Proven delivery

Real deployments, real agencies, real outcomes.

From AWS and Azure landing zones to Windows 11 upgrades, Intune MDM and Autopilot rollouts — see how Billow has delivered cloud and modern workplace projects for California state agencies.

15

Projects featured

5

Public sector agencies

2

Practice areas covered

Cloud Landing Zone

Multi-account AWS cloud, governed from one foundation

The customer needed a secure AWS environment for multiple accounts, shared services and future workloads. We implemented an AWS Control Tower Landing Zone with centralized policies, monitoring and cross-account connectivity.

AWS Control Tower

Centralized governance

Multi-account

Scalable cloud structure

Cloud Landing Zone

Enterprise Azure foundation with secure hybrid connectivity

The customer needed an Azure environment supporting multiple departments, applications and security zones. We designed a scalable Landing Zone with centralized governance, private connectivity and controlled network segmentation.

Hub-and-spoke

Secure network architecture

Role-based

Auditable cloud access

Caltrans

Windows devices deployed without manual setup

Caltrans needed a faster and more consistent way to provision Windows devices. We implemented Microsoft Intune and Windows Autopilot to automate deployment and simplify ongoing device lifecycle management.

Touchless

Windows provisioning

End-to-end

Device lifecycle management

Caltrans

Centralized iOS management built for compliance

Caltrans needed stronger visibility and control across its mobile-device environment. We implemented Microsoft Intune MDM and supported onboarding to standardize management and improve device compliance.

Microsoft Intune

Centralized MDM platform

iOS

Managed device rollout

CPUC

Large-scale Windows migration with a structured rollout

CPUC needed to transition its device environment to Windows 11 without disrupting users. We supported readiness assessment, testing, rollout management and end-user adoption throughout the migration.

Windows 11

Enterprise upgrade program

4 phases

Assess, test, roll out, adopt

CPUC

Mobile-device management standardized through Intune

CPUC needed a more consistent approach to managing and securing iOS devices. We led Intune implementation and onboarding activities to improve endpoint oversight and compliance.

Intune MDM

Unified management platform

iOS

Standardized onboarding

CPUC

Automated Windows provisioning made operationally ready

CPUC needed a repeatable process for provisioning Windows devices. We designed and deployed Windows Autopilot, supported testing and documentation, and trained operational teams to manage it independently.

Autopilot

Automated provisioning

Knowledge transfer

Operations team enabled

CalSTRS

Windows 11 migration planned from readiness to adoption

CalSTRS needed a controlled approach to upgrading its Windows estate. We supported readiness analysis, testing, rollout management and user-adoption activities to guide the transition.

Windows 11

Managed upgrade program

End-to-end

Migration support

CalSTRS

Repeatable device provisioning with less manual effort

CalSTRS needed to modernize the way Windows devices were prepared and deployed. We implemented Windows Autopilot with testing, process documentation, training and operational knowledge transfer.

Autopilot

Modern provisioning

4 deliverables

Test, document, train, transfer

CalSTRS

Application delivery standardized through one catalog

CalSTRS needed a more consistent way to package and distribute workplace applications. We developed a software-catalog framework and deployment strategy using Microsoft Intune and Windows Autopilot.

One catalog

Standardized app delivery

2 platforms

Intune and Autopilot

CalSTRS

macOS provisioning aligned with compliance requirements

CalSTRS needed to strengthen the management and provisioning of its Mac environment. We guided an optimization program using JAMF and Microsoft Intune to improve operational consistency and compliance.

JAMF + Intune

Integrated management

macOS

Optimized provisioning

CalSTRS

Existing iOS management optimized for better control

CalSTRS needed to improve its established mobile-device management environment. We led an optimization program focused on iOS provisioning, management and compliance through Microsoft Intune.

Microsoft Intune

Optimized MDM platform

iOS

Improved provisioning

DMV

Large-scale device migration supported by automation

DMV needed to modernize devices and move them across organizational units at scale. We supported testing, automation and rollout planning to establish a controlled migration approach.

Automated

OU movement process

Large-scale

Device modernization

DMV

Workplace devices supported across their full lifecycle

DMV required continuing operational support for its enterprise-device environment. We provided application management, BIOS updates, device lifecycle services, and Windows and Microsoft 365 maintenance.

4 service areas

Workplace operations

End-to-end

Device lifecycle support

DMV

Advanced endpoint capabilities brought into one suite

DMV needed to expand endpoint security, support and analytics. We implemented Intune Suite capabilities covering privilege management, remote assistance, proactive remediation, Cloud PKI and firmware management.

