Senior Software Engineer, Solution Architect (Hybrid Cloud, Java, Microservices, Docker, Kubernetes, Kafka, Fullstack), Business Analyst
Aktualisiert am 04.12.2025
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 01.01.2026
Verfügbar zu: 100%
davon vor Ort: 100%
Hybrid Cloud Architecture
Cloud Security
Java 21
ETRM
Spring Boot
Quarkus
Secure coding
BPMN
Security Concepts
Git
Docker
Kubernetes
React
Microservices
AWS
Azure
Agentic AI
DevSecOps
Fullstack
Large Language Models
MCP
Automizations
Optimizations
Deutsch
Muttersprache
Englisch
Verhandlungssicher

Einsatzorte

Einsatzorte

Essen, Ruhr (+50km) Düsseldorf (+50km) Dortmund (+50km)
Deutschland, Schweiz, Österreich
möglich

Projekte

Projekte

1 year 9 months
2024-03 - now

Cloud Security Initiative for business critical systems

Cloud Security Architect and Developer AWS Azure Azure DevOps ...
Cloud Security Architect and Developer

Since the beginning of 2024, I have been working once again with RWE Supply & Trading. Within this project, I implemented the group-wide security guidelines for critical infrastructure and cloud-based applications. In preparation, I conducted comprehensive audits, modernised legacy components, and resolved technical debt across several complex frontend and backend systems (Java 21, .NET 9, C#, TypeScript, Angular) used by globally operating trading desks. I aligned these systems with a unified, forward-looking DevSecOps strategy (Azure DevOps, build pipelines, Infrastructure as Code, Terraform, AWS and Azure providers). Subsequently, I significantly advanced and implemented key security areas?threat modelling, encryption, identity & access management, secrets management, backup & recovery, logging & monitoring, and the automation of security controls (including Azure Advanced Security, Orca, AWS Inspector, and Terraform)?for all mentioned applications. The engagement concludes at the end of December, with all objectives achieved and every work package successfully delivered.

AWS Azure Azure DevOps Azure CI/CD Azure EntraID AWS IAM STS KMS S3 EC2 ECS ServiceConnect RDS AWS Backup Lambda CloudWatch SNS SQS ALB EKS (Managed Kubernetes) Terraform Pulumi Kafka GraphQL gRPC Java 21 Spring Boot C# .NET 9.0 Docker Angular 18 MCP Claude 4.5 Python Amazon Aurora PostgreSQL MS SQL Server LLM Agentic AI
RWE Supply & Trading
Essen, Ruhr
1 year 1 month
2023-01 - 2024-01

Cloud Migration EMIR Refit and REMIT

Architect und Developer EMIR Refit REMIT Energiehandel ...
Architect und Developer

EnBW AG engaged me to modernise its on-premises reporting infrastructure for the EMIR and REMIT regulatory regimes and to migrate it in alignment with the company?s hybrid cloud strategy (Azure and AWS) from January 2023 onward. Instead of continuing to extract transactions directly from the trading system, we introduced an event-driven microservice architecture using Spring Boot and Kafka to eliminate tight coupling between components. 

AWS Azure Azure DevOps Spring Java 17 Endur Apache Kafka AzureAD SonarQube Storybook Datadog Snowflake Amazon Dynamo Docker DeltaconX Angular Node.js TypeScript JavaScript
EMIR Refit REMIT Energiehandel Derivate Optionen Futures Swaps Swaptions FX Interest Rates Komplexe Derivate
EnBW AG
Karlsruhe und remote
11 months
2022-02 - 2022-12

Alternative Investments/Asset Management

Architect and Developer Java 11 CQRS Domain Modelling ...
Architect and Developer
I supported Talanx AG in the implementation of its portfolio management platform for institutional clients, gaining deep insights into domain-driven design, event sourcing, and CQRS.
AxonIQ Spring Boot PostgreSQL MS SQL Server MicroStrategy Vue.js TypeScript JavaScript Node.js
Java 11 CQRS Domain Modelling Active Directory Event Driven Architecture Event Storming TypeScript
Talanx AG
Köln und remote
2 years 7 months
2019-07 - 2022-01

Strategic, group-wide reporting system for compliance with all regulatory requirements

Technical Lead und Entwickler EMIR REMIT Energiehandel ...
Technical Lead und Entwickler

Continuation of the REMIT project under the leadership of RWE AG. Strategic, group-wide reporting system to meet all regulatory requirements in the REMIT environment.

