Back to Home
Projects

Selected projects and systems

A few projects that reflect my interests in secure architecture, full-stack development, AI-powered experiences, and practical infrastructure.

RAG Portfolio Assistant

RAG Portfolio Assistant

Featured

An AI-powered assistant built into my portfolio that answers questions about my work, projects, background, and articles using a retrieval-based knowledge flow.

RAGLLMNuxtPostgreSQLpgvectorOpenAIAI UX
Reusable Secure Auth System

Reusable Secure Auth System

Featured

A production-deployed authentication and authorization backend built under Secure SDLC principles. Supports hybrid authentication for browser and API clients, role-based access control, and a full security documentation suite.

Node.jsTypeScriptPostgreSQLExpressJWTRBACSecurity
Security Monitoring with Wazuh SIEM

Security Monitoring with Wazuh SIEM

Open-source SIEM deployed on a production VPS with custom decoders, application-level detection rules, and MITRE ATT&CK threat classification. Real attack data from day one.

WazuhSIEMSecurityMITRE ATT&CKLinuxMonitoring
Web Security Scanner

Web Security Scanner

Featured

An automated web security scanner that checks HTTP security headers, SSL certificates, DMARC records, and exposed sensitive files. Returns a weighted score and grade from A to F with plain-language findings.

TypeScriptNode.jsExpressPostgreSQLDrizzleSecurityDockerOWASP
Zero Trust Infrastructure

Zero Trust Infrastructure

Production server hardened with Zero Trust Network Access using Netbird and WireGuard. Port 22 closed on the public internet. SSH and internal services accessible only through an encrypted private overlay network.

Zero TrustNetbirdWireGuardLinuxSecurityInfrastructure