Reporting and Audits
Define PowerShell, Terraform, and Azure CLI as Dev Container Features on an Ubuntu 24.04 base so the toolchain can be rebuilt from configuration instead of hand-installed scripts.
Ops Toolkits
Build an onboarding script around explicit package IDs, idempotent settings, reboot handling, logging, and a rerun-safe validation report.
Reporting and Audits
Use Windows LAPS for supported local administrator password management and PowerShell for read-only local Administrators-group drift reporting instead of inventing a password-rotation secret store.
Reporting and Audits
Inventory machine-wide installed applications from 64-bit and 32-bit uninstall registry views, normalize duplicate records, and document what registry inventory does not cover.
Reporting and Audits
Collect SMB share ACLs, NTFS ACLs, inheritance/ownership, and group-membership evidence without auto-remediating permissions or pretending one ACL layer equals effective access.
Reporting and Audits
Build a scheduled Windows patch-evidence report with PowerShell and Get-HotFix, then validate the generated CSV and scheduled task.