Institution
Lake Washington Institute of Technology
Enterprise IT Infrastructure
A simulated enterprise IT environment built to demonstrate networking, systems administration, Linux automation, AWS cloud services, security awareness training, incident response planning, and technical documentation.
MSPUB
A fictional publishing company created to support the design, implementation, security, automation, and documentation of a complete enterprise environment.
Project Background
Master Sword Publishing, or MSPUB, was created as a fictional enterprise environment for my CSNT253 Capstone Project. The goal was to design, implement, secure, automate, troubleshoot, test, and document a small-scale enterprise IT infrastructure.
The project included a virtualized home lab, Active Directory Domain Services, DNS, Linux administration, Python automation, UniFi-based network design, an AWS-hosted Security Awareness Training campaign, an Incident Response Plan, server hardening, troubleshooting scenarios, and extensive technical documentation.
Project Background
A five-week enterprise infrastructure project completed as the culmination of the Computer Security and Network Technology program at Lake Washington Institute of Technology.
Lake Washington Institute of Technology
Dr. Linda Epps
16 June 2026
5 Weeks
Small-to-Medium Enterprise
Operating Systems
Virtual Machines
Python Automation Scripts
AWS Services
Network Designs
Virtual & On-Premises
Documentation Pages
Report Pages
Applied Knowledge
The project brought together the core systems, networking, cloud, security, automation, and documentation skills developed throughout the CSNT program.
Enterprise IT Infrastructure
The environment combined enterprise operating systems, identity services, Linux administration, automation, networking, cloud platforms, security planning, and technical documentation.
Domain controllers, server roles, centralized authentication, and enterprise administration.
Active Directory Domain Services, domain integration, DNS configuration, and name resolution.
Windows 11 Professional, macOS 26 Tahoe, Ubuntu Desktop 26.04 LTS, and Kali Linux 2026.
Linux server administration, automation, secure services, web hosting, and user management.
Menu-driven scripts for server configuration, account management, logging, and batch operations.
Web hosting, secure file transfer, static site deployment, and service configuration.
Remote Linux administration using SSH and secure command-line access.
S3, CloudFront, Lambda, DynamoDB, CloudWatch, and AWS Certificate Manager.
VLAN segmentation, routing concepts, firewall planning, wireless design, and infrastructure mapping.
Planning, classification, containment, recovery, post-incident review, and continuous improvement.
Implementation guides, validation evidence, screenshots, reports, diagrams, and presentation materials.
Implemented Environment
The completed lab joined virtualized servers, workstations, directory services, name resolution, secure administration, hosting, and automation into one integrated enterprise environment.
The MSPUB virtual environment was built using Parallels Desktop on a macOS host and included seven virtual machines representing servers, workstations, Linux systems, macOS, and a cybersecurity workstation.
Core services were configured to support centralized authentication, name resolution, secure administration, web hosting, file transfer, and cross-platform workstation integration.
Python Development
Two menu-driven Python tools automated repeatable Ubuntu Server configuration and account-administration workflows while preserving logging, validation, and operator control.
Python Automation
The Web Server Configuration Script executes a predefined workflow to automate Ubuntu Server configuration, including Nginx installation, FTP setup, UFW configuration, website deployment, and administrative logging.
Python Automation
The User Management Script provides a menu-driven interface for creating and removing users, managing groups, importing accounts from CSV files, performing bulk account operations, and logging administrative activity.
These scripts modify Ubuntu Server packages, services, firewall rules, users, groups, and configuration files. Review the source code and test them in a disposable virtual machine or controlled lab environment before using them on another system.
Cloud Security Implementation
As part of the MSPUB security program, I designed and deployed a simulated Microsoft 365 password-expiration campaign using multiple AWS services. The platform tracked participant activity, securely logged interactions, and redirected users to immediate awareness training after participation.
Hosted the static phishing email landing page, educational website, images, JavaScript, CSS, and supporting assets.
Delivered the awareness platform securely using HTTPS while improving availability and response times through AWS's CDN.
Executed serverless Python functions that processed phishing interactions and wrote participant events into DynamoDB.
Stored participant events, timestamps, browser information, and reporting metrics collected during the awareness campaign.
Monitored Lambda execution, logged application events, and assisted with troubleshooting throughout development.
Managed SSL certificates allowing the awareness platform to be securely delivered over HTTPS.
Platform Workflow
Seven connected stages move the simulation from delivery through secure processing, training, and centralized monitoring.
Architecture Summary
The awareness platform demonstrated how multiple AWS services integrate to create a secure, scalable, serverless solution. Static hosting, HTTPS delivery, serverless computing, event logging, centralized monitoring, and security best practices were combined into a complete phishing simulation environment suitable for enterprise awareness training.
Cybersecurity Planning
A structured response framework defined how MSPUB would prepare for, identify, contain, eradicate, recover from, and learn from security incidents.
Cybersecurity Planning
A formal Incident Response Plan was developed for Master Sword Publishing using ISO/IEC 27001 concepts and NIST incident-handling guidance. The plan established a structured process for preparing for, identifying, containing, resolving, and reviewing security incidents within the organization.
The Security Awareness Training campaign was incorporated as a practical phishing scenario, demonstrating incident detection, severity classification, reporting, containment, recovery, employee education, and post-incident improvement.
Established policies, responsibilities, communication procedures, readiness activities, and response resources.
Defined incident identification, validation, classification, documentation, and escalation procedures.
Documented short- and long-term actions used to limit impact, isolate affected systems, and preserve evidence.
Addressed removal of malicious files, compromised access, vulnerabilities, and underlying causes.
Covered service restoration, system validation, monitoring, user communication, and return to normal operations.
Included post-incident review, formal reporting, corrective actions, process improvement, and future prevention.
Major Accomplishments
The finished Capstone demonstrates the breadth of the environment, from core infrastructure and automation through cloud security, validation, documentation, and presentation.
Submitted Work
The following three documents were submitted as the principal deliverables for the CSNT253 Capstone Project. Together, they provide a complete record of the planning, implementation, testing, validation, and presentation of the Master Sword Publishing enterprise environment.
Executive Project Report
A professionally written report documenting the project's planning, implementation, testing, validation, challenges encountered, lessons learned, and overall project outcomes.
Complete Implementation Record
Complete implementation documentation containing installation procedures, screenshots, validation evidence, troubleshooting, testing, and configuration details for every major task completed throughout the Capstone Project.
Final Project Presentation
The presentation used during my final Capstone defense, highlighting the enterprise environment, major accomplishments, demonstrations, automation, cloud implementation, and lessons learned.
Recorded Validation
The recorded playlist validates the completed implementation through networking, Active Directory, Linux automation, AWS security awareness, troubleshooting, and full-project walkthroughs.
21-minute complete presentation with selected demonstrations.
Network segmentation, DNS/DHCP validation, Linux automation, and troubleshooting.
The phishing campaign workflow, participant tracking, and reporting overview.
Project Reflection
This project reinforced the importance of planning, documentation, testing, and structured troubleshooting in enterprise IT environments. It demonstrated how closely connected services such as DNS, Active Directory, Linux, networking, automation, cloud infrastructure, and security workflows are within a complete business environment.
It also strengthened my ability to manage a large project, validate technical work, document implementation decisions, resolve unexpected problems, and communicate complex systems through reports, demonstrations, and a formal presentation.
Continue Exploring
Explore the rest of my technical portfolio or contact me to discuss cloud computing, infrastructure, networking, automation, or professional opportunities.