Systems developer / Belgrade

Turning complexity into reliability.

I build internal systems and operational software that improve how people work across an organization. I connect identity, devices, access and infrastructure into clear, dependable experiences that reduce manual effort and make day-to-day operations more reliable.

The work

Software, identity and infrastructure as one system.

Reach

Organization-wide systems for employees and the teams supporting them.

Ownership

Architecture through maintenance and documentation.

Reliability

Verify before acting, recover cleanly from failure and record what happened.

Three layers

From the interface people use down to the network it runs on.

Operational software

Applications that run the work

Full-stack Go applications, HTTP services, PostgreSQL-backed workflows, background jobs and clear interfaces for consequential operations.

Identity and fleet

People, access and managed devices

Okta, in-house SCIM, Jamf Pro, macOS automation and certificate-based device identity coordinated across the organization.

Infrastructure and networks

The layers underneath

Terraform, Docker, Linux, FreeRADIUS, UniFi, VPN, DNS and HTTP firewall policy designed and maintained across global offices.

Selected systems

5 public case studies

Systems I design, build and operate.

Production software coordinating identity, devices, access, networks and fleet operations. These case studies show the architecture, interfaces, technologies, failure behavior and operating decisions behind the work.

Ownership

Primary author or end-to-end owner of each system shown here.

Workloads

HTTP services, background workers, management UIs and fleet software.

Outcome

Clearer experiences, less manual work and more reliable organization-wide operations.

Case studies

  1. 01

    Operations control plane

    A Go platform connecting identity, HR, devices, access and assets. In-house SCIM, event-driven jobs, reconciliation and serialized writes turn cross-system lifecycle work into repeatable operations.

    Read case study
  2. 02

    Certificate, not password

    Passwordless EAP-TLS across global offices. The Go operations platform and Jamf Pro manage device enrollment, self-hosted FreeRADIUS validates device identity and UniFi enforces network access.

    Read case study
  3. 03

    Enterprise software manager

    An enterprise application for managing macOS software across a fleet. Discovery, catalog publication, multi-format installation, atomic locking, staged promotion, deferral and recovery operate as one delivery system.

    Read case study
  4. 04

    Internal workbench

    A server-rendered internal Go application that brings high-context PKI, SAML, network and fleet tasks into one coherent interface, with safety boundaries built into the tools.

    Read case study
  5. 05

    Access review and evidence

    A zero-dependency audit tool that collects and normalizes access data from multiple SaaS systems, makes discrepancies reviewable and publishes evidence without treating missing data as a conclusion.

    Read case study

Engineering principles

Mechanisms used where the risk justifies them.

Re-read authoritative state

Consequential work starts by reading the current source systems, not trusting stale assumptions.

Make retries converge safely

Repeated jobs reach the intended result instead of repeating side effects.

Serialize order-sensitive writes

External changes are ordered where concurrent execution would create races.

Separate changed, unchanged and failed

Every outcome stays explicit and leaves evidence of what happened.

Beyond the systems

About me

The person, working practice and values behind the technical work.

Read about me

Formal record

Roles, responsibilities, technologies and experience in a detailed format.

View CV

Contact

For roles, collaboration or a direct conversation about systems work.

Write directly