  • The second phase of the REMIT project focused on migrating the environment to the Open Telekom Cloud. High operating costs and a lack of flexibility at the RWE data center forced us to look for a hyperscaler that complied with ACER guidelines. In the OTC, we found a provider with two locations in Germany that complied with all guidelines
  • In accordance with the requirements, I planned and implemented the cloud deployment, including the deployment of virtual private clouds for the respective stages and subnets (front end, back end, database), setup of firewall rules, storage capacities, load balancers, and reverse proxies
  • The deployment of the VPCs was automated with Rudder so that the state of the environment was always consistent and reproducible
  • An external audit team conducted a comprehensive penetration test and certified the secure operation without further comments
  • In the course of this, the application landscape was also modernized and the virtual machines were replaced with Docker images
  • The JEE stack was replaced with a Quarkus-based architecture.
  • ActiveMQ was replaced by Kafka.
  • The front end was modernized with Vue.js.
  • The introduction of a CI/CD pipeline with Jenkins further increased the transparency and reliability of releases.
  • Monitoring was implemented via Zabbix agents.


After successful implementation, I requested that my position be filled by internal employees. I was involved in the HR process, interviewed suitable candidates, and worked with the product owner to find a viable solution

OpenLDAP OTC Docker Jenkins Rudder Zabbix Quarkus Apache Kafka Apache Camel Vue.js Java 11 Node.js Flowable TypeScript JavaScript Wildfly Servicemix Drools Keycloak Kafka Javascript MongoDB MariaDB Migration Open Telecom Cloud
EMIR REMIT Energiehandel Cloud Migration BPMN Mandantenfähigkeit
RWE AG
Essen und remote
4 years 7 months
2015-01 - 2019-07

Strategic, group-wide reporting system for compliance with all regulatory requirements

Technical Lead und Entwickler EMIR REMIT MiFID ...
Technical Lead und Entwickler

Strategic, group-wide reporting system for fulfilling all regulatory requirements in the REMIT environment, fully qualified RRM with more than 1,000 clients, > 4 million transactions per year, strict client separation


  • Since early 2015, I have been the technical lead and developer of the CRS system at RWE AG
  • This is a reporting platform that is more than adequate for complying with and fulfilling rapidly changing regulatory requirements within the energy industry
  • It relieves market participants within the EU of the burden of answering complex and costly questions relating to regulatory compliance and, by means of automated data reconciliation between market participants and regulatory authorities, ensures smooth business operations and minimizes operational risk by complying with all reporting obligations
  • The commission was awarded following a decision by the RWE Group's Executive Board, which made participation in this program mandatory for all majority-owned companies.
  • The system was planned and implemented using open source components because the budget was quite tight.
  • The key drivers were multi-client capability, scalability, and reliability, as failure to comply with compliance rules could have led to substantial fines and significant damage to the RWE Group's reputation.
  • A subset of all trading transactions, primarily physical and financial transactions such as electricity and gas deliveries, derivatives, swaps, and options, must be submitted to the regulator within one business day
  • Ad hoc audits by the supervisory authorities are also possible, so that all transactions of all participants are managed in the CRS system in order to be able to comply with the obligation to provide information as quickly as possible if necessary.
  • As a rule, the participating companies are directly connected to their trading systems via SOAP
  • A wide range of input formats is supported, which can be transformed into the internal format individually for each client
  • Status messages to the respective trading system can be reported back in real time via various channels.
  • I was also responsible for setting up the various environment instances in the RWE data center.
  • This included capacity planning, network and load balancer configuration, setting up the Linux VMs, and implementing a failover and backup concept between the two availability zones of the data center.
  • After 18 months, the project went live on time and within budget.
  • Initially, the connection of 23 companies was planned.
  • However, as the product stood out positively from the competition (including Seeburger), we now manage over 1,000 participating companies with a market share of approximately 30% within the EU.

