Skip to content

About

Let's get to know each other


DevOps. Just DevOps.

Professional Experience

Kubernetes Transformation & Orchestration
Architecting and operating complex container ecosystems across cloud and bare-metal.

Core Tech:

Kubernetes (Azure AKS, AWS EKS, AWS ECS, k3s), Docker, Helm/Helmfile, FluxCD

Infrastructure:

AWS, Azure, Hybrid, Bare-metal (Servers, Network Equipment)

Key Responsibilities:

  • Designed and managed Kubernetes clusters on both cloud providers and on-premise bare-metal servers
  • Built hybrid and edge infrastructure solutions
  • Implemented GitOps workflows using FluxCD and Helmfile for reliable state synchronization
  • Orchestrated zero-downtime deployments for production environments
High-Load FinTech & Payment Systems
Robust infrastructure for secure financial operations.

Core Tech:

AWS (Lambda, S3, ECS, EKS), PostgreSQL, Terraform

Key Responsibilities:

  • Designed high-availability infrastructure for authentic payment gateways
  • Implemented serverless architectures using AWS Lambda
  • Managed migrations of applications and data layers to modern cloud environments
  • Performed security optimizations of AWS platform
  • Applied AWS Well-Architected Framework principles to ensure operational excellence, security, reliability, performance efficiency, and cost optimization
  • Integrated SAST and CodeQL for automated security vulnerability detection in CI/CD pipelines
PaaS & Backup Ecosystem
Building self-service platforms and resilient data protection systems.

Core Tech:

Go, Restic, GoBackup, K8s Custom Operators, AI Agents

Key Achievements:

  • PaaS:Designed and deployed Platform-as-a-Service solution to streamline application hosting and standardize deployments
  • Backup-as-Code:Architected a backup system using Restic and GoBackup driven by a custom Go application, treating backup configurations as code
  • AI-Driven Ops:Implemented AI Agents to autonomously audit infrastructure and verify the integrity and presence of backup archives
Advanced Pipeline Engineering
Streamlining delivery with complex, multi-architecture pipelines.

Core Tech:

GitHub Actions, Azure DevOps, TeamCity, Octopus Deploy

Key Achievements:

  • Complex Pipelines:Developed matrix builds, automated versioning, and multi-environment release chains
  • Cross-Platform Builds:Optimized CI/CD for AMD64/ARM64 and custom embedded platforms (nRF, ESP)
  • Mobile DevOps:Automated iOS application builds and publishing workflows (TestFlight/Apple Developer)
  • Cost Optimization:Implemented specific strategies to curb cloud and build resource usage
  • Custom GitHub Actions:Developed custom GitHub reusable Actions to automate complex CI/CD processes
Internal Tooling & Automation
Developing custom solutions to accelerate operations.

Core Tech:

Go, TypeScript, NextJS, CLI Tools

Key Responsibilities:

  • Built custom CLI tools, helper services and chat bots to automate routine DevOps tasks
  • Developed "DevOps helper apps" to bridge gaps between diverse systems
  • Implemented AI-powered components for infrastructure optimization
Azure & .NET Ecosystem Management
Standardizing workflows for a vast portfolio of 30+ projects.

Core Tech:

Azure (WebApp, SQL), .NET

Key Responsibilities:

  • Standardized deployment workflows across a microservice and monolith ecosystem
  • Troubleshot and resolved complex production issues including architecture conflicts, performance bottlenecks, and integration failures
  • Optimized Azure resource utilization and costs
  • Implemented comprehensive monitoring solutions for distributed systems
Modern Access & Zero-Trust Architecture
Redefining secure access for distributed infrastructure.

Core Tech:

Teleport, Netbird, WireGuard

Key Achievements:

  • Access Re-architecture:Completely redesigned system access workflows using Teleport and Netbird, moving away from traditional VPNs to ephemeral, identity-based access
  • Secure Connectivity:Implemented mesh networking for secure, peer-to-peer inter-service communication
Security Architecture & Governance
Implementing Zero-Trust and strict security standards.

Core Tech:

Zero-Trust Models, Vulnerability Scanners

Key Achievements:

  • ISO 27001 Compliance:Implemented ISMS practices, establishing secure access workflows and privileged access management
  • DevSecOps:Integrated artifact signing, dependency control, and automated security scanning into CI/CD pipelines
  • Infrastructure Hardening:Implemented Zero-Trust access models
  • Vulnerability Management:Analyzed and patched critical vulnerabilities
Performance Engineering
Ensuring system resilience under pressure.

Core Tech:

K6, MongoDB Atlas, Typesctipt

Activities:

  • Designed load testing plans (K6) to validate infrastructure for high-traffic marketing campaigns
  • Optimized database functions (MongoDB Atlas) for performance and cost efficiency

Contributions

AB
ABCD Lite
iisci/cdcontinuous delivery
  • I'm the creator of this project
  • Check out the project at https://abcd.1node.xyz to see all its features
GO
GoBackup
go
  • Add mssql support via sqlpackage
  • Improve MongoDB database to support MongoDB Atlas
  • Add support for healthchecks.io notifications
UM
Umbraco
dotnetno-code
  • Hacktoberfest 2022 contribution (no-code)
  • Vulnerability report
FI
Fiber
go
  • Added support for azure blob storage

Skills

Security

  • ISO27001
  • Zero-Trust
  • StackHawk
  • CodeQL
  • SAST
  • DAST

AI

  • ChatGPT, Gemini, Grok, Claude, etc.
  • Agentic AI
  • AI-powered tools

Coding

  • Go
  • NextJS

Scripting

  • Bash
  • Powershell

Containers

  • Docker
  • Podman

Container orchestration

  • EKS
  • ECS
  • AKS
  • k3s/k0s
  • k8s

Cloud providers

  • AWS
  • Azure
  • Google Cloud
  • Digital Ocean
  • Hetzner

Serverless

  • AWS Lambda
  • Cloudflare
  • Azure functions
  • Vercel
  • Netlify

CI/CD

  • TeamCity
  • GitHub actions
  • Azure DevOps
  • Drone
  • GitLab CI
  • Octopus deploy

Configuration management

  • Ansible

Provisioning

  • Terraform
  • Pulumi

Terminal knowledge

  • Process monitoring
  • Performance monitoring
  • Networking tools
  • Text manipulation
  • Know how to exit vim

VCS and VCS hostings

  • git
  • GitHub
  • Azure Devops Repos
  • Gitlab
  • Bitbucket

What is and how to setup...

  • Firewall
  • Reverse-proxy
  • Load balancing
  • Nginx
  • Caddy
  • IIS
  • Apache
  • Traefik (k8s)

Networking and protocols

  • FTP/SFTP (why it still alive?)
  • DNS
  • HTTP(S)
  • SSL/TLS
  • SSH
  • OSI Model
  • Email-related

Infrastructure monitoring

  • Grafana
  • Prometheus
  • Datadog

Application monitoring

  • Prometheus
  • Azure AppInsights

Operating Systems

  • Windows
  • Ubuntu
  • RHEL