From practice:
projects we have delivered.
Thirteen examples from consulting, infrastructure, operations and development. The industries are anonymised, the procedures are described as we implemented them. We are happy to explain the details of a project in a conversation.
Thirteen projects at a glance.
- Network & IT infrastructure
Network for a new hotel
Newly built hotel, developer and operatorStructured cabling planned and coordinated, firewall, switches and Wi-Fi built according to a radio survey, separate networks for guests, administration, tills and building services, round-the-clock monitoring with Juniper Mist.
- Microsoft 365
Migration to Microsoft 365
Trading company with several sitesLocal servers, Exchange and file storage fully moved to Microsoft 365, workplaces mobile and centrally managed.
- Cloud & hybrid
Cloud migration and on-premise retirement
Mid-sized company with its own server roomAfter the decision in favour of the cloud, servers, business applications and data were migrated in waves, the server room was switched off and operations moved to a pay-as-you-go cost model.
- IT consulting
Process optimisation in order handling
Mid-sized trading and service companyAs a management consultancy, DEVACON mapped the order handling process, removed media breaks and duplicate entry and implemented the target process with the existing systems.
- Process automation & AI
AI-supported work processes
Service company with several specialist departmentsIncoming documents are recognised and classified by AI and handed to the right process. Approvals run in the workflow.
- Process automation & AI
AI service charge settlement
Property management company with residential and commercial buildingsReceipts are captured and checked by AI and assigned to buildings and allocation keys. The settlement is generated traceably from the verified data.
- Process automation & AI
AI agents in customer service
Insurance brokerage with office and field staffAI agents receive customer requests, create cases, retrieve information from the core systems and prepare replies for approval.
- Process automation & AI
Automated accounting
Construction and trades company with several tradesIncoming invoices, delivery notes and remittance advices are captured, checked, assigned and handed over to financial accounting automatically.
- Cybersecurity
Hardening with MFA and zero trust
Public institution with several departmentsAfter an IT security infrastructure check, identities, devices, network and backup were secured in a fixed sequence.
- Managed IT services
Managed IT for several sites
Manufacturing company with plant, warehouse and administrationOperations, monitoring, helpdesk and maintenance of the entire IT taken over, sites connected and managed uniformly.
- Mobile workflow / eMODAT
Apartment handover with eMODAT
Property management company with residential portfolioHandover and acceptance reports are captured with eMODAT on the tablet: meter readings, photos, defects and signature on site, the PDF goes straight to tenant and owner.
- Mobile workflow / eMODAT
Construction reports with eMODAT
Construction company and developer with several sitesDaily site reports, site inspections, defect reports and acceptances are captured with eMODAT on smartphone and tablet, with geolocated photos and checklists, and distributed to the trades as PDF.
- Digital dictation
Digital dictation in a hospital
Hospital group with several specialist departmentsProDictate introduced in Citrix workplaces, dictations handed to the hospital information system via HL7, typing pool and physicians in one workflow.
No example has been described for this service yet.
Newly built hotel: complete network installation and commissioning, from cabling to monitored Wi-Fi
Starting point
The developer was building a hotel and was looking for a partner to take responsibility for the entire network from shell construction to opening: cabling, active equipment, Wi-Fi in all areas and protection against the outside. The future operator wanted a network that runs without a technician on site and reports faults before guests notice them.
Approach
- Plan and coordinate cablingCable routes, technical rooms, floor distributors and outlets per area agreed with architects and the electrical trade, execution coordinated and accepted. Every port is documented, and this documentation is the basis for everything that follows.
- Radio survey and access pointsWi-Fi coverage planned in advance from floor plans and building materials, the number and placement of access points derived from it: rooms, lobby, meeting rooms, restaurant, outdoor areas and technical rooms.
- Firewall, switches, segmentationJuniper SRX firewall at the internet edge, Juniper EX switches with Power over Ethernet on the floors. Separate networks (VLANs) for guests, administration, tills and hotel software as well as building services, guests isolated from each other.
- Protection against attacksFirewall rules by zone, intrusion prevention, logging and protected remote access. The automated attack attempts arriving from the internet every day are blocked at the edge and never reach the internal networks.
- Commissioning and monitoringTest per area and segment, handover with documentation. Juniper Mist monitors the network around the clock, Marvis Minis act as synthetic clients and continuously check login, address assignment and internet access, the Marvis AI assistant points to root causes before guests report a fault.
Outcome
The hotel opened with a fully documented network. Every area has reliable Wi-Fi, guests, administration, tills and building services are separated from each other, attacks from outside stop at the firewall. Faults are detected and reported by the system, usually before they are noticeable in operations. The operator has one contact for the entire network.
