Certified Kubernetes Administrator (CKA)
Business Analysis, CBAPSenior Security Devops Engineer
? Devops: Aufbau und Betrieb automatisierter Build-, Test- und Deployment-Pipelines, Infrastrukturautomatisierung, Monitoring und zuverlässiger Plattformbetrieb.
? Identity and Access Management: SSO/MFA, OIDC/SAML, Entra ID, Keycloak, Trellix, Governance und sichere Onboardings für B2B-Kunden.
? Kubernetes, Docker, Ansible, Elm, ArgoCD (gitOps): Migration von Docker Swarm zu Kubernetes, Betrieb von OpenShift-Clustern, Automatisierung mit Ansible, Packaging & Deployment über Helm, GitOps-Workflows mit ArgoCD, Container-Härtung und Orchestrierung.
? Cloud: Azure, Entra ID, Security Groups, Cloud-Integration, Hybrid-Infrastruktur und sichere Architekturprinzipien.
- Architektur: Threat Modelling (STRIDE), Zero-Trust Prinzipien, Governance Reports
? Security Praktiken: SAST (SonarQube, Snyk), Threat-Analysen, Security Champion, Zertifikats- und Schlüsselmanagement.
? CI/CD: Jenkins, GitLab CI/CD, Pipeline-Automatisierung, Test-Automatisierung (Cucumber, Selenium, Katalon) und API-Testing.
? Programmiersprachen: Java, Python, Spring Boot, Angular, REST/SOAP, Skripting für Automatisierung.
? Zertifikate-, Key-Management: Certificate & Key Management (X.509), HashiCorp Vault, CyberArk, sicheres Secrets-Management.
Aufbau und Betrieb sicherer CI/CD-Pipelines (Jenkins, GitLab) sowie automatisierter Tests
Automatisierung von Infrastruktur und Security-Konfigurationen mit
Betrieb und Weiterentwicklung von (SSO, MFA, OIDC/SAML, Entra ID, Keycloak)
Zertifikats- und Schlüsselmanagement mit
Migration und Betrieb containerisierter Plattformen (, OpenShift)
Umsetzung von DevSecOps-Praktiken inkl. und Threat-Analyse
Monitoring und Observability mit
Full-Stack-Entwicklung sicherheitskritischer Anwendungen (Java, Spring Boot, Angular)
Langjährige Erfahrung im Design, Betrieb und Troubleshooting containerisierter Anwendungen; sichere Container-Builds, Multi-Stage Builds, Hardening und Integration in CI/CD.
Umfassende Automatisierung komplexer Infrastruktur- und Security-Konfigurationen; Entwicklung wiederverwendbarer Rollen, Playbooks und Environments für produktive Plattformen.
Tiefe Praxis in Enterprise- und Sicherheitsanwendungen (Spring Boot, REST/SOAP); Design robuster IAM-, Integrations- und Backend-Services.
Aufbau skalierbarer CI/CD-Pipelines, Security-Hardening, Shared Libraries, Automatisierung für Build/Test/Deployment in regulierten Umgebungen.
Breite Erfahrung mit Linux (Red Hat, CentOS) im produktiven Betrieb; Troubleshooting, Patch-Management, Security-Hardening, Netzwerk- und Clusterbetrieb.
Ganzheitliche Umsetzung von DevOps-/DevSecOps-Praktiken: Automatisierung, Observability, GitOps, Cloud-Integration und stabile Produktionspipelines.
Betrieb und Optimierung von Clustern (OpenShift, Upstream Kubernetes), Migrationen (Docker Swarm ? K8s), Deployment Patterns, RBAC, Monitoring, Troubleshooting.
Erfahrung in der Gestaltung sicherer, skalierbarer Cloud- und Plattformarchitekturen; Verbindung von fachlichen Anforderungen mit technischer Umsetzung.
Strukturiertes Identifizieren von Risiken, Attack Paths und Schwachstellen in Anwendungen und Plattformen; Security Reviews und Empfehlungen.
Integration von Sicherheit in alle Pipeline-Stufen, IaC-Security, Policies, Secrets-Management und Compliance in regulierten Umgebungen.
