Cloud & infrastructure student

HBO-ICT student at Fontys, specializing in Cloud & Infrastructure and Cybersecurity. I build and maintain infrastructure, both in the cloud and on-premise, always looking for the tool that gets the job done best.HBO-ICT student aan Fontys, gespecialiseerd in Cloud & Infrastructure en Cybersecurity. Ik bouw en beheer infrastructuur, zowel in de cloud als on-premise, en zoek daarbij steeds naar de tool die het werk het beste doet.

AzureDockerKubernetesAKSCisco
ApproachWerkwijze
Agile / Scrum DOT-framework (research)(onderzoek) PTES (group project)(groepsproject)
  1. 2026 — now2026 — nu

    Internship, Virtual ComputingStage, Virtual Computing

    Automated deployment for client onboarding.Automatische deployment voor klantonboarding.

  2. 2022 — now2022 — nu

    HBO-ICT, Fontys Hogeschool (FHICT)HBO-ICT, Fontys Hogeschool (FHICT)

    Specializing in Cloud & Infrastructure and Cybersecurity.Specialisatie in Cloud & Infrastructure en Cybersecurity.

  • 20262026

    Deployment automation at Virtual ComputingDeployment automation at Virtual Computing

    Internship project automating container deployments for client environments.Stageproject over het automatiseren van container deployments met klantomgevingen.

    DockerKubernetesAzureCI/CD
  • 2025 — 20262025 — 2026

    CloudDeploy: secure CI/CD pipeline to AKSCloudDeploy: secure CI/CD pipeline to AKS

    Personal project automating the build, scan, test, approve and deploy cycle for a containerized web app on Azure Kubernetes Service. Azure Pipelines builds the image, Trivy scans it for vulnerabilities, unit tests check dependencies, and a manual approval gate blocks production deploys until reviewed. Uptime is monitored via a Logic App that emails an alert if the API goes offline.Persoonlijk project dat de build-, scan-, test-, goedkeurings- en deploycyclus automatiseert voor een gecontaineriseerde webapp op Azure Kubernetes Service. Azure Pipelines bouwt de image, Trivy scant die op kwetsbaarheden, unit tests controleren de dependencies en een handmatige goedkeuringsstap blokkeert productiedeploys tot ze zijn gereviewd. De uptime wordt bewaakt met een Logic App die een e-mailalert stuurt als de API offline gaat.

    AzureAKSDockerCI/CDTrivy sourcebroncode
    Developer Azure Repos Azure Pipelines Build Scan Test Approve Deploy Push Image Deploy Azure Resources Azure Container Registry Azure Kubernetes Service (AKS) Pull Image Azure Key Vault CSI Driver Get Secrets Azure Logic App monitoring Notifications
  • 20262026

    Digging for secrets in public AWS AMIsDigging for secrets in public AWS AMIs

    Research project on how misconfigurations in public AWS AMIs leak sensitive data — inspired by DEF CON's 'AWS CloudQuarry' talk. Combined a root-cause analysis of the AMI publishing process with hands-on scanning (TruffleHog + GitLeaks) across public AMIs. Key finding: the tools are complementary, not interchangeable — GitLeaks caught a private key TruffleHog missed, while generic default credentials without a recognizable token pattern were missed by both and needed manual review.Onderzoeksproject naar hoe misconfiguraties in publieke AWS AMI's gevoelige data lekken, geïnspireerd door de DEF CON-talk 'AWS CloudQuarry'. Ik combineerde een root-cause-analyse van het publicatieproces van AMI's met praktische scans (TruffleHog + GitLeaks) op publieke AMI's. Belangrijkste bevinding: de tools vullen elkaar aan en zijn niet uitwisselbaar. GitLeaks vond een private key die TruffleHog miste, terwijl generieke standaardwachtwoorden zonder herkenbaar tokenpatroon door beide tools werden gemist en handmatige review nodig hadden.

    AWSSecurity researchTruffleHogGitLeaks