Enterprise Kubernetes Plattform-Engineering mit Fokus auf DevSecOps, Cloud-Security und Compliance in regulierten Umgebungen (AWS, GCP, Multi-Cloud).
Aktualisiert am 09.03.2026
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 17.03.2026
Verfügbar zu: 100%
davon vor Ort: 0%
Cloud
GCP
AWS
Kubernetes
K8s
Terraform
Google Cloud
Vault
CI/CD
GitLab
GitOps
RBAC
Ansible
Configuration Management
Helm
Docker
German
Muttersprache
Italian
Grundkenntnisse
French
Grundkenntnisse

Einsatzorte

Einsatzorte

Deutschland
möglich

Projekte

Projekte

11 Monate
2025-05 - heute

Led Kubernetes infrastructure and AI architecture planning

Senior DevSecOps Consultant & Technical Lead (Kubernetes) Ansible Authertik Azure ...
Senior DevSecOps Consultant & Technical Lead (Kubernetes)

Led Kubernetes infrastructure and AI architecture planning for a 15-person DevSecOps team, focusing on security hardening and generative AI implementations.


Project ? Multi-Cloud Azure & StackIT:

  • Cloud Security & Compliance: Led the end-to-end architecture and implementation of Kubernetes RBAC using Authentik and SIEM; integrated OIDC authentication and granular role bindings to secure multi-cluster access, achieving 100% SIMPL and BSI C5 compliance.
  • CI/CD Pipeline Automation: Architected and automated Azure DevSecOps pipelines to orchestrate customer environment provisioning on StackIT Cloud; integrated Ansible playbooks and Terraform modules to deploy Kubernetes clusters and virtual machines with minimal manual intervention.
  • Infrastructure as Code (IaC): Implemented reproducible Terraform and Ansible workflows within Azure pipelines to standardize Kubernetes node and VM creation across customer environments, reducing deployment time by 99% and ensuring configuration consistency across 8+ projects.
  • Cloud Security & Compliance: Architected and implemented Kubernetes system hardening by deploying Falco in eBPF mode for runtime threat detection and configuring Kyverno for policy enforcement (Policy as Code (Pac)) via custom Helm charts for policy enforcement; automated alert routing to Splunk through Fluent-Bit, enabling proactive incident response.
  • Multi-Cloud & Kubernetes Engineering: Integrated OIDC authentication into Kubernetes clusters using Authertik (IdP); secured developer and admin access with federated identity, eliminating static credentials and improving traceability across clusters.
  • Monitoring & Observability: Configured Kubernetes audit policies to forward resource changes and OIDC login events to Splunk, establishing centralized visibility and enhancing audit readiness for regulated environments.
  • Multi-Cloud & Kubernetes Engineering: Developed and deployed custom Helm charts for AI/ML inference workloads using Triton Inference Server, GPU scheduling, and MinIO (S3-like) object storage; managed Helm charts and Docker images in JFrog Artifactory to ensure secure, version-controlled, and reproducible deployments across environments.
  • Cloud Security & Compliance: Configured and managed sensitive credentials and image pull secrets (ESO/VSO) in StackIT Secrets Manager, ensuring secure access to container registries and compliance with organizational security policies.
  • Multi-Cloud & Kubernetes Engineering: Implemented and optimized resource management using VPA, Goldilocks, and Kubecost to analyze workloads and reduce cloud operational costs by 70%, enhancing performance visibility across Kubernetes clusters.
  • Multi-Cloud & Kubernetes Engineering: Provisioned and maintained infrastructure components with Helm charts, including GenAI inference services, logging pipelines, and policy engines. Standardized deployments across cloud environments, increasing consistency and reproducibility.
  • Cloud Security & Compliance: Assessed SBOM-based supply chain tracking for Kubernetes and advised adopting Snyk for vulnerability management; triaged 80+ CVEs and coordinated remediations.