Professionelle Umsetzung mit Terraform & Ansible; reproduzierbare Umgebungserstellung, Policies, Modularisierung und automatisierte Deployments.
Erstellung und Pflege von Helm Charts, Parametrisierung, Versioning und Einsatz in GitOps-Workflows für produktive Kubernetes-Deployments.
Aufbau und Betrieb von GitOps-Pipelines; deklarative Kubernetes-Konfigurationen, Sync-Strategien, Rollbacks, Multi-Cluster-Management.
Durchgängige Automatisierung von Deployments via Git als Source of Truth; hohe Reproduzierbarkeit und Stabilität in Multi-Team-Umgebungen.
Grundkenntnisse für Automatisierungs-Tools, Helper-Scripts und Kubernetes-nahe Projekte; Verständnis von Go-basierten Ökosystemen.
Entwicklung und Pflege von Frontends für IAM- und Enterprise-Anwendungen; UI/UX-Anpassung und Integration mit Java-Backends.
Certified Kubernetes Administrator (CKA)
Business Analysis, CBAPSenior Security Devops Engineer
? Devops: Aufbau und Betrieb automatisierter Build-, Test- und Deployment-Pipelines, Infrastrukturautomatisierung, Monitoring und zuverlässiger Plattformbetrieb.
? Identity and Access Management: SSO/MFA, OIDC/SAML, Entra ID, Keycloak, Trellix, Governance und sichere Onboardings für B2B-Kunden.
? Kubernetes, Docker, Ansible, Elm, ArgoCD (gitOps): Migration von Docker Swarm zu Kubernetes, Betrieb von OpenShift-Clustern, Automatisierung mit Ansible, Packaging & Deployment über Helm, GitOps-Workflows mit ArgoCD, Container-Härtung und Orchestrierung.
? Cloud: Azure, Entra ID, Security Groups, Cloud-Integration, Hybrid-Infrastruktur und sichere Architekturprinzipien.
- Architektur: Threat Modelling (STRIDE), Zero-Trust Prinzipien, Governance Reports
? Security Praktiken: SAST (SonarQube, Snyk), Threat-Analysen, Security Champion, Zertifikats- und Schlüsselmanagement.
? CI/CD: Jenkins, GitLab CI/CD, Pipeline-Automatisierung, Test-Automatisierung (Cucumber, Selenium, Katalon) und API-Testing.
? Programmiersprachen: Java, Python, Spring Boot, Angular, REST/SOAP, Skripting für Automatisierung.
? Zertifikate-, Key-Management: Certificate & Key Management (X.509), HashiCorp Vault, CyberArk, sicheres Secrets-Management.
Aufbau und Betrieb sicherer CI/CD-Pipelines (Jenkins, GitLab) sowie automatisierter Tests
Automatisierung von Infrastruktur und Security-Konfigurationen mit
Betrieb und Weiterentwicklung von (SSO, MFA, OIDC/SAML, Entra ID, Keycloak)
Zertifikats- und Schlüsselmanagement mit
Migration und Betrieb containerisierter Plattformen (, OpenShift)
Umsetzung von DevSecOps-Praktiken inkl. und Threat-Analyse
Monitoring und Observability mit
Full-Stack-Entwicklung sicherheitskritischer Anwendungen (Java, Spring Boot, Angular)
Langjährige Erfahrung im Design, Betrieb und Troubleshooting containerisierter Anwendungen; sichere Container-Builds, Multi-Stage Builds, Hardening und Integration in CI/CD.
Umfassende Automatisierung komplexer Infrastruktur- und Security-Konfigurationen; Entwicklung wiederverwendbarer Rollen, Playbooks und Environments für produktive Plattformen.
Tiefe Praxis in Enterprise- und Sicherheitsanwendungen (Spring Boot, REST/SOAP); Design robuster IAM-, Integrations- und Backend-Services.
Aufbau skalierbarer CI/CD-Pipelines, Security-Hardening, Shared Libraries, Automatisierung für Build/Test/Deployment in regulierten Umgebungen.
