Services

What I deliver.

I work at the intersection of security, operations and AI — where most vendors only cover one. Everything I build is code, reproducible, and made to survive an audit.

01 — Security & compliance

Hardening and controls that survive an audit

I run mission-critical systems in the financial sector day to day — security is not an afterthought, it is the starting point. From OS hardening to DORA readiness.

  • OS & Kubernetes hardening (CIS baseline, seccomp, least privilege)
  • DORA & operational resilience for financial services
  • Crypto-agility & post-quantum readiness (ML-KEM / ML-DSA, hybrid TLS)
  • Threat modelling, secrets management and vulnerability scanning

02 — DevOps & platform

From bare metal to a self-healing platform

My entire platform is code. Kubernetes on Proxmox/bare metal, full Ansible automation, observability built in — reproducible from the first command.

  • Kubernetes, Traefik, Longhorn, MetalLB — production-grade
  • Infrastructure as code (Ansible / Terraform), idempotent
  • CI/CD with Gitea Actions, GitOps workflow
  • Observability: Prometheus, Grafana, Loki, uptime monitoring

03 — AI & automation

Private AI your lawyers can sign off on

AI without shipping your data to another continent. Open-WebUI and Claude behind your own doors, n8n as the glue — automation that actually runs in production.

  • Private AI for EU teams (Open-WebUI + Claude), data sovereignty
  • n8n workflows: triage, briefings, provisioning
  • RAG and integrations against your own systems
  • Cost-controlled and measurable — not a science project

Need someone who covers the whole chain?

From hardening to private AI — in the same delivery.

Get in touch