I'm a software engineer with an MSc in Cybersecurity Engineering from Politecnico di Torino, focused on backend, platform, and infrastructure engineering. My security interests include identity and access management, authentication and authorization, security protocols, and network security.
I have experience with APIs, CI/CD workflows, Nix-based reproducible and declarative systems, and I favor an Infrastructure as Code approach. I also enjoy writing software, particularly backend services, developer tooling, and infrastructure automation.
My academic and research background also includes RISC-V, hardware security, systems programming, and Linux kernel development.
Languages and backend
Security
Systems and infrastructure
Security testing suite for eBPF/XDP kernel programs based on ISO/IEC TS 17961. Includes XVTLAS, a Go tool that automates vulnerability patch injection, program loading, and Linux verifier analysis.
C Go eBPF/XDP Linux KVM/QEMU
Modular, multi-host configuration for NixOS workstations and home servers. It combines NixOS and Home Manager modules, declarative provisioning, self-hosted services, local and off-site backups, encrypted secrets, overlay networking, and a filtered public mirror.
Declarative systems Self-hosting Automated backups Secrets management Reverse proxy Private networking Reproducible deployment
Attendance system built around a Django REST API and PostgreSQL, with QR-based check-ins and institutional SAML2 authentication brokered through Keycloak. Its development and deployment environments are reproduced with Nix and devenv.
Python Django PostgreSQL SAML2 Keycloak Nix devenv
Open educational resources built reproducibly as Nix derivations and published through GitLab CI/CD, with membership automation running on Cloudflare Workers.
Nix devenv GitLab CI/CD Cloudflare Workers

