Infrastructure, security, cloud, monitoring. Every project starts from a real problem and ends with a verifiable result.
Rollout of the Qualys suite (VMDR, CSAM, Patch Management) across a mixed fleet of around a hundred Windows/Linux machines with Active Directory. Cloud Agent distribution automated with Ansible, from inventory to remediation.
Full SIEM (Wazuh/ELK) ingesting firewall and endpoint logs, with dashboards and automated Python playbooks. Detection time cut fourfold.
Design and hardening of Azure environments: Entra ID, identity and access management (MFA, RBAC), network segmentation and data protection. AZ-104 certified.
Multi-site overhaul for 500+ users: audit, VLAN segmentation, VoIP QoS, SD-WAN rollout and Wi-Fi optimisation. Near-zero downtime during cutovers.
A tool I'm building to automatically detect common web app flaws (OWASP Top 10): page crawling, injection and configuration testing, prioritised reporting.
Audit of 3000+ firewall rules, flow matrix and zone-based segmentation. FortiGate HA cluster, IPsec/SSL VPN, bastions and MFA. Reduced attack surface.
SOAR module (ELK, Wazuh, Shuffle, Cortex) to automate incident response, with red-team attack simulation and forensic analysis.