LVL 1 Novice Explorer
0 / 100 XP
HP
100
MP
50
STR 8
DEX 8
INT 8
WIS 8
AGI 8
CHA 8

Information Risk & AI Security

Securing information systems, defending against AI accelerated attacks, and automating risk operations

Click anything to earn XP & level up your character

0 Projects
0 EverQuest Scripts
0 Domains

Projects

Infrastructure

k8s

Kubernetes

Container orchestration for services

Jellyfin Snapdrop Caddy
ai

Local AI

Self-hosted AI services

OpenCode Qwen3.6 LocalAI StableDiffusion LiteLLM
ha

Home Assistant

Home automation platform

Automation Monitoring
git

Gitea

Self-hosted Git server

Git CI/CD
vm

Virtual Machines

Multi-OS virtualization layer

Debian Fedora Windows 95
db

Databases

Data services and persistence

MariaDB SQLite RabbitMQ

Third Party Cyber Risk Management

Over a decade of experience managing third-party cyber risk across diverse vendor ecosystems. Leading assessments, monitoring programs, and AI risk evaluations from the front lines.

shield

Third Party Risk Assessments

End-to-end risk assessments of third-party vendors, evaluating security posture, identifying gaps, and providing actionable remediation roadmaps aligned to NIST and ISO frameworks.

NIST RMF ISO 27001 SOC 2 Questionnaires
maturity

Control Maturity

Evaluating and maturing vendor security controls across the full lifecycle — from initial onboarding to ongoing reassessment, ensuring continuous alignment with organizational risk tolerance.

CMMC Control Mapping Gap Analysis
response

Cyber Event Response

Coordinating incident response for third-party security events, from initial detection through containment, notification, and post-incident remediation with full vendor accountability.

Incident Coordination Vendor Notification Remediation
monitor

Continuous Third Party Monitoring

Implementing continuous monitoring programs that track vendor security posture in real-time — security ratings, breach alerts, compliance drift, and automated risk scoring.

Security Ratings Breach Alerts Automated Scoring
inventory

Third Party Inventory

Building and maintaining comprehensive third-party inventories with risk categorization, data flow mapping, contract tracking, and automated refresh cycles to keep the vendor ecosystem fully visible.

Vendor Registry Data Flow Mapping Risk Tiering
ai

Third Party AI Assessments

Specialized assessments for AI/ML vendors and AI-powered services, evaluating model risk, data governance, algorithmic bias, and AI-specific security controls in the third-party lifecycle.

Model Risk AI Governance Bias Evaluation Data Privacy
leadership

Leadership Capabilities

Leading cross-functional risk initiatives, mentoring junior risk analysts, presenting to executive leadership, and driving organizational maturity in third-party cyber risk management practices.

Team Leadership Executive Reporting Mentoring

EverQuest Ecosystem

EQEmulator Server

In 2006, a team of enthusiasts reverse engineered EverQuest's server/client communication protocol to preserve a beloved game. In 2009, I joined the project and contributed my Perl, Lua, SQL, and RPG development skills. I host a personal instance of the server used primarily for testing new features, and I'm building a 'Tour-de-Norrath' historical museum of the game.

Titanium Client ROF2 Client Lutris/Proton

Quest Development

The quests in EverQuest were nothing like modern MMORPGs — you won't find 'go kill 10 skeletons' here. They were impactful, meaningful, and often incredibly long. Rebuilding these quests has been a massive effort. We've even interviewed former EverQuest developers, artists, and producers to help restore quests that are old, broken, or lost to time.

280+ Zones Lua & Perl CI/CD Pipeline

Spire

EverQuest custom server monitor web tool

ProjectEQ database (PEQ)

The open source database that most servers utilize

AI Integration

Custom LocalAI connected NPCs which provide custom quests using EQ databases as guides

About

Nic Weilbacher

I'm a Systems Engineer and DevOps practitioner with a deep passion for building reliable infrastructure, automating operations, and securing networks. With 13 years in cybersecurity — including 10 years specializing in third-party cyber risk, plus 3 years in vulnerability management and SOC — I bring a security-first mindset to everything I build. I specialize in multi-service home datacenters, Kubernetes orchestration, and automation tools that turn manual toil into elegant solutions.

My work centers on Python automation, infrastructure-as-code, and AI-assisted system administration. I build network monitoring platforms with CIS compliance reporting, vulnerability assessment tools with LLM-driven analysis, and distributed task processing systems. I'm passionate about self-hosted services, private cloud infrastructure, and open-source tooling.

When I'm not working, I'm tinkering — whether it's experimenting with local AI models, building RPG engines, crafting retro-themed websites, or exploring something completely new. I love learning across a broad range of topics and turning curious ideas into real projects.

Languages

Python 3.14 SQL Lua Perl Bash TypeScript

Infrastructure

Kubernetes Docker Nginx Caddy Gitea

Tools

nmap Paramiko LangChain Vue 3 Flask AI NIST

Domains

linuxelis.com norrath.org