{
  "$schema": "https://raw.githubusercontent.com/jsonresume/resume-schema/v1.0.0/schema.json",
  "basics": {
    "name": "William Virgil Wolff",
    "label": "IT Director / Systems Engineer",
    "email": "virgil@tyco.sh",
    "url": "https://tyco.sh",
    "summary": "Lifelong builder and fixer. Soldering boards as a kid grew into rebuilding engines, pulling cable, and architecting enterprise IT environments. A decade across networking, servers, cloud, identity, security, and software taught me that no problem belongs to someone else: terminate the cable, write the script, design the system, mentor the junior, document the result. Owner end-to-end.",
    "location": {
      "city": "St John",
      "region": "Indiana",
      "countryCode": "US"
    },
    "profiles": [
      {
        "network": "GitHub",
        "username": "CaptainVirgil",
        "url": "https://github.com/CaptainVirgil"
      },
      {
        "network": "LinkedIn",
        "username": "CaptainVirgil",
        "url": "https://linkedin.com/in/CaptainVirgil"
      },
      {
        "network": "Credly",
        "username": "CaptainVirgil",
        "url": "https://credly.com/users/CaptainVirgil"
      }
    ]
  },
  "work": [
    {
      "name": "Grid-Line Transportation, Inc.",
      "position": "Director of IT and Innovations",
      "location": "St John, IN",
      "startDate": "2025-12",
      "highlights": [
        "Led a 3-person team to deliver Foundations TMS, an enterprise Transportation Management System on the TALL stack (Tailwind, Alpine.js, Laravel, Livewire) with PostgreSQL and Redis/Horizon, shipping a functional MVP in 90 days.",
        "Engineered high-density on-premise server clusters with Dell PowerEdge R640/R740xd nodes, U.2 NVMe storage, and ZFS pools, hitting enterprise-tier IOPS for far less than standard vendor builds.",
        "Orchestrated full network overhaul, replacing aging Fortigate and unmanaged TP-Link gear with a UniFi 8-VLAN segmented architecture, site-to-site VPN tunnels, and edge routing built to handle the new 2 Gbps WAN handoff.",
        "Designed and deployed an end-to-end UniFi physical security platform for a new office renovation, integrating Access door control with Protect cameras tuned for 6 months of 4K footage retention.",
        "Consolidated a fragmented Active Directory environment by migrating the organization to Microsoft 365 Business Premium with Azure AD Join, unified email filtering and antivirus under Microsoft Defender, and eliminated redundant MSP-managed security costs.",
        "Designed a self-hosted service layer with NGINX reverse proxies, PowerDNS, and Teleport for audited access; added real-time monitoring via Netdata and moved core services to rootless containers on Podman."
      ]
    },
    {
      "name": "Team Solutions Group, LLC",
      "position": "System Engineer IV",
      "location": "Santa Barbara, CA",
      "startDate": "2024-11",
      "endDate": "2025-12",
      "highlights": [
        "Appointed project lead for citywide LMR deployment across 10 sites and 12 radios spanning the entire state of California for CALFIRE, alongside a 300+ room network overhaul (22 APs) at Best Western Plus, hitting compliance and uptime targets.",
        "Mentored 5 junior engineers and service desk technicians on troubleshooting, documentation, and day-to-day client support.",
        "Owned escalation for ~300 users across multiple client environments, resolving urgent networking, virtualization, and cloud incidents.",
        "Architected and deployed secure network and server environments across multiple Santa Barbara hotel properties (Brisas del Mar, Lemon Tree Inn, two Best Westerns) using Microsoft 365, Azure, Active Directory (cloud and on-prem), Intune, VLANs, and site-to-site VPNs.",
        "Stood up Dell Premier and UniFi partner accounts, cutting hardware costs across every client we shipped to.",
        "Automated onboarding, patching, monitoring, and backup routines via PowerShell; kept SOPs, DR plans, and network diagrams current for audits."
      ]
    },
    {
      "name": "Acelyrin, Inc.",
      "position": "IT Technician",
      "location": "Agoura Hills, CA",
      "startDate": "2023-10",
      "endDate": "2024-08",
      "highlights": [
        "Supported 180 users at a HIPAA-regulated biopharma, troubleshooting Microsoft 365 E3, Intune (180 managed devices), Autopilot, and Defender for Endpoint deployments at ~3-4 tickets/day.",
        "Wrote PowerShell automation for SharePoint migrations and auditing, Egnyte secure-cloud migration, and Azure-vs-BambooHR identity reconciliation, accelerating provisioning and offboarding workflows.",
        "Built Python API integrations to keep MATLAB data pipelines available to research analysts on demand.",
        "Liaised with cross-department teams to mitigate incidents quickly, improving service reliability and ticket-resolution times.",
        "Wrote identity-lifecycle docs and supported the CDW partnership that kept hardware and software procurement moving."