Project ? GDPR compliant voice and chat bot in Azure:

  • AI Integration & Automation: Architected, implemented, and secured a DSGVO-compliant Azure environment supporting a generative AI chatbot built with OpenAI (GPT), Bot Framework SDK, ACS, Azure Functions, and Terraform; automated context-aware support workflows, reducing operational costs by ~77%.

Ansible Authertik Azure Azure DevSecOps Pipelines Azure Functions Azure OpenAI Azure OpenAI API Azure Relays Bot Framework SDK Bot Framework Web Chat Falco Fluent-Bit Fluentd Goldilocks GPU Scheduling Helm JFrog Artifactory Kubecost Kubernetes Kyverno MinIO OIDC Python RAG (Retrieval-Augmented Generation) ServiceNow GenAI Snyk Splunk StackIT Cloud StackIT Secrets Manager Terraform Triton Inference Server Vertical Pod Autoscaler (VPA)
Netlution
6 Monate
2024-11 - 2025-04

designing, securing, and automating infrastructure environments

Senior DevSecOps Consultant & Technical Lead & Project Lead Ansible Certificates HashiCorp Vault ...
Senior DevSecOps Consultant & Technical Lead & Project Lead

Lead IT security consultant responsible for designing, securing, and automating infrastructure environments across private cloud data centers. Coordinated project delivery, escalation management, and implementation planning end-to-end, ensuring timely execution and technical compliance for high-priority initiatives.

  • Multi-Cloud & Kubernetes Engineering: Managed a greenfield mobile telecommunications project using Rakuten Symphony Cloud, overseeing 4 data centers, and 60 Virtual Machines (VMs) across a private cloud infrastructure; improved scalability, performance, and observability for mission-critical workloads.
  • Ansible & Infrastructure Automation: Automated network connectivity testing with a custom Ansible playbook, executing 1,770 automated tests and saving outputs as JSON. Parsed results with Python into structured CSVs, increasing test coverage by 99.93% and improving validation efficiency by 22,025%.
  • Infrastructure as Code (IaC): Automated deployment of Virtual Network Functions (VNFs)/Virtual Machines (VMs) using Terraform with a custom provider, reducing provisioning time by 90% and standardizing infrastructure templates across data centers.
  • Cloud Security & Compliance: Implemented a traceable One-Time Password (OTP) authentication model for root access using HashiCorp Vault, converting static credentials into a ?break-glass? access method. Authored Method of Procedures (MoPs) and Proof of Concepts (PoCs) to validate the security model, achieving complete audit traceability for root actions.
  • Cloud Security & Compliance: Presented and planned 15+ changes to the Change Advisory Board (CAB) and Network Operations Center (NOC), coordinated cross-team tasks, and delivered end-to-end solution presentations using the SCR method, ensuring transparency, accountability, and alignment throughout the change management process.
  • Cloud Security & Compliance: Built incident response runbooks and escalation tiers; defined RACI ownership per incident type to stop unclear handoffs ? orphaned tickets ? that stalled; reduced remediation cycles from weeks to days by ensuring a named owner at every step.
Ansible Certificates HashiCorp Vault JSON Kubernetes Linux Server MS Office Public Key Infrastructure (PKI) Python Rakuten Symphony Cloud RCP Terraform Virtual Machines (VMs) Virtual Network Functions (VNFs)
Ibency GmbH
1 Jahr 5 Monate
2023-06 - 2024-10

Architected and implemented a secure, container-based microservices infrastructure

DevSecOps Consultant Kubernetes Helm Docker ...
DevSecOps Consultant

Architected and implemented a secure, container-based microservices infrastructure for a public-sector digitalization project, enabling automation, scalability, and modern CI/CD practices.

