Service Transition
Offshore Patching Transition
Planned and led the transfer of routine infrastructure patching to an offshore provider while managing security, knowledge-transfer, cultural and time-zone challenges.
Infrastructure • Technical Leadership • Project Delivery
I combine more than 20 years of infrastructure and operational experience with technical leadership, stakeholder coordination, structured delivery and continual development across cloud, containers, monitoring, automation and security.
Project Delivery Highlights
My experience includes defining technical requirements, coordinating teams and suppliers, managing dependencies and risks, supporting implementation and ensuring successful operational handover.
Service Transition
Planned and led the transfer of routine infrastructure patching to an offshore provider while managing security, knowledge-transfer, cultural and time-zone challenges.
Infrastructure Change
Coordinated technical workstreams and third-party suppliers to separate a shared IT environment so two organisations could operate independently.
Technical Delivery
Provided technical leadership and escalation support during a structured upgrade programme affecting deployed network equipment.
Service Improvement
Developed and communicated a monitoring proof of concept to improve service visibility, operational understanding and proactive support.
Engineering Philosophy
My approach is to build solutions that are secure, observable, maintainable and well documented.
Technical success depends on more than implementation. It requires clear objectives, stakeholder alignment, risk management, effective communication and a controlled transition into operational support.
I aim to leave every platform, process and team in a stronger position than before the work began.
Engineering Journey
From first-line support and enterprise UNIX systems through technical leadership, cloud platforms, containers, observability and security.
Explore my Engineering JourneyFeatured Engineering Projects
Practical infrastructure projects demonstrating platform engineering, observability, cloud technologies, automation and operational resilience.
Security Operations
A joined-up security operations capability combining threat detection, vulnerability management, DNS filtering and evidence-led remediation.
View project →CI/CD & Platform Delivery
An end-to-end delivery pipeline that tests, packages, containerises, security-scans, publishes and deploys a Java application to K3s with automated health verification and rollback.
View project →Vulnerability Management
A managed vulnerability-management workflow that turns Greenbone scan evidence into prioritised, reviewable remediation for the Linux homelab.
View project →Security Engineering
A production-style threat detection and automated firewall enforcement platform with Prometheus metrics, Grafana dashboards and community threat intelligence.
View project →Container Platforms
A self-hosted container platform with protected secret delivery, encrypted recovery, reverse proxying, authentication, monitoring, security and automated application deployment.
View project →Kubernetes
A practical K3s environment with encrypted datastore Secrets, two-recipient SOPS recovery, container orchestration, load balancing, ingress and Git-based deployment.
View project →Infrastructure Resilience
A practical recovery framework combining Restic, passphrase-encrypted detached SOPS identity recovery, automation, monitoring and independent restoration evidence.
View project →Recent Engineering Highlights
Recent work combines infrastructure engineering, automation, observability, cloud development and professional documentation.
Designed and deployed a data-driven Astro portfolio using Docker and Nginx.
Explore →Published a sanitised Grafana dashboard showing live CrowdSec and firewall activity.
Explore →Developed Terraform remote state and reusable cloud infrastructure components.
Explore →Built a K3s environment using MetalLB, Traefik and Git-based deployment practices.
Explore →Engineering Lab
A continuously evolving environment combining Linux, Docker, Kubernetes, cloud engineering, observability, security and automated delivery.
Explore the Engineering LabContainerised application and orchestration environments.
Metrics, dashboards, logs and operational alerts.
Threat detection, firewall enforcement and MFA.
Version-controlled and repeatable engineering workflows.
Platform Architecture
Edge protection, identity, containers, applications, monitoring and security controls work together as a complete operational platform.
Explore the architecture