Francis Refol
IT Automation Engineer / DevOps / Infrastructure
|
t3knoid@live.com
917.933.5124
|
Summary
Hands-on IT Automation Engineer with experience in infrastructure-as-code, CI/CD pipelines, identity management, and modern cloud-native tools. Proven ability to design, automate, and maintain enterprise-grade environments.Work Experience
|
Technical Applications Engineer
|
Jul 2022-Aug 2024 |
|
Technology
Concepts & Design Inc
| Purchase, NY
|
|
|
TCDI is a legal services
and cybersecurity solutions company.
|
|
|
|
|
Assistant Director of Development
Operations
|
May 2011-Jul 2022 |
|
Stroz
Friedberg, an AON Company
| New York, NY
|
|
|
Stroz Friedberg is a
full service investigation firm that develops data discovery
software. It was acquired by TCDI on July 2022.
|
|
|
|
|
Build Manager/Developer
|
Feb 2009-Apr 2011 |
|
BlackStratus
| Edison, NJ
|
|
|
BlackStratus (formerly
NetForensics) develops enterprise-class Security Information
and Event Management (SIEM) software.
|
|
|
|
|
Advanced Development Engineer
|
Aug 2006-Feb 2009 |
|
NETGEAR
Incorporated
| San Jose, CA
|
|
|
NETGEAR is a worldwide
provider of networking products for the home and business.
|
|
|
|
|
Various Technical & Leadership Roles
|
Apr 1990-Aug 2006 |
|
Held progressively senior positions in software development,
automation, quality assurance, and operations across multiple
organizations, including McAfee Software, SkipJam Corporation,
and Helix Software. Led CI/CD implementations, managed QA testing
processes, developed enterprise software solutions, and oversaw
IT operations to support business growth.
|
|
Core Skills
|
Home Lab & Automation Portfolio
- Built and maintain a fully-featured homelab using Proxmox virtualization, Ubuntu VMs, and Docker — simulating production-grade infrastructure.
- Provision infrastructure and applications via Ansible and Terraform (IaC), achieving reproducible, version-controlled deployments.
- Automate CI/CD, testing, and deployment pipelines using GitHub Actions, Jenkins, and Semaphore, including automated secret management.
- Implement identity and access management using Microsoft Entra ID (Azure AD) + Active Directory, standardizing SSO and centralized authentication for Linux and Windows hosts and services.
- Design hybrid storage & backup architecture: local SSDs, Ceph cluster, iSCSI/NAS, NFS/Samba (TrueNAS), with VM snapshot backups via Proxmox Backup Server.
- Configure network services and reverse proxy infrastructure: redundant Pi‑Hole DNS servers, layered firewall, and Nginx reverse-proxy cluster with automated Let’s Encrypt TLS certificates.
- Deploy observability and monitoring stack using Prometheus for metrics collection and Grafana for dashboards, along with logging and alerting pipelines to track VM/container health, resource utilization, and service uptime.
- Maintain full version-controlled documentation, architecture diagrams, and automation scripts to ensure reproducibility, auditability, and maintainability.
Education
| Bachelors of Science in Computer Engineering, CUNY Brooklyn College, 1990 |