Services and technologies used
- HPE Juniper Networking
- Juniper SRX firewall
- Juniper EX switches
- Juniper Mist
- Marvis Minis
- Marvis AI assistant
- Wi-Fi radio survey
- VLAN segmentation
- Structured cabling
Complete IT infrastructure moved to the cloud: Exchange, file storage and mobile workplaces in Microsoft 365
Starting point
IT ran on local servers at the head office: Exchange for e-mail, file servers for storage, VPN for the branch offices. Hardware and operating systems were approaching the end of their support period, mobile work was possible only to a limited extent.
Approach
- Inventory and target pictureMailboxes, data sets, applications and dependencies recorded. Tenant concept with permissions and naming conventions defined.
- Tenant and identitiesMicrosoft 365 tenant set up, users created in Entra ID, multi-factor authentication and Conditional Access active from the start.
- Exchange migrationMailboxes moved to Exchange Online in stages, mail flow and signatures switched, archive mailboxes set up.
- File storage to SharePoint and OneDriveStructure cleaned up, permissions reassigned, Teams introduced for collaboration between sites.
- Devices and decommissioningNotebooks and mobile devices managed through Intune. Local servers switched off after a verification phase, VPN no longer needed.
Outcome
All sites work in one shared environment. E-mail, files and collaboration are available from every workplace, devices are managed centrally. Local server operations have ended, maintenance is limited to network and devices.
Services and technologies used
- Microsoft 365
- Exchange Online
- SharePoint
- Teams
- Entra ID
- Intune
- Conditional Access
Farewell to the in-house server room: servers, applications and data migrated to the cloud, local infrastructure switched off
Starting point
The servers in the in-house room were due for renewal: hardware, virtualisation, storage and backup would have had to be replaced in one go, plus air conditioning and power supply. Management did not want another investment in hardware but preferred to consume IT as an ongoing service and give up the server room.
Approach
- Assessment per systemEvery application checked for cloud suitability: licensing model, interfaces, data volumes, latency and legal requirements. A target location with reasoning for every system.
- Target architectureCloud environment designed with network segmentation, identities, access rules, data backup and cost frame. Site connected through an encrypted link.
- Hybrid interim stepIdentities and backup moved to the cloud first, then business applications in waves. During the transition the old and new environments ran in parallel, with a rollback path per wave.
- Data and devicesFile stores cleaned up and transferred, workplaces switched to cloud access, printers, scanners and specialist devices connected.
- Shutdown and operationsAfter a verification phase local servers switched off, hardware decommissioned, server room dissolved. Operations, monitoring and cost control run as a managed service.
Outcome
Servers, applications and data run in the cloud, the server room is gone. Instead of a hardware investment the company pays continuously for the resources it uses and adjusts them to demand. Backup and recovery are tested, operations are documented and monitored.
Services and technologies used
- Microsoft Azure
- Entra ID
- Virtualisation
- Site-to-site VPN
- Backup and recovery
- Cost control
- Managed service
Business processes in a mid-sized company: order handling from enquiry to invoice simplified and accelerated
Starting point
An enquiry passed through e-mail, spreadsheets, the ERP system and paper forms before the invoice was issued. Data was entered several times, queries were handled verbally, the status of an order could only be determined by asking around. Management wanted to understand the process before investing in new software.
Approach
- Process mappingThe actual process recorded step by step with the people involved from sales, scheduling and accounting: systems, handovers, waiting times, exceptions.
- Weak pointsMedia breaks, duplicate entries, paper steps and unclear responsibilities named and assessed by their effect on throughput and error rate.
- Target processA leaner process designed: each piece of information captured once, clear approval points, status visible for every order. Agreed with management and the departments.
- System integrationERP, e-mail and document storage connected via interfaces, forms digitised, order status managed centrally. New software only where the existing systems do not cover the requirement.
- Rollout with the staffProcess tested together, work instructions adjusted, training per role. After the rollout, fine-tuning based on the open points from daily business.
Outcome
An order runs from enquiry to invoice in one continuous process. Information is captured once and is available to everyone involved, the status of every order is visible without asking. Staff work with familiar systems that now work together.
Services and technologies used
- Process analysis
- Target process
- ERP interfaces
- Digital forms
- Document management
- Training and rollout
AI-supported work processes: inbox, documents and approvals automated end to end
Starting point
Requests, contracts and receipts arrived by e-mail, post and portal and were reviewed, filed and forwarded manually. Responsibilities were tied to individuals, the processing status was not visible centrally.
Approach
- Process analysisInput channels, document types and decision rules documented per department. Defined which steps rules cover and where AI is needed.
- Recognition and classificationAn AI model extracts sender, document type and key data. Fixed rules apply to special cases.
