- Juice Shop security labs
- SOC & SIEM monitoring
- Security hardening
- Vulnerability awareness

I build secure and reliable IT systems with a focus on automation, infrastructure and cyber security. My background includes system administration, second-level support, DevSecOps practices and IT security, with an emphasis on resilient, well-managed and production-ready environments.
Through hands-on projects with Terraform, Ansible, Kubernetes, Docker, CI/CD pipelines and SOC & SIEM technologies, I have gained practical experience in infrastructure automation, system hardening, secure deployments and security monitoring. Backed by my technical foundation from HTL Anichstraße in Innsbruck and a continuous drive to grow in cyber security, I focus on building systems that are secure, scalable and prepared for tomorrow.

Where I applied my skills

AWS Cloud Security Lab demonstrates how to build a secure cloud environment using Terraform, Ansible and native AWS security services. The project combines EC2, S3, IAM, CloudWatch, CloudTrail and AWS Config with Linux hardening, monitoring, alerting and audit logging. It focuses on Infrastructure as Code, automated hardening and cloud security fundamentals based on the principle of least privilege.

AWS Cloud Security Lab demonstrates how to build a secure cloud environment using Terraform, Ansible and native AWS security services. The project combines EC2, S3, IAM, CloudWatch, CloudTrail and AWS Config with Linux hardening, monitoring, alerting and audit logging. It focuses on Infrastructure as Code, automated hardening and cloud security fundamentals based on the principle of least privilege.

Terraform & Ansible Secure Lab demonstrates how Infrastructure as Code can be used to automate Linux provisioning, system hardening and self-hosted service deployment. The project combines Terraform, Ansible, Docker, and a self-hosted Gitea instance with automated package management, UFW firewall configuration, Fail2Ban protection, SSH hardening and containerized deployments. It focuses on reproducible infrastructure, configuration management and secure automation — core practices of modern DevOps and DevSecOps environments.

FastAPI DevSecOps Platform demonstrates how a modern full-stack application can be extended with professional security and CI/CD workflows. The project combines FastAPI, React, Docker, and GitHub Actions with secret scanning, SAST, dependency scanning, container scanning, SBOM generation, and signed Docker images. It focuses on secure automation, container hardening, and software supply chain security — exactly where modern DevSecOps work becomes practical.

FastAPI Kubernetes Platform extends my DevSecOps application with a practical Kubernetes deployment using k3d, Helm, Traefik Ingress, and PostgreSQL. Frontend, backend, and database run as separate workloads inside the cluster and communicate through Kubernetes services, ConfigMaps, Secrets, and Ingress routing. This project shows how containerized applications can be deployed, secured, scaled, and managed with foundational Kubernetes security concepts.
Let’s connect, here’s what I’m looking for and what I can offer: