Luke Jacobson

IT professional turned homelab security practitioner.

I hold a CompTIA Security+ and an AA in Cybersecurity, plus a two-year vocational IT qualification from Switzerland. I've been doing IT support across a range of industries since 2019, enough variety to know how things actually break in the real world. A while back I rediscovered what got me into this field in the first place, and rather than just reading about security concepts I started building infrastructure to practice them hands-on. The result is this site.

Technical Skills

Infrastructure

  • Proxmox VE hypervisor
  • Hetzner bare metal hosting
  • ZFS RAID storage pools
  • VM provisioning & management

Security & Networking

  • mTLS / mutual TLS
  • PKI & certificate authority management
  • OPNsense firewall
  • HAProxy reverse proxy
  • UFW & Fail2Ban
  • WireGuard VPN

Monitoring & SIEM

  • Wazuh SIEM deployment
  • Log aggregation & correlation
  • Alert tuning & rule writing
  • Incident triage & response

Linux & Systems

  • Ubuntu Server administration
  • SSH hardening
  • Bash scripting
  • System hardening practices

DevOps & Web

  • Git & GitHub
  • Apache web server
  • Docker & Docker Compose
  • rsync-based deployments
  • Static site development

Frameworks & Standards

  • CompTIA Security+
  • MITRE ATT&CK (applied)
  • NIST (referenced)

Experience

IT Support Specialist

Various industries  ·  2019 – present

Hands-on end-user support, hardware and software troubleshooting, and infrastructure maintenance across a range of business environments. Working across different industries has meant adapting quickly to new systems and figuring out what "normal" looks like before something goes wrong, which turns out to be a useful skill in security.

Education

AA, Cybersecurity

2017

CFC, General IT

Switzerland  ·  2-year federal vocational qualification

Certifications

CompTIA Security+

CompTIA

Active Project: Luke.yt Homelab

I maintain a self-hosted security homelab running on a Hetzner bare metal server. It covers the full stack: Proxmox hypervisor, OPNsense firewall, Wazuh SIEM, mTLS infrastructure with a self-managed CA, WireGuard VPN, and this website itself served via Apache. Everything is documented in real time, entries written as I'm actually working through problems. The goal is a living record of what I'm building and learning.

If you want to see more details: project blog  ·  infrastructure overview

Contact

Open to conversations about security roles, IT infrastructure work, or anything relevant to what I'm building here.