- WorkflowAssignment, approval and filing in the document management system implemented as a workflow, with deputy rules and escalation.
- Control stageWhen recognition is uncertain, the decision stays with an employee. Every correction feeds back into the rules.
- Operation and adjustmentResults reviewed regularly, rules and model updated, further document types added.
Outcome
Documents are assigned to the right case without manual pre-sorting. The processing status is visible at any time, approvals are logged and traceable. Employees make the professional decision, the system handles distribution.
Services and technologies used
- AI document recognition
- Power Automate
- SharePoint
- DMS interface
- Microsoft 365
AI-supported service charge settlement for a property management company
Starting point
The annual service charge settlement was compiled manually from invoices, contracts and meter readings. Receipts came in different formats. Assigning them to buildings, cost types and allocation keys tied up considerable capacity and was error-prone.
Approach
- Data basisBuildings, tenancies, allocation keys and cost types taken over from the management software in a structured form.
- Receipt recognitionAI extracts invoice data, recognises cost type and billing period and assigns the receipt to the building.
- Verification rulesPlausibility checks for periods, duplicates and deviations from the previous year. Unclear receipts are flagged.
- SettlementDistribution by allocation key, settlement generated per tenant, export to the management software.
- ApprovalCase workers check the flagged items and release the settlement.
Outcome
The settlement is generated from verified, uniformly captured receipts. Every item is traceable to its source document, tenant queries can be answered with reference to the receipt. Case workers focus on the flagged exceptions.
Services and technologies used
- AI receipt recognition
- Verification rules
- Custom software
- Web application
- Interface to management software
Digital AI agents with automated workflows in customer service
Starting point
Customer requests reached the company by e-mail, phone and portal. Entry in the portfolio system, requests for documents and the reply were handled manually across several systems. Standard requests tied up as much capacity as complex cases.
Approach
- Categorise requestsTypical case types, systems involved and decision rules recorded together with the office staff.
- Define agentsOne agent per case type with clearly limited rights: create case, read data, draft reply. No change without approval.
- IntegrationInterfaces to the portfolio system, document storage and e-mail. Every action of an agent is logged.
- Approval stageEmployees approve draft replies and data changes. No unchecked communication leaves the company.
- ExtensionFurther case types added after reviewing ongoing operations.
Outcome
Standard requests are fully prepared, employees check and approve. Every step of an agent is logged and traceable. Complex cases receive more attention because routine work no longer applies.
Services and technologies used
- AI agents
- Workflow automation
- REST interfaces
- Microsoft 365
- Logging
Fully automated accounting processes: from incoming invoice to posting
Starting point
Invoices arrived by post and e-mail, were printed, checked, coded, signed off and then entered in the accounting software. The approval path via site management and executive management was paper-based, discount deadlines were not monitored systematically.
Approach
- Digitise intakeCentral invoice mailbox, scanning of paper mail, automatic recognition of invoice data.
- Verification and assignmentMatching against orders and delivery notes, assignment to project and cost centre, pre-coding by rules.
- Digital approvalApproval workflow by amount and project, mobile on the smartphone for site management.
- Handover to accountingPosting records and documents transferred to financial accounting via interface, payment proposal with deadlines.
- Archive and reportingAudit-proof filing, reports per project and trade.
Outcome
Invoices are processed from intake to posting without media breaks. Approvals take place regardless of location, deadlines are visible, every document is linked to project and cost centre. Accounting handles the exceptions, not the standard case.
Services and technologies used
- Invoice recognition
- Workflow automation
- Interface to financial accounting
- Document management
- Mobile approval
Security hardening with multi-factor authentication and zero trust access
Starting point
Access to specialist applications used username and password, partly from home offices via VPN. Permissions had grown over the years, devices were managed inconsistently, the backup was not protected against manipulation.
Approach
- IT security infrastructure checkInventory of identities, devices, network and data backup. Result: a prioritised list of measures as a basis for decisions.
- IdentitiesMulti-factor authentication for all accounts, Conditional Access, permissions cleaned up, privileged accounts separated.
- DevicesCentral management, encryption, endpoint protection with monitoring and response.
- NetworkSegmentation by zones, firewall rules per zone, access to individual applications instead of the whole network.
- Backup and operationsImmutable backups, restore tested, continuous monitoring with defined responsibilities.
Outcome
Every access is verified, regardless of location. Permissions are documented and can be reviewed regularly. Recovery is tested, security operations run with defined responsibilities.
Services and technologies used
- Multi-factor authentication
- Entra ID
- Conditional Access
- Intune
- Juniper SRX (HPE)
- Endpoint security
- Backup
Managed IT for a manufacturing company with several sites
Starting point
IT was looked after on the side by an administration employee. The sites had their own solutions for network, servers and workplaces. Faults were reported by phone and fixed without documentation.