ActiveMQ Apache Camel WildFly Application Server Camunda MariaDB MongoDB Flyway Vaadin Keycloak Java 8 Wildlfy Servicemix Drools Javascript Aufsatz im Twin Data Center der RWE
EMIR REMIT MiFID Java Java EE Energiehandel Netzwerk/Sicherheit Linux Administration OpenID OAuth SOAP REST PKI Verschlüsselung Mandantenfähigkeit
Innogy SE
Essen, Ruhr
5 months
2014-08 - 2014-12

SSO Implementation for RWE Energiekaufhaus

Consultant CoreMedia CMS Wildfly Keycloak ...
Consultant
Integration of identity management and single sign-on via Keycloak into the RWE Group's energy purchasing platform
CoreMedia CMS Wildfly Keycloak MS Active Directory
RWE IT GmbH
Essen, Ruhr
4 months
2014-05 - 2014-08

Consulting OSGi

Developer Java 8 Aspektorientierte Programmierung AOP ...
Developer
  • Consulting OSGi, Java Instrumentation

  • AOP and Bytecode Manipulation

  • Connection from Mule ESB and Tibco Business Works to nJAMS

MuleESB Tibco BusinessWorks
Java 8 Aspektorientierte Programmierung AOP Java Instrumentation Bytecode Weaving
Faiz & Siegeln GmbH
Essen, Ruhr
5 months
2013-11 - 2014-03

Endur Drools Integration

Entwickler Java 8 Business Engineering Domain Modelling ...
Entwickler
Integration of a business rules engine (JBoss Drools) into the Endur trading system of RWE Supply & Trading
Endur Drools Java 8 OpenJVS
Java 8 Business Engineering Domain Modelling Business-Rule-Engine
RWE Supply & Trading
Essen, Ruhr

Aus- und Weiterbildung

Aus- und Weiterbildung

2 months
2022-01 - 2022-02

iSAQB CPSA-F

oose GmbH
oose GmbH
4 months
2021-03 - 2021-06

Machine Learning

Certificate, Stanford University
Certificate
Stanford University

Position

Position

  • Fullstack Developer

  • Software Architect

  • Hybrid Cloud Solution Architect

  • Technical Project Lead

Kompetenzen

Kompetenzen

Top-Skills

Hybrid Cloud Architecture Cloud Security Java 21 ETRM Spring Boot Quarkus Secure coding BPMN Security Concepts Git Docker Kubernetes React Microservices AWS Azure Agentic AI DevSecOps Fullstack Large Language Models MCP Automizations Optimizations

Aufgabenbereiche

Architektur
Experte
Entwicklung
Experte
Business Analyse
Experte
Modellierung
Experte

Produkte / Standards / Erfahrungen / Methoden

Software-Engineering
Experte

Profile:

I am particularly interested in complex architecture and development tasks. I am a full-stack developer (front-end and back-end) with over 25 years of project experience. Daily training enables me to offer state-of-the-art solutions in the areas of Java, Kotlin, microservices, DevOps, and cloud computing. I am characterized by an unconditional will to succeed, pragmatic approaches to solutions, a fast pace of work, an enjoyment of a wide variety of technologies, and an enthusiasm for making a difference as part of a team.


Key Skills

  • Energy trading (Power, Gas, Coal, Oil, LNG, Emissions)
  • Exchange?traded/OTC products
  • Derivatives (options, futures, forwards, swaps, swaptions), including power, gas, coal, oil
  • Cloud Security Architecture
  • Optimization, Agentic-AI Integration, MCP, RAG, Vector DB Embeddings
  • Fullstack Developer (Java, Kotlin, Spring Boot, Microservices, Event Driven Architecture, DDD, TDD, Clean Code, SQL, NoSQL)


Languages

German | Native

English  | fluent / business-proficient


Frameworks

Microservices, Quarkus, Spring Boot, Spring GraphQL, Spring Webflux, Spring Cloud, AxonIQ, Java Microprofile, JEE Container, Apache Camel, Apache Spark, OSGi, Drools, Guvnor, JBPM, Flowable, Lombok, RxJava, ReactiveX, Flyway, Liquibase, JAXB, JPA, Hibernate, Mockito, Spock, Selenium, Pandas, NumPy, PyTorch, Seaborn, LangChain, LangGraph, MCP, RAG


Security

PKI, SAML, OAuth2.0, OpenID Connect 2.0, EntraID, Keycloak, JWT, RBAC, OWASP, BSI, AWS SecurityHub, AWS IAM RolesAnywhere, AWS GuardDuty, AWS Secrets Manager, AWS KMS, AWS Policies and SecurityGroups, AWS Inspector, Azure Key Vault, GitHub Advanced Security for Azure DevOps


Communication Standards

ActiveMQ, Apache Kafka, AWS SQS, AWS STN, REST, GraphQL, OpenAPI, Swagger, SOAP, XML, XSLT, gRPC, Google Protobuf, JSON, GSON, RMI, CORBA, TCP/IP, UDP, DNS, SMTP, IMAP, SSL/TLS, PGP