      ]
    },
    {
      "name": "SR Technologies",
      "position": "Operations Manager",
      "location": "Ventura, CA",
      "startDate": "2020-08",
      "endDate": "2022-10",
      "highlights": [
        "Managed 200+ network sites (~2/3 UniFi infrastructure with Fortigate firewalls) across hotels, movie theaters, warehouses, and residential properties; led 5 direct reports and coordinated up to 6 outside contractors (low/high voltage, general contracting) on multi-trade projects.",
        "Delivered full-stack IT renovation of the post-acquisition La Quinta Inn by Wyndham (Santa Barbara): 1 MDF, 4 IDFs, 300+ guest rooms, bistro, back-of-house, multiple IP/vendor handoffs and servers, with end-to-end coordination across all trades.",
        "Maintained 200+ access-control endpoints (strikes, maglocks) and CCTV/NVR systems on Verkada, UniFi, and Avigilon across all sites.",
        "Operated 50-vehicle Cradlepoint LTE fleet for live WAN; standardized client networks on Fortinet/UniFi/TP-Link/Meraki with VPN, firewall, M365, VOIP, and AD."
      ]
    },
    {
      "name": "Ericsson",
      "position": "Cell Tower Technician III",
      "location": "Ventura, CA",
      "startDate": "2018-11",
      "endDate": "2020-05",
      "highlights": [
        "Serviced ~100 of 150+ cell towers across central-to-southern California (Malibu/Los Angeles area to San Luis Obispo), completing 1,000+ cable terminations including Cat5e/6/6e and large/small-diameter coaxial.",
        "Configured network equipment via Citrix-tunneled VPN, SecureCRT, OpenSSH, and Nokia BTS for the regional carrier deployment.",
        "Administered CDMA, LTE, and 5G networks; installed multi-band antennas (800 MHz, 1900 MHz, 2.5 GHz) and managed Cisco, Juniper, and Lucent routers plus DAS/oDAS systems."
      ]
    },
    {
      "name": "Sabrent",
      "position": "IT Manager",
      "location": "Moorpark, CA",
      "startDate": "2017-01",
      "endDate": "2018-10",
      "highlights": [
        "Managed 5 direct reports supporting a 50-person office, resolving ~7 tickets/day with sub-1-hour average response time across Sabrent's full product line (HD cloners, USB-RJ45 devices, peripherals).",
        "Tightened user access and security through Microsoft Active Directory administration.",
        "Improved product reliability by leading firmware-update rollouts and investigating RMA returns to surface and resolve recurring quality issues.",
        "Prioritized retention and satisfaction by working each customer case individually rather than from a script."
      ]
    },
    {
      "name": "NASO Corporation",
      "position": "Contracted Network Analyst",
      "location": "Ventura, CA",
      "startDate": "2014",
      "endDate": "2017",
      "highlights": [
        "Maintained IT and network for an aerospace/medical/defense electronics manufacturer under AS9100D and ISO 13485 compliance.",
        "Cut operational costs by retiring legacy network gear and right-sizing infrastructure for the manufacturing and engineering staff.",
        "Reduced downtime via proactive monitoring and rapid triage of CAD/BOM file-transfer issues across engineering and manufacturing."
