All Projects
Contract Work Field Deployment Networking 10–12 min read

MSP Contract — Multi-Site
Field Infrastructure Deployments

Solo contractor delivering complete network and security stack deployments across 4 healthcare clinic sites across Ontario and British Columbia — Unifi infrastructure, Datto RMM, EDR rollout, legacy server resolution, and zero unresolved critical issues at project handoff on every engagement.

Engagement Overview

Context

Engaged by a regional MSP as an independent contractor to execute on-site infrastructure deployments and remediation at healthcare clinic locations. Each engagement was scoped, scheduled, and executed independently — no senior technician on-site, no local IT contact at the client. Remote BC sites required advance equipment shipping and pre-agreed deployment windows with the clinic. Every site required full technical ownership from equipment installation through to stakeholder sign-off and formal written documentation of every resolution.

Healthcare clinic environments present unique IT challenges: clinical software integrates directly with imaging hardware, payment terminals, and practice management systems — all of which must remain operational during and after any network change. Downtime directly impacts patient scheduling and revenue. Every engagement was planned around maintaining clinical continuity with zero disruption to patient care.

Deployment Scope (Per Site)

Network Infrastructure

  • Deployed Unifi Cloud Gateway as unified routing/firewall appliance — replaced aging consumer-grade routers
  • Installed and configured Unifi managed switches — VLAN segmentation for clinical, admin, and guest traffic
  • Deployed Unifi Access Points — enterprise WiFi coverage across clinic floor and reception
  • Configured SSIDs with VLAN assignment: staff network, guest network (captive portal), clinical device VLAN isolated from guest
  • Verified all clinical hardware (imaging sensors, clinical tablets, label printers, payment terminals) maintained connectivity post-cutover

Endpoint Security & RMM

  • Deployed Datto RMM agent to all clinic workstations — enabling remote monitoring, patch management, and future support without on-site visits
  • Deployed cybersecurity software (EDR/AV) across all endpoints — verified enrollment and initial scan completion before leaving site
  • Configured automated patch scheduling and alert routing back to the MSP NOC

Legacy Issue Resolution

Every site had pre-existing technical debt that required diagnosis and resolution before the new infrastructure could be stood up cleanly. The most common category was legacy Windows Server architecture causing domain-join failures — workstations unable to authenticate to the domain due to DNS misconfiguration, stale AD objects, or outdated server configurations.

On-Site Execution Process

Each engagement followed a structured workflow designed to minimize clinical disruption:

Pre-deployment:
  → Site survey (network layout, existing equipment, device count)
  → Identify maintenance window (typically early morning before patient hours)
  → Prepare gateway config template, RMM deployment package, documentation template

Day of deployment:
  → Install physical hardware (gateway, switches, APs) during maintenance window
  → Configure network — VLANs, SSIDs, DHCP scopes, firewall rules
  → Migrate all devices to new network; verify each device type individually
  → Deploy RMM + EDR to all endpoints; verify enrollment
  → Resolve any connectivity issues found during migration
  → Run full clinical workflow test with staff (imaging, practice management, payment terminal)

Post-deployment:
  → Produce formal documentation of all changes and resolutions
  → Hand off to clinic manager with walkthrough of new WiFi SSIDs and support process
  → Submit completed deployment report to MSP

Out-of-Province Engagements

Two of the four sites required travel to British Columbia — executed as 2–3 day on-site trips. The remote nature of these engagements added coordination complexity: all equipment had to be shipped ahead, deployment windows were pre-agreed with the clinic, and any issues had to be resolved on-site with no option for a next-day return visit. Both BC sites were completed within the allocated window with zero issues requiring follow-up.

Documentation Deliverables

Every engagement concluded with written documentation submitted to the MSP and retained for the client:

  • Network topology diagram — IP scheme, VLAN assignments, device inventory
  • Issue resolution log — each problem encountered, root cause, and fix applied
  • Endpoint inventory — all devices enrolled in Datto RMM with asset details
  • Credential and access record — gateway admin credentials, WiFi SSIDs/passwords, stored securely
  • Handoff checklist — every deliverable verified and signed off before departure

Outcomes

Skills Demonstrated

Unifi Cloud Gateway
Unifi Switches / APs
VLAN Segmentation
Datto RMM
EDR / Endpoint Security
Windows Server / AD
DNS Troubleshooting
Practice Management Software
Payment Terminal Integration
On-Site Documentation
Solo Deployment Ownership