DevOps

Azure DevOps, AWS CloudWatch, ECS, EC2, CloudMap, Route53, EKS, Orca, SonarQube, JFrog, Nexus, Jenkins, TestNG, Junit, Spock, Cucumber, Mockito, Apache Maven, Gradle, Docker, git, Gitlab, Kubernetes, Helm, Terraform, Ansible


Frontend

Node.js, NPM, PNPM, yarn, eslint, Vite, Vitest, React Router 7, Angular, CSS3, Tailwind 4, shadcn/ui, D3, PWA, SPA, SSR, Storybook, Design Systems


Tools

IntelliJ, WebStorm, VSCode, CLion, PyCharm, Eclipse, Jupyter, Figma, Sparx Systems Enterprise Architect, UML, LeanIX, Prometheus, Grafana


Focus

Software Engineering, Software Architecture, Technische Projektleitung, Entwicklung, Coaching, Reviews, SCRUM, Kanban, Archimate, Arc42, TOGAF


Special Interests

Mathematics (graph theory, statistics, linear algebra), deep learning, DevOps, cloud strategies, identity and access management, cloud security, clean code, agile methods, microservices, UI technologies (WebAssembly with Rust), pragmatic solutions


Certificates

iSQI CPSA-F Software Architect

Stanford University Machine Learning

Neo4j Neo4j Certified Professional


Project Reports

As technical lead and developer, I designed and built the regulatory reporting platform for REMIT reporting of physical and financial energy trading transactions as a SaaS solution for the RWE Group between 2015 and 2022. The platform is a fully certified RRM (Registered Reporting Mechanism), approved by ACER across Europe. Today, all RWE subsidiaries and more than 1,000 trading partners rely on this service.

 

Afterwards, EnBW AG engaged me to modernise its on-premises reporting infrastructure for the EMIR and REMIT regulatory regimes and to migrate it in alignment with the company?s hybrid cloud strategy (Azure and AWS) from January 2023 onward. Instead of continuing to extract transactions directly from the trading system, we introduced an event-driven microservice architecture using Spring Boot and Kafka to eliminate tight coupling between components.

 

I also supported Talanx AG in the implementation of its portfolio management platform for institutional clients, gaining deep insights into domain-driven design, event sourcing, and CQRS.

 

Since the beginning of 2024, I have been working once again with RWE Supply & Trading. Within this project, I implemented the group-wide security guidelines for critical infrastructure and cloud-based applications. In preparation, I conducted comprehensive audits, modernised legacy components, and resolved technical debt across several complex frontend and backend systems (Java 21, .NET 9, C#, TypeScript, Angular) used by globally operating trading desks. I aligned these systems with a unified, forward-looking DevSecOps strategy (Azure DevOps, build pipelines, Infrastructure as Code, Terraform, AWS and Azure providers).

Subsequently, I significantly advanced and implemented key security areas?threat modelling, encryption, identity & access management, secrets management, backup & recovery, logging & monitoring, and the automation of security controls (including Azure Advanced Security, Orca, AWS Inspector, and Terraform)?for all mentioned applications. The engagement concludes at the end of December, with all objectives achieved and every work package successfully delivered.

Betriebssysteme

Windows
Experte
Linux
Experte
OS X
Experte

Programmiersprachen

Java
21
JavaScript
Experte
Kotlin
Fortgeschritten
Python
Fortgeschritten
Rust
Fortgeschritten
C++
Experte
TypeScript
Experte
Go

Datenbanken

MongoDB
Experte
neo4j
Experte
MariaDB
Fortgeschritten
MySQL
Fortgeschritten
PostgreSQL
Fortgeschritten
Oracle
Fortgeschritten
DynamoDB
Fortgeschritten
InfluxDB

Datenkommunikation

ActiveMQ
Experte
RabbitMQ
Fortgeschritten
ZeroMQ
Experte
Kafka
Experte
MQTT
Fortgeschritten
REST
Experte
SOAP
Experte
XML
Experte
XSLT
Experte
JSON
Experte
GSON
Experte
TCP/IP
Experte
UDP
Experte
DNS
Experte
SMTP
Experte
IMAP
Experte
SSL
Experte
PGP
Fortgeschritten

