Joseph Blasi
**** ****** **., *** *******, IL ***16
Phone: 847-***-****
Cell: 847-***-****
Email: *****.******@*****.***
PROFESSIONAL SUMMARY A+, MCDST, and MCP Certified IT Professional and DevOps Analyst with over 20 years of experience driving IT infrastructure evolution, network engineering, and systems administration. Adaptable technical lead proven in scaling responsibilities alongside company growth, collaborating directly with C-suite leadership to migrate data centers to the cloud, modernize legacy stacks, and manage dynamic hybrid tech scopes. Expert in Cloud Native architectures, CI/CD DevOps pipelining, container and Helm artifact registry workflows, and implementing robust Cyber Security and Network Security postures.
TECHNICAL SKILLS
Cloud Native Applications & Kubernetes: Kubernetes environments (DigitalOcean, GCP, MicroK8s, kind clusters), Prometheus & Grafana monitoring/visualization, Helm chart hosting & deployment, containerization (Docker image creation & management), custom deployment/installer scripts, Operators.
DevOps (Pipelines, Repositories & GitOps): CI/CD Pipelining, GitOps, Shell scripting (Bash/POSIX), Forgejo (Git hosting, Docker image building, Helm chart registry), TeamCity, Bamboo Server, legacy toolchain administration (GitLab Server, Bitbucket Cloud, Nexus Repository Manager), SonarQube (code inspection).
Cyber Security (Communication & Network Security): Intrusion Detection Systems (IDS), Wazuh (SIEM/XDR), Cloudflare (WAF, Access, Tunnels), Secure Network Architecture (VLANs, VPN Tunnels), Secure Communication Channels (SSH, SSL/TLS), Certificate Management (Manual updates, Let's Encrypt, Cloudflare).
Identity, IAM & Directory Services: Active Directory, Microsoft Entra ID (Azure AD), Novell eDirectory, 389 Directory Server (LDAP), RADIUS authentication, Keycloak (SSO/SAML), IDHub, PWM (LDAP Password Self-Service), Teampass, ManageEngine.
Windows Systems Administration: Windows Server Administration, Active Directory Domain Services (AD DS), Group Policy (GPO), Hybrid AD Join, WSUS, OS deployment & imaging, standalone Windows Server (Dev/Testing environments).
Linux, Cloud & Systems Administration: Ubuntu (Desktop, Server, Landscape), Proxmox cluster administration, Nextcloud, Webmin, CyberPanel, Xserver, Google Workspace / G Suite Admin (GAM), Microsoft 365 Admin, DigitalOcean, GCP.
Hardware Engineering & Maintenance: System fabrication (custom server/desktop builds, cabling), hardware diagnostics, component upgrades, motherboard/power/storage repairs, server rack mounting, physical maintenance.
Storage, Backup & Recovery: Ceph and ZFS storage arrays, Veeam Backup & Replication, CubeBackup.
Networking Infrastructure: pfSense (Firewall/Routing), Juniper routers, UniFi Site Manager (WiFi/Gateway Admin), ntop.
Databases, Web Services & Analytics: Flexible database deployments across cloud-integrated architectures, self-install instances, and in-cluster management via YAML and Helm Operators (MySQL, PostgreSQL, MariaDB, MongoDB), Nginx, HAProxy, Apache Reverse Proxy, WordPress (Corporate Websites), Zimbra, Matomo (Marketing/Web Analytics), Zabbix, Prometheus & Grafana (Infrastructure & Cluster Monitoring).
WORK EXPERIENCE
Sath Inc. DevOps Analyst / Information Service Engineer August 2014 – July 2026
Adapted to rapidly changing organizational needs over a 12-year tenure, expanding scope from core IT administration to DevOps, hybrid cloud infrastructure, and comprehensive Cyber Security.
Managed a hybrid mix of cloud and self-hosted infrastructure, balancing on-premises hardware with cloud resources across DigitalOcean and GCP.
Administered Cloud Native Applications and container orchestration across diverse Kubernetes platforms including DigitalOcean, GCP, MicroK8s, and kind clusters, deploying Prometheus and Grafana for cluster monitoring/metrics visualization, and utilizing Helm charts, YAML configurations, and custom automation.
Architected and maintained DevOps CI/CD pipelines and GitOps workflows, evolving developer toolchains from legacy platforms (Bitbucket, GitLab Server, Nexus Repository Manager) to a streamlined Forgejo deployment for self-hosted Git repositories, Docker container builds, and Helm chart registry management.
