A key achievement in my career was the creation of a customized Microsoft environment, integrating MECM, Active Directory,
SQL servers, Microsoft 365, Intune, and Azure AD, all linked to my domain, www.doyenkaba.com.
This project highlighted my expertise in user and device management via MS Intune and SCCM, as well as my ability to deploy packages and task sequences.
Most of my projects involved setting up at least two domain controllers with Active Directory Domain Services, DNS, and DHCP features installed and configured.
Additionally, I set up an SCCM server, an SQL server, and another server with WDS and WSUS features.
I also installed Entra ID Connect and Intune Connector to synchronize AD DS with a Microsoft 365 tenant.
In addition to my Microsoft environment, I also self-host a range of enterprise-grade and open-source applications,
demonstrating my versatility in infrastructure management and system integration. These include Audiobookshelf, Authentik (Identity Provider), Bookstack, Mattermost, NetBird,
Nextcloud, OpenVPN, Pairdrop, pfSense, SnipeIT, Zabbix, and the Tanium Module Server, all deployed using Proxmox and VMware ESXi.
My email services are hosted through a VPS. To ensure secure remote access, I implemented a zero-trust architecture and configured a Cloudflare tunnel, allowing for safe and efficient access to my self-hosted applications over the Internet.
Check my Home Lab Documentation

Christian
Kaba
IT Support & Endpoint Engineer | Tanium • Intune • SCCM • Cloud & Automation
Projects
Enterprise Homelab Environment

I designed and maintain a comprehensive enterprise-grade homelab environment to replicate real-world IT operations, enhance my technical expertise, and test automation workflows. This environment leverages Proxmox and VMware ESXi virtualization, with secure external access provided through Cloudflare tunnels in a Zero Trust architecture. Authentik serves as the central identity provider, enabling Single Sign-On (SSO) and Multi-Factor Authentication (MFA) across multiple applications to ensure secure and seamless authentication.
Applications & Services Hosted:
- Identity & Security: Authentik (IdP) integrated with SSO, MFA, and Zero Trust for services such as Nextcloud, Mattermost, SnipeIT, and more.
- Networking & Access: pfSense firewall, OpenVPN, NetBird for mesh VPN, and Cloudflare tunnels for secure remote connectivity.
- Collaboration & Messaging: Mattermost and Pairdrop.
- File & Media Hosting: Nextcloud, Audiobookshelf, and Paperless-ngx (document management).
- Asset & Infrastructure Management: SnipeIT and Tanium Module Server.
- Knowledge & Documentation: Bookstack for IT documentation and knowledge sharing.
- Monitoring & Observability: Uptime Kuma and Zabbix for infrastructure and service monitoring.
- Other Tools:VPS-hosted email services.
This homelab project highlights my ability to architect and manage a secure, scalable IT environment. By integrating identity management, endpoint security, virtualization, monitoring, and networking, I created a platform that mirrors enterprise-level deployments while allowing continuous hands-on learning and innovation.
SCCM Lab Project

In this project, I established a comprehensive SCCM (System Center Configuration Manager) lab environment to facilitate advanced software deployment, management, and reporting. The setup involved configuring SCCM on both Microsoft Azure and a local machine using Hyper-V, ensuring a robust and scalable test environment.
Key Tasks Included:
- Deployment and Configuration: Installed and configured SCCM, deploying essential software packages, applications, Office 365, PowerShell scripts, and Windows updates.
- Infrastructure Setup: Created boundary groups, users, and device collections to streamline management and deployment processes.
- Reporting and Analysis: Developed custom reports and queries, utilizing SQL Management Studio for in-depth reporting and analysis.
- Advanced Configurations: Created task sequences to automate deployment tasks and implemented PXE boot to facilitate network-based installations.
This project demonstrated my ability to design and implement a scalable SCCM environment, leveraging both cloud and local resources to enhance software management and deployment capabilities.
Microsoft Tenant and Intune Setup

