Infrastructure & architecture
Assessment, planning and evolution of established platforms and data-centre environments with regard to integration, availability, security and operations.
Background & experience
kuntz-it.net was founded by Dr Stephan Kuntz in 1999. The micro-brand brings together long-standing project experience in IT infrastructure, architecture and engineering – from focused assessment through migration and technical project responsibility to stabilisation and operations.
Technical responsibilities
Assessment, planning and evolution of established platforms and data-centre environments with regard to integration, availability, security and operations.
Structuring demanding initiatives and managing technical dependencies, risks, quality, decisions and handovers.
In-depth practical experience in architecture, migration, authorisation and stabilisation of identity and directory services.
Platform, cluster, management, backup and recovery concepts for virtualised enterprise environments.
Operating models, process improvement, technical quality assurance and support in complex support situations.
PowerShell-based automation, repeatable procedures, technical documentation and structured knowledge transfer.
Levels of work
Current state, requirements, risks and dependencies are assessed and translated into transparent technical options.
Initiatives are structured and decisions, interfaces, technical risks, quality and handovers are managed appropriately.
Depending on the assignment, technical decisions are supported through migration, automation, root-cause analysis and stabilisation.
Documentation, operating models, clear responsibilities and focused knowledge transfer support a sustainable handover.
Engagement framework
Focused assessment of a platform, target architecture, technical project situation or forthcoming infrastructure decision.
Defined analysis resulting in a decision basis, migration, security or operating concept.
Planning, technical management or specialist support for a defined change initiative.
Time- and scope-defined leadership, stabilisation or technical support for a demanding initiative.
Whether an assignment can be accepted depends on the technical fit, expected scope of responsibility, timeframe and on-site requirements. The binding scope is agreed after the initial clarification.
Industry knowledge
Development bank, universal banking group, authentication, authorisation and auditable protection of privileged accounts.
Long-standing architecture and advisory work as well as support in security-critical public-sector environments.
Campus-wide platforms, directory services, networking, security, migration and disaster recovery.
End-customer projects, infrastructure development, staff development and infrastructure migration in production environments.
Software vendors, IT groups, service providers and partners – from engineering and pre-sales to the professional development of consulting teams.
Enterprise-wide platforms and the technical and organisational development of comprehensive IT landscapes.
This classification is based on the available profile and omits client names for reasons of confidentiality.
Roles & assignments
Authentication and authorisation methods for internal, hybrid and external entities.
Windows, Active Directory and AD FS on behalf of an international software vendor.
Automated and auditable protection of privileged accounts.
Campus-wide infrastructure development involving Exchange, Active Directory, networking, security and disaster recovery.
Consolidation, identity, platform architecture, systems management, virtualisation and support.
Staff development, strategic requirements work, workshops and client project planning.
End-customer projects, staff development and planning for a Microsoft consulting environment.
Workshops, individual training and technical qualification programmes.
Technical foundation
Active Directory and adjacent identity services are a specialist focus. The project practice is materially broader, spanning virtualisation, messaging, networking and security as well as integration, automation, operations, availability and heterogeneous systems landscapes.
Active Directory, GPO, DNS, AD FS, AD CS, AD LDS, RMS and MIIS / ILM / FIM / MIM.
Windows Server, Hyper-V, SCVMM, System Center, clustering and availability technologies, RDS and DFS / FRS.
Exchange, IIS, SQL Server, BizTalk, XML / SOAP and established Microsoft integration environments.
Firewall and DMZ architectures, VPN, IDS / IPS, RADIUS / NPS, German BSI baseline protection, security and authorisation concepts.
PowerShell, C#, Transact-SQL, ADSI and script-based automation of administrative and audit-relevant tasks.
Operations and systems management, including experience with Linux, OpenBSD, AIX, HP-UX, IRIX, Solaris, Novell and Cisco IOS.
Supplementary advisory fields
These services supplement the technical core and are accepted only within a clearly defined professional and time framework.
Assessment of target states, priorities, responsibility models and development paths for IT functions within large organisations and for comprehensive IT landscapes of mid-sized clients. Advice remains anchored in feasibility, architecture and operations.
Support with role profiles, team structures, skills development and leadership situations. This includes long-standing staff-development work for major clients, individual coaching, workshops, qualification and confidential sparring for specialists and executives.
Qualifications & forms of work
Assignment clarification
For an initial assessment, it is useful to outline the objective, current situation, expected role, timeframe and on-site requirements. Whether and in what framework the assignment can be accepted is then clarified on a binding basis.
Get in touch