Adam Bin Rahmat portrait

Cloud & Systems Engineer

Adam Bin Rahmat

Azure | Windows Server | M365 | Automation

Portfolio Website

Location
Kuala Lumpur, Malaysia

Professional Summary

Cloud & Infrastructure Engineer with 7 years of experience spanning Azure, Microsoft 365, Windows Server, and hybrid on-prem environments. Skilled in deploying and managing Azure workloads, implementing identity governance with Microsoft Entra ID, and administering device and configuration management through Intune. Strong foundation in IT support, endpoint security, server administration, networking, and troubleshooting, with practical automation experience using PowerShell, Bicep/ARM, Azure DevOps, and GitHub Actions.

01

Core Skills

Cloud & Platform Strengths

  • Cloud Infrastructure: Azure VMs, managed disks, Azure Files/SMB, storage accounts, App Service basics, Load Balancer basics, VM scaling concepts, Azure Backup/ASR exposure, VPN Gateway, and hybrid connectivity.
  • Identity & Security: Microsoft Entra ID, users, groups, roles, app access, Azure AD Connect, RBAC, Conditional Access, MFA, Identity Protection, Defender for Cloud, and Defender for Endpoint.
  • Endpoint Management: Intune compliance policies, configuration profiles, update rings, Autopilot onboarding, and endpoint lifecycle management.
  • Automation & IaC: Advanced PowerShell, working Bash/Python, Bicep/ARM templates, modular deployments, Terraform fundamentals, Git workflows, PR processes, Azure DevOps, and GitHub Actions.
  • Server & Network Ops: Windows Server, Linux, AD DS, GPO, OU structure, SYSVOL and AD replication troubleshooting, DNS, DHCP, VLANs, site-to-site/point-to-site VPN troubleshooting, IIS, NTFS/share permissions, patching, and CIS hardening.
  • Operations: SOPs, runbooks, KB documentation, incident resolution, RCA, monitoring, Log Analytics, stakeholder coordination, and environment stability improvements.
02

Key Achievement

Impact Highlights

  • Hybrid cloud access: Enabled secure remote connectivity using Azure VPN Gateway and improved identity-based access controls, reducing remote access issues and improving user uptime.
  • Automation & IaC foundation: Built parameterized Bicep/ARM templates and PowerShell automation to standardize Azure deployments, reduce configuration drift, and accelerate provisioning.
  • Identity hardening: Strengthened governance with Entra ID RBAC, MFA, Conditional Access, and device compliance policies to support audit readiness and security posture.
  • Operational reliability: Handled 500+ service requests and incidents across cloud, on-prem, and endpoint systems; reduced recurring issues through RCA, documentation, and preventive controls.
03

Professional Experience

Career Timeline

Cloud Infra Engineer

AvePoint Malaysia Sdn Bhd

Jan 2026 - Present

Current
  • Performed Windows and Linux server hardening using CIS-based security standards to strengthen infrastructure security and standardization.
  • Supported enterprise infrastructure operations, including server configuration, troubleshooting, and validation across cloud and on-premises integrated environments.
  • Assisted SharePoint infrastructure work involving legacy SharePoint 2010 environments and upgrade planning toward SharePoint 2019 / SharePoint Subscription Edition.
  • Investigated and resolved infrastructure issues related to services, permissions, prerequisites, and system configuration dependencies.
  • Worked with Windows Server, Linux, IIS, Active Directory-integrated environments, and enterprise application support.
  • Contributed to audit and security configuration tasks to align server environments with internal compliance and hardening requirements.
  • Collaborated with senior engineers on deployment preparation, environment support, and operational troubleshooting for infrastructure services.

Senior IT Executive

Algo Forest Sdn Bhd

Nov 2023 - Dec 2025

  • Managed Azure resources including VMs, storage accounts, and Azure Files/SMB; supported hybrid access to cloud workloads for users across MY and HK.
  • Implemented Azure VPN Gateway and optimized DNS/DHCP routing paths to ensure reliable hybrid connectivity between on-prem devices and cloud resources.
  • Administered Microsoft Entra ID, enforcing RBAC, MFA, and Conditional Access policies; improved access governance and identity security.
  • Managed Intune device compliance, configuration profiles, update rings, and Autopilot onboarding to streamline endpoint lifecycle management.
  • Developed reusable PowerShell scripts to automate provisioning, configuration tasks, user operations, and reporting.
  • Validated and maintained Bicep/ARM templates to support consistent, repeatable Azure deployments and early DevOps workflow adoption.
  • Authored SOPs, runbooks, and configuration documentation to support audits, onboarding, troubleshooting, and operational consistency.

RMA Team Lead, Field Support Engineer

Rentwise Sdn Bhd

Sep 2022 - Nov 2023

  • Led a team of five; scheduled field work, met SLAs, and prioritized incident queues.
  • Performed hardware failure analysis and remediation, reducing repeat RMA rates.
  • Delivered enterprise support for Windows/Office 365, identity, and network issues; documented fixes and improved SOPs.
  • Supported hybrid identity and access rollouts and contributed to endpoint security uplift with Defender for Endpoint.

IT Assistant Manager, Retail & Technical Operations

Idealtech Sdn Bhd

Oct 2019 - Sep 2022

  • Streamlined device provisioning and first-time setup to reduce post-sale support.
  • Trained staff on service standards and technical troubleshooting; improved customer satisfaction.
  • Managed store operations including POS, inventory, and returns with strong process adherence.
04

Project Experience

Recent Delivery

Azure Migration (Lift-and-Shift)
2024

Planned and supported selected on-premises workload migration to Azure using Azure VMs and Azure Files/SMB. Configured hybrid connectivity through Azure VPN Gateway, applied Entra ID RBAC and Conditional Access, and enabled workload backups.

Infrastructure as Code & CI/CD Enablement
2024

Standardized repeatable Azure deployments using parameterized Bicep/ARM templates and introduced Git-based validation through GitHub Actions and Azure DevOps for what-if checks and template linting.

Hybrid Identity & Access Governance
2023

Configured and optimized hybrid identity using Microsoft Entra ID and Azure AD Connect. Implemented MFA, Conditional Access, least-privilege RBAC, naming standards, and tagging standards.

Internal Training & M365 Operational Readiness
2023

Delivered Microsoft 365 administration and identity training, assessed DNS, DHCP, VLANs, and VPN readiness, then produced remediation documentation to support cloud service transition.

05

Credentials

Certifications & Education

Professional Certification

  • Microsoft Certified: Azure Administrator Associate - 2025 & 2024
  • Microsoft Certified: Azure Security Engineer Associate - 2025 & 2024
  • Microsoft Certified: Azure Solutions Architect Expert - 2025 & 2024

Education

  • Bachelor of Science with Honors - Universiti Sains Malaysia (USM), 2016

Training

  • AWS re/Start Program, World Education Placement Services (2025)
  • Digital Leadership Course, PEOPLElogy (2024)
  • Introduction to Cybersecurity Tools & Cyber Attacks, Coursera (2023)
  • Technical Support Fundamentals, Coursera (2023)
  • Foundations of Cybersecurity, Coursera (2023)

Additional Skills

  • Cloud & DevOps: MS Azure, Azure DevOps, MS 365, Git/GitHub.
  • Virtualization & Infrastructure: VMware, Hyper-V, AD DS, Group Policy Management.
  • Operating Systems: MS Windows Server, MS Windows 10/11.
  • Tools: Freshdesk, Azure Portal/CLI/PowerShell, Log Analytics.
  • Language Proficiency: English, Malay, Chinese.

Download

Want a copy of the CV?

Latest resume file: Adam Rahmat Resume April 2026.