01 Profile

Baptiste Parmantier,
architect for robust and scalable systems

I build IAM primitives, distributed architectures and production systems. From the first API contract to the last alert resolved.

Stack
Rust · IAM · Kubernetes · OIDC
Scope
Distributed systems & security
Ref
FerrisKey · co-founder
Profile Fig.01 · 1:1

Rust

services · CLI

Baptiste Parmantier

IAM

OIDC · tokens

K8s

operators

RBAC

OPA · policy

Obs

traces · SLO

What I Do

Three things I'm built for

Not a list of frameworks. What I actually deliver, end to end: designing systems right, distributing them at scale, and keeping them running in production.

01

Identity & Architecture

I design systems at the domain level — defining service boundaries, API contracts, and data ownership before touching a framework. My IAM expertise (OIDC, policies, multi-tenancy) comes from building FerrisKey: an identity platform where correctness isn't optional.

02

Distributed Systems

I build services that coordinate reliably at scale. Event-driven architectures, Kubernetes orchestration, and consistency models designed for failure — not just for the happy path.

03

Production Lifecycle

I don't stop at the deploy. CI/CD pipelines, structured observability with Prometheus and Loki, and the mindset of an owner — not a contractor. If it pages at 3am, I'm the one who fixed the design that caused it.

Expertise

From identity to distributed platforms.

I focus on the parts of a system where product design, security constraints and operational reality meet.

01 · IAM

IAM & OIDC

OIDC, OAuth2, FerrisKey, token lifecycle, multi-tenant realms and secure product boundaries. Protocol implementation from spec

02 · AUTHZ

Authorization & policy

OPA, RBAC, ABAC, delegated authorization and policy-as-code. Fine-grained access control that stays auditable when security teams need answers.

03 · K8S

Platform identity

Kubernetes-native identity, service-to-service auth, mTLS and SPIFFE/SPIRE between workloads. IAM at the infrastructure layer.

04 · DIST

Distributed security

Event-driven auth flows, Kafka-based audit pipelines, and consistency decisions for systems that stay explainable under failure.

05 · OPS

Operational security

Auth systems that are observable and recoverable. Structured audit logs, token flow metrics, and SLOs for security-critical infrastructure.

Flagship Product

FerrisKey

FerrisKey

Open-source IAM platform, built in Rust

FerrisKey is an enterprise-grade identity and access management platform — the kind of system where correctness is non-negotiable. I co-founded it, designed the architecture, wrote the core, and own the production stack.

Architecture Hexagonal · Rust
Distributed Kubernetes · events
Production CI/CD · SLO
Architecture
Hexagonal architecture in Rust. Service boundaries designed before the first line of code. API contracts that the entire stack depends on.
Distributed
Multiple services on Kubernetes. Event-driven coordination, eventual consistency, and horizontal scalability by design.
Production
GitHub Actions CI/CD, Prometheus + Loki for observability. Maintained with SLO discipline — shipped and kept alive.
Rust Hexagonal Kubernetes Event-driven CI/CD Prometheus · Loki SLO

Projects

Open source products, not demo code

Each project is a system decision made concrete — architecture choices, protocol design, and long-term maintenance.

Blog

Latest articles

Stay up to date with the latest news and updates.

// Contact

Let's work together

Have a project in mind or just want to chat? Feel free to reach out.

Baptiste Parmantier

Software architect and IAM expert, co-founder of FerrisKey. I design distributed systems and identity primitives in Rust from the first API contract to the last alert resolved.

Resources

© 2026 Baptiste Parmantier. All rights reserved.

Built with ❤️ using Explainer