  • Secure File Upload Portal: Developed Azure Functions + Blob Storage solution using SAS tokens, RBAC, and encryption at rest to securely handle file uploads.

References

References available upon request.

Timeline

Senior Associate Engineer – 2nd/3rd Line (MSP)

Lifeline IT
09.2024 - Current

Junior Azure Cloud Administrator (Intern)

Firebrand Training
01.2024 - 03.2024

2nd line technical support engineer

News UK
05.2023 - 08.2024

1st/2nd Line Support

ONTRAQ LTD
11.2019 - 04.2023

NVQ Level 3 - Business Studies

Harlow College
09.2014 - 06.2016
Obed Owusu