AboutSobre

Software EngineerEngenheiro de Software

Software engineer with five years building and operating production systems for Brazilian ISPs, currently at one of the country's largest fiber providers. My current domain is telecom, but the through-line is broader: full-stack delivery, distributed workflows, correctness under production pressure, safe reprocessing, service automation, and systems that fail quietly unless you know where to look.

Most of my work starts with a system misbehaving in production and no correct explanation for why: silent integration failures, provisioning that reports success and does not take, work orders opening when they should not. I find the mechanism, then make the smallest safe change in a network where a wrong change disconnects subscribers.

Outside work I build in Rust, currently a security proxy for AI agents and MCP tools with auth, policy enforcement, audit, human-in-the-loop approval and schema validation, and I write publicly about support automation, security in legacy Java stacks, and agent security. Looking for remote software engineering, backend, full-stack, platform, distributed systems, production automation, and agent infrastructure work. C2 English.

Main Stack

  • Languages: Java, TypeScript, Python, Rust, Go
  • Backend: Spring Boot, Node.js, Keycloak, Kong API Gateway, REST, Kafka
  • Frontend: Vue.js, React
  • Data & Infra: PostgreSQL, MySQL, Redis, Docker, Kubernetes, GitLab CI, AWS, GCP
  • Observability: Grafana, Loki, New Relic, Sentry, OpenTelemetry
  • Telecom: FTTH/ONU provisioning, RADIUS/PPPoE, OSS/BSS workflows, service assurance, WFM/field service
  • Architecture: Microservices, DDD, Hexagonal, Event-Driven, zero-downtime migrations

Experience

  • Alloha Fiber — Software Engineer (Jul 2023 - Present). Telecom operational stack across Java/Spring Boot microservices and Vue operational frontends: FTTH/ONU provisioning, RADIUS/PPPoE, outages, service orders, field service, WFM, payment, CRM and messaging integrations.
  • Ligue Telecom — Mid-level Full-stack Developer (May 2022 - Jul 2023). Built TDA, a web modernization of a legacy Java desktop application, delivering a multi-layer customer service platform with a Vue.js frontend, Node.js BFF and features API handling address transfers, payment agreements and installment flows.
  • Kinebot / GetHash — Junior Full-stack Developer (Oct 2021 - May 2022). Built client-facing applications with Node.js, React, TypeScript and Next.js; provisioned and maintained Docker/Kubernetes infrastructure and CI/CD pipelines.

Personal Projects

  • Paperboy — Keyboard-first, local-first browser extension replacing the new tab with an RSS reader and podcast player; published on Firefox Add-ons. Companion terminal UI built in Rust. JavaScript, Rust, Firefox
  • Arbitus — Open-source proxy that enforces per-agent policies before any tool call reaches an MCP server: auth, allow and denylists, schema validation, payload filtering, rate limiting, HITL and audit. Rust, MCP, Security
  • agent-memory — Persistent memory for AI agents via an Obsidian vault: full-text search, staleness checks on stored facts, project summaries and promotion of session findings into durable notes. MCP, Obsidian, AI
  • Mate Creations — Design system with DTCG tokens compiled through Style Dictionary, component wrappers over native elements, contrast checks and CSS variable drift checks. Five consumers in production. Design System, CSS, TypeScript
  • keybinds-tui — Rust TUI that parses eight real config sources, including querying a headless Neovim for live mappings, so it cannot drift from the configs it documents. Rust, TUI, Developer Tools
  • Agent Code Buddy — Python HTTP server intercepts Claude agent tool calls via pre-tool-use hook. Native Android app lets you approve, trust or deny from the notification shade. Long-poll, no push infrastructure needed. Python, Android, HITL

Systems Analysis and Development — Centro Universitario Integrado (2018-2021). English C2 by EF SET.

Full resume · GitHub · LinkedIn · nicholasfvelten@gmail.com

Engenheiro de software com cinco anos construindo e operando sistemas de producao para ISPs brasileiros, hoje em um dos maiores provedores de fibra do pais. Meu dominio atual e telecom, mas o fio condutor e mais amplo: entrega full-stack, workflows distribuidos, corretude sob pressao de producao, reprocessamento seguro, automacao de servicos e sistemas que falham em silencio se voce nao souber onde olhar.

