JAKOB // SYSTEMS UPTIME NODES 7/7
Clinical Systems · Security · Build

The building runs
because someone watches it.

I'm a clinical systems administrator doing senior-scope security work inside a critical-access hospital — hardening medical devices, holding identity infrastructure together, and building the tools that were missing. This page is that work, monitored live.

● LEAD II SUMMIT PACIFIC // FLOOR MONITOR 72 BPM
STATUSNOMINAL
SYSTEMS7 ONLINE
SHIFTNIGHT
ALERTS0 CRIT
BEGIN ROUNDS
01

Systems under watch

Every node below is real infrastructure I own or have hardened. Green is holding. Amber is active work. Hover a node to bring it forward.

CARDIOLOGYOPTIMIZED

Cardiology Data Systems

GE MUSE · ELI cart projects

Consulted on the MUSE and ELI cardiology cart projects, optimizing SQL queries and streamlining the data workflows that move ECG records where clinicians need them — faster reads, cleaner data.

SQLclinical data
ECG-FLEETHARDENED

ECG Device Hardening

GE MAC 7 · resting ECG carts

Locked down the ECG fleet: Technician-ID authentication, idle-timeout lockouts, and HIPAA compensating-control documentation for devices that couldn't meet the standard natively. Authored every change record.

device securityHIPAA
TELE-WARDACTIVE

Patient Telemetry

Mindray TM-80 · Units 12–16

A spreading cluster of monitors kept dropping their wireless link. Ran it to ground as a WLAN coverage bottleneck rather than device failure — the kind of fault that only surfaces at the edge of the network, where most people never look.

RF / WLANroot-cause
IDENTITYAUTOMATED

Badge & Access Lifecycle

Active Directory ↔ Galaxy access control

Designed the integration that ties badge access to AD security groups: new hires are provisioned with role-based door access automatically, and terminated employees lose it the moment they're offboarded. Identity lifecycle that runs itself.

IAMautomation
PERIMETERHA PAIR

Network Edge

FortiGate 100F · high-availability

Reviewed the firewall HA pair during a facility-wide slow-network complaint and turned "the internet is slow" into an actual diagnosis. Edge security and triage where the symptom and the cause are rarely the same thing.

firewalltriage
COMMSDEPLOYED

Clinical Communications

Vocera Voice 5 · hands-free badges

Built out the Vocera infrastructure that lets clinical staff reach each other hands-free across the floor, then trained the departments on it to drive real adoption. Certified Vocera Voice 5 system administrator.

infrastructureadoption
VULN-MGMTREMEDIATED

Vulnerability Remediation

Rapid7 · AD CS · Qualys VMDR

Researched and implemented mitigations for Rapid7 penetration-test findings and eliminated critical Active Directory Certificate Services vulnerabilities — measurably improving the security posture of the environment.

remediationAD CS
02

Service record

The same floor, walked longer. A pattern of taking senior-scope work without waiting for the title to catch up.

JUL 2025 — PRESENT
Clinical Systems Specialist
Summit Pacific Medical Center · Elma, WA
Administer and secure clinical-based technology for a critical-access hospital: device hardening, change control, identity and access systems, vulnerability remediation, and the internal tooling that didn't exist yet. Liaison between technical teams and clinical staff.
OCT 2024 — JUL 2025
IT System Coordinator
Summit Pacific Medical Center
Same building, earlier chapter. Built out Mindray telemetry and Vocera, remediated Rapid7 and AD CS findings, and designed the AD-to-Galaxy badge integration that auto-provisions new hires and revokes terminated access by security group.
JAN 2023 — NOV 2024
IT Lead Technician & Security Specialist
Twin Harbor Technology Solutions
Ran SIEM and email security, firewall installs, and Fortinet switch/AP deployments across clients. Built risk assessments and incident response plans and drove PCI DSS compliance.
APR 2024 — OCT 2024
Cybersecurity Support Engineer · Intern
Log(N) Pacific
Hardened Azure with Private Link, NSGs, and Defender for Cloud against NIST 800-53, PCI DSS, and HIPAA/HITRUST, and wrote KQL to power new Sentinel dashboards.
IN PROGRESS
M.S. Cybersecurity & Information Assurance
Western Governors University · on a B.S. in Computer Science
Formalizing on paper what the day job already proves in practice.
03

Credentials & loadout

Certifications and the working toolset. Amber items are in progress.

DEGREE
B.S. Computer Science
DEGREE
M.S. Cybersecurity
CERT
CompTIA Security+
CERT
CompTIA Network+
CERT
CompTIA Project+
CERT
ITIL 4 Foundations
CERT
Digital Forensics (EC-Council)
CERT
Qualys VMDR
SECURITY
Sentinel · KQL · NIST 800-53
CLINICAL
Mindray · Vocera · Galaxy
NETWORK
Fortinet · Active Directory
BUILD
Python · Java · SQL · PowerShell
04

Things I've built

Shipped code, not just coursework. Each one links to the repository.

SECURITY ↗

SOC + Honeynet in Azure

Stood up a live honeynet and security operations center — Azure VMs feeding Microsoft Sentinel, with Log Analytics surfacing real attack telemetry.

AI/ML ↗

Machine Learning Capstone

End-to-end ML pipeline in Python — data analysis, SQL, and scikit-learn models built and evaluated in Jupyter.

ALGORITHMS ↗

Package Delivery Router

A delivery-routing engine built on hand-implemented data structures and algorithms in Python.

SOFTWARE ↗

Inventory Management System

A full JavaFX desktop application — data management, software design, and a complete UI.

INTERNAL TOOL

Badge Printing App

An Electron desktop app I built to replace a paid badge-printing license — same output, zero license cost. It prints every new hire's first badge and still runs in production.

05

Where I add value

A rare combination — clinical-systems fluency plus security credentials plus the instinct to build — that pays off in four ways.

DEVICES

Medical Device Security

I harden the exact class of devices most security teams treat as a black box — ECG carts, telemetry, biomed endpoints — and document the compensating controls to back it up.

COMPLIANCE

Healthcare Governance

HIPAA-aware by default. I run EMR governance, change control, and audit-ready documentation cleanly — the unglamorous work that keeps an organization defensible.

INFRASTRUCTURE

Identity & Network Edge

SSO, firewall HA pairs, and the kind of root-cause network triage where the symptom and the cause are never the same thing. I keep the floor running.

BUILD

Tools That Didn't Exist

When the right tool isn't there, I write it — SQL workflow optimization, AD-to-badge automation, KQL detections, and shipped applications in Python and Java. Problems get solved, not just ticketed.