Systems & Solutions Engineer
Atlanta, GA · Data Protection & Recovery · Security Tooling · Applied AI
Website · LinkedIn · Email · Resume
5+ years in data protection and solutions engineering, centered on Veeam environments running across VMware, Hyper-V, KVM, Azure, and AWS. I write Python, PowerShell, and Rust, and automate Windows, macOS, and Linux fleets through SCCM/ConfigMgr, Intune, and Active Directory/Entra. That operational background drives the projects below: recovery inspection, maintenance automation, local AI with controls enforced in code, and desktop tools.
Data Protection, Security & Infrastructure · AI & Systems Engineering · More work · Connect
Tools for inspecting restored data, coordinating maintenance, and turning diagnostic exports into reviewable next steps.
| Project | What it does |
|---|---|
| Veeam YARA Scanner | Scans mounted recovery data for ransomware-related indicators. PowerShell and YARA produce file-level findings, matched strings, and JSON reports. Includes Pester tests and malicious/benign rule fixtures. |
| Veeam Proxy Maintenance | Coordinates VMware backup proxies around SCCM/ConfigMgr maintenance. Disables proxies, waits for active tasks, and stops services; a separate recovery stage restarts services and re-enables proxies. Includes drain timeouts and diagnostic exit codes. |
| Veeam HealthCheck Simplifier | Converts CSV and JSON health exports into findings, PowerShell remediation previews, and ticket payloads. Mutating commands include -WhatIf; optional integrations deliver findings to Salesforce and Slack. |
PowerShell · Python · Veeam Backup & Replication · VMware · SCCM/ConfigMgr · YARA
A local workspace for AI chat, web research, and reviewed repository changes.
Rust application with a shared console in a native macOS app and a browser. Saved sessions, operator-controlled memory, and usage analytics make ongoing work inspectable.
- Web research applies URL permissions and request budgets, with source links and coverage reporting.
- The optional coding workflow stages patches and sandboxed checks. Commit, push, and draft PR publication each require a separate operator decision.
Rust axum Tokio SQLite WKWebView
Console guide · Coding workflow · Invariants · Tests
Local document Q&A with the controls enforced in code, not in the prompt.
A Python application that retrieves before it generates and treats every consequential action as a gated exception. LangGraph makes retrieval, provider selection, confirmation, and audit logging explicit nodes in the request flow.
- Hybrid retrieval combines ChromaDB and BM25 through reciprocal rank fusion, with fallback behavior when either search path is unavailable.
- Paid-provider calls require three independent conditions, including per-question confirmation, and every billed call lands in a local spend ledger.
- The request path runs a config-driven prompt-injection filter and a rate limiter, the personality file is protected by SHA-256 drift detection, and the MCP server is retrieval-only.
Python FastAPI LangGraph ChromaDB Ollama MCP
Architecture · Security model · Retrieval design · Screenshots · Tests
See which macOS processes own TCP and UDP connections.
A desktop app and CLI built to inspect network activity while developing local AI software. Shows process ownership, IPv4/IPv6 endpoints, TCP state, and connection changes, with an off-box filter and CSV output.
Rust egui macOS libproc · Apple Silicon and Intel
Design · Build & verification · Tests
| Project | Focus |
|---|---|
| CG-Agent-Avatar | Rust and native AppKit desktop companion for Apple Silicon. Chats through Direct Ollama or CG-Agent-Harness, with native reply panes and explicit web lookups through Ollama's cloud service in Direct Ollama mode. Releases |
| Insight Extractor | Python text analysis that combines regex, dynamic keywords, and semantic scoring to extract security indicators and relevant passages. |
| AI Agent Instruction Templates | Domain-specific instruction templates for technical support and engineering agents, covering source verification, tool scope, and escalation. |
| Systems Administration Handbook | Windows, Linux, macOS, and Docker command references. The Windows and Linux/macOS sheets are also published as searchable single-page web apps on GitHub Pages. |
Additional experiments
- Polymarket Mimic Trader explores asynchronous data processing, trader scoring, exposure limits, and circuit breakers. Paper trading only; live execution is disabled.
- Scrape-n-Email automates web digests with bounded retries, CSV formula escaping, and offline pipeline tests.
- Start with the operational requirement, whether that means draining backup tasks before maintenance or preserving an export after a failed request.
- Make permissions explicit in code through scoped access, validated inputs, and separate approval steps for consequential actions.
- Test failure paths and make the result inspectable through regression tests, structured logs, setup guides, and reviewable output.
I'm looking for systems, solutions, and security-tooling engineering roles where infrastructure experience, automation, and applied AI meet, including agentic and forward-deployed engineering. My strongest fit is work that turns an operational problem into a tool people can use, maintain, and audit.