🌐NetworkingSegmented VLAN architecture, routing, DNS control, and secure service exposure across internal and external boundaries.
🪪IdentityCentralized identity and authentication flows using Authentik, with controlled access across services and environments.
🛡️SecurityZero trust design, host hardening, threat modeling, and continuous scanning with DevSecOps tools.
🖥️PlatformInfrastructure provisioning with OpenTofu, configuration via Ansible, and containerized workloads using Podman.