About

Just a nerd, with a stage.

I am Fabio. I have spent years deep in the Microsoft Modern Workplace: Microsoft 365, Azure, Intune and security โ˜๏ธ. My favourite trick is taking the complicated stuff and making it simple enough that people actually use it.

That is also why I got on a stage ๐ŸŽค. I speak at events, stream live, host a podcast and teach as a Microsoft Certified Trainer. Passing on what I figure out is the best part of my week, and it keeps me sharp too.

๐Ÿ˜„๐Ÿšฆ๐Ÿ›ก๏ธ

You will recognise my work by the emojis. I even drop them straight into Conditional Access policy names and Intune settings, on purpose, so the Microsoft cloud stays approachable whether it is your first policy or your thousandth ๐Ÿš€. Bringing everyone along, from complete beginner to seasoned pro, is the whole point.

Modern WorkplaceAzureIntune SecurityZero TrustCommunity
Now

Consulting and training, making content, and running goldenmaster.cloud and the Modern Nerdplace community.

Along the way

Went from doing the work to talking about it: speaking, streaming, and picking up my Microsoft Certified Trainer badge.

The start

Fell for the Microsoft cloud early and never really stopped nerding out.

Work

The stuff with my name on it.

Open source

The scripts do not stay on my laptop ๐Ÿงฐ. I put them on GitHub so you can read them before you run them.

Speaking

Where to find me.

On a stage, on a stream, or in your headphones ๐ŸŽง. Here is what is coming up, and everywhere I have already been. The rows marked Speaker are sessions I presented myself, 52 of them so far.

Modern endpointZero TrustM365 securityMaking the cloud approachable
Talks I give

Pick one, or ask for a mix. All of them work in Dutch or English, on a stage, in a webinar or as a hands on workshop.

BREAKOUT, 45 TO 60 MIN

๐Ÿ˜„๐Ÿšฆ๐Ÿ›ก๏ธ Conditional Access, but make it readable

Conditional Access met emoji's: veilig รฉn begrijpelijk

Open the Conditional Access blade in a random tenant and you get forty policies called "CA001 - Block legacy", "CA001 - Block legacy (new)" and "test do not delete". Nobody knows what they do. Nobody dares to touch them. ๐Ÿ˜ฌ Mine are full of emojis, and that is not a joke. A policy you can read at a glance is a policy you can maintain. After the naming system we get to the part that really keeps you safe: device settings, compliance and Conditional Access as one chain. Settings harden the device, compliance proves it, Conditional Access enforces it at every sign in. Break one link and the rest is decoration. Live, in a real tenant. ๐Ÿšฆ

Conditional AccessIntuneEntra
BREAKOUT, 45 TO 60 MIN

Your MFA just got phished: stopping AiTM attacks

Je MFA is net gephisht: AiTM afvangen in je tenant

You rolled out MFA. Everybody got the app. You felt safe. ๐Ÿ” Then an adversary in the middle kit sits between your user and the real sign in page, lets MFA succeed like a polite doorman, and walks off with the session cookie. Wait. What. I show the attack live, then close the doors one by one: authentication strengths, a compliant device requirement, token protection, risk based policies and continuous access evaluation. And then the fun part: why passkeys make the whole trick fall apart, and how to roll them out without starting a help desk riot. ๐Ÿ”‘

SecurityPasskeysConditional Access
KEYNOTE OR BREAKOUT

๐Ÿฐ The modern secure workplace: stop building castles

De moderne veilige werkplek

Your users work from the kitchen table, the train and that one coffee place with suspiciously good WiFi. โ˜• The office network stopped being your perimeter years ago. Identity is. So stop building castles and start checking every door: who is signing in, from which device, and is that device actually healthy? I show how Entra ID, Intune and Conditional Access click together into a workplace that is secure by default and still nice to work in, using the baseline I deploy at customers. And yes, the mistakes too. Especially the ones that page you at 2AM. ๐Ÿงฏ