  • Multi-Cloud & Kubernetes Engineering: Designed and managed Helm-based Kubernetes deployments for 30+ microservices; standardized configuration, automated rollout strategies, and ensured reliable operation across dev, test, and production clusters.
  • Multi-Cloud & Kubernetes Engineering: Migrated 30+ monolithic components into containerized services using Docker and Kubernetes, improving deployment speed, maintainability, and fault isolation in a private cloud environment.
  • Multi-Cloud & Kubernetes Engineering: Defined the target architecture for a modular microservices environment, introducing standardized communication through XTA2 and log shippers for reliable message routing and traceability.
  • CI/CD Pipeline Automation: Designed and maintained automated pipelines integrating Maven, Kubernetes, and private registries, enabling continuous integration and delivery with minimal manual intervention.
  • Infrastructure as Code (IaC): Automated environment provisioning and configuration through Terraform and Ansible, standardizing infrastructure deployment across hybrid environments.
Kubernetes Helm Docker Terraform Ansible Maven Private Container Registry Spring Boot MongoDB XTA2 Confluence Jira
7P Group
7 Monate
2022-11 - 2023-05

Developed and optimized CI/CD pipelines

DevSecOps Engineer Docker GitLab GitOps ...
DevSecOps Engineer

Developed and optimized CI/CD pipelines, implemented automation strategies, and led cloud infrastructure improvements to enhance operational efficiency and reduce pipeline costs.

  • CI/CD Pipeline Automation: Designed and maintained GitLab CI/CD pipelines with pre-commit hooks for automated PEP8 convention checks, streamlining deployment cycles.
  • CI/CD Pipeline Automation: Implemented Argo CD with GitLab, Kustomize, and Kubernetes to automate environment-specific deployments across dev and prod stages; ensured consistent versioning, faster rollouts, and reliable state synchronization between Git and live clusters.
  • CI/CD Pipeline Automation: Multi-Cloud & Kubernetes Engineering: Developed a shared cache feature for GitLab runners using Harvester Hyperconverged Infrastructure (HCI), Kubernetes, kubectl, and SOPS Cryptography as a Service (CaaS), reducing pipeline execution time by 50% and cutting costs by ~$250/day.

Docker GitLab GitOps CI/CD Harvester Kustomize Kubernetes kubectl PEP8 Pre-commit Python SOPS YAML
Underwriters Laboratories (UL)
6 Monate
2022-04 - 2022-09

Developed and improved integration testing

DevSecOps Engineer (Internship) Amazon Linux 2 AWS Cucumber.io ...
DevSecOps Engineer (Internship)

Developed and improved integration testing for AWS services, ensuring reliability for 500+ weekly active B2B users.

  • CI/CD Pipeline Automation: Improved AWS service test coverage by 84% through CI/CD strategies using Selenium, Ruby and Cucumber .io boosting testing efficiency.
  • Multi-Cloud & Kubernetes Engineering: Performed blue-green deployment of AWS EC2 instances (Server OS migration to Amazon Linux 2) & troubleshooting for 8 Amazon Web Services where each service has 12 stages each stage with 10 instances.

Amazon Linux 2 AWS Cucumber.io EC2 Elasticsearch Kibana Ruby Selenium
Amazon Web Services

Aus- und Weiterbildung

Aus- und Weiterbildung

2024 - Expected 2026

Bachelor of Science (Computer Science)

Internationale Hochschule (IU) (Remote)


2019

Bachelor of Science (Computer Science)

prior to switch

RWTH Aachen University (Onsite)


Professional Certifications

  • GCP Professional Architect
  • GCP Professional Data Engineer
  • GCP Associate Cloud Engineer
  • GCP Cloud Digital Leader
  • AWS Security Specialty
  • AWS Machine Learning Engineer - Associate
  • AWS Certified AI Practitioner
  • Certified Artificial Intelligence Professional by UL
  • NShield Certified Systems Engineer
  • ITIL 4 Foundation
  • Oracle Certified Associate - Java


Security, Compliance & IT Service Management:

  • AWS Certified Security - Specialty ? AWS (2025)
  • ITIL® 4 Foundation (IT Service Management) ? PeopleCert (2023)
  • nCSE ? Entrust (2024)


Cloud & Platform Engineering Certifications:

