Systems Administrator · Infrastructure Engineer

Building resilient infrastructure.

I design, automate, secure, and operate enterprise and home-lab platforms across Windows Server, VMware, Linux, Kubernetes, GitOps, and Microsoft systems management.

Core capabilities

Hands-on administration supported by automation, security controls, observability, documentation, and repeatable deployment practices.

01 / CLOUD NATIVE

Kubernetes & GitOps

Multi-node clusters, Argo CD, ingress, certificates, persistent storage, RBAC, policies, and application lifecycle management.

KubernetesArgo CDKustomizeLonghorn
02 / MICROSOFT

Windows Infrastructure

Windows Server, Active Directory, Group Policy, Configuration Manager, Operations Manager, SharePoint, and PowerShell.

Windows ServerSCCMSCOMSharePoint
03 / AUTOMATION

Automation & IaC

Repeatable infrastructure operations using PowerShell, Bash, Git, Terraform, Ansible, APIs, and declarative configuration.

PowerShellTerraformAnsibleGit
04 / PLATFORMS

Virtualization & Linux

VMware vSphere administration, Linux server operations, networking, storage, patching, troubleshooting, and capacity planning.

VMwareUbuntuRocky LinuxNFS
05 / OBSERVABILITY

Monitoring & Reliability

Metrics, logging, alerting, dashboards, service health, failure analysis, and operational visibility across infrastructure layers.

PrometheusGrafanaLokiAlertmanager
06 / SECURITY

Secure Operations

Least privilege, service identities, network segmentation, certificate management, secret handling, backups, and recovery planning.

RBACTLSNetworkPolicyGitOps

Featured work

The full case studies will document the problem, architecture, implementation, troubleshooting decisions, security controls, and operational results.

CASE STUDY / 01

Production-style Kubernetes home lab

A four-node Kubernetes platform with load balancing, persistent storage, certificate automation, ingress, backups, and segmented applications.

4 nodesCalicoMetalLBLonghorn
CASE STUDY / 02

GitOps application delivery

Declarative application deployment and reconciliation through Argo CD, Git-based change control, Kustomize, and automated image workflows.

Argo CDGitKustomizeSelf-healing
CASE STUDY / 03

Enterprise monitoring stack

Centralized metrics, logs, dashboards, uptime monitoring, and email alerting for cluster and application health.

PrometheusGrafanaLokiUptime Kuma

This site is part of the demonstration.

The portfolio is deployed as an isolated, policy-controlled workload rather than a conventional static hosting account. The architecture itself is a portfolio artifact.

Delivery path

  1. Git repository stores the desired state
  2. Argo CD reconciles a restricted AppProject
  3. Kustomize renders application resources
  4. ingress-nginx routes HTTPS traffic
  5. cert-manager issues the internal TLS certificate

Security controls

  • Restricted Pod Security
  • Non-root container
  • Read-only root filesystem
  • All capabilities dropped
  • Default-deny networking
  • No outbound network access
  • No API token mounted
  • Resource quotas and limits

Foundation complete. Case studies next.

This internal staging release will grow into a public portfolio, short résumé, architecture library, and safe interactive demonstration environment.

Back to top