About
Hi, I’m Leka. I’m a security leader, engineer, and architect who has spent a fair amount of time building security and compliance from scratch in startups — usually while trying not to turn developer velocity into collateral damage.
I care about resilient systems: the kind that can grow, break in interesting ways, and keep their integrity when reality gets less cooperative than the diagram promised. I am also pathologically drawn to fixing and fiddling with things that are mostly working, which is how small tools, terminal experiments, and unnecessary automation acquire a life of their own. Think security engineer by trade, grease monkey by temperament.
This blog is where I leave notes from that work: infosec observations, self-built tools, infrastructure oddities, and the occasional complaint about software that has made a simple thing needlessly complicated. Some posts are polished; others are a record of figuring something out in public while trying not to make the same mistake twice.
It is an archive, not a product brochure. The goal is to leave behind something more useful than “I fixed it somehow” — ideally including why it broke, what fixed it, and which apparently harmless setting was responsible for the whole mess.
You can find the more formal version of me at ristic.in.rs, and the code behind various questionable ideas at GitHub.