Building Reliable Systems.
Solving Real Problems.

Hands-on experience with Windows Server, Active Directory, Linux, AWS, networking, Docker, monitoring, remote administration, and technical troubleshooting.

Currently completing a B.S. in Software Engineering at Western Governors University while building practical infrastructure and support experience through a dedicated homelab, AWS projects, and ongoing study of systems administration and cloud operations.

Home server rack and homelab workspace

Featured Projects

Hands-on infrastructure, support, and cloud work

ByteGeist Windows Server Lab

A hands-on Windows Server 2022 and Active Directory domain used to practice help desk and junior sysadmin workflows: OUs, users and groups, domain joins, file shares, permissions, and DNS troubleshooting.

View Project
ByteGeist Support Lab — live app screenshot

ByteGeist Support Lab

An interactive IT troubleshooting application on AWS (Amplify, Lambda, API Gateway, DynamoDB) with React. Realistic support incidents, command-line workflows, diagnosis, resolution, and scoring.

View Live Site
ByteGeist Infrastructure Lab live control plane showing host telemetry, container health, and service status

ByteGeist Infrastructure Lab

A self-hosted Hetzner Ubuntu environment running Docker-based services with Prometheus, node_exporter, cAdvisor, Grafana, Loki, Authentik, Gitea, Woodpecker CI, TLS routing, and a sanitized live status API. Built to practice deployment, monitoring, identity, security, recovery, and day-to-day infrastructure operations.

View Live Control Plane
AWS Cloud Study Tracker — live app screenshot

AWS Cloud Study Tracker

A serverless AWS CRUD application built with Amplify, API Gateway, Lambda, DynamoDB, and IAM. Used to practice AWS serverless architecture, permissions, and least-privilege access.

View Live Site

What I Work With

Tools, platforms, and areas of practical experience

Windows & Active Directory

  • Windows 10 / 11
  • Windows Server 2022
  • Active Directory
  • Users & groups, OUs
  • Domain joins
  • File shares & permissions
  • DNS

Linux

  • Ubuntu
  • WSL2
  • Bash
  • SSH
  • Linux administration

AWS

  • EC2, S3, IAM
  • Lambda
  • API Gateway
  • DynamoDB
  • Amplify
  • Systems Manager
  • KMS

Networking

  • TCP/IP, IPv4 / IPv6
  • DNS, DHCP
  • SSH, HTTP/HTTPS, TLS
  • VPNs
  • Reverse proxies
  • Firewalls

IT Support

  • Troubleshooting
  • Customer & remote support
  • Technical communication
  • Incident resolution
  • Permissions & authentication
  • Connectivity testing

Infrastructure

  • Docker, Docker Compose
  • VirtualBox
  • Portainer
  • Grafana, Prometheus
  • Loki
  • Uptime Kuma

Remote Administration

  • RDP
  • Parsec
  • Tailscale
  • RealVNC

Scripting & Tools

  • PowerShell
  • Bash
  • Git
  • GitHub

Troubleshooting Notes

Short, practical case studies

DNS Resolution Issue

Client cannot reach a service by name but can reach it by IP — isolate DNS from general network connectivity.

  • Confirm TCP/IP configuration with ipconfig /all
  • Verify DNS server settings and search suffix
  • Test reachability with ping against both hostname and IP
  • Use nslookup against the primary and a known-good DNS server
  • Flush client resolver cache; compare behavior from another host

Docker Networking Problem

A container responds locally but is unreachable from other hosts, or outbound requests fail.

  • Check container state with docker ps and docker logs
  • Verify published ports and the attached Docker network
  • Confirm DNS resolution from inside the container
  • Check host firewall rules affecting the bridge or published ports
  • Test HTTP endpoints with curl -v from host and container

Active Directory Permissions Issue

A user authenticates successfully but cannot access a shared folder they should.

  • Confirm the user's identity and group membership
  • Review share permissions and NTFS permissions separately
  • Check for deny ACEs that override group access
  • Validate authentication path and session with whoami /groups
  • Test access from a known-good account to isolate user vs. share

AWS IAM Access Problem

A workload or user receives AccessDenied when calling an AWS service.

  • Identify the exact action, resource, and principal from the error
  • Review attached identity and resource policies against least privilege
  • Check for explicit denies, SCPs, and permission boundaries
  • Reproduce with the IAM Policy Simulator
  • Grant only the specific action needed; verify, then narrow further

About

Background and focus
Keith Casko

Keith Casko — Kalamazoo, Michigan

I'm transitioning into IT, cloud, and systems administration while completing a B.S. in Software Engineering at Western Governors University. My focus is practical, hands-on infrastructure work: Windows Server and Active Directory, Linux, AWS, Docker, networking, and technical troubleshooting.

My professional background is at Costco Wholesale as a Baker. The job is production-paced and team-based, and it's where I developed the habits I bring to IT work — customer service, teamwork, training coworkers, process discipline, prioritization, and real-world problem-solving under pressure.

Education & Experience

Current study and professional background

Western Governors University

Bachelor of Science, Software Engineering · In Progress

Relevant Study

  • Cloud Computing
  • Networking
  • IT Operations
  • Software Development
  • Java
  • Web Development
  • Security Fundamentals

Costco Wholesale — Baker

June 2015 – Present

Transferable Experience

  • High-volume production environment
  • Accuracy and process discipline
  • Prioritization under time pressure
  • Day-to-day troubleshooting of equipment and workflows
  • Coordinating with team members and supervisors
  • Training coworkers on procedures
  • Customer service and clear communication
  • Problem solving and follow-through

Open to IT Support, Help Desk, and Junior SysAdmin roles

Based in Kalamazoo, Michigan — available on-site, hybrid, or remote.

keith.casko@gmail.com