+1 615 294 4128
[email protected]
https://resume.quietlife.net
Senior engineer across infrastructure, security, and operations.
Self-directed infrastructure and security work, shipping open-source tooling via heavily LLM-assisted development – directing architecture, reviewing output, and debugging the results.
Handled identity and access management for GitHub’s workforce, coordinating closely with HR, Legal, IT, and incident response teams.
Led SRE/devops and a small Data Services team for a non-profit CRM SaaS platform on GCP, during an acquisition-period stretch with limited investment in production engineering.
Modernized infrastructure and cleaned up security for an Alibaba-backed e-commerce platform with a small team spread across the US and Romania.
Eleven years as COO of CentreSource, a web and application development agency (30-50 employees, ~$3-5M revenue) – P&L, financial reporting, contracts, forecasting, and a small operations team. Built the agency’s web development practice through PHP/Rails/early-mobile shifts, and built and profitably ran a managed anti-spam/email-filtering product on the side.
Before that, sole systems engineer at Education Networks of America, a state-wide K-12 network (250,000+ computers, one million users): migrated 60,000+ email accounts off a DEC Alpha OpenVMS system to a Linux stack solo, designed redundant anycast DNS for nearly 500 domains with automated validation so network engineers could self-serve changes, and automated router configuration management – version control for infrastructure before that was a term of art.
Infrastructure & Cloud: AWS, GCP, alibaba cloud, proxmox, vmware, terraform/opentofu, kubernetes, docker/compose
Configuration & Automation: ansible, puppet, make, ci/cd (github actions, jenkins, et al.)
Observability & Monitoring: nagios, grafana, datadog, splunk, pagerduty
Security: IAM/access management, SSO/identity protocols (SAML, OAuth/OIDC, SCIM, Okta), TLS/PKI (letsencrypt, digicert, et al), secrets management (vault/openbao), VPN (wireguard, openVPN, IPsec), vulnerability/secret scanning (trufflehog, grype, dependabot/renovate, etc)
Networking & DNS: TCP/IP fundamentals, DNS infrastructure (NSD, unbound, BIND), firewall design (openbsd/pf, iptables), reverse proxy/edge (traefik, cloudflare), enterprise network hardware (F5 BIG-IP, Cisco, Juniper)
Languages & Scripting: bash, python, ruby, SQL, git
Systems & Data: linux (ubuntu, debian, nixos, RHEL/CentOS), openbsd, postgresql, mysql, mongodb, openldap, redis
Practices: declarative infrastructure-as-code, gitops, containerized/reproducible environments, disaster recovery
LLM-Assisted Engineering: LLM-assisted development and automation -- advocate for secure, deliberate and intentional adoption.