Meu trabalho normalmente comeca com um sistema falhando em producao e nenhuma explicacao correta: integracoes silenciosas, provisionamento que reporta sucesso mas nao aplica, ordens abertas quando nao deveriam. Eu encontro o mecanismo e faco a menor mudanca segura em uma rede onde uma mudanca errada derruba assinantes.

Fora do trabalho construo em Rust, hoje um proxy de seguranca para agentes de IA e ferramentas MCP com autenticacao, politicas, auditoria, aprovacao humana e validacao de schema, e escrevo publicamente sobre automacao de suporte, seguranca em stacks Java legados e seguranca de agentes. Aberto a trabalho remoto em engenharia de software, backend, full-stack, platform, sistemas distribuidos, automacao de producao e infraestrutura de agentes. Ingles C2.

Stack principal

  • Linguagens: Java, TypeScript, Python, Rust, Go
  • Back-end: Spring Boot, Node.js, Keycloak, Kong API Gateway, REST, Kafka
  • Front-end: Vue.js, React
  • Dados & Infra: PostgreSQL, MySQL, Redis, Docker, Kubernetes, GitLab CI, AWS, GCP
  • Observabilidade: Grafana, Loki, New Relic, Sentry, OpenTelemetry
  • Telecom: FTTH/ONU provisioning, RADIUS/PPPoE, OSS/BSS workflows, service assurance, WFM/field service
  • Arquitetura: Microservices, DDD, Hexagonal, Event-Driven, zero-downtime migrations

Experiencia

  • Alloha Fibra — Engenheiro de Software (jul. 2023 - presente). Stack operacional telecom em microsservicos Java/Spring Boot e frontends operacionais Vue: provisionamento FTTH/ONU, RADIUS/PPPoE, massivas, ordens de servico, field service, WFM, pagamentos, CRM e mensageria.
  • LIGUE — Desenvolvedor Full-stack Pleno (mai. 2022 - jul. 2023). Construí o TDA, modernizacao web de uma aplicacao desktop Java legada, entregando uma plataforma de atendimento multicamada com frontend Vue.js, BFF Node.js e API de funcionalidades para transferencias de endereco, acordos de pagamento e parcelamentos.
  • Kinebot / GetHash — Desenvolvedor Full-stack Junior (out. 2021 - mai. 2022). Construí aplicacoes para clientes com Node.js, React, TypeScript e Next.js; provisionei e mantive infraestrutura Docker/Kubernetes e pipelines CI/CD.

Projetos pessoais

  • Paperboy — Extensao de browser keyboard-first e local-first que substitui a nova aba por um leitor RSS e podcast player; publicada no Firefox Add-ons. Interface terminal companion em Rust. JavaScript, Rust, Firefox
  • Arbitus — Proxy open-source que aplica politicas por agente antes que qualquer tool call chegue ao servidor MCP: autenticacao, allow/denylist, validacao de schema, filtragem de payload, rate limiting, HITL e auditoria. Rust, MCP, Security
  • agent-memory — Memoria persistente para agentes de IA via vault Obsidian: busca full-text, checagem de validade de fatos, resumos de projeto e promocao de achados de sessao para notas duraveis. MCP, Obsidian, AI
  • Mate Creations — Design system com tokens DTCG compilados via Style Dictionary, wrappers de componentes sobre elementos nativos, checks de contraste e verificacao de drift de variaveis CSS. Cinco consumidores em producao. Design System, CSS, TypeScript
  • keybinds-tui — TUI em Rust que parseia oito fontes reais de configuracao, incluindo um Neovim headless para ler mappings vivos, para nao divergir das configs que documenta. Rust, TUI, Developer Tools
  • Agent Code Buddy — Servidor Python intercepta tool calls de agentes Claude via hook de pre-tool-use. App Android nativo permite aprovar, confiar ou negar pela aba de notificacoes. Long-poll, sem infra de push. Python, Android, HITL

Analise e Desenvolvimento de Sistemas — Centro Universitario Integrado (2018-2021). Ingles C2 pelo EF SET.

Curriculo completo · GitHub · LinkedIn · nicholasfvelten@gmail.com