Securing enterprise infrastructure across Windows, Linux, and hybrid environments — with a focus on compliance-driven automation, PKI, and identity systems.
- Identity & PKI — Active Directory, AD CS (2-tier CA hierarchy), OCSP, smart card logon, certificate lifecycle management
- Compliance & Hardening — STIG remediation, NIST RMF, FIPS 140-2, SCAP/ACAS scanning, BitLocker (TPM, Network Unlock)
- Automation — PowerShell for AD, IIS, and Windows Server lifecycle tasks; Python for configuration management and deployment tooling
- Linux — RHEL 8/9, kickstart-based automated provisioning, LUKS encryption, FIPS-mode OS deployment, domain integration
- Endpoint & Patch Management — Trellix ePO, WSUS, Group Policy (GPO) design and remediation
- Virtualization — VMware ESXi, Hyper-V, VMware Workstation
- Network & SIEM — SolarWinds, RADIUS/NPAS (Cisco/Ruckus/Dell), Cisco EWC, VLAN/switching fundamentals
- CompTIA Security+
| Repository | Description |
|---|---|
| (coming soon) | RHEL 8/9 Kickstart Automation — FIPS, LUKS, STIG, domain join |
| (coming soon) | PKI Tooling — PowerShell for AD CS template management and OCSP config |
| (coming soon) | Windows Server Automation — DC lifecycle, BitLocker GPO, LAPS |
| (coming soon) | IIS Configuration Package — Python-based deployment with XSD schema validation |
