DevSecOps Engineer · Certified IT Specialist for System Integration

I build, understand and secure IT infrastructure.

From my own self-hosted infrastructure on Proxmox across Linux systems and networks to secure file-transfer platforms in my day job. I am currently extending my profile towards cloud, Kubernetes security and automation: hands-on, structured and with a clear roadmap.

~/about

I am a certified IT specialist for system integration (German IHK vocational qualification) and work as a DevSecOps Engineer focused on file-transfer platforms and secure infrastructure. I dig into how IT really works behind the scenes and build that infrastructure myself: networks, Linux systems, virtualization and running services securely. In my own self-hosting environment I put technologies into practice instead of only learning them in theory. My next step leads deliberately towards cloud, Kubernetes security and automation, with a clear certification roadmap as the common thread.

role: devsecops engineer

focus: secure infrastructure · file transfer · self-hosting

next: cloud · kubernetes-security · automation

~/skills

~/dotfiles/skills.conf read-only

[network]

vlans, firewall-rules, routing-basics, dns, dhcp, port-forwarding, reverse-proxy, cloudflare-tunnel

[virtualization]

proxmox-ve, lxc-containers, virtual-machines, templates, snapshots, resource-planning, self-hosting-structure

[systems]

linux, debian, ubuntu, rocky-linux, windows-basics, server-services, ssh, package-management

[self-hosting]

pi-hole, dns-filtering, web-hosting, reverse-proxy, internal-services, segmentation, backup-basics

[automation]

shell-basics, central-system-management, foreman/katello, update-management, documentation, structured-troubleshooting

[currently-learning]

# in progress · az-900 → kcsa → cka → cks

cloud-fundamentals (azure/aws), kubernetes, cloud-security, wireguard, monitoring, logging, infrastructure-as-code, ci/cd, n8n, zapier, backup-concept, secure-publishing-of-internal-services

~/projects

Self-hosted Portfolio Website

in progress

This website runs self-hosted on my own Proxmox server in a Debian LXC with Nginx and is published via Cloudflare Tunnel instead of open ports. Deliberately privacy-friendly: static, no tracking, no external dependencies.

learned: web hosting, HTTPS, DNS, secure publishing and privacy aspects of self-hosting.

html/css/js · nginx · debian-lxc · cloudflare-tunnel · https · dns

DevSecOps Learning Lab

planned / building

Extending my self-hosting setup into a DevSecOps practice environment: CI/CD pipelines, Infrastructure as Code, container security and workflow automation. The goal is a public GitHub portfolio with reproducible, hardened setups instead of pure theory.

focus: Terraform, hardened pipelines, policy as code, container scanning and automation with n8n.

ci/cd · infrastructure-as-code · terraform · container-security · n8n · github

Cloud & Kubernetes Journey

started

A structured path towards cloud and Kubernetes security along a clear certification roadmap: from cloud fundamentals via Kubernetes administration to the security specialization, accompanied by hands-on exercises in my own self-hosting environment.

roadmap: Cloud fundamentals → KCSA → CKA → CKS → cloud security specialization. Details in the certifications section.

azure/aws · kubernetes · cloud-security · devsecops

~/certifications

# completed

  • [x] Fachinformatiker für Systemintegration (IHK): German vocational qualification, IT Specialist for System Integration
  • [ ] more to follow …

# roadmap · in this order

  1. [~] 01 Cloud fundamentals – Microsoft AZ-900 / AWS Cloud Practitioner Foundation & direction decision · currently preparing
  2. [ ] 02 KCSA – Kubernetes & Cloud Native Security Associate Entry into cloud-native security
  3. [ ] 03 CKA – Certified Kubernetes Administrator Hands-on Kubernetes practice
  4. [ ] 04 CKS – Certified Kubernetes Security Specialist Security specialization (requires CKA)
  5. [ ] 05 Cloud security certification (SC-500 / AWS Security) Second wave: after initial cloud practice

~/experience

  1. Continuous learning: cloud, DevSecOps & automation

    (HEAD -> main)

    Structured certification roadmap towards cloud and Kubernetes security, complemented by CI/CD, Infrastructure as Code and workflow automation.

  2. Building my own self-hosting environment

    (tag: self-hosting)

    Practical deepening alongside the job: Proxmox, network segmentation, DNS, self-hosting and secure publishing of services.

  3. Starting as DevSecOps Engineer

    (tag: devsecops)

    Focus on file-transfer platforms and secure infrastructure: operating, hardening and evolving production systems.

  4. Vocational training as IT specialist for system integration

    (tag: apprenticeship · initial commit)

    Foundation in infrastructure, virtualization, Linux and networking, completed successfully.

~/contact

Luka Antonio Miloloza. For technical questions, project ideas or professional contacts you can reach me via e-mail or LinkedIn.