Custom Application Migration to Azure Virtual Desktop with Secure Remote Access

PTP supported a custom application migration for a consumer products company that needed to modernize on-premises application and file-sharing infrastructure while enabling secure remote access. The solution used Azure Virtual Desktop as the frontend, Azure Files for file sharing, a backend SQL Express VM, Microsoft Entra ID for authentication, Azure Monitor, Azure Automation, backup services, and Bastion Host access to deliver a secure, scalable Microsoft Azure environment.

Illustration of Goat working on servers leading data to the cloud and to a proved treatment
Industry Biotech

Life sciences organization with collaboration, security, and continuity requirements.

Users 200+

Employees and stakeholders requiring access to a unified Microsoft 365 environment.

Environment Microsoft 365 Tenants

Multiple Microsoft 365 tenants hosting several customer domains across the organization.

Business Driver Post-Merger IT Integration

Consolidate platforms, standardize collaboration, and reduce complexity after acquisition.

The Custom Application Migration Challenge

The organization needed to modernize a custom application and file-sharing environment while preserving secure user access, local drive mapping functionality, data integrity, and scalability for concurrent users. The migration also needed to reduce on-premises infrastructure dependencies and simplify long-term application access through Microsoft Azure.

  • On-premises dependencies: The existing application and file-sharing environment relied on local infrastructure that limited flexibility, scalability, and remote access.
  • Secure access needs: Users required secure remote access to the custom application without exposing sensitive systems or increasing operational risk.
  • Local drive mapping and data integrity: The migration needed to preserve file access patterns, maintain reliable drive mappings, and protect application data during the move to Azure.
  • Licensing complexity: The environment required careful planning around application access, user sessions, Microsoft Azure services, and remote desktop delivery.
  • Scalability requirements: The solution needed to support 20+ concurrent application users and create a foundation that could scale more easily than the legacy on-premises setup.

The Solution: Azure Virtual Desktop for Secure Custom Application Access

PTP implemented a secure Microsoft Azure architecture to modernize the customer’s custom application and file-sharing environment. The solution used Azure Virtual Desktop as the user-facing access layer, Azure Files for cloud-based file sharing, and a backend SQL Express virtual machine to support application data requirements.

Custom Application Migration Architecture

The architecture was designed to provide secure remote access to the application while reducing on-premises infrastructure dependencies. Azure Virtual Desktop delivered the frontend user experience, Azure Files supported shared file access, and Azure IaaS services provided the backend compute and database layer needed to run the custom application in Microsoft Azure.

Azure architecture for custom application migration, secure remote access, Azure Virtual Desktop, Azure Files, and backend SQL Express services.

Secure Azure Architecture

  • Azure Virtual Desktop provided secure remote application access for concurrent users.
  • Azure Files supported cloud-based file sharing and local drive mapping requirements.
  • A backend SQL Express virtual machine supported the application database layer.
  • Microsoft Entra ID provided authentication and identity-based access control.
  • Azure Bastion supported secure administrative access without exposing management ports publicly.
  • Azure Monitor provided monitoring and visibility across the Azure environment.
  • Azure Automation supported security patching and operational consistency.
  • Azure Backup and Recovery Services Vault supported backup and recovery readiness.

Key Azure Components

The solution combined Azure Virtual Desktop, Azure Files, Microsoft Entra ID, monitoring, automation, backup, and secure access services to create a scalable cloud platform for custom application delivery and file-sharing modernization.

  • Azure Virtual Desktop: Delivered secure remote access to the custom application for 20+ concurrent users.
  • Azure File Shares: Supported shared file access, cloud-based storage, and drive mapping needs.
  • Azure Monitor: Provided monitoring, logging, and operational visibility.
  • Azure Automation: Supported security patching and recurring maintenance tasks.
  • Azure Backup and Recovery Services Vault: Protected the environment with backup and recovery capabilities.
  • Azure Bastion: Enabled secure remote administration of Azure resources.
  • Microsoft Entra ID: Provided authentication and identity access management.

Implementation Approach: Design, Deploy, Map, and Operationalize

PTP followed a structured implementation approach to design the Azure environment, deploy the required services, map Azure Files to the application database server, and operationalize the platform with monitoring, backup, patching, and secure access controls.

Staged custom application migration approach covering Azure design, deployment, file mapping, monitoring, backup, and automation.

Migration and Deployment Phases

  • Design: Planned the Azure network, connectivity, Azure Virtual Desktop session host access, remote user authentication, and database connectivity.
  • Deployment: Deployed Azure Virtual Desktop, Azure Files, Bastion Host, the application and database server, and file share mapping requirements.
  • Azure Files mapping: Mounted Azure Files on the database server, mapped the share as a drive, configured permissions and access, and validated performance.
  • Operationalize: Implemented Azure Monitor, Azure Backup and Recovery Services Vault, and Azure Automation to support visibility, resilience, and security patching.

