SYSTEM STATUS: ONLINE / OPEN TO WORK
HCMC --:--:--
NYC --:--:--
LDN --:--:--
SYD --:--:--

Hello, I'm Alex.

IT Infrastructure and Security Specialist.
CompTIA Trifecta (A+, Network+, Security+) Certified professional with a focus on network security and cloud infrastructure. I bridge the gap between deep infrastructure troubleshooting and clear end-user communication, ensuring every escalation is handled smoothly. Actively seeking MSP Support, Junior SysAdmin, & Cloud Infrastructure opportunities.

./INCIDENT_RESPONSE

Zero-Interaction Threat Analysis (Live MSP)

THREAT NEUTRALIZED

Detected and responsibly disclosed a live clipboard-hijacking payload (ClearFake vector) on a US-based MSP's production website. Analyzed User-Agent evasion tactics and provided immediate remediation steps, resulting in successful threat neutralization within 24 hours.

> Threat Hunting> Incident Response> OSINT> Malware Analysis
[ READ GITHUB REPORT ↗ ]

./HOME_LABS_&_PROJECTS

Enterprise Infra Lab

Architected a corporate network simulation on a Type-1 Hypervisor (Proxmox) with pfSense VLAN segmentation. Administered Windows Server 2022 (AD DS, GPOs, OOB Management). Executed Tenable Nessus vulnerability scans and simulated L2 escalations via Jira Service Management.

> Proxmox VE > pfSense & VLANs > Active Directory > GPO

Lingo Leap

VISIT SITE ↗

AI-assisted "vibecoded" production platform built with Astro. Enforced strict HTTP Security Headers (HSTS, X-Frame-Options), configured TLS 1.2+ minimums, and implemented Bot Mitigation via Cloudflare Edge Network. 100/100 Pagespeed score.

> Web Dev > DevSecOps > Cloudflare > Security Headers

Personal Portfolio

Serverless deployment using Astro & Tailwind. Configured custom domain DNS records via Cloudflare, set up SSL/TLS encryption, and integrated a CI/CD pipeline via GitHub Actions for automated edge deployment.

> Cloudflare Pages > Astro > CI/CD Pipelines

Cyber Forensics (MVT)

Utilized the Mobile Verification Toolkit (MVT) via Linux CLI to analyze Android backup images. Scanned for Indicators of Compromise (IOCs) related to spyware threats (Pegasus/Predator) to verify device integrity.

> Linux CLI > Digital Forensics > IOC Scanning

./Technical_Skills

alex@saigon:~/skills_matrix
alex@saigon:$ ./load_systems.sh
[ OK ] Loaded: Windows Server 2022
[ OK ] Loaded: Linux (Ubuntu/Kali CLI)
[ OK ] Loaded: Active Directory (GPO)
[ OK ] Loaded: Microsoft Entra ID
[ OK ] Loaded: Hybrid Identity Sync
[ OK ] Loaded: pfSense Firewall
[ OK ] Loaded: VLANs (802.1Q)
[ OK ] Loaded: Malware Remediation
[ OK ] Loaded: IAM / Access Control
[ OK ] Loaded: DNS/DHCP Management
[ OK ] Loaded: Disaster Recovery
[ OK ] Loaded: VPN & Remote Access
[ OK ] Loaded: Vulnerability Patching
[ OK ] Loaded: SIEM
alex@saigon:$ clear
alex@saigon:$ ./load_tools.exe
[ OK ] Init: Proxmox VE (Type-1 Hypervisor)
[ OK ] Init: VirtualBox / VMware
[ OK ] Init: TP-Link Managed Switches
[ OK ] Init: Tailscale (OOB)
[ OK ] Init: MVT (Mobile Forensics)
[ OK ] Init: Wireshark (Packet Analysis)
[ OK ] Init: Git / GitHub
[ OK ] Init: Astro / Tailwind
[ OK ] Init: Jira / Ticketing Systems
[ OK ] Init: Office 365 Admin
[ OK ] Init: Nmap
[ OK ] Init: Cloudflare Edge
[ OK ] Init: Tenable Nessus
[ OK ] Init: Splunk
root@system:~# _

./YOUR_ROI

Beyond Certifications.

It's not enough to just know how a server works, you need to understand how it impacts the business. I bring technical expertise and sharp soft skills that de-escalate client tension and protect your reputation.

[ SOFT SKILLS ] [ TROUBLESHOOTING ] [ SECURITY-FIRST ]
[ COMMUNICATION ]

The "Translator"

Thanks to my background in education, I have a rare ability to translate complex IT issues into plain English that clients and non-tech stakeholders actually understand. Native-level English, patience, professionalism.

[ OPEARATIONS ]

Knowledge Base Optimization

Crystal-clear internal notes and actively contributing to the company Knowledge Base. By documenting root causes and step-by-step resolutions for recurring issues, I empower the entire team to close tickets faster and eliminate operational bottlenecks.

[ SECURITY ]

Security-First Approach

Every infrastructure change carries risk. Whether I'm configuring a firewall, provisioning a new user in Entra ID, or executing deep troubleshooting, Zero-Trust principles and Defense-In-Depth protocols always dictate my workflow.

./CERTIFICATIONS

CompTIA A+

CERTIFIED
A+

Core IT Infrastructure: Hardware configuration, OS Troubleshooting (Windows/Linux/macOS), and Helpdesk methodologies. Mastery of peripheral setups, basic networking protocols, and enterprise mobile device provisioning.

CompTIA Network+

CERTIFIED
Net+

Network Architecture: Deep understanding of the OSI model, TCP/IP stack, and routing protocols. Proficient in designing VLANs, configuring DNS/DHCP, physical cabling standards, and executing network troubleshooting.

CompTIA Security+

CERTIFIED
Sec+

Cybersecurity Foundations: Applied threat analysis, risk mitigation, and Incident Response. Knowledge of cryptography (PKI), Zero-Trust architecture, identity management, and compliance frameworks (GDPR/HIPAA).

Microsoft 365 (MS-900)

CERTIFIED
MS-900

Cloud Fundamentals: Navigation of the Microsoft 365 ecosystem, differentiating SaaS/PaaS/IaaS solutions. Foundational knowledge of Entra ID authentication, cloud deployment models, and enterprise licensing.

Azure Fund. (AZ-900)

CERTIFIED
AZ-900

Azure Architecture: Core concepts of Azure Virtual Machines, Resource Groups, and Cloud Networking. Understanding of Azure Policies, cost management, and scaling enterprise infrastructure.

Endpoint Admin (MD-102)

IN PROGRESS
MD-102

Modern Device Management: Advanced configuration of Windows Autopilot and Microsoft Intune. Implementation of RBAC, Mobile Device Management (MDM vs MAM), and Defender for Endpoint.