Marlon
Paz

I build agents that operate networks, and the harnesses that keep agents honest.
Abu Dhabi, UAE

Network, Automation and Observability Architect at Core42 in Abu Dhabi, working on data center interconnect and cloud networking. I learned networks from inside the vendors: a year at Cisco as a blue-badge consulting engineer, then IP/MPLS architecture at Nokia in Portugal for smart-grid and railway networks, with Secure ZTP, digital twins, and mentoring the master's students whose research on autonomous EVPN fabrics was published in two peer-reviewed papers. Today I build the agents myself: multi-agent systems that turn intent into verified network state, with every claim checked on the device, and the telemetry that shows what they cost.

01

Work

agentic-netops: intent to fabricgithub ↗

State intent in plain language; an AGNTCY multi-agent tier (a LangGraph supervisor with mapper, allocator and deployer agents over A2A/SLIM) decomposes it and submits declarative resources. Kubernetes controllers written in Go reconcile them onto a live SONiC EVPN/VXLAN fabric, repair drift, and release what they claimed when intent is withdrawn. gNMI telemetry closes the loop; nothing is reported as deployed until it is verified on the device.

01 · Intent
Plain language
“stretch a mac-vrf across both leaves”
02 · Agents
AGNTCY + LangGraph
map → allocate → confirm → deploy transaction w/ rollback
03 · Controllers
K8s reconcile
CRDs + Go operators, server-side dry-run, deterministic apply
04 · Fabric
SONiC EVPN/VXLAN
Clos in containerlab, eBGP underlay, Ready only after per-node verify
↺ gNMI → Prometheus → Grafana · converged services re-verified every 5 min — drift is repaired, and said so
4/4constructs converge · vlan · mac-vrf · ip-vrf · acl
2·2·4spines · leaves · clients
0unverified “success” reports

Demo · intent tier end to end — vlan, ip-vrf and a stretched mac-vrf provisioned from plain language, then proven with kubectl and on the SONiC leaves · 6½ min

Nokia SR Linux variant: agentic-netops-srl.

specstride: from specs to tested codespecstride.ai ↗

An autonomous coding orchestrator that takes a Spec Kit feature phase by phase. Nothing advances until an independent LLM critic approves it against the acceptance criteria and the real code. Stuck phases get a diagnostician and a narrowed retry. An opt-in outer loop learns per-phase budgets from its own telemetry and reverts any change that regresses. Standard library only. mixture-of-loops compiles Spec Kit features into provenance-bound, unattended Specstride pipelines.

Inner · pass loop
Fresh stateless session
works until the phase's evidence file exists; only disk carries over
Middle · gated phase
Proposer → critic
approve or retry; diagnostician + narrowed accelerator when stuck
Outer · learning
Observe → apply → evaluate
bounded ±50% steps, helped / neutral / regressed, auto-revert + quarantine
3nested loops, one self-tuning
0third-party dependencies

agent-observability-stack: tokenomicsgithub ↗

End-to-end token and cost telemetry for a multi-agent fleet. Every LLM call instrumented through LiteLLM and OpenTelemetry, streamed to Prometheus, Loki and Tempo, broken down per agent, model and task in Grafana. Every trace also fans out to Arize Phoenix for span-level inspection of LLM calls. GPU-aware, with Telegram budget alerts.

agent-observability-stack walkthrough video ▶ Watch the walkthrough

agentic-ops-bench: which model, which harnessgithub ↗

A benchmark of models against harnesses on real operations tasks: AIOps, NetDevOps, HPC, inference, RAG and tool loops. Local 30B-class models on one RTX 3090 compared with hosted frontier models.

qmd-memory-stack: agent memorygithub ↗

Local three-tier RAG memory over GGUF embeddings, served to the fleet through an MCP gateway. ~19× query speedup on an Intel Arc iGPU via Vulkan.

02

Publications

co-authored · peer-reviewed

Co-authored as mentor to the master's students who carried out the research.

03

Trajectory

2024 — PRESENT
Network, Automation and Observability Architect
Core42 · Abu Dhabi, UAE · DCI and cloud networking
2019 — 2024
IP/MPLS Network Architect
Nokia · Amadora, Portugal — DTaaS (Digital Twin as a Service), Secure ZTP, smart-grid & railway critical infrastructure
2018 — 2019
Network Consulting Engineer
Layer2 Consulting (Cisco) · Honduras
2016 — 2018
Network & Security Specialist
Citi Bank (contract) · San Salvador
2014 — 2016
Telecommunications Engineer
Tigo (contract) · San Salvador
2009
B.Sc. Electrical Engineering
Universidad Centroamericana (UCA) · San Salvador
04

