Available for remote work · open to relocation (US & Europe)

Artyom Ashminevich

Systems Administrator

Systems administrator running Windows-centric infrastructure for ~120 users, moving deliberately from operations into cloud and DevOps engineering.

120
users supported
Windows environment at Micros: AD, GPO, DNS, DHCP
~ 150
machines patched
WSUS patch pipeline on SSL, port 8531
15
seat security lab
Purple Team lab, deployed by script over SSH
41 k
lines localized
ManageEngine AD360 Russian resource set

Selected work

Things I built and had to make work

Each one is written up the same way: what the problem was, what I actually did, and what broke along the way.

Selected work
Read the k3s cluster on AWS case study

Self-directed learning project

Self-hosted k3s cluster on AWS with Flask/PostgreSQL and Cloudflare

A single-node Kubernetes cluster on EC2 running a public Flask app over Traefik and Cloudflare — with the API server closed to the internet and reachable only over a Tailscale mesh.

  • Cloud
  • Kubernetes
  • Networking
Read the Purple Team training lab case study

MICROS training center

Purple Team training lab across 15 workstations

A 15-seat teaching lab where every station is both attacker and defender — Kali on bare metal hosting an Ubuntu Suricata sensor, rolled out entirely by script over SSH.

  • Security
  • Deployment
  • Linux
Read the Diskless network security audit case study

My own infrastructure · ~40 clients

Authorized internal security audit of a diskless game-club network

A read-only audit of a diskless game-club network I own, written up as a versioned report with a prioritized vulnerability table and a remediation plan for skeptical staff.

This was an owner-authorized audit of infrastructure I own myself, read-only throughout: port scanning, banner grabbing, and share/service enumeration only — no exploitation, and no changes to the live boot images.

  • Security
  • Networking
  • Audit

Capability

Marked honestly, not generously

Capability

28 technologies across six areas, each tagged with how far I have actually taken it — production, hands-on, or lab only.

  • Production 11 used in a live environment I am responsible for
  • Working knowledge 11 hands-on but not yet production-critical
  • Learning project 6 built in a self-directed lab or personal project
Full skills matrix
  • Cloud & Containers

    • Learning project AWS EC2
    • Learning project Kubernetes (k3s)
    • Working knowledge Docker, Docker Compose
    • Learning project Microsoft Azure
    • Working knowledge Tailscale
    • Working knowledge Cloudflare
  • Windows Infrastructure

    • Production Windows Server, Active Directory, Group Policy
    • Production DNS, DHCP
    • Production WSUS
    • Production ManageEngine ServiceDesk Plus
    • Working knowledge 1C administration
  • Networking & Security

    • Production MikroTik / RouterOS
    • Production Kerio Control / Kerio Connect
    • Production IPsec site-to-site tunneling and diagnostics
    • Working knowledge VLAN segmentation
    • Working knowledge Authorized internal security auditing
    • Learning project Suricata IDS/IPS
    • Working knowledge HikVision video infrastructure
  • Automation & Scripting

    • Production PowerShell
    • Working knowledge Python
    • Working knowledge Bash
    • Learning project GitLab CI/CD
    • Learning project Ansible
  • Virtualization & Backup

    • Production VMware ESXi under vCenter / vSphere
    • Production Veeam Backup & Replication
    • Working knowledge iSCSI / LUN storage
  • Monitoring

    • Production Custom PowerShell monitoring with alerting
    • Working knowledge Grafana / Prometheus

Open to work

Looking for a cloud or infrastructure team to grow into

Currently in Tashkent, working remotely across time zones and open to relocation in the US or Europe. Every channel I use is on one page.