Server & Infrastructure Security

Locking down servers and keeping them running

Linux Server Administration Server Hardening & Security Performance Optimization High Availability Architecture Cloud Infrastructure (AWS/GCP) Docker & Containerization

WAF & Application Security

WAF setup, rules, and blocking attacks

WAF Configuration & Rules DDoS Mitigation OWASP Top 10 Protection Penetration Testing Bot Detection & Mitigation Security Monitoring & SIEM

Fraud Detection & Risk Management

Catching bad transactions before they cost you

Risk Scoring Engines Transaction Monitoring Behavioral Analytics Chargeback Prevention Compliance & KYC/AML

Development & Frameworks

15+ years writing code that ships

PHP / PHP 8+ WordPress (Core/Plugins/Themes) MySQL / MariaDB / PostgreSQL REST API Development Laravel / Symfony HTML5 / CSS3 / SASS JavaScript / Node.js

AI & Emerging Technologies

Working with LLMs and AI tooling

Prompt Engineering AI Security & Prompt Injection Defense LLM Integration & API AI-Powered Automation Machine Learning Basics

Tools & Platforms

Stuff I use regularly

Security Tools

  • ModSecurity / OWASP CRS
  • Fail2Ban / CSF
  • Nmap / Wireshark
  • Burp Suite / OWASP ZAP
  • Snort / Suricata
  • ClamAV / Maldet

Server Stack

  • Nginx / Apache / LiteSpeed
  • Redis / Memcached
  • MySQL / MariaDB / PostgreSQL
  • Varnish / CDN
  • Plesk / cPanel / WHM
  • Docker / Kubernetes

Dev Tools

  • Git / GitHub / GitLab
  • Composer / npm
  • PHPUnit / Jest
  • CI/CD Pipelines
  • VS Code / PhpStorm
  • Postman / Insomnia

Platforms

  • AWS / Google Cloud
  • Cloudflare / Akamai
  • DigitalOcean / Vultr
  • WooCommerce / Shopify
  • Stripe / PayPal APIs
  • OpenAI / Claude API

Need help with any of this?

Reach out, I'll see what I can do