Tech Lead Cyber Security based near Vienna, Austria 🇦🇹
I build security foundations that scale (PKI, IAM, hardening, automation), and I ship pragmatic open-source tools in my spare time ⚙️🛡️
- 🛡️ Tech Lead Cyber Security (engineering-focused: architecture + implementation)
- 🔐 Deep into PKI, IAM/SAML/OIDC, Zero Trust-ish pragmatism, and secure automation
- 🧰 DevOps-minded security: I like repeatable, observable, boring-in-a-good-way systems
- 🧪 Homelab enjoyer: self-hosting, monitoring, networking, automation
- 🏃♂️ Outside the terminal: hiking, swimming, photography (and quantified-self stuff) 📸⛰️🏊♂️
- 🌍 Portfolio: https://thomas.bella.network -- Profile: https://thomas.bella.network/+
- 🧠 Homelab / projects / write-ups: https://blog.bella.network
Browser extension + backend that surfaces useful server/domain/security context — running at scale for years.
Stack: Go backend, high-volume APIs, autoscaling, reliability-first mindset ⚡
Repo: https://github.com/thomas2500/uDomainFlag
APT caching proxy (think apt-cacher-ng style) focused on performance and fewer external dependencies.
Repo: https://gitlab.com/bella.network/GoAPTCacher
SAML SP / reverse-proxy layer with modern session handling (JWT), built for enterprise reality.
Repo: https://gitlab.com/bella.network/PassBeyond
- 🏛️ Security engineering in real orgs: policy → implementation → operations
- 🧾 Compliance work that actually lands: ISO 27001 / NIS2-aligned execution (not just paperwork)
- 🔑 Enterprise PKI modernization: roots/intermediates, lifetimes, automation (ACME), inventory hygiene
- 🧷 Identity & access: SAML/OIDC/OAuth2 patterns, claims, app onboarding, secure auth flows
- 📈 Observability: logging/metrics first, incident response readiness, and “prove it” telemetry
Languages: Go · PHP · JavaScript · Bash · PowerShell
Infra: Linux · Docker · GitLab CI/CD · nginx · HAProxy · IPv6
Security: PKI · SSO · hardening · threat modeling · secure defaults
Ops: monitoring, alerting, and automation
Other: MariaDB · MySQL · PostgreSQL · Redis · MQTT · FontAwesome
- 🔄 Removing unnecessary dependencies from services (less glue, fewer moving parts)
- 🧱 Making infrastructure more self-documenting (dashboards, inventories, automation)
- 📦 Improving caching/proxy workflows for faster, more reliable deployments
- 💼 LinkedIn: https://www.linkedin.com/in/thomas-bella/
- 📫 Contact: [email protected]
- 🐦/🦋/💬:
- 🧠 I strongly prefer systems that are simple, observable, and boring (that’s a compliment).
- 📸 If I’m not building something, I’m probably outside taking photos or on a trail.




