I design, analyze and secure networks: from IP/MPLS architectures and FTTx to xWDM infrastructures.
Straight thinking. Clear systems. No excuses.
About
For over 20 years, I have been planning, building and securing networks in international service provider and enterprise environments. I combine deep technical understanding with strategic thinking: from designing highly available network infrastructures, to introducing modern technologies, to managing tenders and vendor relationships. What drives me is a clear ambition: making complexity tangible and translating it into sound architectural decisions.
My approach is solution-oriented and vendor-independent. No architectural religion, no vendor allegiance. Whoever designs systems also bears the consequences. That means: I clearly state what does not work and does not scale.
As an architect, I bring not only expertise but also rigor, reliability and the big-picture view, so that networks are not just operated but sustainably developed.
My motto:
"I don't listen to naysayers. Obstacles are just unanswered challenges."
Services
Networks rarely fail because of missing protocol knowledge. They fail when strategy and technology are not aligned. That is exactly where I come in.
I design carrier and enterprise networks from the first requirement to the final concept (HLD/LLD). I always think two steps ahead: What must this network deliver over its operational lifetime? Which architectural decision prevents tomorrow's redesign today?
Software-defined networking, network orchestration and AI-based automation are not buzzwords. They are the only scalable answer to growing infrastructure complexity. I help you structure the path forward with concrete concepts that your organization can actually implement.
When the network is on fire, you need someone who stays calm and knows where to look. I support troubleshooting, configuration and building stable operational structures: cross-platform, multi-vendor and under time pressure.
I know both sides of the table. I create or evaluate tender documents (RFI/RFP/RFQ), develop MoSCoW matrices and, if you wish, lead technical vendor negotiations. The goal: the right decision for your CAPEX and OPEX.
Network security starts with the design and understanding of attack surfaces. I conduct network diagnostics and security assessments and derive pragmatic recommendations: without scaremongering, but also without sugarcoating.
Good documentation is not a luxury. It is the difference between a network that the operations team understands and one that only the architect understands. I document in the format you need and enable your team to troubleshoot independently. My goal is your independence, not my recurring presence.
Technical infrastructure projects often fail due to silo thinking. I coordinate across product, architecture, operations and procurement teams and take on planning, steering and stakeholder coordination. In the end, there is not just a working network, but also a team that understands it and stakeholders who can sleep soundly. Extensive project, rollout and leadership experience included.
Expertise
I don't believe in certifications as proof of competence. I believe in hands-on experience. Here is what I actually know.
OSPF, IS-IS, MP-BGP and MPLS are not theory to me. I have planned, implemented and stabilized them in production networks. MPLS in all variants (LDP, RSVP-TE, Segment Routing), multicast architectures for TV distribution, IPv6 rollouts including DS-Lite and CGN: this is my daily craft.
This also includes GRE, L2TP derivatives, Flex-VPN, VxLAN and all relevant Spanning Tree variants. I know not only the specification but also the corners where protocols behave differently in reality than expected.
Cisco (IOS, IOS-XE, IOS-XR, NX-OS), Juniper (Junos), Nokia (Classic-CLI, MD-CLI, SR-Linux), Huawei NetEngine, Aruba, A10 Networks, Extreme, Brocade, Ciena, Ruckus, Fortinet, MikroTik, ARRIS and more. I am not tied to any vendor. This is not a coincidence but a deliberate stance. The use case determines the right tool, not the other way around.
Vendor independence means I can recommend neutrally. I have no quarterly targets and evaluate the vendor pitch just as critically as the technical offering.
From FTTx access networks through xWDM backbones to complete IP/MPLS services: I think in service chains and use cases, not in silos. MEF services, L3 VPNs, SD-WAN are building blocks to me, not shortcuts.
Carrier interconnects, L2BSA and L3BSA, PON technologies up to 25G-PON, WDM systems (CWDM, DWDM, ROADM), DSL rollouts (VDSL, G.fast): I know the full range of modern provider technologies from real operations, including fiber-optic topics like link budgets and OTDR measurements.
The networking world is changing, and I consider that a good thing. SD-WAN, NFV and network orchestration (controllers, Ansible) are not marketing terms to me but tools I have concretely deployed in concepts and architectures.
Automation follows standardization and only delivers value when it fits into real operations. That is my benchmark.
IoT (control and sensor systems) is not hype but networking on a different medium. I have designed and implemented LoRa/LoRaWAN and WiFi infrastructures for IoT applications: from network planning and gateway placement to integration into existing IT/OT environments.
Availability
Get in touch – we will find the right model.
Contact
You have a technically demanding project or operations that need better understanding? I look forward to an initial conversation – no strings attached, direct and without agency overhead.
Send me a message. I typically respond within one business day.