Custom Application Migration Outcomes

The Azure-based custom application migration helped the organization modernize application delivery, improve secure remote access, and reduce reliance on legacy infrastructure and vendor-managed systems. By using Azure Virtual Desktop, Azure Files, Microsoft Entra ID, and native Azure services, PTP created a more scalable and secure platform for remote application access.

  • Secured remote access: Azure Virtual Desktop enabled users to securely access the custom application from remote locations without relying on traditional on-premises access methods.
  • Improved scalability: The Microsoft Azure architecture created a more flexible environment to support 20+ concurrent application users and future growth.
  • Eliminated on-premises dependencies: The migration reduced reliance on local infrastructure by moving application access, file sharing, and supporting services into Azure.
  • Reduced vendor dependencies: Native Azure services helped simplify the environment and reduce dependence on external vendor-managed infrastructure.
  • Modernized application delivery: The solution gave the organization a cloud-based foundation for secure application access, file sharing, monitoring, patching, backup, and operational visibility.

Why PTP for Custom Application Migration to Azure

Custom application migration requires a secure architecture that supports remote users, application performance, file access, identity, backup, monitoring, and long-term scalability. PTP helps organizations modernize legacy application environments with Azure Virtual Desktop, Azure Files, Microsoft Entra ID, and native Azure services while minimizing disruption.

  • Secure AVD-based delivery: Azure Virtual Desktop provided a secure frontend for remote users to access the custom application without relying on traditional on-premises access methods.
  • Native Azure integration: The solution integrated Azure Virtual Desktop, Azure Files, Azure IaaS, Microsoft Entra ID, Azure Monitor, Azure Automation, backup services, and Bastion Host access into one cloud platform.
  • Low user disruption: PTP designed the migration to preserve application access, file-sharing workflows, local drive mapping needs, and data integrity while moving the environment to Microsoft Azure.

About the Author: Shashikanth Hebbar, Associate Director – MS Cloud Services at PTP

Isometric graph icon representing medical document automation and patient intake processing on AWS

Modernize Custom Application Access with Azure

PTP helps organizations migrate legacy applications to secure, scalable Microsoft Azure environments using Azure Virtual Desktop, Azure Files, Microsoft Entra ID, backup, monitoring, and automation.

Schedule your free consultation today.

Tell us a bit about your project to get started with PTP. Fill out the form below and our team will be in touch shortly.

Homepage Contact Us

FAQs About Custom Application Migration to Azure Virtual Desktop

What is custom application migration to Azure Virtual Desktop?

Custom application migration to Azure Virtual Desktop is the process of moving a legacy or on-premises business application into Microsoft Azure so users can access it securely through a cloud-based virtual desktop environment. This approach can support remote access, centralized application delivery, Azure Files integration, identity management, backup, monitoring, and reduced dependence on local infrastructure.

Why use Azure Virtual Desktop for a custom application?

Azure Virtual Desktop is useful for custom applications because it allows organizations to deliver secure remote access without requiring the application to run directly on each user’s device. It can help support concurrent users, centralized management, Microsoft Entra ID authentication, secure access controls, and a more scalable cloud-based application environment.

How does Azure Files support custom application migration?

Azure Files supports custom application migration by providing cloud-based file shares that can replace or extend traditional file server storage. For applications that rely on shared folders, mapped drives, or file-based workflows, Azure Files can help preserve access patterns while moving file storage into Microsoft Azure.

How can secure remote access be provided for a custom application in Azure?

Secure remote access for a custom application in Azure can be provided through Azure Virtual Desktop, Microsoft Entra ID authentication, role-based access controls, Azure Bastion for administrative access, monitoring, backup, and network security controls. This helps users access the application remotely while reducing exposure of backend systems and management ports.

What Azure services are commonly used in custom application modernization?

Custom application modernization in Azure can include Azure Virtual Desktop for user access, Azure Files for shared storage, Azure virtual machines for application or database hosting, Microsoft Entra ID for identity, Azure Monitor for visibility, Azure Automation for patching and maintenance, Azure Backup for recovery, and Azure Bastion for secure administration.

How does PTP support custom application migration to Azure?

PTP supports custom application migration to Azure by designing and implementing secure Microsoft Azure environments for application access, file sharing, identity, monitoring, backup, patching, and remote administration. For this case study, PTP helped a consumer products company modernize a custom application with Azure Virtual Desktop, Azure Files, Azure IaaS services, Microsoft Entra ID, Azure Monitor, Azure Automation, and secure remote access.