Approach
- InventoryInventory of all systems, network plan per site, documentation of access and contracts.
- StandardisationUniform network components, central virtualised server environment, site connectivity with firewalls.
- Monitoring and helpdeskMonitoring of all systems, ticket process with prioritisation, dedicated contacts for the sites.
- MaintenancePatch management, data backup with restore tests, reviews at the agreed interval.
- DevelopmentRoadmap with the management, budget planning for replacement and expansion.
Outcome
The sites work in a uniform, documented environment. Faults are detected by monitoring and handled traceably through the helpdesk. Management has a dedicated contact and a basis for planning.
Services and technologies used
- Managed IT services
- Monitoring
- Helpdesk
- HPE Juniper Networking
- Virtualisation
- Backup
- Maintenance contract
Apartment handover and acceptance on the tablet: reports completed on site with eMODAT
Starting point
Handovers were recorded on paper, typed up in the office, photos matched from the camera and the report sent by post. Illegible entries and missing photos led to queries and to disputes about the condition of the apartment.
Approach
- Design the formHandover and acceptance report built as an eMODAT form in the browser: rooms as sections, required fields for meter readings and keys, selection lists for the condition, defect list with photo.
- Capture on siteStaff walk through the apartment with the tablet, photograph defects, enter meter readings and have tenant and management sign on the device. Even without a network in the basement or stairwell.
- PDF and dispatchThe form immediately becomes a PDF report with photos and signatures. The workflow sends it to the tenant and the owners, the management company receives the copy in its filing.
- Connection to managementThe report data is available through the interface for the management software and the document storage, without re-entering it.
- AnalysisOpen defects, handovers per building and processing status are analysed and provided as an Excel file.
Outcome
The report is finished when staff leave the apartment. Photos, meter readings and signatures are clearly assigned to the report, tenant and owner have the PDF immediately. Rework in the office is gone, queries can be answered with the report.
Services and technologies used
- eMODAT
- iOS and Android
- Offline capture
- Photo and signature
- PDF report
- Workflow dispatch
- Interface to management software
Site diary, inspection and defect report on mobile: construction documentation with eMODAT on site
Starting point
Site management kept the site diary and defect lists on paper and in spreadsheets, photos were spread across different devices. Assigning them to building element and trade was laborious, defect notices to the trades went out late, evidence was missing at acceptances.
Approach
- Forms for the siteDaily site report, inspection report, defect notice and acceptance report as eMODAT forms with checklists, required fields and selection lists for trades and building elements.
- Capture with photo and locationDefects are photographed on site and recorded with GPS position and building element. The inspection follows a checklist so nothing is forgotten, even without a network on site.
- Distribution to the tradesEvery defect notice is generated as a PDF report and sent by workflow to the responsible trade, site management keeps track of the open items.
- Acceptance with signatureAt acceptance, remaining defects are recorded, the parties sign on the device, the report is immediately available to all parties.
- Filing and analysisAll reports are filed per site, analyses of open defects and trades are available as an Excel file, connection to the existing system via interface.
Outcome
Construction documentation is created on site and is complete when site management leaves: photos with location and building element, checklists and signatures in one report. The trades receive defects immediately, site management sees the status per site, evidence is available at acceptances.
Services and technologies used
- eMODAT
- Checklists
- Photos with GPS
- Offline capture
- PDF report
- Workflow dispatch
- Signature on the device
- Analysis as Excel
Digital dictation and speech recognition in a hospital with several sites
Starting point
Findings and discharge letters were recorded on dictation devices, handed to the typing pool by hand and transferred to the HIS manually after typing. Processing status was not visible, dictations got lost between sites.
Approach
- RequirementsDepartments, workplace types, HIS interface and data protection requirements clarified with the hospital IT.
- Test environmentProDictate installed in the Citrix environment, audio in the session verified, HL7 integration tested.
- Staged rolloutDepartment by department, dictation microphones at the workplaces, training for physicians and typists.
- Speech recognitionDirect recognition at the cursor for the departments that want to use it, with specialist vocabulary.
- OperationsMaintenance contract, remote maintenance, evaluation of dictation workflows with ProReport.
Outcome
Dictations are in the workflow after recording and assigned to the patient case. The typing pool works across sites, finished texts arrive in the HIS without a transfer step. The processing status is visible at any time.
Services and technologies used
- ProDictate
- Speech recognition
- Citrix Virtual Apps
- HL7
- HIS
- Thin clients
- ProReport
Let us talk about your project.
The initial consultation is without obligation.