Services
What I deliver.
I work at the intersection of security, operations and AI — where most vendors only cover one. Everything I build is code, reproducible, and made to survive an audit.
01 — Security & compliance
Hardening and controls that survive an audit
I run mission-critical systems in the financial sector day to day — security is not an afterthought, it is the starting point. From OS hardening to DORA readiness.
- OS & Kubernetes hardening (CIS baseline, seccomp, least privilege)
- DORA & operational resilience for financial services
- Crypto-agility & post-quantum readiness (ML-KEM / ML-DSA, hybrid TLS)
- Threat modelling, secrets management and vulnerability scanning
02 — DevOps & platform
From bare metal to a self-healing platform
My entire platform is code. Kubernetes on Proxmox/bare metal, full Ansible automation, observability built in — reproducible from the first command.
- Kubernetes, Traefik, Longhorn, MetalLB — production-grade
- Infrastructure as code (Ansible / Terraform), idempotent
- CI/CD with Gitea Actions, GitOps workflow
- Observability: Prometheus, Grafana, Loki, uptime monitoring
03 — AI & automation
Private AI your lawyers can sign off on
AI without shipping your data to another continent. Open-WebUI and Claude behind your own doors, n8n as the glue — automation that actually runs in production.
- Private AI for EU teams (Open-WebUI + Claude), data sovereignty
- n8n workflows: triage, briefings, provisioning
- RAG and integrations against your own systems
- Cost-controlled and measurable — not a science project
Need someone who covers the whole chain?
From hardening to private AI — in the same delivery.