  • GCP Professional Cloud Architect ? Google (2026)
  • GCP Professional Data Engineer ? Google (2025)
  • AWS Certified Machine Learning Engineer - Associate ? AWS (2025)
  • AWS Certified AI Practitioner ? AWS (2025)
  • GCP Associate Cloud Eng. ? Google (2024)
  • GCP Cloud Digital Leader ? Google (2024)


Artificial Intelligence & Emerging Technologies:

  • Certified Artificial Intelligence Professional by UL ? Underwriters Laboratories (UL) (2022)


Programming Languages:

  • Oracle Certified Associate - Java 8 ? Oracle (2023)

Kompetenzen

Kompetenzen

Top-Skills

Cloud GCP AWS Kubernetes K8s Terraform Google Cloud Vault CI/CD GitLab GitOps RBAC Ansible Configuration Management Helm Docker

Produkte / Standards / Erfahrungen / Methoden

EXECUTIVE SUMMARY

  • DevSecOps & Cloud Automation Expert at the intersection of security, scale, and regulated enterprise delivery. Rapid trajectory ? Senior DevSecOps Engineer within 2 years ? designing and governing secure cloud platforms in high-stakes environments and turning ambiguity into automated, auditable, production-grade infrastructure.
  • Deep expertise in Kubernetes, Infrastructure as Code, and CI/CD, translating compliance and security requirements into scalable, developer-friendly multi-cloud and AI-integrated platforms that balance reliability, cost control, and delivery speed.
  • 10× certified, including GCP Professional Architect, AWS Certified Security ? Specialty, GCP Professional Data Engineer, and ITIL® 4 Foundation, across cloud, security, and AI domains.
  • Alongside full-time senior consulting work, I pursue an optional part-time Computer Science degree to deepen theoretical foundations that complement my platform and security expertise.
  • Recognized via Google ×4, AWS ×1, and Huawei ×1 scholarships, and through leadership as Google Developer Groups (GDG) Lead and Google alumni.
  • I regularly mentor engineers, define platform standards, and act as a trusted technical authority in security- and audit-sensitive environments.


CORE COMPETENCIES

  • Multi-Cloud & Kubernetes Engineering
  • Infrastructure as Code (IaC)
  • CI/CD Pipeline Automation
  • Cloud Security & Compliance
  • Ansible & Infrastructure Automation
  • Monitoring & Observability
  • AI Integration & Automation


SKILLS

  • DevSecOps & Cloud: Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure, StackIT Cloud, Rakuten Symphony Cloud, Kubernetes, Helm, Docker, Terraform, Ansible, Azure DevSecOps Pipelines, GitLab CI/CD, Jenkins, Argo CD, Kustomize, Private Container Registries, Virtual Machines (VMs), Virtual Network Functions (VNFs)
  • Infrastructure as Code (IaC) & Automation: Terraform (Custom Providers, Modules), Ansible (Playbooks, Configuration Management, inventory plugins, dynamic inventory), Helm (Custom Charts), IaC Pipelines, YAML, JSON
  • Cloud Security & Compliance: HashiCorp Vault, Snyk, Falco (Runtime Security), Kyverno (Policy Enforcement), StackIT Secrets Manager, OIDC, Authentik, SIMPL, BSI C5, GDPR/DSGVO, RBAC, OTP Authentication, Security Hardening, SBOM Analysis
  • Monitoring & Observability: Splunk, FluentBit, Fluentd, Kubecost, Goldilocks, Vertical Pod Autoscaler (VPA), Prometheus, Grafana, Audit Logs, Logshipper Integrations
  • Data-Services: MongoDB, MySQL, SQLite, Google Firebase, MinIO Object Storage, Google BigQuery, Amazon S3, ETL-Pipelines
  • Quality-Assurance: Cucumber .io, JUnit, Postman, Selenium, Pre-Commit Hooks, PEP8 Enforcement
  • Project & Collaboration Tools: Jira, Confluence, MS Office, RCP, Git, GitOps Workflows
  • Soft-Skill & Communication Frameworks: Agile Methodologies (Scrum, Kanban), Stakeholder Management, Leadership & Team Collaboration, ITIL 4, Structured Communication (PAR, SCR, STAR)