Configured a Microsoft tenant and established a comprehensive lab environment for Microsoft Intune. The project involved creating and configuring a Microsoft 365 tenant, setting up Intune for mobile device and application management, and integrating with Azure Active Directory.
Key Tasks Included:
- Tenant Setup: Created and configured a Microsoft 365 tenant, including initial setup of user accounts, licenses, and domain settings.
- Intune Configuration: Deployed and configured Microsoft Intune for device and application management, including policy creation, device enrollment, and application deployment.
- Integration: Integrated Intune with Azure Active Directory for seamless user and device management.
- Testing and Validation: Conducted testing of device management and application deployment scenarios to ensure proper functionality and compliance.
- Documentation: Developed detailed documentation of configurations, policies, and procedures for future reference and repeatability.
This setup provided a functional environment for managing and securing devices and applications, demonstrating the ability to effectively deploy and manage Microsoft Intune within a Microsoft 365 tenant.
Application Packaging Lab

In this project, I set up a specialized lab for software packaging and deployment using AdminStudio and InstallShield. This environment streamlined software package creation, testing, and deployment across multiple platforms. I configured AdminStudio for application compatibility testing and package management, and employed InstallShield for custom installer creation. I conducted testing and validation of software packages to ensure reliability and compatibility. I developed detailed documentation and reports on the packaging process, including best practices, troubleshooting steps, and deployment results. This ensured a clear and repeatable process for future packaging and deployment tasks.
This project demonstrated my ability to effectively set up and utilize software packaging tools to create, test, and deploy applications, enhancing software management and deployment efficiency.
Building My Portfolio Website

As someone with no prior experience in HTML and CSS, I took on the challenge of creating my portfolio website by leveraging existing resources and online tutorials. I began by downloading an HTML and CSS template from GitHub, which provided a solid foundation for my project. To customize the template, I followed a step-by-step YouTube tutorial that guided me through the process of modifying the code to fit my style and preferences.
Throughout this process, I gained a foundational understanding of HTML and CSS code structure, including how to manipulate various elements such as headers, footers, and sections. I also learned how to make aesthetic changes through CSS, like adjusting colors, fonts, and layout.
This project not only resulted in a functional and visually appealing portfolio website but also significantly improved my confidence and understanding of web development basics.
Windows Deployment Lab