Deployed and managed databases across varied deployment models—including cloud-integrated application components, self-install setups, and in-cluster managed instances driven by Helm and custom Operators (MySQL, PostgreSQL, MariaDB, MongoDB).
Maintained and supported Windows Server environments, Active Directory infrastructure, and hybrid Entra ID integration across both production and staging/development domains for business application testing.
Built, upgraded, and maintained custom physical server hardware, ZFS/Ceph storage arrays, and network equipment.
Implemented comprehensive Cyber Security and Communication/Network Security measures, including VLAN segregation, VPN tunnels, Wazuh (SIEM/IDS), ntop, and Cloudflare WAF/Access.
Managed Secure Communications through SSH and SSL/TLS Certificate Management, handling manual deployments alongside Let's Encrypt and Cloudflare automation.
Deployed and managed enterprise networking and perimeter security utilizing an evolving stack of pfSense, Juniper, and UniFi hardware over time.
Architected Identity & Access Management (IAM) systems, configuring Active Directory, Microsoft Entra ID (Azure AD), and Novell eDirectory (linked to AD). Deployed 389 Directory Server, Keycloak (SSO/SAML), RADIUS, IDHub, and PWM for open-source LDAP password self-service.
Administered Linux server environments and control panels using Webmin and CyberPanel, alongside managing enterprise backup and disaster recovery via Veeam Backup & Replication (supporting virtualized environments including VMware and Proxmox) and CubeBackup.
Configured Web Servers and Reverse Proxies (Nginx, HAProxy, Apache Reverse Proxy) to ensure high availability and secure application delivery.
Managed corporate web presence and analytics, maintaining WordPress for company websites and utilizing Matomo for marketing and non-infrastructure tracking, while deploying Zabbix for core infrastructure monitoring.
Administered cloud productivity platforms including Google Workspace (with GAM) and Microsoft 365 (integrated with Entra ID), as well as hosted applications like Zimbra.
Led continuous virtualization and OS modernization initiatives, migrating workloads from VMware vSphere to Proxmox clusters and transitioning Linux endpoints to Ubuntu.
Oversaw physical security, facility tech, and IoT automation, deploying ZoneMinder surveillance, Home Assistant configured with smart thermostats, and SK-NET access control.
Contract IT Field Specialist / Technician January 2004 – August 2014
Financial Branch Infrastructure & Deployments: Executed hands-on, managed field deployments across retail banking locations (Chase, PNC, Huntington, WAMU) via prime contracting agencies. Performed hardware setups, repairs, system imaging, server upgrades, site surveys, and secure decommissioning.
Enterprise OS Migrations & Desktop Support: Served as local hands-on technician for enterprise-wide Windows XP to Windows 7 rollouts and post-deployment desktop support (BP Corp, Towers Watson).
Corporate System Deployments: Executed site-level Windows 7 deployments and system swaps managed by project leaders for clients such as Cintas, Crawford, and RW Baird.
Hardware Maintenance & Regional Support: Provided local hands-on PC/Mac repairs, tablet provisioning, OS imaging, graphics software setup, and small-office cabling/networking for local businesses and organizations.
Demolab Computer Tech March 2009 – March 2013
Repaired, tested, and built laptop and desktop systems, including custom hardware fabrication (Cat 5 network cables).
Created and deployed custom OS images for bulk PC rollouts and performed extensive malware/virus remediation.
ITT-Technical Institute Networking Assistant March 2005 – June 2006
Maintained and optimized Dell Optiplex workstations and G5 Mac desktops for student lab environments.
Created and deployed Windows XP Professional multimedia images to student workstations and optimized Mandrake Linux machines.
Legacy Incorporated Computer Technician June 2004 – May 2005
Installed, refurbished, and maintained PC and Mac-based hardware and utilized imaging software for system setups.
CERTIFICATIONS
CompTIA A+
Microsoft Certified Professional (MCP)
Microsoft Certified Desktop Support Technician (MCDST)
EDUCATION
Associate of Applied Science in Information Technology – Computer Network Systems ITT Technical Institute, Mt. Prospect, IL
MS Windows Desktop Technician Coursework Oakton Community College, Des Plaines, IL
Windows Server 2008 Coursework Oakton Community College, Des Plaines, IL