6 capabilities

Endpoint services enabled

One suite

Centralized management

Cloud Landing Zone

Multi-account AWS cloud, governed from one foundation

The customer needed a secure AWS environment for multiple accounts, shared services and future workloads. We implemented an AWS Control Tower Landing Zone with centralized policies, monitoring and cross-account connectivity.

AWS Control Tower

Centralized governance

Multi-account

Scalable cloud structure

Cloud Landing Zone

Enterprise Azure foundation with secure hybrid connectivity

The customer needed an Azure environment supporting multiple departments, applications and security zones. We designed a scalable Landing Zone with centralized governance, private connectivity and controlled network segmentation.

Hub-and-spoke

Secure network architecture

Role-based

Auditable cloud access

Caltrans

Windows devices deployed without manual setup

Caltrans needed a faster and more consistent way to provision Windows devices. We implemented Microsoft Intune and Windows Autopilot to automate deployment and simplify ongoing device lifecycle management.

Touchless

Windows provisioning

End-to-end

Device lifecycle management

Caltrans

Centralized iOS management built for compliance

Caltrans needed stronger visibility and control across its mobile-device environment. We implemented Microsoft Intune MDM and supported onboarding to standardize management and improve device compliance.

Microsoft Intune

Centralized MDM platform

iOS

Managed device rollout

CPUC

Large-scale Windows migration with a structured rollout

CPUC needed to transition its device environment to Windows 11 without disrupting users. We supported readiness assessment, testing, rollout management and end-user adoption throughout the migration.

Windows 11

Enterprise upgrade program

4 phases

Assess, test, roll out, adopt

CPUC

Mobile-device management standardized through Intune

CPUC needed a more consistent approach to managing and securing iOS devices. We led Intune implementation and onboarding activities to improve endpoint oversight and compliance.

Intune MDM

Unified management platform

iOS

Standardized onboarding

CPUC

Automated Windows provisioning made operationally ready

CPUC needed a repeatable process for provisioning Windows devices. We designed and deployed Windows Autopilot, supported testing and documentation, and trained operational teams to manage it independently.

Autopilot

Automated provisioning

Knowledge transfer

Operations team enabled

CalSTRS

Windows 11 migration planned from readiness to adoption

CalSTRS needed a controlled approach to upgrading its Windows estate. We supported readiness analysis, testing, rollout management and user-adoption activities to guide the transition.

Windows 11

Managed upgrade program

End-to-end

Migration support

CalSTRS

Repeatable device provisioning with less manual effort

CalSTRS needed to modernize the way Windows devices were prepared and deployed. We implemented Windows Autopilot with testing, process documentation, training and operational knowledge transfer.

Autopilot

Modern provisioning

4 deliverables

Test, document, train, transfer

CalSTRS

Application delivery standardized through one catalog

CalSTRS needed a more consistent way to package and distribute workplace applications. We developed a software-catalog framework and deployment strategy using Microsoft Intune and Windows Autopilot.

One catalog

Standardized app delivery

2 platforms

Intune and Autopilot

CalSTRS

macOS provisioning aligned with compliance requirements

CalSTRS needed to strengthen the management and provisioning of its Mac environment. We guided an optimization program using JAMF and Microsoft Intune to improve operational consistency and compliance.

JAMF + Intune

Integrated management

macOS

Optimized provisioning

CalSTRS

Existing iOS management optimized for better control

CalSTRS needed to improve its established mobile-device management environment. We led an optimization program focused on iOS provisioning, management and compliance through Microsoft Intune.

Microsoft Intune

Optimized MDM platform

iOS

Improved provisioning

DMV

Large-scale device migration supported by automation

DMV needed to modernize devices and move them across organizational units at scale. We supported testing, automation and rollout planning to establish a controlled migration approach.

Automated

OU movement process

Large-scale

Device modernization

DMV

Workplace devices supported across their full lifecycle

DMV required continuing operational support for its enterprise-device environment. We provided application management, BIOS updates, device lifecycle services, and Windows and Microsoft 365 maintenance.

4 service areas

Workplace operations

End-to-end

Device lifecycle support

DMV

Advanced endpoint capabilities brought into one suite

DMV needed to expand endpoint security, support and analytics. We implemented Intune Suite capabilities covering privilege management, remote assistance, proactive remediation, Cloud PKI and firmware management.

6 capabilities

Endpoint services enabled

One suite

Centralized management

Start your journey today

Have a similar project in mind?

Whether it's a cloud landing zone, a Windows 11 rollout or MDM standardization — let's talk about what it would take to deliver it.