I configured a lab environment for Windows deployment using industry-standard tools and techniques. I set up and integrated Windows Deployment Services (WDS) and Microsoft Deployment Toolkit (MDT) to streamline operating system installations and configurations. I developed custom deployment images and automated installation processes, and tested deployment scenarios to ensure seamless and efficient OS deployment. I documented the setup and procedures to facilitate repeatable and reliable deployments across diverse environments.
MY INFO
About Me
I’m an IT Support and Endpoint Engineer with over six years of experience in endpoint management, automation, and infrastructure optimization. Specialized in Tanium, Intune, SCCM, and Microsoft 365. I combine enterprise IT expertise with hands-on homelab projects in virtualization, identity management, and zero-trust networking to deliver secure and scalable solutions. I take pride in consistently providing efficient, reliable, and customer-focused results.
Download Resume
experience
Chuco (Tanium Partner)
Associate Engineer (Remote)
01/2025 - PresentAdministered and maintained Tanium platform infrastructure, ensuring consistent endpoint visibility, compliance, and patch management. Performed endpoint patch deployments and software updates using Tanium Patch and Deploy modules, reducing vulnerability exposure. Generated, scheduled, and distributed operational and compliance reports to IT and security stakeholders using Tanium data. Migrated Windows 10 to Windows 11 using Tanium Deploy in-place upgrade. Monitored Tanium server and client health, proactively resolving client registration and communication issues, improving overall environment stability. Designed and optimized sensors, saved questions, and packages to support operational and security teams with real-time endpoint data collection. Implemented role-based access controls (RBAC) within Tanium, managing user and group permissions while maintaining security best practices. Configured and managed Tanium modules (Asset, Patch, Deploy, Comply, Discover, Enforce, Provision, and Connect) to automate endpoint management and security enforcement.
City of Atlanta
Endpoint Engineer
07/2023 - 01/2025Managed user lifecycle processes, including provisioning and de-provisioning, across multiple systems. Configured and managed user and group settings in Entra ID and AD DS. Utilized Windows Autopilot for streamlined device provisioning. Deployed and managed software applications through Intune. Administered device enrollment and management for Windows, iOS, and Android via Intune. Proficient in mobile device management (MDM) and mobile application management (MAM) using Intune.
Atlanta Public Schools
IT Support Specialist Sr. - Contractor
08/2019 - 07/2023Ensured proper functionality of interactive whiteboards and projectors. Troubleshot and replaced Kronos hardware. Performed hardware upgrades and break/fix tasks. Deployed, upgraded, and installed software on desktops, laptops, and mobile devices. Resolved minor wireless and network issues. Installed and troubleshot APS police software (Moblan, RMS, CAD, Milestone, Ocularis, etc.). Handled new hire onboarding and relocation requests. Maintained accurate asset records and assignments. Managed hardware inventory using Gigatrak and Incident IQ. Monitored school outages and responded accordingly. Organized and maintained MDF/IDF closets. Acted as a technical resource and mentor to team members.
Coretelligent
Remote Support Engineer
04/2021 - 12/2022Enrolled and managed devices (Windows, macOS, iOS, and Android) via Intune. Deployed and managed applications using Intune. Deployed devices using Windows Autopilot. Managed users and groups in Azure AD and AD. Handled AD, Intune, Azure AD or Entra, and Office 365/Exchange provisioning. Managed user accounts in various applications (Adobe, Okta, G-Suite, Idaptive or CyberArk, DUO, Egnyte, BOX, Slack, Zoom, Salesforce, Sentinel, Fortinet VPN, IT Glue, KnowBe4, etc.). Provided support for hardware, software, and networks, including Clear Kiosks. Pushed updates via PDQ Inventory, PDQ Deploy, and Kaseya. Completed technical tasks and remediated incidents. Troubleshot Credlepoint devices and access points via Cisco Meraki.
Computer Generated Solutions
IT Technical Support
06/2018 - 08/2019Responded to IT service requests. Assisted customers with technical matters. Resolved information system problems.Escalated unresolved issues. Maintained professionalism and customer satisfaction.Kept records and prepared reports.
Education
Associate Degree in Computer Networking
Gwinnett Technical College, Lawrenceville, GAAt Gwinnett Technical College, I specialized in Windows Server administration and management. My coursework included comprehensive studies in Cisco Router and Switch technologies, gaining hands-on experience with network infrastructure and troubleshooting.
Additional Training:
I completed specialized training in SCCM and Software Packaging, as well as Microsoft Intune. This diverse technical foundation has equipped me with practical expertise in network infrastructure, software deployment, and modern endpoint management.SERVICES
Computer Repair and Upgrades
I offer comprehensive computer repair services to meet your hardware and software needs. Whether it's replacing faulty parts, upgrading your system's hardware for better performance, or troubleshooting issues, I have the expertise to get your device back on track. My services include:
Home Office Setup for Remote Workers
I specialize in setting up efficient and functional home offices tailored to the needs of remote workers. Whether you're transitioning to a work-from-home environment or looking to upgrade your current setup, I provide expert advice on selecting the right equipment based on your specific job requirements. From ergonomic furniture to computing hardware, networking solutions, and peripherals, I ensure your home office is optimized for productivity and comfort. Let me help you create a workspace that supports your workflow and enhances your remote working experience.
Business Email Customization for Small Business
I help small businesses create professional, branded email addresses that match their website domain, enhancing their credibility and brand identity. I also provide affordable Office 365 solutions tailored to your budget, ensuring you get the tools you need without overspending. My service focuses on optimizing your email setup while offering cost-effective options for seamless communication and collaboration within your business.