I am a Senior Platform, DevSecOps, and Site Reliability Engineering professional with more than 12 years of experience building and operating secure, reliable Linux and cloud platforms. My expertise spans cloud infrastructure, production operations, CI/CD, platform architecture, and security engineering.
I specialize in AWS, Kubernetes, Terraform, Linux security, and infrastructure automation. I design scalable multi-account cloud environments, reusable infrastructure modules, secure CI/CD pipelines, and observability practices based on SLOs, SLIs, Prometheus, and Grafana.
I am a Go and Python engineer with strong hands-on knowledge of Linux internals and runtime security. My work includes process isolation, least privilege, namespaces, seccomp-BPF, Landlock, cgroups v2, eBPF, IAM, and cryptographic trust.
I have led platform security workstreams and SRE practices, helping teams improve reliability, operational risk management, incident response, and post-incident learning. I have supported regulated and business-critical environments across energy, finance, mobility, robotics, and industrial sectors.
I am also an open-source maintainer and contributor to the Kubernetes Security Profiles Operator ecosystem. I currently build Kubernetes-native security tooling through landlock-genprof and lead architecture and Linux security engineering for a Go-based robotics runtime.
I enjoy mentoring and teaching in areas including networks, DevOps, and software engineering. I use AI-assisted engineering tools such as Claude Code, OpenAI Codex, and GitHub Copilot to improve development and operational workflows.