Microsoft 365 & Azure
Tenant architecture, Entra ID consolidation, Azure Virtual Desktop, hybrid identity — done correctly the first time and properly handed off.
I'm Shawn Tavares — a systems engineer building Azure, endpoint, and identity platforms for organizations that need them to actually work. Independent practice. No layers. No handoffs.
/ why noltec
Most environments don't fail because of bad tools — they fail because nobody owned the last 20%. Migrations stall. Policies drift. Endpoints diverge. Scripts hide under technician desktops.
Noltec exists to finish those last miles, then keep them maintained.
ADFS still answering SAML, Entra ID running alongside, conditional access blocked by legacy claims.
Intune policies competing with GPO, SCCM still pushing legacy installs, Defender baselines never enforced.
ASR rules untuned, certs nearing expiry, conditional access bypassed by old service accounts.
The same console clicks every week, scripts that only one person can read, runbooks that haven't been touched.
/ how we help
A small surface area, deliberately. Each engagement is scoped to a real production outcome — not a deck full of recommendations.
Tenant architecture, Entra ID consolidation, Azure Virtual Desktop, hybrid identity — done correctly the first time and properly handed off.
If a task happens twice, it should run itself the third time. Graph-integrated tooling for provisioning, remediation, and reporting.
Defender ATP, ASR rules, conditional access, certificate infrastructure — engineered to a baseline you can prove, not a checkbox.
/ featured infrastructure work
Transitioned endpoint management workflows toward modern cloud-first administration using Microsoft Intune, automation tooling, and centralized policy management.
Managed scalable Azure Virtual Desktop environments focused on identity integration, performance optimization, and operational reliability.
Developed PowerShell tooling to streamline technician workflows, Active Directory operations, and infrastructure support tasks.
/ operating principles
/ process
Hands-on assessment of tenants, identity, endpoints, and the workflows that touch them. Findings written up plainly.
A target state designed against your reality, not a reference architecture. Trade-offs surfaced before any change is made.
Staged rollout with automation by default. PowerShell, Graph, and policy-as-config wherever it makes sense.
Documentation, runbooks, and a handoff your team can actually use. Optional retainer for ongoing operations.
/ contact
No forms. No chatbots. No discovery-call funnel. Send an email and you'll get a reply from the person who'd be doing the work.