Skip to content
View ivansabin's full-sized avatar

Block or report ivansabin

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
ivansabin/README.md
93e35470-ca5c-4642-acfb-5209d9883a87

Ivan Alvarez Sabin

Software Architect focused on Open Source, supply chain security, enterprise automation, and backend/platform systems.

I design and build platforms that make complex OSS ecosystems safer, reproducible, auditable, and governable at enterprise scale. My work connects software architecture, DevSecOps, CI/CD automation, SBOM generation, dependency governance, observability, and distributed systems.

Current focus

  • Open Source governance and software supply chain security
  • SBOM generation, normalization, and compliance automation
  • Backend and platform architecture for enterprise-scale systems
  • Distributed systems, observability, and streaming data pipelines
  • Local-first code intelligence and AI-assisted developer tooling

Technical areas

Open Source & Supply Chain Security

SBOMs · CycloneDX · cdxgen · license analysis · dependency governance · compliance automation · multi-repo controls · DevSecOps

Backend & Platform Engineering

Java 21 · Spring Boot · Reactor · API-first systems · Redis · Docker · GitHub Actions · GitOps · reproducible toolchains · GPG signing

Distributed Systems & Observability

Apache Flink · Kafka · streaming pipelines · metrics processing · alerting platforms · Prometheus · Grafana · operational visibility

Developer Tooling & Code Intelligence

Rust · code intelligence · local-first tooling · architecture evidence · AI-assisted engineering workflows

Engineering principles

  • Build secure and governable systems by design, not as an afterthought.
  • Treat reproducibility, auditability, and observability as architectural requirements.
  • Prefer explicit boundaries, evidence-backed decisions, and automated controls.
  • Design platforms that reduce operational risk and manual compliance effort.
  • Optimize for long-term maintainability across multi-language, multi-repo ecosystems.

Links

Pinned Loading

  1. entropy-lock entropy-lock Public

    Secure password generation based on system entropy

    Java 1

  2. prometheus-source-flink prometheus-source-flink Public

    Remote read endpoint for Apache Flink cluster

    Java 7 1

  3. prometheus-alert-tool prometheus-alert-tool Public

    Example of generation metrics with Spring Boot Actuator, Micrometer, Prometheus. Send alert to email using the Alert Manager and an email server.

    Java 5 1

  4. vagrant-ansible-flink-cluster vagrant-ansible-flink-cluster Public

    Create a Flink cluster using Vagrant node virtualization and Ansible provisioning. Original idea @fmcejudo

    Shell 2 1

  5. sample-reactive-kafka-producer sample-reactive-kafka-producer Public

    Reactive functional endpoint that receives data and sends it to kafka asynchronously, reactively, and non-blocking.

    Java 1