Zero TrustEntraIntune
BREAKOUT, 45 TO 60 MIN

Axios got owned: from supply chain attack to unified SOC

Van supply chain attack tot Unified SOC met Defender

One compromised npm package. More than 100 million systems. And not a single firewall rule that cared. ๐Ÿ“ฆ I walk through how the attackers got in through Axios, step by step, from the poisoned release to the first foothold on a developer machine. Then the question that actually matters: how could we have stopped this inside a Microsoft environment? The right set of policies, awareness that sticks longer than the quarterly phishing test, and Defender with a unified SOC that connects the dots before the attacker does. You leave with a list of things to turn on tomorrow. ๐Ÿ› ๏ธ

SecurityDefender XDRUnified SOC
KEYNOTE OR BREAKOUT

๐Ÿค– Cybersecurity in the age of AI: the bad guys got Copilot too

Cybersecurity in het AI-tijdperk

Remember when you could spot a phishing mail by the spelling? Those days are gone. ๐Ÿ“จ Attackers use AI too: flawless phishing in perfect Dutch, faster reconnaissance, and more attempts than any human could type. So what changes for small and midsize organisations? Less than the vendors want you to believe, and more than your current setup can handle. I show what these attacks look like today, why yet another tool on the shelf will not save you, and why detection and response around the clock is the part you cannot skip. ๐ŸŒ™

SecurityAIMDR
BREAKOUT OR WEBINAR SERIES

โ˜๏ธ Azure as your security foundation: start small, build it right

Azure als (security) fundament

Most Azure environments I meet started with one quick VM "just for testing". Three years later it runs payroll. ๐Ÿ˜… In this session we do it the other way around. Landing zones, identity and governance first, the boring bits that save you later. Then workloads like Azure Virtual Desktop and migrations on top, without tearing everything down in two years. A practical path to Azure for organisations that want to start small and still sleep at night. ๐Ÿงฑ

AzureLanding ZonesAVD
BREAKOUT OR WORKSHOP

๐Ÿ“‚ Get your data AI ready before Copilot reads everything

Get your data A.I. Ready

Here is the thing nobody tells you in the Copilot demo: it finds everything the user can open. Everything. That salary sheet someone shared with "Everyone except external users" in 2019? Copilot found it. ๐Ÿ™ƒ Copilot does not create a data problem, it just shows you the one you already had, very quickly and very politely. I show how to spot oversharing, clean up permissions and put sensitivity labels to work before you roll out Microsoft 365 Copilot, so your pilot does not turn into a data leak with a chat window.

CopilotPurviewMicrosoft 365
KEYNOTE, BREAKOUT OR WORKSHOP

โšก Working harder and smarter with AI

Harder en slimmer werken met AI

AI will change everything, the slides say. Great. What do I do on Monday morning? โ˜• This session is all demo and no strategy deck. I show what Copilot and other AI tools do really well in a normal working day, where they still fall flat on their face, and how to tell the difference before you forward that summary to your boss. For people who want to start tomorrow, not after the next steering committee. ๐Ÿš€

AICopilotProductivity

Organising an event, user group or podcast? I am happy to come by.

On stage
Weekly

Live on Twitch

Microsoft news and hands on demos
Stream
1 Oct 2026

Van supply chain attack tot Unified SOC met Defender

Speakerevent
Eiffage @ AFAS Software, Leusden
8 Oct 2026
Jubileumevenement Trends ICT, Ede
15 Oct 2026
Kremer x Ai-Revolution, Doetinchem
Writing

Notes from the trenches.

Most of what I write these days lives on goldenmaster.cloud ๐Ÿ“: real world Microsoft 365, Intune and Entra, written down so you can skip the headache I already had.

The baseline library

The library is the bigger half of it ๐Ÿ“š: 160 pages I write and keep up myself, where a setting gets explained instead of listed.

Certifications

Proof, on paper.

The badges behind the talks ๐ŸŽ“. I keep adding to them, because the platform never sits still.

CERTIFIED
Microsoft Certified
Trainer (MCT)
26 certifications on record
Contact

Let us build something, or just nerd out ๐Ÿค

Book me as a speaker

Conference, user group, podcast or a workshop for your team. Tell me the audience and I will tailor it.

Reach out on LinkedIn

Advisory & training

Need a hand with Microsoft 365, Azure, Intune or security? Let us grab a coffee, online or in person.

Join the Discord