// about
I'm Grioghar Thomas-Baldwin. Professionally I solve the gnarly problems at the boundary between people and infrastructure — secure access, endpoint security, and security automation. Personally I write the kind of software that has no abstraction left beneath it: codecs, daemons, container tooling, and remote-desktop protocols.
That combination is the point. Years of being the engineer customers escalate to taught me how systems actually fail in production — and that knowledge goes straight back into the tools I build. I care about software that ships, runs unattended, and doesn't surprise you at 3 a.m.
When I close the laptop, I open the DAW. I produce house and breaks as DerGrioEnHousen — which is also why one of my favorite repos is a real-time MIDI visualizer for OBS.
// experience
Supporting a no-code/low-code security automation (SOAR) platform — helping teams turn security workflows into running automations, and debugging the integrations where they meet the real world.
Owned the technical relationship for enterprise customers running SentinelOne's autonomous endpoint protection — guiding deployments, tuning detection and response, and translating between security operators and the product.
Worked on infrastructure access management — the control plane that brokers and audits engineer access to databases, servers, and Kubernetes. Built onboarding automation in Terraform, SSH-session-to-SIEM streaming, and shell tooling (several of these are public on my GitHub).
The advanced AWS architecture certification — designing distributed, fault-tolerant, cost-aware systems across the AWS platform.
// toolbox