IT Infrastructure Specialist with 5+ years managing production systems across Linux, networking, cloud (AWS), and security — independently, with zero critical downtime. Based in Montevideo, Uruguay. Actively seeking on-site or hybrid roles in Albania, Kosovo, or the broader Balkans region.
Production-focused infrastructure, security hardening, and operational support for systems that must stay online.
Linux server deployment from bare metal — ARM and x86 systems. OS provisioning (Debian, Ubuntu, Armbian), service deployment, SSH management, system hardening, and long-term remote administration in live production environments.
Secure baselines for OS and networks: firewall policy, remote access controls, service exposure review, and hardening to reduce operational risk in real-time production environments.
Permission audits, integration reviews, and exposure assessments. Identity protection advisory and structured technical support for client systems under operational constraints.
Hardware troubleshooting, component replacement, and performance optimization. Workstations and ARM single-board systems: thermal management, storage/RAM upgrades, PSU testing, and OS recovery.
Python, JavaScript, and Bash for task automation, custom tooling, and workflow improvements. Pragmatic approach: build what reduces toil and improves reliability.
AWS EC2 instance deployment, security group configuration, and lifecycle management. Cloud-based infrastructure support integrated with on-premises environments, ensuring consistent uptime and access control across hybrid setups.
7 Independent Clients — Remote
Full-cycle technical ownership for a portfolio of 7 clients running live production systems. Built and configured Orange Pi 5+ (ARM) servers from bare metal — OS provisioning (Armbian), networking, SSH access, service deployment, firewall policy, and hardening. Ongoing sysadmin support for Windows workstations with strict uptime requirements and real-time incident response.
7 Independent Clients — Remote
Designed and implemented network security policies across all managed client environments. Configured firewall rules, VPN tunnels, port forwarding, and LAN/WAN routing. Administered AWS EC2 instances with security group policies, integrated VoIP systems, and enforced security hardening including access control, 2FA, and endpoint protection. Conducted real-time incident response and system audits to maintain zero-breach posture.
Self-taught — Uruguay
Five years of continuous self-directed learning initiated during 2020 — covering systems administration, networking fundamentals, cybersecurity concepts, scripting (Python, JavaScript, C#), and hardware maintenance. Every concept learned was applied to real client problems.
Full bare-metal setup of Orange Pi 5+ (ARM) systems for 7 clients. OS provisioning (Armbian), network configuration, remote access via SSH, service deployment, firewall rules, and system hardening. Each unit delivered operational, documented, and configured for long-term remote management.
Designed and deployed network security policies across 7 client environments — firewall rule sets, VPN configuration, port forwarding, LAN/WAN routing, and VoIP integration. Implemented access control layers and security hardening on every network to prevent unauthorized access and reduce attack surface.
Ongoing hardware diagnostics and repair for client workstations — thermal paste replacement, storage and RAM upgrades, PSU testing, OS reinstallation. Preventive maintenance routines and remote monitoring practices that reduced reactive emergency support.
Security audit and hardening of accounts, platforms, and devices for all clients. Implemented 2FA across every critical account, reviewed and terminated unauthorized active sessions, and established OPSEC protocols to prevent phishing and credential compromise — tailored for high-visibility public figures.
A web platform for real-time submissions with role-based moderation and approval (RBAC). Built from scratch on self-hosted infrastructure, designed for controlled inputs and predictable behavior during live operations. AI-assisted development (Claude, ChatGPT, Copilot) used as part of the toolchain.
Available across time zones for incident response. When production systems break, I focus on fast triage, stable recovery, and clear next steps.
I don't stop until the problem is solved. No passing issues off to "level 2" or giving up. I research, troubleshoot, and implement solutions until your systems work perfectly.
Uruguayan passport grants visa-free entry to Albania. All travel and relocation costs covered personally — zero financial burden on the employer. Only requirement: standard work permit processing. Available to start immediately.
Managed live systems where downtime directly impacts operations. Focused on reliability, fast recovery, and stable infrastructure under pressure.
I understand what clients need because I listen. Fluent in Spanish and professional English. I explain technical issues in simple terms and keep you informed every step of the way.
Remote-first with availability for on-site work when needed. Clear scope, documented changes, and predictable operations.
References available upon request. Client details are kept private by default.
I keep client details private by default — it comes with the nature of security work. But if you need to verify my track record before moving forward, I'm happy to connect you directly with current or past clients across Spain, UK, and LATAM.
Available for infrastructure / systems administration roles, IT support positions, and freelance operational support. Remote work globally (LATAM, UK, EU). Let's discuss uptime, security requirements, and how I can help.