Systems Administrator · Philadelphia, PA

Max Regni

IT infrastructure, security & operations.

Scroll down

Systems Administrator & Real Estate Operations Specialist.

I design, deploy, and secure the infrastructure that keeps organisations running. From modernising legacy networks with Ubiquiti VLAN segmentation to rolling out Microsoft Entra ID and Intune across a mobile workforce. I build systems that are reliable, auditable, and easy for teams to live in.

I also bridge the gap between IT and operations: managing AppFolio workflows, automating reporting, and building an LLM powered internal knowledge base that reduced dependency on institutional knowledge. Based in Philadelphia, PA. Open to IT management, sysadmin, and operations roles.


Capabilities

What I bring to the table.

IT Infrastructure & Networking

Ubiquiti UniFi stack, VLAN segmentation, TrueNAS Scale, Synology Active Backup, VirtualBox, VoIP.ms PBX.

Identity & Device Management

Microsoft Entra ID, Microsoft Intune, SharePoint, Bitwarden Enterprise. IAM aligned to NIST guidelines.

Physical Security

UniFi Protect & Access deployed across multi-facility environments, replacing legacy key-based systems with auditable access control.

Business Operations

AppFolio full platform suite, Follow Up Boss, Paychex Flex, Proton Business Suite, Notion, draw.io, Gamma Slides.

Analytics & Automation

Zapier, PostHog, Sentry, SEMrush, Cookiebot, hunter.io, Resend, Azure AI Search and AI governance frameworks.

Development Tooling

GitHub, Visual Studio Code, Docker, Google Business. Comfortable building and maintaining internal tools and automated workflows.


Selected work

Infrastructure built to last.

IAM & MDM Rollout
Security · Identity

IAM, MDM & Security Hardening

Deployed Microsoft Entra ID and Intune via staged rollout, enforcing NIST aligned identity policies across the organisation. Integrated Bitwarden as a centralised password manager, eliminating brute force credential theft and cutting credential related support requests by over 90%. Rounded out the security posture by writing a formal Incident Response Plan and running company wide phishing awareness training.

Entra ID Intune Bitwarden NIST
Network Modernisation
Infrastructure · Networking

Network Modernisation & Physical Security

Replaced aging network hardware across all properties with a Ubiquiti stack, designing VLAN segmentation to isolate traffic and measurably reduce network related support requests. Extended physical security by deploying UniFi Protect cameras and UniFi Access door controllers across every facility, including remote properties without dedicated internet connections, replacing legacy coax and key based systems with a fully auditable cloud managed solution.

UniFi VLAN UniFi Protect UniFi Access
LLM Knowledge Base
AI · Operations

AI Governance & Internal Knowledge Base

Evaluated and deployed a company approved LLM platform, establishing governance policies that restricted unauthorised AI tool usage across the organisation and eliminated shadow IT risk. Alongside this, authored a centralised knowledge base covering AppFolio, CRM platforms, and IT policies, giving staff a single source of truth and reducing dependency on undocumented institutional knowledge.

AI Governance AppFolio Knowledge Management
Homelab
Personal · Ongoing

Homelab & Self-Hosted Infrastructure

Running TrueNAS Scale for networked storage and VM hosting, with Docker composed services for self hosted applications. Experimenting with local LLM RAG pipelines, ingesting documents into a vector store and querying them through a locally run model. That hands on work directly informed the AI governance and knowledge base projects I implemented professionally.

TrueNAS Scale Docker RAG LLM
AppFolio & VoIP
Operations · Systems

Property Management & Communications Stack

Migrated a paper based lease portfolio to AppFolio PMS, unlocking online rent payments, maintenance work orders, and data driven reporting. Executed an Exchange to Microsoft 365 migration with zero downtime, implemented M365 backup aligned to the 3 2 1 rule, and replaced a legacy analogue phone and fax system with a cloud managed VoIP PBX and eFax solution.

AppFolio Microsoft 365 VoIP Synology
How I work

How I approach every system.

01

Audit

Map what exists: hardware, software, access controls, workflows. No assumptions. Everything documented before anything changes.

02

Plan

Design around minimising disruption. Staged rollouts, rollback paths, and clear communication with stakeholders before changes go live.

03

Deploy

Execution with documentation in lockstep: SOPs, runbooks, and policies written as infrastructure is built, not after.

04

Maintain

Systems need ongoing care. Monitoring, incident response planning, user training, and regular review keep environments secure and efficient.


Get in touch

Looking for the right IT role in Philadelphia.

Open to systems administration, IT management, and operations roles. If your organisation needs someone who can own the full infrastructure stack, from networking and security to tooling and documentation, let's talk.