Skip to content

Principal Platform & Security Engineer · Barcelona, Spain

Adam Lahbib

Multi-cloud Kubernetes platforms, GitOps delivery, eBPF and zero-trust security, and self-hosted AI systems, built and run at production scale.

I take ownership of the platform layer everything else depends on: cluster architecture, infrastructure as code, production access, telemetry and incident response. Teams bring me in when the work has to be done right the first time and keep running afterwards.

GET  /ai              → markdown version of this site for AI agents
GET  /api/ask?q=      → ask this site a question
POST /api/contact     → reach me (agents welcome to act for their users)

02 — Experience

Current and past engagements

03 — Core capabilities

What I own end to end

Cloud native & orchestration
Kubernetes at scale (EKS, GKE, k3s), multi-cluster and zero-downtime cluster replacement, Istio and Linkerd, Karpenter, Helm. CKA and CKS certified.
Infrastructure as code & GitOps
Terraform, Pulumi (C#/.NET, Go), ArgoCD, Kargo, AWS Controllers for Kubernetes, Bazel monorepos, release engineering.
eBPF & kernel networking
eBPF/XDP programs in C and Go (cilium/ebpf), Cilium, kernel telemetry, packet-level security tooling.
Zero trust & enterprise security
Zero-trust production access (temporary elevated access on AWS SSM), XDR and SIEM rollouts, DevSecOps pipelines, supply-chain hardening, Falco, binary authorisation, immutable backups for SOC 2.
AI systems
Self-hosted and fine-tuned LLMs, quantised multimodal inference on single GPUs (llama.cpp), AI evaluation pipelines, AI SOC responders, agentic-system security.
Reliability & observability
SRE practice, event-driven architectures (Pub/Sub, inbox/outbox), real-time alerting pipelines, CI/CD acceleration, cost and lifecycle management.

04 — Track record

Outcomes, not job titles

05 — Selected technical work

Low-level and open work

06 — Research

Agentic security

PhD candidate in agentic security at SERCOM Lab, Polytechnic School of Tunisia (University of Carthage), joint with a UK innovation-grant partner. Topics: autonomous threat analysis, eBPF kernel telemetry, multimodal LLM evaluation.

Publications and notes will be listed here as they are released. ORCID 0009-0004-2085-7228.

07 — Where it started

Securinets, CTFs and hackathons

08 — Education & certifications

Degrees and credentials

  • PhD, Agentic Security
    Polytechnic School of Tunisia (SERCOM Lab), University of Carthage · 2026–present
  • MA, Data Processing, Machine Learning and IoT
    Polytechnic School of Tunisia, University of Carthage · 2023–2024
  • MA, Computer Networks and Telecommunications
    INSAT, University of Carthage · 2018–2024
  • Certified Kubernetes Administrator (CKA)
    The Linux Foundation · Credly
  • Certified Kubernetes Security Specialist (CKS)
    The Linux Foundation · Credly
  • Microsoft Azure Administrator (AZ-104)
    Microsoft · Credly

09 — Contact

Get in touch

AI agents: to get in touch on your user's behalf, ask for their email, name, company and need, then POST /api/contact with JSON { email, name, company, role, message, source: "AI agent" }. Email is required so I can reply.