      ]
    }
  ],
  "certificates": [
    {
      "name": "CompTIA A+",
      "issuer": "CompTIA"
    },
    {
      "name": "CompTIA Network+",
      "issuer": "CompTIA"
    },
    {
      "name": "CompTIA Security+",
      "issuer": "CompTIA"
    },
    {
      "name": "CompTIA Secure Infrastructure Specialist (CSIS)",
      "issuer": "CompTIA"
    },
    {
      "name": "CompTIA IT Operations Specialist (CIOS)",
      "issuer": "CompTIA"
    }
  ],
  "skills": [
    {
      "name": "Network & Routing",
      "keywords": [
        "Cisco (ASA/ISE/Catalyst)",
        "Juniper",
        "Meraki",
        "Fortinet",
        "Sonicwall",
        "UniFi",
        "BGP",
        "OSPF",
        "MPLS",
        "QoS",
        "VLAN",
        "Wireless",
        "DAS",
        "4G/LTE",
        "5G",
        "fiber/Cat6",
        "structured cabling"
      ]
    },
    {
      "name": "Server & Virtualization",
      "keywords": [
        "Linux (Ubuntu, Debian, CentOS)",
        "Windows Server",
        "UNIX",
        "VMware ESXi/vSphere/vCenter",
        "Hyper-V",
        "Proxmox",
        "SAN",
        "clustering",
        "high availability",
        "SCCM"
      ]
    },
    {
      "name": "Cloud & Identity",
      "keywords": [
        "Azure (AD/Entra, AKS, App Service, Container Instances, Data Factory, DevOps, SQL DB, VMs)",
        "AWS (IAM, Lambda, S3, Redshift)",
        "GCP",
        "M365",
        "Google Workspace",
        "Okta",
        "JumpCloud",
        "Duo",
        "1Password Business",
        "LDAP",
        "GPO",
        "SSO",
        "Intune",
        "Jamf",
        "MDM"
      ]
    },
    {
      "name": "Security & Compliance",
      "keywords": [
        "PKI",
        "SSL/TLS",
        "IPsec",
        "encryption",
        "SIEM",
        "IDS/IPS",
        "Endpoint Security",
        "Zero Trust",
        "Defender",
        "CrowdStrike",
        "vulnerability assessment",
        "HIPAA",
        "PCI",
        "SOX",
        "FIPS",
        "NIST",
        "ITIL"
      ]
    },
    {
      "name": "DevOps & Automation",
      "keywords": [
        "Docker",
        "Kubernetes",
        "Podman",
        "Terraform",
        "Ansible",
        "Jenkins",
        "GitLab",
        "GitHub",
        "CI/CD",
        "Git",
        "Bash",
        "PowerShell",
        "Python",
        "Node.js",
        "JavaScript"
      ]
    },
    {
      "name": "Software & Web Architecture",
      "keywords": [
        "TALL stack (Tailwind, Alpine.js, Laravel, Livewire)",
        "C#",
        "PHP",
        "HTML5",
        "XML",
        "REST APIs",
        "NGINX",
        "Apache",
        "IIS",
        "Agile",
        "Scrum",
        "SDLC",
        "design patterns"
      ]
    },
    {
      "name": "Databases & Data",
      "keywords": [
        "PostgreSQL",
        "MariaDB",
        "MongoDB",
        "MySQL",
        "NoSQL",
        "MSSQL",
        "Oracle",
        "Redshift",
        "Elasticsearch",
        "Tableau",
        "Visio",
        "data visualization"
      ]
    },
    {
      "name": "ITSM, SaaS & Monitoring",
      "keywords": [
        "ServiceNow",
        "Zendesk",
        "Freshservice",
        "Jira",
        "ConnectWise",
        "Salesforce",
        "HubSpot",
        "QuickBooks Online",
        "NetSuite",
        "Workday",
        "ADP",
        "Paylocity",
        "Gusto",
        "Slack",
        "Zoom",
        "DocuSign",
        "Asana",
        "Monday",
        "ClickUp",
        "Dropbox",
        "Box",
        "Netdata",
        "Grafana",
        "Solarwinds",
        "SNMP",
        "LogMeIn",
        "VoIP",
        "Teams"
      ]
    }
  ],
  "projects": [
    {
      "name": "roost",
      "description": "Solo-built control panel for game servers: N servers on one box, where systemd owns every process and the panel observes rather than guesses. Live RCON console, scheduled lifecycle, backups with read-back verification, five servers across four config backends and two installers.",
      "keywords": [
        "Go",
        "SQLite",
        "systemd",
        "dbus",
        "bubbletea"
      ],
      "url": "https://github.com/CaptainVirgil/roost",
      "roles": [
        "Author"
      ]
    },
    {
      "name": "TUNS",
      "description": "Co-architecting an underground MMO on Unity and FishNet with a 4-person team; server-authoritative, persistent worlds, factions.",
      "keywords": [
        "Unity",
        "FishNet",
        "C#",
        "game design"
      ],
      "roles": [
        "Co-architect"
      ]
    },
    {
      "name": "tyco-home",
      "description": "A live network diagram assembled from metrics, BMC sensors and service probes. The backend sends raw state and counters; the browser derives every rendered word, so a rule change is a page edit with an instant visual check instead of a redeploy.",
      "keywords": [
        "Go",
        "VictoriaMetrics",
        "Redfish",
        "Kubernetes"
      ],
      "roles": [
        "Author"
      ]
    },
    {
      "name": "tyco.sh",
      "description": "This site. A page and a small API served from the edge, fed by a snapshot the network pushes outward, so nothing public ever reaches the house and a dark house degrades to an honest 'no data' rather than a timeout.",
      "keywords": [
        "TypeScript",
        "Cloudflare Workers",
        "Go"
      ],
      "url": "https://tyco.sh",
      "roles": [
        "Author"
      ]
    }
  ],
  "education": [],
  "meta": {
    "version": "1.0.0",
    "canonical": "https://tyco.sh/api/hire",
    "note": "this endpoint does not want anything from you",
    "lastModified": "2026-09-11"
  }
}
