About

I’m a platform engineer who’s spent the last decade automating infrastructure at scale, turning monolithic VMs into cloud-native ecosystems, wielding Kubernetes, Istio, and GitOps to keep distributed systems humming. I’ve migrated thousands of workloads, enabled service meshes for hundreds of developers, and championed infrastructure as code long before it became table stakes. My foundation is Linux, open source, and the relentless pursuit of stable, observable systems.

Lately, I’ve been trading my Helm charts for packet captures. With a background in hardening Kubernetes clusters (CKS certified and diving deeper into cybersecurity), I’m bridging the gap between platform engineering and defensive security. I write about building resilient infrastructure and understanding how it breaks; exploring the intersection of cloud-native architecture, zero-trust networking, and the adversary mindset that keeps us honest.

Welcome to the space where code meets caution.

Categories

Tags

asset attacks backups certification cloud-init devops docker encryption frameworks fundamentals gitops hashing hetzner kubernetes linux networks osi personal platformengineering playbook plugins security siem sql tcpip threat vpn vps vulnerability wordpress