Programmiersprachen

C/C++, C#
Haskell
Java
JavaScript
Python
Prolog
Ruby

Einsatzorte

Einsatzorte

Deutschland
möglich

Projekte

Projekte

11 Monate
2025-05 - heute

Led Kubernetes infrastructure and AI architecture planning

Senior DevSecOps Consultant & Technical Lead (Kubernetes) Ansible Authertik Azure ...
Senior DevSecOps Consultant & Technical Lead (Kubernetes)

Led Kubernetes infrastructure and AI architecture planning for a 15-person DevSecOps team, focusing on security hardening and generative AI implementations.


Project ? Multi-Cloud Azure & StackIT:

  • Cloud Security & Compliance: Led the end-to-end architecture and implementation of Kubernetes RBAC using Authentik and SIEM; integrated OIDC authentication and granular role bindings to secure multi-cluster access, achieving 100% SIMPL and BSI C5 compliance.
  • CI/CD Pipeline Automation: Architected and automated Azure DevSecOps pipelines to orchestrate customer environment provisioning on StackIT Cloud; integrated Ansible playbooks and Terraform modules to deploy Kubernetes clusters and virtual machines with minimal manual intervention.
  • Infrastructure as Code (IaC): Implemented reproducible Terraform and Ansible workflows within Azure pipelines to standardize Kubernetes node and VM creation across customer environments, reducing deployment time by 99% and ensuring configuration consistency across 8+ projects.
  • Cloud Security & Compliance: Architected and implemented Kubernetes system hardening by deploying Falco in eBPF mode for runtime threat detection and configuring Kyverno for policy enforcement (Policy as Code (Pac)) via custom Helm charts for policy enforcement; automated alert routing to Splunk through Fluent-Bit, enabling proactive incident response.
  • Multi-Cloud & Kubernetes Engineering: Integrated OIDC authentication into Kubernetes clusters using Authertik (IdP); secured developer and admin access with federated identity, eliminating static credentials and improving traceability across clusters.
  • Monitoring & Observability: Configured Kubernetes audit policies to forward resource changes and OIDC login events to Splunk, establishing centralized visibility and enhancing audit readiness for regulated environments.
  • Multi-Cloud & Kubernetes Engineering: Developed and deployed custom Helm charts for AI/ML inference workloads using Triton Inference Server, GPU scheduling, and MinIO (S3-like) object storage; managed Helm charts and Docker images in JFrog Artifactory to ensure secure, version-controlled, and reproducible deployments across environments.
  • Cloud Security & Compliance: Configured and managed sensitive credentials and image pull secrets (ESO/VSO) in StackIT Secrets Manager, ensuring secure access to container registries and compliance with organizational security policies.
  • Multi-Cloud & Kubernetes Engineering: Implemented and optimized resource management using VPA, Goldilocks, and Kubecost to analyze workloads and reduce cloud operational costs by 70%, enhancing performance visibility across Kubernetes clusters.
  • Multi-Cloud & Kubernetes Engineering: Provisioned and maintained infrastructure components with Helm charts, including GenAI inference services, logging pipelines, and policy engines. Standardized deployments across cloud environments, increasing consistency and reproducibility.
  • Cloud Security & Compliance: Assessed SBOM-based supply chain tracking for Kubernetes and advised adopting Snyk for vulnerability management; triaged 80+ CVEs and coordinated remediations.


Project ? GDPR compliant voice and chat bot in Azure:

  • AI Integration & Automation: Architected, implemented, and secured a DSGVO-compliant Azure environment supporting a generative AI chatbot built with OpenAI (GPT), Bot Framework SDK, ACS, Azure Functions, and Terraform; automated context-aware support workflows, reducing operational costs by ~77%.

