Projects
π Observability Stack β Monitoring & Logging Platform Link to heading
Tech: Prometheus, Loki, Grafana, Alertmanager, Blackbox Exporter, Node Exporter
Automation: Terraform, Ansible
CI/CD: GitLab CI
Designed and deployed a production-grade observability platform with centralized metrics, logs, dashboards and alerting.
π Infrastructure-as-Code Portfolio & CV Website Link to heading
Tech: Hugo (static site), Markdown content
Version Control: Git (GitHub/GitLab)
CI/CD: GitLab CI for automated builds and deployment
Designed and maintained a version-controlled, reproducible portfolio and CV website using a static site generator and Infrastructure-as-Code principles, demonstrating practical DevOps capabilities for documentation and personal knowledge management.
π‘ Proxmox Sandbox & VMware Migration Validation Link to heading
Tech: Proxmox VE, Ceph, Proxmox Backup, Terraform, Ansible
Scope: VMware migration workflows, storage, backup, automation
Validation of Proxmox, Ceph and Proxmox Backup for production usage and successful testing of VMware-to-Proxmox migration workflows.
π§© Other Relevant Technologies Used Link to heading
| Technology | Usage / Context |
|---|---|
| n8n | Workflow automation, system integrations, lightweight orchestration |
| Nexus Repository | Internal package & artifact repositories (APT, Docker, internal software distribution) |
| Redmine | Project and issue tracking, integration with alerting and CI/CD workflows |
| GLPI | IT asset management, inventory tracking, helpdesk and service desk operations |
| SonarQube | Static code quality and security analysis integrated into CI pipelines |
| Semaphore CI | CI/CD execution, alternative to GitLab/GitHub Actions for specific projects |
| Keycloak | Identity and Access Management, SSO/OIDC/SAML integration with internal platforms |
| Teleport (Gravitational) | Secure, auditable access to infrastructure (SSH, Kubernetes, databases), certificate-based auth |
| PostgreSQL / MariaDB | Relational databases for internal services and platform components |
| Cloudflare DNS | Managed DNS with proxy/WAF, DNSSEC, certificate & Zero Trust access integration |
| WireGuard / OpenVPN | Secure remote access and tunnel-based segmentation for infrastructure administration |
| Unifi Network | Network management, WLAN/LAN segmentation, central monitoring and provisioning |
| pfSense | Firewalling, network security, routing and VPN termination |
Some project I was involved in at CETIC Link to heading
| Projet | Description |
|---|---|
| VirtualLab | The Virtual Lab project portfolio aims to develop and democratise digital simulation technologies in conjunction with high-performance computing in order to boost companiesβ capacity for innovation. |
| IsoSpec2 | The management of contractual specifications between clients, suppliers, and subcontractors is complex and costly. The IsoSPec2 project aims to develop a SaaS platform to digitalize and structure these exchanges, thereby improving the efficiency and security of industrial processes. |
| SurfConInspect | The project aims for zero-defect production by enabling early surface defect detection and prompt control actions. It introduces advanced 3D and spectral band-specific detectors to enhance defect identification. Additionally, data optimisation methods, including unsupervised ASIS domain adaptation and synthetic data generation, improve classification reliability. |
| SovereignEdge.Cognit | A European project developing a secure, AI-enabled serverless framework that enables distributed Function-as-a-Service (FaaS) execution across the cloud-edge continuum, improving performance, resilience, and data sovereignty for edge applications. |
| AIDE | AIDE is a project that aims to accelerate the use of federated machine learning in the field of cybersecurity and the Internet of Things (IoT). |