Tor Upton | Operations Engineer specialising in Linux infrastructure, automation, and security
Who Am I?

- BASED IN
- Gold Coast, AU
- FOCUS
- RHEL & Automation
- OPEN TO
- Ops · DevOps · Sysadmin
I'm Tor Upton. I build, automate, and secure Linux infrastructure.
Most of what I know comes from running my own homelab a single server (a Proxmox host) split into many separate virtual machines, divided into isolated networks (VLANs) behind their own firewall, running the kinds of services most people pay a provider to host. I break things on purpose and automate everything I can, so a problem never has to be solved twice.
My focus is Red Hat Enterprise Linux (RHEL) the version of Linux most large Australian businesses and government departments run so I'm working toward the official certifications to formally prove it. On the side I'm building Waypoint, a startup putting tap-to-share (NFC) digital business cards into Apple and Google Wallet, backed by a Postgres database.
I'm ready to bring this to an infrastructure team and contribute from day one.
Path into Infrastructure
A deliberate move from independent software development into systems and infrastructure via applying a builder's delivery mindset to how systems are provisioned, secured and kept running.
2022 – 2025
Independent Software Development
Designed, built and shipped solo software projects end to end from intial concept and design through implementation, debugging. Self-taught the full delivery lifecycle and the disciplined, ship-it mindset that now underpins my infrastructure work.
2026 — PRESENT
Pivot to Operations & Infrastructure
Deliberately specialised into Linux operations. Built and operate a production-standard homelab and automation with Ansible, container orchestration, and monitoring with an emphasis on the repeatable, documented process that modern ops teams run on.
2026 — PRESENT
Waypoint Lab Environment
Designed and maintain Waypoint, a self-built lab where I deploy, secure and stress-test infrastructure end to end, learning how production systems behave under load, failure and recovery.
IN PROGRESS
Formalising the Knowledge
Working toward recognised industry certifications to validate hands-on experience against established standards via starting with the Red Hat ladder (RHCSA now, RHCE as the goal) alongside cloud platforms.
Security Posture & Compliance
ELIGIBILITY
- CITIZENSHIP
- Australian Citizen
- CLEARANCE
- Eligible for Baseline / NV1
- LOCATION
- Gold Coast, QLD
- OPEN TO
- Brisbane · Canberra · Remote
FRAMEWORKS
- ACSC Essential Eight | the government's 8 baseline security measures
- ISM | Information Security Manual
- PSPF | Protective Security Policy Framework
- ITIL v4 | IT service management best practice
Full résumé and contact details are sent to your email on request — not published here.
Essential Eight Alignment
The Essential Eight is the Australian Government's baseline set of eight security measures. I run my homelab against them as a practical exercise and test each measure below is something I've set up and tested in my own environment to show the controls I work to. It's a personal lab demonstration, not an official, accredited security assessment.
Application Control
Repo-based allow-listing with SELinux in enforcing mode; evaluating fapolicyd.
Patch Applications
Automated package updates orchestrated with Ansible and dnf-automatic.
Patch Operating Systems
Scheduled kernel and OS updates, staged in the lab before rollout.
Restrict Admin Privileges
Least-privilege sudo, separate admin accounts, no shared root login.
Multi-Factor Authentication
MFA on remote access and the management plane (SSH keys + TOTP).
User Application Hardening
Service and browser hardening against CIS-guided baselines; unused features disabled.
Regular Backups
Automated backups with routinely tested restores and offsite copies.
Restrict Office Macros
Not applicable to Linux workloads; aware of the control for Windows fleets.
Relevant Work
Centralised Identity Dashboard
Centralised identity and access management on Red Hat Enterprise Linux 10, running on AWS EC2 with EBS-backed storage and provisioned end-to-end through Bash scripting.
view source & playbooksUser Directory Portal
A self-service user directory portal on RHEL 10, deployed to Azure with a Python service layer handling directory lookups and account management.
view source & playbooksWaypoint
A startup building NFC-enabled digital business cards. A single tap provisions a contact pass straight into Apple Wallet or Google Wallet, backed by a Postgres data layer with authenticated profile management.
Faixer
A native iOS app built in Swift and SwiftUI, developed and shipped through Xcode.
Technical Stack & Knowledge
TECHNICAL STACK
CORE COMPETENCIES
- Automation
- Security & Hardening
- Monitoring
- Orchestration
- High Availability
- Scalability
- Compliance
- Patching
- Backup & Recovery
- Failover
Credentials in Progress
RHCSA
Red Hat Certified System AdministratorHands-on Linux administration, users, storage, and services for the foundation for RHCE.
RHCE
Red Hat Certified EngineerThe goal: automation at scale with Ansible across fleets of RHEL systems basically the core ops credential.
CompTIA Linux+
CompTIAVendor-neutral Linux fundamentals, scripting, and security.
AWS Cloud Practitioner
Amazon Web ServicesCore cloud concepts, services, and shared-responsibility model.
Actively studying | credentials will be updated here as they're earned.

