Available for consulting engagements
Software, web, AI & cybersecurity consulting.
Driven by a passion for technology: I design and build web applications, software, automation and AI solutions, and make sure the infrastructure behind them is secure, reliable and ready for the cloud.
Certified across
- Cisco
- CompTIA
- VMware
- AWS
- SNIA
- Dell EMC
10+ yrs
Enterprise infrastructure at Dell EMC
14
Industry certifications
MSc
Cybersecurity
200+
Customers at EMEA technical workshops
Services
What I can do for you
Hands-on work, clear reports and fixes that stick, for small teams and growing companies.
Security assessment
Vulnerability and configuration review of servers, networks and exposed services, with a prioritized, readable report.
- CVE review
- Attack surface
- Risk report
Infrastructure hardening
Linux, firewall, VPN and access hardening, plus backups you have actually tested restoring.
- Linux
- Firewall & VPN
- Backup & DR
Cloud, storage & virtualization
Design and troubleshooting of SAN, VMware and cloud environments, from sizing to incident response.
- AWS / Azure / OCI
- VMware
- iSCSI / FC
Development & automation
Secure web apps, CI/CD pipelines, containers and scripts that remove manual, error-prone work, including AI agents.
- Python / Django
- Docker
- CI/CD
How we work
A simple, transparent process
-
01
Discovery call
A short introductory call to understand your systems, risks and goals. You get an honest view of what is worth doing.
-
02
Assess & plan
Hands-on review followed by a written report: findings ranked by risk, with a concrete remediation plan.
-
03
Fix & hand over
I implement the fixes with your team, document everything and leave you with systems you can run confidently.
Blog
Latest notes from the field
Practical threat modeling for small projects with STRIDE
You do not need a workshop to threat model. Draw the data flows, apply STRIDE to each boundary and write down the mitigations you will actually implement.
Oct 11, 2026
Running Docker Compose in production on a shared VPS
Lessons from hosting several projects on one VPS: bind ports to localhost, share a proxy network, keep secrets out of the repo and always have a rollback point.
Oct 11, 2026
A strict Content Security Policy without unsafe-inline
How to ship a CSP with script-src 'self' only, what breaks when you remove inline scripts and eval, and how to fix it without weakening the policy.
Oct 11, 2026
Not sure where your weak spots are?
Tell me about your setup. I'll get back to you with a first assessment and next steps.
Start the conversation