Ian Hundere

Lead DevOps  /   SRE   /   Platform

Engineer

built  /  shipped  /  trusted

  • About
  • Work
  • Contact
  • Resume

About

ian hundere

Born and raised in Texas, I spent late nights installing whatever Linux distro was new that week and meeting strangers on IRC. I headed north for undergrad in Victoria, BC, where I picked up a BA in 20th Century American History (from a Canadian perspective, naturally). Back south, I landed at Apple in the summer of 2007 — right as every employee was handed a free iPhone — and stayed five years before going back to school for a master's in education.

my family

Right before graduating, I met my wife and other half; she's kept me sane ever since. We have two kids we do our best to keep curious, motivated, and occasionally on time.

screen of code

After a gratifying run in education — teaching 4th and 5th graders, then coaching teachers as an academic technologist (video portfolio) — the tinkering itch won out, and around 2018 I retrained and made the leap into engineering. I've been doing DevOps and platform work ever since, and today I'm a Lead DevOps Engineer specializing in software supply-chain security, working remotely with Liatrio — helping teams prove where their software actually comes from. Lately that means designing private Sigstore stacks, getting builds to SLSA Build Level 3 with GitHub Artifact Attestations, writing a Go CLI that uses Sigstore and OPA policy to decide whether an artifact gets to ship, and contributing to the open source projects (cosign, rekor, fulcio) that make it work. Honestly, the teaching never stopped — mentoring engineers is my favorite part of the job. That, and getting software to show its work.

bicyclemusic studio

When I'm not tinkering at work or with my family, I'm out on a long bike ride or up too late making video game sounds. If you want proof of the latter, my bleeps and bloops are below.

 /   / 

Work

Software Supply-Chain Governance

My day job centers on autogov, the automated governance system we build at Liatrio: artifacts ship with SLSA Build Level 3 provenance through GitHub Artifact Attestations, and a Go CLI verifies those attestations — provenance, SBOMs, verification summaries — against OPA policy before anything is allowed to deploy. The reusable workflows behind it are open source.

autogov-workflows

Sigstore Open Source

Along the way I've contributed across the Sigstore ecosystem — cosign, rekor, fulcio, timestamp-authority — mostly around certificate handling, timestamping, and the plumbing that keeps signatures verifiable end to end.

github.com/sigstore

RPI K3s Cluster

Link to RPI K3s Repo

The homelab: a four-node Raspberry Pi 4 Kubernetes cluster running k3s, hosting a UniFi controller, FileBrowser, a Ninjam server for remote jams, and a stack of media services — some public, some tucked behind Tailscale. It's where work ideas get tested before they're work ideas.

GitHub Repo

Earlier Work

Before all that: the projects from my retraining years — a generative jam machine, an SMS reminder service, a memory game, a synth or two — still live on GitHub, if you enjoy a little archaeology.

github.com/ianhundere

Contact

i'm open to consulting / contract work. background in cloud infrastructure and devops / these days focused on software supply-chain security (getting software to prove where it came from). if it touches how software gets built, shipped, or trusted, i'm interested. tell me a bit about what you're working on and i'll get back to you.

  • GitHub
  • Linked-In

© Ian Hundere | Built with Gatsby.js | Design:HTML5 UP.