Open Source

all repos ↗
agentic-netops
AGNTCY + LangGraph agents turn intent into CRs; Kubernetes controllers reconcile them onto a live SONiC EVPN/VXLAN fabric; gNMI telemetry closes the loop. Runs in containerlab + kind.
Python★ 2⑂ 1
agentic-netops-srl
Agentic NetOps on Nokia SR Linux — declarative EVPN/VXLAN fabric control plane with a guarded multi-agent intent tier.
Shell★ 1
specstride
Spec-driven autonomous coding orchestrator: drives your agent through GitHub Spec Kit phases behind an LLM critic gate and diagnoses stuck phases. It also improves itself: it learns per-phase settings from its own run telemetry, tests each change against a baseline, and reverts any that make things worse.
Python★ 3
mixture-of-loops
Generate provenance-bound, unattended Specstride pipelines from Spec Kit artifacts.
Python★ 1
agent-observability-stack
Self-hostable observability for LLM agents + a Linux host (Intel iGPU/NPU + NVIDIA RTX 3090 eGPU aware): Prometheus + Grafana + Loki + Tempo + Arize Phoenix + OTel, OpenClaw/LiteLLM/Claude Code/RAG metrics and traces, dynamic onboarding, Telegram alerts.
Python★ 1
agentic-ops-bench
Model x harness benchmark on real agentic ops tasks (AIOps, NetDevOps, HPC, inference, RAG, tool loops). Local 30B-class models on one RTX 3090 vs hosted frontier models.
Python★ 1
qmd-memory-stack
Local, GPU-accelerated RAG memory for coding agents (Claude Code + OpenClaw) — hierarchical 3-tier memory over local GGUF embeddings + an MCP server; ~19× query speedup on an Intel Arc iGPU via Vulkan. Idempotent bash installer, fail-open recall.
Shell★ 1
qmd-gateway
Shared, warm, writable qmd MCP memory gateway for a multi-agent coding fleet.
Shell★ 1
antares-scan
Fast, free first-pass security triage of a code folder with a local antares-1b (Granite-4.0) model.
Shell★ 2
video-to-deck
Turn videos into Marp slide decks (PPTX/PDF/HTML). Local whisper + OCR + optional VLM captions build an evidence bundle; a fresh agent per video writes the deck. Structural content becomes Mermaid diagrams. Pluggable agent, CUDA-accelerated, CPU-portable.
Shell★ 1
kedin
An AI agent (managed via Telegram, orchestrated by OpenClaw) that ghost-writes LinkedIn posts in your voice with UML/architecture diagrams. Public, dummy-data demo of the digital-twin career-agent pattern.
JavaScript★ 1
havan
Havan - an autonomous flight-deal hunting AI agent. Managed from Telegram, orchestrated by OpenClaw: searches Google Flights / Skyscanner / OTAs for the cheapest fare with good timing and returns a ranked shortlist with booking links. Public, dummy-data demo.
★ 1
kind-cilium-hubble-cluster
Bootstraps an observable K8s cluster from scratch with kind + Cilium + Hubble.
Shell★ 1⑂ 1
srl-sros-telemetry-lab
Interactive streaming telemetry lab — Nokia SR Linux + SR OS.
Shell★ 1⑂ fork
sros-anysec-lab
Quantum-safe ANYsec encryption demo on containerlab with Nokia SROS FP5 vSIMs.
PHP★ 2⑂ fork
sros-anysec-macsec-lab
Quantum-safe ANYsec + MACsec lab environment.
Python⑂ fork
vrnetlab
Contributed ISA-MS card support for vr-sros.
Python★ 1⑂ fork
claude-plugins
Marlon De Paz's Claude Code plugin marketplace.
Shell★ 1
kanban
Persistent kanban board — Hono API + Next.js + SQLite + Claude AI + Telegram bot integration.
Shell★ 1
gpu_rtx_3090
Safe power-cycle scripts for an RTX 3090 Thunderbolt-4 eGPU (drain/detach/rescan + systemd shutdown guard).
Shell★ 1
certforge
certforge — a small OpenSSL CLI to generate CSRs (for signing by an internal CA) or self-signed certificates from a .cnf, with or without an existing key.
Shell★ 1
duby
AI investment-analysis agent — monitors Telegram channels for trading signals, enriches them with live market data, and delivers position-sized analysis via a dashboard and Telegram bot.
Python★ 1
05

Background

CCIE · CKA · Cisco DevNet Professional · CCNP Data Center · Nokia DCFP · NVIDIA AI Infrastructure and Operations · Isovalent Lab Champion

Networks: IP/MPLS, SR, BGP/EVPN, VXLAN, Cisco IOS-XR and NX-OS, Nokia SR Linux and SR OS, SONiC, containerlab
Platforms: Kubernetes, Cilium/eBPF, Go operators, Python, gNMI, Prometheus, OpenTelemetry, Grafana
Agents: LangGraph, AGNTCY (A2A, SLIM), MCP, LiteLLM, Claude Code