Tech Lead Cyber Security based near Vienna, Austria ๐ฆ๐น
I build security foundations that scale (PKI, IAM, hardening, automation), and I ship pragmatic open-source tools in my spare time โ๏ธ๐ก๏ธ
- ๐ก๏ธ Tech Lead Cyber Security (engineering-focused: architecture + implementation)
- ๐ Deep into PKI, IAM/SAML/OIDC, Zero Trust-ish pragmatism, and secure automation
- ๐งฐ DevOps-minded security: I like repeatable, observable, boring-in-a-good-way systems
- ๐งช Homelab enjoyer: self-hosting, monitoring, networking, automation
- ๐โโ๏ธ Outside the terminal: hiking, swimming, photography (and quantified-self stuff) ๐ธโฐ๏ธ๐โโ๏ธ
- ๐ Portfolio: https://thomas.bella.network -- Profile: https://thomas.bella.network/+
- ๐ง Homelab / projects / write-ups: https://blog.bella.network
Browser extension + backend that surfaces useful server/domain/security context โ running at scale for years.
Stack: Go backend, high-volume APIs, autoscaling, reliability-first mindset โก
Repo: https://github.com/thomas2500/uDomainFlag
APT caching proxy (think apt-cacher-ng style) focused on performance and fewer external dependencies.
Repo: https://gitlab.com/bella.network/GoAPTCacher
SAML SP / reverse-proxy layer with modern session handling (JWT), built for enterprise reality.
Repo: https://gitlab.com/bella.network/PassBeyond
- ๐๏ธ Security engineering in real orgs: policy โ implementation โ operations
- ๐งพ Compliance work that actually lands: ISO 27001 / NIS2-aligned execution (not just paperwork)
- ๐ Enterprise PKI modernization: roots/intermediates, lifetimes, automation (ACME), inventory hygiene
- ๐งท Identity & access: SAML/OIDC/OAuth2 patterns, claims, app onboarding, secure auth flows
- ๐ Observability: logging/metrics first, incident response readiness, and โprove itโ telemetry
Languages: Go ยท PHP ยท JavaScript ยท Bash ยท PowerShell
Infra: Linux ยท Docker ยท GitLab CI/CD ยท nginx ยท HAProxy ยท IPv6
Security: PKI ยท SSO ยท hardening ยท threat modeling ยท secure defaults
Ops: monitoring, alerting, and automation
Other: MariaDB ยท MySQL ยท PostgreSQL ยท Redis ยท MQTT ยท FontAwesome
- ๐ Removing unnecessary dependencies from services (less glue, fewer moving parts)
- ๐งฑ Making infrastructure more self-documenting (dashboards, inventories, automation)
- ๐ฆ Improving caching/proxy workflows for faster, more reliable deployments
- ๐ผ LinkedIn: https://www.linkedin.com/in/thomas-bella/
- ๐ซ Contact: [email protected]
- ๐ฆ/๐ฆ/๐ฌ:
- ๐ง I strongly prefer systems that are simple, observable, and boring (thatโs a compliment).
- ๐ธ If Iโm not building something, Iโm probably outside taking photos or on a trail.