Breite Erfahrung mit Linux (Red Hat, CentOS) im produktiven Betrieb; Troubleshooting, Patch-Management, Security-Hardening, Netzwerk- und Clusterbetrieb.
Ganzheitliche Umsetzung von DevOps-/DevSecOps-Praktiken: Automatisierung, Observability, GitOps, Cloud-Integration und stabile Produktionspipelines.
Betrieb und Optimierung von Clustern (OpenShift, Upstream Kubernetes), Migrationen (Docker Swarm ? K8s), Deployment Patterns, RBAC, Monitoring, Troubleshooting.
Erfahrung in der Gestaltung sicherer, skalierbarer Cloud- und Plattformarchitekturen; Verbindung von fachlichen Anforderungen mit technischer Umsetzung.
Strukturiertes Identifizieren von Risiken, Attack Paths und Schwachstellen in Anwendungen und Plattformen; Security Reviews und Empfehlungen.
Integration von Sicherheit in alle Pipeline-Stufen, IaC-Security, Policies, Secrets-Management und Compliance in regulierten Umgebungen.
Professionelle Umsetzung mit Terraform & Ansible; reproduzierbare Umgebungserstellung, Policies, Modularisierung und automatisierte Deployments.
Erstellung und Pflege von Helm Charts, Parametrisierung, Versioning und Einsatz in GitOps-Workflows für produktive Kubernetes-Deployments.
Aufbau und Betrieb von GitOps-Pipelines; deklarative Kubernetes-Konfigurationen, Sync-Strategien, Rollbacks, Multi-Cluster-Management.
Durchgängige Automatisierung von Deployments via Git als Source of Truth; hohe Reproduzierbarkeit und Stabilität in Multi-Team-Umgebungen.
Grundkenntnisse für Automatisierungs-Tools, Helper-Scripts und Kubernetes-nahe Projekte; Verständnis von Go-basierten Ökosystemen.
Entwicklung und Pflege von Frontends für IAM- und Enterprise-Anwendungen; UI/UX-Anpassung und Integration mit Java-Backends.
"[...] The consultant possesses well-rounded expertise and the required experience in his area of responsibility. He applies himself to new duties and uses the acquired knowledge with moderate results. In terms of quality and scope, he meets the specifications. We are satisfied with his performance. The prevailing software applications and tools in his field are something the consultant is familiar with and uses sensibly. Thanks to his ability in selling and negotiation, he is capable of persuading customers and closing a sale. Particularly worthwhile mentioning is his very good command of german, french, english, italian, spanish and russian which he uses frequently in a professional capacity. He shows reasonable commitment and initiative. Embracing developments in his professional environment, he keeps himself informed of the latest standards. We regard the consultant as a flexible and resilient employee. In terms of assertiveness, he is able to voice his concerns and to explain his position with valid arguments. Perceptive in evaluating the scope and impact of his actions, he is careful when weighing up the related risks and opportunities. The consultant makes suggestions for improvements and is interested to participate in innovation and reform processes. Capable of identifying arising issues, he is effective at resolving them. He manifests a degree of sensitivity to business and cross-functional aspects. In his outlook and his actions, he adheres to the company's mission and is committed to its implementation and the obtained results. In the event of change, the consultant is prepared to adapt and try new approaches. In the decision-making process he exercises autonomy blended with adequate knowledge. With his prudence, he organizes his duties in line with standard practice. He always meets deadlines and pays close attention to guidelines and regulations. By being careful and diligent, he delivers work of impeccable quality. The consultant exercises his professional role of leadership and issues clear instructions. He is outgoing and intuitive in his interactions with others, which enables him to forge useful relationships. The consultant communicates in a timely manner, paying due attention to the interests of his addressees. While open in his expression of opinions, he accepts the feedback of others. His conduct towards supervisors and colleagues is faultless and considerate. The consultant encourages collaboration within the team and is adept at reconciling competing views. We have come to know the consultant as a responsible employee who is reliable in the performance of his duties. [...] We thank him for his contribution to date and wish him continued success and fulfillment in his role."
— Identity & Access Management (OneID Broker) for B2B customers, since 07/22 ongoing
Reference from Swisscom, teams development leader, dated 26.09.25