Ansible Authertik Azure Azure DevSecOps Pipelines Azure Functions Azure OpenAI Azure OpenAI API Azure Relays Bot Framework SDK Bot Framework Web Chat Falco Fluent-Bit Fluentd Goldilocks GPU Scheduling Helm JFrog Artifactory Kubecost Kubernetes Kyverno MinIO OIDC Python RAG (Retrieval-Augmented Generation) ServiceNow GenAI Snyk Splunk StackIT Cloud StackIT Secrets Manager Terraform Triton Inference Server Vertical Pod Autoscaler (VPA)
Netlution
6 Monate
2024-11 - 2025-04

designing, securing, and automating infrastructure environments

Senior DevSecOps Consultant & Technical Lead & Project Lead Ansible Certificates HashiCorp Vault ...
Senior DevSecOps Consultant & Technical Lead & Project Lead

Lead IT security consultant responsible for designing, securing, and automating infrastructure environments across private cloud data centers. Coordinated project delivery, escalation management, and implementation planning end-to-end, ensuring timely execution and technical compliance for high-priority initiatives.

  • Multi-Cloud & Kubernetes Engineering: Managed a greenfield mobile telecommunications project using Rakuten Symphony Cloud, overseeing 4 data centers, and 60 Virtual Machines (VMs) across a private cloud infrastructure; improved scalability, performance, and observability for mission-critical workloads.
  • Ansible & Infrastructure Automation: Automated network connectivity testing with a custom Ansible playbook, executing 1,770 automated tests and saving outputs as JSON. Parsed results with Python into structured CSVs, increasing test coverage by 99.93% and improving validation efficiency by 22,025%.
  • Infrastructure as Code (IaC): Automated deployment of Virtual Network Functions (VNFs)/Virtual Machines (VMs) using Terraform with a custom provider, reducing provisioning time by 90% and standardizing infrastructure templates across data centers.
  • Cloud Security & Compliance: Implemented a traceable One-Time Password (OTP) authentication model for root access using HashiCorp Vault, converting static credentials into a ?break-glass? access method. Authored Method of Procedures (MoPs) and Proof of Concepts (PoCs) to validate the security model, achieving complete audit traceability for root actions.
  • Cloud Security & Compliance: Presented and planned 15+ changes to the Change Advisory Board (CAB) and Network Operations Center (NOC), coordinated cross-team tasks, and delivered end-to-end solution presentations using the SCR method, ensuring transparency, accountability, and alignment throughout the change management process.
  • Cloud Security & Compliance: Built incident response runbooks and escalation tiers; defined RACI ownership per incident type to stop unclear handoffs ? orphaned tickets ? that stalled; reduced remediation cycles from weeks to days by ensuring a named owner at every step.
Ansible Certificates HashiCorp Vault JSON Kubernetes Linux Server MS Office Public Key Infrastructure (PKI) Python Rakuten Symphony Cloud RCP Terraform Virtual Machines (VMs) Virtual Network Functions (VNFs)
Ibency GmbH
1 Jahr 5 Monate
2023-06 - 2024-10

Architected and implemented a secure, container-based microservices infrastructure

DevSecOps Consultant Kubernetes Helm Docker ...
DevSecOps Consultant

Architected and implemented a secure, container-based microservices infrastructure for a public-sector digitalization project, enabling automation, scalability, and modern CI/CD practices.

  • Multi-Cloud & Kubernetes Engineering: Designed and managed Helm-based Kubernetes deployments for 30+ microservices; standardized configuration, automated rollout strategies, and ensured reliable operation across dev, test, and production clusters.
  • Multi-Cloud & Kubernetes Engineering: Migrated 30+ monolithic components into containerized services using Docker and Kubernetes, improving deployment speed, maintainability, and fault isolation in a private cloud environment.
  • Multi-Cloud & Kubernetes Engineering: Defined the target architecture for a modular microservices environment, introducing standardized communication through XTA2 and log shippers for reliable message routing and traceability.
  • CI/CD Pipeline Automation: Designed and maintained automated pipelines integrating Maven, Kubernetes, and private registries, enabling continuous integration and delivery with minimal manual intervention.
  • Infrastructure as Code (IaC): Automated environment provisioning and configuration through Terraform and Ansible, standardizing infrastructure deployment across hybrid environments.
Kubernetes Helm Docker Terraform Ansible Maven Private Container Registry Spring Boot MongoDB XTA2 Confluence Jira
7P Group
7 Monate
2022-11 - 2023-05