Regulatory Affairs

EMIR
Fortgeschritten
REMIT
Experte
MiFID
Fortgeschritten
MiFIR
Fortgeschritten
MAR
Fortgeschritten

Managementerfahrung in Unternehmen

Geschäftsführer
Seit 2019 Geschäftsführer der asora systems GmbH

Branchen

Branchen

  • Banking
  • ETRM
  • Insurances

Einsatzorte

Einsatzorte

Essen, Ruhr (+50km) Düsseldorf (+50km) Dortmund (+50km)
Deutschland, Schweiz, Österreich
möglich

Projekte

Projekte

1 year 9 months
2024-03 - now

Cloud Security Initiative for business critical systems

Cloud Security Architect and Developer AWS Azure Azure DevOps ...
Cloud Security Architect and Developer

Since the beginning of 2024, I have been working once again with RWE Supply & Trading. Within this project, I implemented the group-wide security guidelines for critical infrastructure and cloud-based applications. In preparation, I conducted comprehensive audits, modernised legacy components, and resolved technical debt across several complex frontend and backend systems (Java 21, .NET 9, C#, TypeScript, Angular) used by globally operating trading desks. I aligned these systems with a unified, forward-looking DevSecOps strategy (Azure DevOps, build pipelines, Infrastructure as Code, Terraform, AWS and Azure providers). Subsequently, I significantly advanced and implemented key security areas?threat modelling, encryption, identity & access management, secrets management, backup & recovery, logging & monitoring, and the automation of security controls (including Azure Advanced Security, Orca, AWS Inspector, and Terraform)?for all mentioned applications. The engagement concludes at the end of December, with all objectives achieved and every work package successfully delivered.

AWS Azure Azure DevOps Azure CI/CD Azure EntraID AWS IAM STS KMS S3 EC2 ECS ServiceConnect RDS AWS Backup Lambda CloudWatch SNS SQS ALB EKS (Managed Kubernetes) Terraform Pulumi Kafka GraphQL gRPC Java 21 Spring Boot C# .NET 9.0 Docker Angular 18 MCP Claude 4.5 Python Amazon Aurora PostgreSQL MS SQL Server LLM Agentic AI
RWE Supply & Trading
Essen, Ruhr
1 year 1 month
2023-01 - 2024-01

Cloud Migration EMIR Refit and REMIT

Architect und Developer EMIR Refit REMIT Energiehandel ...
Architect und Developer

EnBW AG engaged me to modernise its on-premises reporting infrastructure for the EMIR and REMIT regulatory regimes and to migrate it in alignment with the company?s hybrid cloud strategy (Azure and AWS) from January 2023 onward. Instead of continuing to extract transactions directly from the trading system, we introduced an event-driven microservice architecture using Spring Boot and Kafka to eliminate tight coupling between components. 

AWS Azure Azure DevOps Spring Java 17 Endur Apache Kafka AzureAD SonarQube Storybook Datadog Snowflake Amazon Dynamo Docker DeltaconX Angular Node.js TypeScript JavaScript
EMIR Refit REMIT Energiehandel Derivate Optionen Futures Swaps Swaptions FX Interest Rates Komplexe Derivate
EnBW AG
Karlsruhe und remote
11 months
2022-02 - 2022-12

Alternative Investments/Asset Management

Architect and Developer Java 11 CQRS Domain Modelling ...
Architect and Developer
I supported Talanx AG in the implementation of its portfolio management platform for institutional clients, gaining deep insights into domain-driven design, event sourcing, and CQRS.
AxonIQ Spring Boot PostgreSQL MS SQL Server MicroStrategy Vue.js TypeScript JavaScript Node.js
Java 11 CQRS Domain Modelling Active Directory Event Driven Architecture Event Storming TypeScript
Talanx AG
Köln und remote
2 years 7 months
2019-07 - 2022-01

Strategic, group-wide reporting system for compliance with all regulatory requirements

Technical Lead und Entwickler EMIR REMIT Energiehandel ...
Technical Lead und Entwickler

Continuation of the REMIT project under the leadership of RWE AG. Strategic, group-wide reporting system to meet all regulatory requirements in the REMIT environment.

