IT Technician & Homelab Architect
Technical Support, IT Operations & Self-Hosted Infrastructure
Get In Touch
I'm an IT professional with 1.5 years of hands-on experience in IT operations and technical support. I specialize in endpoint troubleshooting, system deployment, and ticketing system administration — with a track record of building automation that improves support efficiency.
Outside of work, I maintain a self-hosted homelab on Ubuntu 24.04 — building and securing infrastructure from scratch with zero trust networking, containerized services, and automated monitoring. Currently pursuing CompTIA Network+ certification.
Based in McBain, Michigan, I'm always looking for opportunities to expand my skills in IT infrastructure, security, and automation.
Designed and deployed the company's first centralized IT ticketing system, establishing structured workflows for issue tracking and prioritization. Improved visibility into support demand and response efficiency.
Developed backend automation to deliver real-time ticket status notifications to end users. Reduced manual follow-up and improved communication throughout the support process.
Built and configured a Microsoft Deployment Toolkit server to standardize and automate Windows workstation imaging. Reduced setup time and ensured consistent system configuration across all devices.
Built a Python desktop application that automates NIST-traceable pressure sensor calibration in a cleanroom environment. Integrates three bench instruments via VISA/SCPI (Additel pressure controller, Keysight multimeter + power supply), runs automated test sequences with pass/fail validation, performs 30-second leak tests, and generates NIST certificate PDFs from DOCX templates. Reduced calibration time from 30+ minutes manual per sensor to a fully automated sequence.
Self-hosted infrastructure running on Ubuntu 24.04 (VPS) with zero trust networking, containerized services, and security monitoring. Every service is built, configured, and maintained from scratch.
Static site hosting + Cloudflare DNS
Zero trust VPN + ACLs + Serve
UFW + Fail2Ban + systemd
Full-stack portfolio with GitHub Pages front-end, Cloudflare DNS, Node.js contact API on a VPS backend (Caddy reverse proxy + systemd), and self-hosted analytics with SQLite. Every component built and deployed from scratch.
Implemented zero trust networking with Tailscale (WireGuard-based mesh VPN). Identity-based ACLs restrict service access by device and user. Tailscale Serve exposes services securely without opening public ports. All infrastructure access routes through the mesh.
Hardened Ubuntu VPS with defense-in-depth: UFW firewall rules, Fail2Ban intrusion prevention, SSH key-only authentication, automatic security updates, and Caddy reverse proxy with TLS termination. Services run under dedicated user accounts with least-privilege access.
Deployed and manage multiple Docker containers on the VPS including qBittorrent and FileBrowser. Services are network-isolated, accessed exclusively through Tailscale mesh VPN. Managed via systemd with proper user isolation and resource controls.
Built a comprehensive security audit script in Python that scans SSH hardening, firewall status, open ports, SSL certificates, failed logins, pending updates, and system resources. Generates multi-format reports (JSON, Markdown, plain text) for documentation and remediation tracking.
Deployed OpenClaw (AI agent framework) for infrastructure automation and monitoring. Agents handle device pairing, service management, security checks, and scheduled tasks — demonstrating AI-assisted IT operations and automated workflows.
Built a self-hosted, cookie-free analytics system tracking page views and referrers without third-party scripts. SQLite backend with authenticated stats dashboard. No Google Analytics — privacy by design.
Currently Pursuing
Expected 2026
Professional Experience
Active
Professional Experience
Active
Professional Experience
Active
Interested in automation solutions, IT consulting, or collaboration on tech projects? I'm always open to discussing new opportunities and ideas. Feel free to reach out via email or connect with me on LinkedIn.