Skip to main content

I got a $job in #FLOSS!

So my last post was about me trying to find a job in Open Source. That post generated an email from Tristan Hill who told me that he recently started to work for Credativ and that they have positions open. So I've checked it out, looked lovely, but I wasn't so sure about the what type of work I would have to do. In February, I had an interview with Chris Halls and it was a dream come true. I took the job.

Thank you Tristan Hill for reading Ubuntu Planet.


Credativ is Open Source company. Job satisfies FSF open-source job definition. The company was started in Germany, by a Debian Developer - Dr. Michael Meskes. There are a few other Debian Developers.

Credativ does a lot of 3rd line support around the world. The centre in Germany is 24h, the UK office is not. In the UK we do a lot of Nagios and OpenERP development & support as well as provide OSS training. Relaxed, diverse, challenging and fun =) And you get root ;-) And our marketing manager Irenie White has cakes =) All it takes is a quick chat on jabber to get one!

It was a great feeling that yes you can run Ubuntu on your machine and yes you get root on most of the boxes you need to do your work on. It is a pleasure to come to work everyday! I'm probably easy to please. But it is a really good feeling when you come to the interview and your future manager knows what packages you are maintaining in Debian and what mailing lists you have appeared on and etc. I was also touched by the fact that all equal opportunities statements in the handbook referred to "marital or civil partnership status".

Overall - loads of development, amazing staff, challenging support tickets from sysadmins and everything is in open source.

There are currently 2 Ubuntu Desktop machines in the Office, with other desktops & servers are running Debian Squeeze. But I'm sure it will gradually change to the purple side ;-)

Are you a Debian / Ubuntu developer? Do you program? Are you into Open Source? Do you want to enjoy working with Open Source 9-5? Then apply, cause we are looking for technical people to join us. If you want to talk about Credativ you can find my IRC/email details on launchpad.

My hobby, became my full-time job. I'm a recent university graduate, I'm between 20-25 and only 3% of 200 000 jobs created last year in the UK were full-time... The odds were against me and I made it =)

Comments

Post a Comment

Popular posts from this blog

Achieving actually full disk encryption of UEFI ESP at rest with TCG OPAL, FIPS, LUKS

Achieving full disk encryption using FIPS, TCG OPAL and LUKS to encrypt UEFI ESP on bare-metal and in VMs Many security standards such as CIS and STIG require to protect information at rest. For example, NIST SP 800-53r5 SC-28 advocate to use cryptographic protection, offline storage and TPMs to enhance protection of information confidentiality and/or integrity. Traditionally to satisfy such controls on portable devices such as laptops one would utilize software based Full Disk Encryption - Mac OS X FileVault , Windows Bitlocker , Linux cryptsetup LUKS2 . In cases when FIPS cryptography is required, additional burden would be placed onto these systems to operate their kernels in FIPS mode. Trusted Computing Group  works on establishing many industry standards and specifications, which are widely adopted to improve safety and security of computing whilst keeping it easy to use. One of their most famous specifications them is TCG  TPM 2.0 (Trusted Platform Module). TPMs are now...

Encrypt all the things

xkcd #538: Security Went into blogger settings and enabled TLS on my custom domain blogger blog. So it is now finally a https://blog.surgut.co.uk  However, I do use feedburner and syndicate that to the planet. I am not sure if that is end-to-end TLS connections, thus I will look into removing feedburner between my blog and the ubuntu/debian planets. My experience with changing feeds in the planets is that I end up spamming everyone. I wonder, if I should make a new tag and add that one, and add both feeds to the planet config to avoid spamming old posts. Next up went into gandi LiveDNS platform and enabled DNSSEC on my domain. It propagated quite quickly, but I believe my domain is now correctly signed with DNSSEC stuff. Next up I guess, is to fix DNSSEC with captive portals. I guess what we really want to have on "wifi" like devices, is to first connect to wifi and not set it as default route. Perform captive portal check, potentially with a reduced DNS server capabil...

Security-only OpenSSL tarball releases for CVE-2026-2673

On Friday May the 13th OpenSSL project has published advisory details for  CVE-2026-2673 . The CVE is treated as non-important by the project. The patches are only provided as commits on the stable branches. No git tag, no precise fixed version, and no source tarballs provided. The patches that were merged to openssl-3.5 and openssl-3.6 branches were not based on top of the last stable point release and did not split code changes & documentation updates. It means that cherry-picking the commits referenced in the advisory will always lead to conflicts requiring manual resolution. It is not clear if support is provided for snapshot builds off the openssl-3.5 and openssl-3.6 branches. As the builds from the stable branches declare themselves as dev builds of the next unreleased point release. For example, in contrast to projects such as vim and glibc, with every commit to stable branches explicitly recommended for distributors to ship and is supported. I have requested OpenSSL ups...