  • The second phase of the REMIT project focused on migrating the environment to the Open Telekom Cloud. High operating costs and a lack of flexibility at the RWE data center forced us to look for a hyperscaler that complied with ACER guidelines. In the OTC, we found a provider with two locations in Germany that complied with all guidelines
  • In accordance with the requirements, I planned and implemented the cloud deployment, including the deployment of virtual private clouds for the respective stages and subnets (front end, back end, database), setup of firewall rules, storage capacities, load balancers, and reverse proxies
  • The deployment of the VPCs was automated with Rudder so that the state of the environment was always consistent and reproducible
  • An external audit team conducted a comprehensive penetration test and certified the secure operation without further comments
  • In the course of this, the application landscape was also modernized and the virtual machines were replaced with Docker images
  • The JEE stack was replaced with a Quarkus-based architecture.
  • ActiveMQ was replaced by Kafka.
  • The front end was modernized with Vue.js.
  • The introduction of a CI/CD pipeline with Jenkins further increased the transparency and reliability of releases.
  • Monitoring was implemented via Zabbix agents.


After successful implementation, I requested that my position be filled by internal employees. I was involved in the HR process, interviewed suitable candidates, and worked with the product owner to find a viable solution

OpenLDAP OTC Docker Jenkins Rudder Zabbix Quarkus Apache Kafka Apache Camel Vue.js Java 11 Node.js Flowable TypeScript JavaScript Wildfly Servicemix Drools Keycloak Kafka Javascript MongoDB MariaDB Migration Open Telecom Cloud
EMIR REMIT Energiehandel Cloud Migration BPMN Mandantenfähigkeit
RWE AG
Essen und remote
4 years 7 months
2015-01 - 2019-07

Strategic, group-wide reporting system for compliance with all regulatory requirements

Technical Lead und Entwickler EMIR REMIT MiFID ...
Technical Lead und Entwickler

Strategic, group-wide reporting system for fulfilling all regulatory requirements in the REMIT environment, fully qualified RRM with more than 1,000 clients, > 4 million transactions per year, strict client separation


  • Since early 2015, I have been the technical lead and developer of the CRS system at RWE AG
  • This is a reporting platform that is more than adequate for complying with and fulfilling rapidly changing regulatory requirements within the energy industry
  • It relieves market participants within the EU of the burden of answering complex and costly questions relating to regulatory compliance and, by means of automated data reconciliation between market participants and regulatory authorities, ensures smooth business operations and minimizes operational risk by complying with all reporting obligations
  • The commission was awarded following a decision by the RWE Group's Executive Board, which made participation in this program mandatory for all majority-owned companies.
  • The system was planned and implemented using open source components because the budget was quite tight.
  • The key drivers were multi-client capability, scalability, and reliability, as failure to comply with compliance rules could have led to substantial fines and significant damage to the RWE Group's reputation.
  • A subset of all trading transactions, primarily physical and financial transactions such as electricity and gas deliveries, derivatives, swaps, and options, must be submitted to the regulator within one business day
  • Ad hoc audits by the supervisory authorities are also possible, so that all transactions of all participants are managed in the CRS system in order to be able to comply with the obligation to provide information as quickly as possible if necessary.
  • As a rule, the participating companies are directly connected to their trading systems via SOAP
  • A wide range of input formats is supported, which can be transformed into the internal format individually for each client
  • Status messages to the respective trading system can be reported back in real time via various channels.
  • I was also responsible for setting up the various environment instances in the RWE data center.
  • This included capacity planning, network and load balancer configuration, setting up the Linux VMs, and implementing a failover and backup concept between the two availability zones of the data center.
  • After 18 months, the project went live on time and within budget.
  • Initially, the connection of 23 companies was planned.
  • However, as the product stood out positively from the competition (including Seeburger), we now manage over 1,000 participating companies with a market share of approximately 30% within the EU.

ActiveMQ Apache Camel WildFly Application Server Camunda MariaDB MongoDB Flyway Vaadin Keycloak Java 8 Wildlfy Servicemix Drools Javascript Aufsatz im Twin Data Center der RWE
EMIR REMIT MiFID Java Java EE Energiehandel Netzwerk/Sicherheit Linux Administration OpenID OAuth SOAP REST PKI Verschlüsselung Mandantenfähigkeit
Innogy SE
Essen, Ruhr
5 months
2014-08 - 2014-12

SSO Implementation for RWE Energiekaufhaus

Consultant CoreMedia CMS Wildfly Keycloak ...
Consultant
Integration of identity management and single sign-on via Keycloak into the RWE Group's energy purchasing platform
CoreMedia CMS Wildfly Keycloak MS Active Directory
RWE IT GmbH
Essen, Ruhr
4 months
2014-05 - 2014-08

