Networking Fundamentals
TCP/IP, subnetting, and network troubleshooting, sharpened daily resolving enterprise network tickets at Cimas Health Group.
$ cat /etc/motd
Security is where my systems administration and developer backgrounds converge. All tool details and focus areas are structured clearly below.
TCP/IP, subnetting, and network troubleshooting, sharpened daily resolving enterprise network tickets at Cimas Health Group.
Day-to-day Linux administration across homelab VMs and containers: permissions, services, SSH hygiene, and minimal attack surface principles.
Running Authentik as a centralized identity provider with SSO, OAuth2/OIDC flows, and policy-based access across all self-hosted services.
Building strong foundations in information systems auditing and security protocols through HIT ISACA, backed by hands-on healthcare IT operations.
Security tooling, automated vulnerability scanning, and attack surface reconnaissance software.
~/case-studies/help-desk-vault.md
Jan 2026 – Aug 2026
An enterprise Zero-Knowledge ephemeral secret-sharing platform designed to eliminate plaintext password and token leakage across help desk operations.
Sender Browser (Client-Side Encryption)
│ 1. Generates 256-bit AES-GCM key & IV locally
│ 2. Encrypts secret text ──► Ciphertext payload
│ 3. Assembles link: /view/[id]#[localKey] (Hash fragment never hits server)
│
├──► POST /api/secret ──► Upstash Redis (Key-Value TTL Store)
│ └─ Stores ONLY Ciphertext + Configured Max-Views / TTL
│
Recipient Browser
│ 1. Retrieves Ciphertext from /view/[id]
│ 2. Extracts #[localKey] from window.location.hash
│ 3. Decrypts secret in-memory ──► Redis atomically burns the key~/case-studies/elic-pdf-tool.md
Aug 2026
A browser-based document processing suite with Cinema Mode editing, executing all PDF conversions, metadata sanitization, and restructuring 100% client-side via WebAssembly and PDF.js.
Browser Client Sandbox (Zero Server Upload)
│
├──► PDF.js & WebAssembly Engine
│ ├─ Memory-isolated document parsing & rendering
│ └─ Cinema Mode full-screen reading & annotation
│
├──► In-Memory Manipulation Pipeline (pdf-lib)
│ ├─ Merge, Split, Reorder, Rotate, Crop (N-Up)
│ └─ Stream compression & damaged xref table repair
│
└──► Security & Privacy Layer
├─ Metadata Sanitization (strips author, OS, GPS tags)
└─ Client-side password encryption & permissions lock~/case-studies/open-channel.md
Dec 2025 – Present
Multi-tenant whistleblower intelligence and employee feedback platform with zero-knowledge submission anonymity, USSD gateway support, and AI sentiment analysis.
Reporting Channels:
Web App (Stripped IP / Headers) Feature Phone (No Internet)
│ │
▼ ▼
Next.js Edge Router USSD Session Gateway
│ │
└───────────────┬───────────────────────┘
▼
Anonymization Pipeline
(Strips IP, UserAgent, Metadata)
│
┌────────────────┴────────────────┐
▼ ▼
Supabase Multi-Tenant DB NLP Sentiment Classifier
(Isolated Org RLS) (Toxicity & Priority Triage)~/case-studies/vulnerability-assessment-toolkit.md
Aug 2026
An automated security auditing shell suite designed for rapid reconnaissance, port scanning analysis, and system attack surface evaluation.
Target Network / IP ──► Host & Port Recon ──► NSE Vulnerability Audits ──► Structured Report
(CIDR Input Range) (Nmap Engine) (CVE & Service Probes) (Markdown & JSON)An interactive terminal simulation for quick command-line exploration.
elic@security: interactive shell
Type 'help' to see available commands. Try 'tools' or 'sudo hire me'.