Developed and optimized CI/CD pipelines

DevSecOps Engineer Docker GitLab GitOps ...
DevSecOps Engineer

Developed and optimized CI/CD pipelines, implemented automation strategies, and led cloud infrastructure improvements to enhance operational efficiency and reduce pipeline costs.

  • CI/CD Pipeline Automation: Designed and maintained GitLab CI/CD pipelines with pre-commit hooks for automated PEP8 convention checks, streamlining deployment cycles.
  • CI/CD Pipeline Automation: Implemented Argo CD with GitLab, Kustomize, and Kubernetes to automate environment-specific deployments across dev and prod stages; ensured consistent versioning, faster rollouts, and reliable state synchronization between Git and live clusters.
  • CI/CD Pipeline Automation: Multi-Cloud & Kubernetes Engineering: Developed a shared cache feature for GitLab runners using Harvester Hyperconverged Infrastructure (HCI), Kubernetes, kubectl, and SOPS Cryptography as a Service (CaaS), reducing pipeline execution time by 50% and cutting costs by ~$250/day.

Docker GitLab GitOps CI/CD Harvester Kustomize Kubernetes kubectl PEP8 Pre-commit Python SOPS YAML
Underwriters Laboratories (UL)
6 Monate
2022-04 - 2022-09

Developed and improved integration testing

DevSecOps Engineer (Internship) Amazon Linux 2 AWS Cucumber.io ...
DevSecOps Engineer (Internship)

Developed and improved integration testing for AWS services, ensuring reliability for 500+ weekly active B2B users.

  • CI/CD Pipeline Automation: Improved AWS service test coverage by 84% through CI/CD strategies using Selenium, Ruby and Cucumber .io boosting testing efficiency.
  • Multi-Cloud & Kubernetes Engineering: Performed blue-green deployment of AWS EC2 instances (Server OS migration to Amazon Linux 2) & troubleshooting for 8 Amazon Web Services where each service has 12 stages each stage with 10 instances.

Amazon Linux 2 AWS Cucumber.io EC2 Elasticsearch Kibana Ruby Selenium
Amazon Web Services

Aus- und Weiterbildung

Aus- und Weiterbildung

2024 - Expected 2026

Bachelor of Science (Computer Science)

Internationale Hochschule (IU) (Remote)


2019

Bachelor of Science (Computer Science)

prior to switch

RWTH Aachen University (Onsite)


Professional Certifications

  • GCP Professional Architect
  • GCP Professional Data Engineer
  • GCP Associate Cloud Engineer
  • GCP Cloud Digital Leader
  • AWS Security Specialty
  • AWS Machine Learning Engineer - Associate
  • AWS Certified AI Practitioner
  • Certified Artificial Intelligence Professional by UL
  • NShield Certified Systems Engineer
  • ITIL 4 Foundation
  • Oracle Certified Associate - Java


Security, Compliance & IT Service Management:

  • AWS Certified Security - Specialty ? AWS (2025)
  • ITIL® 4 Foundation (IT Service Management) ? PeopleCert (2023)
  • nCSE ? Entrust (2024)


Cloud & Platform Engineering Certifications:

  • GCP Professional Cloud Architect ? Google (2026)
  • GCP Professional Data Engineer ? Google (2025)
  • AWS Certified Machine Learning Engineer - Associate ? AWS (2025)
  • AWS Certified AI Practitioner ? AWS (2025)
  • GCP Associate Cloud Eng. ? Google (2024)
  • GCP Cloud Digital Leader ? Google (2024)