Consulting OSGi

Developer Java 8 Aspektorientierte Programmierung AOP ...
Developer
  • Consulting OSGi, Java Instrumentation

  • AOP and Bytecode Manipulation

  • Connection from Mule ESB and Tibco Business Works to nJAMS

MuleESB Tibco BusinessWorks
Java 8 Aspektorientierte Programmierung AOP Java Instrumentation Bytecode Weaving
Faiz & Siegeln GmbH
Essen, Ruhr
5 months
2013-11 - 2014-03

Endur Drools Integration

Entwickler Java 8 Business Engineering Domain Modelling ...
Entwickler
Integration of a business rules engine (JBoss Drools) into the Endur trading system of RWE Supply & Trading
Endur Drools Java 8 OpenJVS
Java 8 Business Engineering Domain Modelling Business-Rule-Engine
RWE Supply & Trading
Essen, Ruhr

Aus- und Weiterbildung

Aus- und Weiterbildung

2 months
2022-01 - 2022-02

iSAQB CPSA-F

oose GmbH
oose GmbH
4 months
2021-03 - 2021-06

Machine Learning

Certificate, Stanford University
Certificate
Stanford University

Position

Position

  • Fullstack Developer

  • Software Architect

  • Hybrid Cloud Solution Architect

  • Technical Project Lead

Kompetenzen

Kompetenzen

Top-Skills

Hybrid Cloud Architecture Cloud Security Java 21 ETRM Spring Boot Quarkus Secure coding BPMN Security Concepts Git Docker Kubernetes React Microservices AWS Azure Agentic AI DevSecOps Fullstack Large Language Models MCP Automizations Optimizations

Aufgabenbereiche

Architektur
Experte
Entwicklung
Experte
Business Analyse
Experte
Modellierung
Experte

Produkte / Standards / Erfahrungen / Methoden

Software-Engineering
Experte

Profile:

I am particularly interested in complex architecture and development tasks. I am a full-stack developer (front-end and back-end) with over 25 years of project experience. Daily training enables me to offer state-of-the-art solutions in the areas of Java, Kotlin, microservices, DevOps, and cloud computing. I am characterized by an unconditional will to succeed, pragmatic approaches to solutions, a fast pace of work, an enjoyment of a wide variety of technologies, and an enthusiasm for making a difference as part of a team.


Key Skills

  • Energy trading (Power, Gas, Coal, Oil, LNG, Emissions)
  • Exchange?traded/OTC products
  • Derivatives (options, futures, forwards, swaps, swaptions), including power, gas, coal, oil
  • Cloud Security Architecture
  • Optimization, Agentic-AI Integration, MCP, RAG, Vector DB Embeddings
  • Fullstack Developer (Java, Kotlin, Spring Boot, Microservices, Event Driven Architecture, DDD, TDD, Clean Code, SQL, NoSQL)


Languages

German | Native

English  | fluent / business-proficient


Frameworks

Microservices, Quarkus, Spring Boot, Spring GraphQL, Spring Webflux, Spring Cloud, AxonIQ, Java Microprofile, JEE Container, Apache Camel, Apache Spark, OSGi, Drools, Guvnor, JBPM, Flowable, Lombok, RxJava, ReactiveX, Flyway, Liquibase, JAXB, JPA, Hibernate, Mockito, Spock, Selenium, Pandas, NumPy, PyTorch, Seaborn, LangChain, LangGraph, MCP, RAG


Security

PKI, SAML, OAuth2.0, OpenID Connect 2.0, EntraID, Keycloak, JWT, RBAC, OWASP, BSI, AWS SecurityHub, AWS IAM RolesAnywhere, AWS GuardDuty, AWS Secrets Manager, AWS KMS, AWS Policies and SecurityGroups, AWS Inspector, Azure Key Vault, GitHub Advanced Security for Azure DevOps


Communication Standards

ActiveMQ, Apache Kafka, AWS SQS, AWS STN, REST, GraphQL, OpenAPI, Swagger, SOAP, XML, XSLT, gRPC, Google Protobuf, JSON, GSON, RMI, CORBA, TCP/IP, UDP, DNS, SMTP, IMAP, SSL/TLS, PGP


DevOps

Azure DevOps, AWS CloudWatch, ECS, EC2, CloudMap, Route53, EKS, Orca, SonarQube, JFrog, Nexus, Jenkins, TestNG, Junit, Spock, Cucumber, Mockito, Apache Maven, Gradle, Docker, git, Gitlab, Kubernetes, Helm, Terraform, Ansible


