Evaluated, tested, and deployed a just-in-time privilege elevation solution to replace permanent local admin rights across Soudal's Microsoft Intune-managed endpoint fleet โ improving security posture, audit compliance, and operational control.
Soudal NV's Microsoft Intune-managed devices had accumulated permanent local administrator rights across Engineering, Service Desk, and power user groups โ creating an expanding attack surface with no audit trail, no revocation process, and no compliance evidence under ISO 27001 and GDPR.
Replace permanent local admin rights with controlled, temporary, auditable just-in-time elevation workflows.
Hands-on lab testing of two candidate tools โ Admin By Request and Microsoft EPM โ across 24 structured tests.
ABR recommended and deployed with phased rollout strategy, tailored access models for 4 user groups, and full audit coverage.
Complete set of deliverables produced during the 13-week placement. Click Download on each card to access the file.
Full thesis โ 72 pages covering analysis, testing, comparison, deployment strategy, and stakeholder communication.
13-week project plan with phased methodology, success criteria, risk register, and responsibilities.
Complete lab testing documentation for all six Admin By Request tests with evidence.
Feature comparison and evidence-based recommendation against requirements.
Five use cases, four user group mappings, and access model specifications.
IT Infrastructure Intern
Thomas More ยท Soudal NV
Work Placement Mentor
Soudal NV
Work Placement Mentor
Soudal NV
Work Placement Mentor
Soudal NV
Academic Supervisor
Thomas More