Building reliable,
secure networks.
I'm Susan — a Project Engineer working in networking and infrastructure, with 3+ years configuring, securing and troubleshooting network and systems across multi-site client environments in a Managed Service Provider.
The person behind the packets.
I work as a Project Engineer in an MSP, where the job is keeping many clients' networks fast, secure and available at the same time. Day to day that means LAN/WAN connectivity, routing and switching, firewalls, VPNs and structured cabling across sites that can't afford downtime.
I started on the service desk and worked up through escalation support into engineering and project delivery — so I've seen infrastructure from the ticket queue all the way to designing and handing over a client's network. That range is the part I value most: I understand both why something broke and how to build it so it doesn't.
Outside of work I run a full home lab — self-hosted monitoring, virtualisation and remote-access tooling — because the fastest way I learn a technology is to break it in my own environment first.
Three things I keep running.
Networks
LAN/WAN, routing and switching, firewalls, VPNs and structured cabling — designed, deployed and kept available across multi-site client environments.
Systems & Cloud
Windows/Linux servers, virtualisation on VMware, and Microsoft 365 / Azure / Intune administration — provisioning, patching and identity done properly.
Security
Endpoint protection and access control with ThreatLocker and SentinelOne, secure remote access, and monitoring — applied in line with policy.
A continuous line through the stack.
One unbroken run from service desk to project engineering — the same client networks, progressively more ownership.
Project Engineer
- Design end-to-end network solutions — LAN/WAN architecture, switching topology, wireless coverage and secure remote access — aligned to project scope and best practice.
- Plan, deploy and configure infrastructure across client sites: WatchGuard firewalls, Cisco and UniFi switching, Meraki and UniFi wireless — owning config through to handover.
- Deploy VoIP / unified comms (3CX, Access4): SIP trunks, dial plans and integration with the underlying network.
- Produce as-built documentation, network diagrams and handover records, and validate performance through acceptance testing.
Enterprise Engineer
- Configured and maintained client network and systems infrastructure — switches, routers, servers and connected devices — across multiple sites.
- Provided senior escalation for complex network, VPN, server and infrastructure incidents via remote administration tools.
- Implemented endpoint security and access control (SentinelOne, ThreatLocker) in line with security policy.
- Managed Active Directory, Microsoft 365 and Intune — provisioning, access control, group policy, Exchange and SharePoint.
Technical Support Officer
- Administered and maintained network infrastructure — managed switches, routers, access points, firewalls and structured cabling — ensuring reliable connectivity.
- Configured and troubleshot site-to-site and client-to-site VPN and remote access for users across locations.
- Delivered Level 2 / Level 3 escalation, diagnosing issues through log and performance analysis.
Technical Support Officer
- Supported network, server, hardware and software across multiple client environments.
- Assisted with infrastructure projects — equipment installs, workstation deployments and upgrades.
- Administered Active Directory and Microsoft 365; maintained technical documentation and knowledge base.
Infrastructure I run for myself.
A self-hosted environment where I test, monitor and break things safely before they ever touch production.
Network & Server Monitoring
Zabbix and Wazuh deployed for metrics, alerting and security event monitoring across lab hosts and cloud instances — the same visibility discipline I value in production.
Virtualised Compute
A VMware ESXi / vCenter cluster (with Proxmox alongside) running self-hosted services — hands-on with hypervisors, VM lifecycle and resource management.
Self-Hosted RMM
MeshCentral stood up as my own remote management platform, hardened behind a reverse proxy — remote monitoring and management on infrastructure I control end to end.
Secure Remote Networking
VPN tunnelling and dynamic DNS linking on-premises and cloud (OCI / Azure) environments — practising the secure connectivity patterns I deploy for clients.
What I work with.
Networking
- Routing & Switching
- VLANs
- TCP/IP
- DNS
- DHCP
- LAN / WAN
- VPN (IPSec/SSL)
- WatchGuard
- UniFi
- Meraki
- Ruckus
Security
- ThreatLocker
- SentinelOne
- DarkTrace
- WatchGuard Security
- Access control
Cloud & Identity
- Microsoft 365
- Azure
- Entra ID
- Intune
- Exchange
- SharePoint
- Purview
Virtualisation
- VMware ESXi
- vCenter
- vSphere
- Hyper-V
- Proxmox
Servers & OS
- Windows Server
- Ubuntu Server
- DNS/DHCP
- Windows 10/11
- Linux
- macOS
Tooling
- PowerShell
- ConnectWise
- Datto RMM
- Automate
- TeamViewer
- RDP
Qualifications.
Bachelor of Information Technology
Professional Year Program
Bachelor of Networking (commenced)
Let's connect.
Open to conversations about networking, infrastructure and systems work — roles, projects, or just comparing home labs.
Prefer to reach out directly? Here's where to find me.