Frontend

Node.js, NPM, PNPM, yarn, eslint, Vite, Vitest, React Router 7, Angular, CSS3, Tailwind 4, shadcn/ui, D3, PWA, SPA, SSR, Storybook, Design Systems


Tools

IntelliJ, WebStorm, VSCode, CLion, PyCharm, Eclipse, Jupyter, Figma, Sparx Systems Enterprise Architect, UML, LeanIX, Prometheus, Grafana


Focus

Software Engineering, Software Architecture, Technische Projektleitung, Entwicklung, Coaching, Reviews, SCRUM, Kanban, Archimate, Arc42, TOGAF


Special Interests

Mathematics (graph theory, statistics, linear algebra), deep learning, DevOps, cloud strategies, identity and access management, cloud security, clean code, agile methods, microservices, UI technologies (WebAssembly with Rust), pragmatic solutions


Certificates

iSQI CPSA-F Software Architect

Stanford University Machine Learning

Neo4j Neo4j Certified Professional


Project Reports

As technical lead and developer, I designed and built the regulatory reporting platform for REMIT reporting of physical and financial energy trading transactions as a SaaS solution for the RWE Group between 2015 and 2022. The platform is a fully certified RRM (Registered Reporting Mechanism), approved by ACER across Europe. Today, all RWE subsidiaries and more than 1,000 trading partners rely on this service.

 

Afterwards, EnBW AG engaged me to modernise its on-premises reporting infrastructure for the EMIR and REMIT regulatory regimes and to migrate it in alignment with the company?s hybrid cloud strategy (Azure and AWS) from January 2023 onward. Instead of continuing to extract transactions directly from the trading system, we introduced an event-driven microservice architecture using Spring Boot and Kafka to eliminate tight coupling between components.

 

I also supported Talanx AG in the implementation of its portfolio management platform for institutional clients, gaining deep insights into domain-driven design, event sourcing, and CQRS.

 

Since the beginning of 2024, I have been working once again with RWE Supply & Trading. Within this project, I implemented the group-wide security guidelines for critical infrastructure and cloud-based applications. In preparation, I conducted comprehensive audits, modernised legacy components, and resolved technical debt across several complex frontend and backend systems (Java 21, .NET 9, C#, TypeScript, Angular) used by globally operating trading desks. I aligned these systems with a unified, forward-looking DevSecOps strategy (Azure DevOps, build pipelines, Infrastructure as Code, Terraform, AWS and Azure providers).

Subsequently, I significantly advanced and implemented key security areas?threat modelling, encryption, identity & access management, secrets management, backup & recovery, logging & monitoring, and the automation of security controls (including Azure Advanced Security, Orca, AWS Inspector, and Terraform)?for all mentioned applications. The engagement concludes at the end of December, with all objectives achieved and every work package successfully delivered.

Betriebssysteme

Windows
Experte
Linux
Experte
OS X
Experte

Programmiersprachen

Java
21
JavaScript
Experte
Kotlin
Fortgeschritten
Python
Fortgeschritten
Rust
Fortgeschritten
C++
Experte
TypeScript
Experte
Go

Datenbanken

MongoDB
Experte
neo4j
Experte
MariaDB
Fortgeschritten
MySQL
Fortgeschritten
PostgreSQL
Fortgeschritten
Oracle
Fortgeschritten
DynamoDB
Fortgeschritten
InfluxDB

Datenkommunikation

ActiveMQ
Experte
RabbitMQ
Fortgeschritten
ZeroMQ
Experte
Kafka
Experte
MQTT
Fortgeschritten
REST
Experte
SOAP
Experte
XML
Experte
XSLT
Experte
JSON
Experte
GSON
Experte
TCP/IP
Experte
UDP
Experte
DNS
Experte
SMTP
Experte
IMAP
Experte
SSL
Experte
PGP
Fortgeschritten

Regulatory Affairs

EMIR
Fortgeschritten
REMIT
Experte
MiFID
Fortgeschritten
MiFIR
Fortgeschritten
MAR
Fortgeschritten

Managementerfahrung in Unternehmen

Geschäftsführer
Seit 2019 Geschäftsführer der asora systems GmbH

Branchen

Branchen

  • Banking
  • ETRM
  • Insurances

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.