Artificial Intelligence & Emerging Technologies:

  • Certified Artificial Intelligence Professional by UL ? Underwriters Laboratories (UL) (2022)


Programming Languages:

  • Oracle Certified Associate - Java 8 ? Oracle (2023)

Kompetenzen

Kompetenzen

Top-Skills

Cloud GCP AWS Kubernetes K8s Terraform Google Cloud Vault CI/CD GitLab GitOps RBAC Ansible Configuration Management Helm Docker

Produkte / Standards / Erfahrungen / Methoden

EXECUTIVE SUMMARY

  • DevSecOps & Cloud Automation Expert at the intersection of security, scale, and regulated enterprise delivery. Rapid trajectory ? Senior DevSecOps Engineer within 2 years ? designing and governing secure cloud platforms in high-stakes environments and turning ambiguity into automated, auditable, production-grade infrastructure.
  • Deep expertise in Kubernetes, Infrastructure as Code, and CI/CD, translating compliance and security requirements into scalable, developer-friendly multi-cloud and AI-integrated platforms that balance reliability, cost control, and delivery speed.
  • 10× certified, including GCP Professional Architect, AWS Certified Security ? Specialty, GCP Professional Data Engineer, and ITIL® 4 Foundation, across cloud, security, and AI domains.
  • Alongside full-time senior consulting work, I pursue an optional part-time Computer Science degree to deepen theoretical foundations that complement my platform and security expertise.
  • Recognized via Google ×4, AWS ×1, and Huawei ×1 scholarships, and through leadership as Google Developer Groups (GDG) Lead and Google alumni.
  • I regularly mentor engineers, define platform standards, and act as a trusted technical authority in security- and audit-sensitive environments.


CORE COMPETENCIES

  • Multi-Cloud & Kubernetes Engineering
  • Infrastructure as Code (IaC)
  • CI/CD Pipeline Automation
  • Cloud Security & Compliance
  • Ansible & Infrastructure Automation
  • Monitoring & Observability
  • AI Integration & Automation


SKILLS

  • DevSecOps & Cloud: Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure, StackIT Cloud, Rakuten Symphony Cloud, Kubernetes, Helm, Docker, Terraform, Ansible, Azure DevSecOps Pipelines, GitLab CI/CD, Jenkins, Argo CD, Kustomize, Private Container Registries, Virtual Machines (VMs), Virtual Network Functions (VNFs)
  • Infrastructure as Code (IaC) & Automation: Terraform (Custom Providers, Modules), Ansible (Playbooks, Configuration Management, inventory plugins, dynamic inventory), Helm (Custom Charts), IaC Pipelines, YAML, JSON
  • Cloud Security & Compliance: HashiCorp Vault, Snyk, Falco (Runtime Security), Kyverno (Policy Enforcement), StackIT Secrets Manager, OIDC, Authentik, SIMPL, BSI C5, GDPR/DSGVO, RBAC, OTP Authentication, Security Hardening, SBOM Analysis
  • Monitoring & Observability: Splunk, FluentBit, Fluentd, Kubecost, Goldilocks, Vertical Pod Autoscaler (VPA), Prometheus, Grafana, Audit Logs, Logshipper Integrations
  • Data-Services: MongoDB, MySQL, SQLite, Google Firebase, MinIO Object Storage, Google BigQuery, Amazon S3, ETL-Pipelines
  • Quality-Assurance: Cucumber .io, JUnit, Postman, Selenium, Pre-Commit Hooks, PEP8 Enforcement
  • Project & Collaboration Tools: Jira, Confluence, MS Office, RCP, Git, GitOps Workflows
  • Soft-Skill & Communication Frameworks: Agile Methodologies (Scrum, Kanban), Stakeholder Management, Leadership & Team Collaboration, ITIL 4, Structured Communication (PAR, SCR, STAR)

Programmiersprachen

C/C++, C#
Haskell
Java
JavaScript
Python
Prolog
Ruby

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.