Hi, I’m Kevin
I build infrastructure, security tooling, and full-stack applications.
What I Build
Infrastructure & Cloud
Infrastructure as code for AWS and Azure. Serverless backends, CDN deployments, multi-cloud provisioning. I automate the parts that shouldn’t require a human.
Security
Cloud security monitoring and alerting. Custom vulnerability scanners. Authentication systems. Penetration testing. WAF configuration. I build the detection, not just the policy.
Full-Stack Applications
Web applications from database to frontend. Task queues, caching layers, object storage. CLI tools. I work across the stack in Python, PHP, JavaScript, and Bash.
AI Integration
Production systems built on LLM APIs. Local model inference and fine-tuning. I integrate AI where it solves real problems, not where it sounds impressive.
Projects
All open source on github.com/GlyphSH:
certwatch - TLS certificate and configuration grader for the terminal and CI. Checks expiry, chain trust, protocol/cipher, and assigns an A-F grade.
sshield - SSH hardening auditor. Grades sshd_config and authorized_keys for weak keys, weak crypto, and dangerous defaults. C11, zero dependencies.
dmarc-digest - Turns DMARC aggregate (RUA) XML reports into a readable digest: who sends as your domain, who’s spoofing it, and what to fix. Zero-dependency Go CLI.
evtx-triage - Offline Windows .evtx triage for incident responders: brute-force bursts, cleared logs, rogue services, admin-group changes, suspicious PowerShell. .NET 10, cross-platform.
macsweep - Audits macOS launchd persistence (LaunchAgents/Daemons), flagging unsigned, ad-hoc, or suspiciously-located startup items. Zero dependencies.
msp-scripts - Production-ready PowerShell, Bash, and Python scripts for MSPs and system administrators.
glyph.sh - This site. Static site on a CDN, infrastructure-as-code managed, automated deployment, WAF protection. Runs for about $8/month.
Background
Previous experience as IT Manager leading infrastructure, security, and cloud operations across multiple locations. Earlier, I ran Kessler Automation LLC for about four years, delivering infrastructure, security, and automation work for small and mid-size businesses.
Why This Site Exists
I kept rewriting the same infrastructure code at different jobs. This is the canonical version - tested, deployed, and free to use.
Beyond the Terminal
Outside of work: fishing, security research, and building tools that solve problems. Tinkerer at heart who learns by building, breaking, and rebuilding.
Transparency
This site was built with assistance from Claude AI. Experience and technical expertise are mine; site development and content structure were AI-assisted.
Get in Touch
Bug reports, suggestions, or technical discussions: kevin@glyph.sh
I’m not currently available for new roles, but I’m always happy to talk shop - feel free to reach out.
Built with Hugo. Styled with Bootstrap. Hosted on AWS. Uses Google Analytics for site improvement. Full details in the privacy policy.