NetBox Ingest
Production Go service that correlates infrastructure from Proxmox, DNS, and UniFi into unified NetBox entries — multi-source deduplication, continuous sync, and Prometheus metrics for full visibility.
Solutions engineering leader with 15+ years helping enterprises and governments across ANZ, ASEAN and Greater China adopt emerging technology with confidence. I have built and scaled technical pre-sales practices from the ground up at every major infrastructure shift — security, data protection, cloud and cloud-native — translating complex platforms into evaluations that risk-averse buyers will actually deploy. Today I am focused on GenAI: embedding it into how my global team solves customer problems, and on the trust, security and identity questions that decide whether enterprises move AI into production.
Projects spanning infrastructure automation, security platforms, and agentic tooling — built to solve real operational problems.
Production Go service that correlates infrastructure from Proxmox, DNS, and UniFi into unified NetBox entries — multi-source deduplication, continuous sync, and Prometheus metrics for full visibility.
Native analytics page inside Gitea — Go collector, TypeScript SPA, and DORA-style metrics for org health, CI cycle times, and contributor activity without leaving the platform.
Zone-based firewall policy framework with a Go/React editor, deterministic OpenTofu compiler, compile-time break-glass invariants, and advisory LLM risk evaluation before apply.
Multi-agent coordination framework where named specialists collaborate via a shared MCP bus — parallel review, unanimous consensus on design, and isolated Git worktree implementation.
Scheduled LLM risk verdicts for Renovate dependency PRs — fail-closed automerge gate where the model can only withhold approval, never grant it without deterministic CI passing first.
Declarative cluster platform using Helm and Kustomize — MetalLB, Traefik ingress, cert-manager, Harbor registry, and Democratic CSI storage on bare-metal Proxmox.
Sysdig
Lead technical pre-sales across ANZ, ASEAN and Greater China for cloud-native security, focused on large enterprise, high-security and financial-services accounts.
Tenable
First dedicated Cloud Security SE for Tenable in APJ; built the cloud security go-to-market through acquisition integration (Ermetic), with a heavy focus on identity.
Tenable
Developed the Northern ANZ market (NSW, ACT, NT, QLD), focused on financial services and government.
Redlands
Interim ICT leadership with overall responsibility for the technology platform, architecture and infrastructure projects.
Apple Inc.
Pre-sales systems engineering for the NSW education market, spanning K–12 through higher education.
RSA — Security Division of EMC
Broadened remit across DLP, network security analytics and governance tooling; helped rebuild the RSA brand following the RSA breach.
Symantec
Security pre-sales for NSW, growing from mid-market into large enterprise.
Alphawest Services (Optus Business) · KineticIT
Blending executive stakeholder management with deep technical credibility across security, cloud, and emerging AI platforms.
Notes on solutions engineering, platform security, and practical GenAI.
Two projects born ten days apart grew into wildly different things — a small tool that became a product, and a framework for getting AI agents to check each other's work. Both came down to the same instinct: match the stroke to the job, whether the stroke is a tool or an agent.
Read postA brief note on what this site is and what I'll be writing about here.
Read postMost homelabs are playgrounds. Mine runs on the same discipline as production infrastructure — git as source of truth, spec-driven change, and identity-as-code — and that's exactly what lets me hand the keys to an AI agent.
Read postConnect on LinkedIn — happy to talk solutions engineering, cloud-native security, and GenAI in the enterprise.
LinkedIn