Marshall Ford — Platform Engineer

About Me

About Me

Marshall Ford

I am a Platform Engineer with deep expertise in site reliability and DevSecOps principles. My background in Full Stack Web Development provides an engineering-centric perspective when architecting platforms.

Platform

My areas of focus include:

  1. Building versatile developer-first platforms with consideration for Day-2 operations
  2. Adopting container orchestration as a secure and scalable landing zone for workloads
  3. Innovating with private and public cloud offerings to solve hybrid/edge business challenges
  4. Embracing GitOps and Infrastructure as Code principles to describe and manage systems
  5. Utilizing CI/CD for standardized, reliable, and tested deployments
  6. Incorporating collaborative security best practices from “Code to Cloud”

Software Engineering

Within the web development space, I have experience with:

  1. Developing intuitive and responsive front-ends
  2. Implementing performant and secure APIs
  3. Harnessing mature platforms for caching and data persistence

Other Interests

  • Self-hosting, homelabbing, and home automation
  • Contributing to and learning about open source projects
  • Finding bargains (desktop/server hardware, watches, apparel)
  • Coffee and cocktails, enjoyed separately and responsibly
  • Listening to Hip-Hop and R&B

Get in Touch

Have a question for me? Looking for my resume? Shoot me an email. Looking forward to hearing from you!

Curated Projects

  • Terraform Provider for pfSense

    Configure pfSense firewall/router devices with Terraform. Written in Go with the Terraform Plugin Framework.

  • Terraform Provider for Ansible

    Run Ansible playbooks using Terraform, without the local-exec provisioner. Supports execution environments and jq queries against playbook artifacts, among other features. Written in Go, with acceptance tests and published coverage reports. GitHub Actions is used for CI/CD.

  • K3s Cluster Terraform Module

    Provision and operate a Kubernetes cluster with the convenience of a managed offering. Targets Fedora CoreOS, with SELinux support and Butane submodules for machine configuration. Highly available control plane via HAProxy and Keepalived. Supports air-gapped installs, upgrades, and certificate rotation. Built on my Ansible provider and used for my homelab clusters.

  • Home Automation

    • homelab

    Fedora CoreOS VM provisioned on Proxmox with Terraform and configured with Ansible. All workloads run as Podman Quadlets. Zigbee2MQTT bridges devices from an SLZB-MR2 network-attached coordinator to Home Assistant over Mosquitto. Caddy runs rootless with systemd socket activation and terminates HTTPS with certificates from lego.

  • Cooling a Closet Homelab

    Measured whether two USB fans actually helped. Uses an OpenTelemetry Collector, Prometheus, and Grafana, with dashboards generated from Jsonnet. Scripts mark changes and compare the windows on either side.

  • Personal Website

    This very website. Rendered with Hugo and styled with Tailwind CSS. Pages are precompressed with Brotli and served by Caddy from a reproducible, signed container image with an SBOM. Deployed to GCP Cloud Run with Terraform. CI/CD with GitHub Actions includes Lighthouse audits and security scans.