Consulting and product engineering for enterprise clients in the DACH market
Kubernetes Platform Migration & Cloud Infrastructure ? kOps, Cilium, AWS, NGINX Gateway API (Medium Article): Designed and executed a full migration from Docker Compose to Kubernetes on AWS (kOps), deploying a multi-service Java/Spring application (Tomcat, MySQL, Memcached, RabbitMQ, Nginx) across a production cluster with Cilium CNI (eBPF-based networking, kube-proxy disabled) and persistent storage for stateful workloads.
Implemented Kubernetes networking progression: ClusterIP services for internal discovery, NGINX Ingress Controller for external traffic routing, then migrated to Gateway API (NGINX Gateway Fabric via Helm OCI) with GatewayClass, Gateway, and HTTP-Route resources ? maintaining zero-downtime DNS switchover via Route 53 and Cloudflare.
Configured cloud security fundamentals: ETCD encryption at rest, IAM-based node authentication (no static credentials), Kubernetes Secrets management, Cloudflare SSL termination with proxied mode and NGINX Gateway Fabric internal mTLS certificate generation.
Managed infrastructure provisioning with kOps (cluster state in S3, multi-AZ deployment, kubelet auth hardening) and Helm for controller lifecycle; built Docker multi-stage images with buildx for platform-specific AMD64 targeting.
Route Optimization SaaS ? React, Node.js, PostgreSQL: Built/deployed multi-tenant platform with real-road routing (OSRM ? Mapbox) and VRP heuristics for a logistics company including multi-trip and capacity constraints. Full-stack delivery with SSO (Kinde) and multi-tenant RLS patterns; infrastructure on DigitalOcean App Platform with GitHub auto-deploy, SSL/CDN, pipelines with automated tests.
LLM-Powered Agentic Coding Platform ? AI Solutions Architecture capstone (FastAPI, Docker, Cloudflare): Designed and deployed a secure AI service implementing a tool-calling loop with workspace-confined file operations, containerized via Docker for isolated multi-tenant workspaces. Exposed RESTful endpoints for workspace lifecycle and execution.
Designed and delivered Brusa?s Internal Developer Platform (IDP) for the Porsche wireless charging program: self-service CI/CD (Azure DevOps), infrastructure provisioning (Terraform + Azure), artifact management (ACR) and observability (Azure Monitor + Grafana) ? unified under a single developer portal. 40+ engineers across 3 countries self-serve without filing tickets.
Reduced firmware build times from 2 hours to 12 minutes through multi-stage Docker caching, parallel cross-compilation (ARM Cortex-M + ARM Linux + Windows targets) and incremental build optimization. Release cadence moved from bi-monthly to twice-weekly with no rollbacks.
Identified and drove the migration from WSL-based Windows build agents to native Linux/ Docker, eliminating an entire class of non-deterministic build failures.
Introduced GitOps practices: infrastructure definitions in Terraform, with environment configurations version-controlled in YAML pipeline-as-code.
Authored the team?s IaC standards using Terraform for Azure infrastructure provisioning; mentored junior DevOps engineers on pipeline design and container best practices and documented the design and usage of the project pipeline interdependencies.
Porsche
1 year 1 month
2023-08 - 2024-08
Development and implementation of CI/CT pipelines
DevOps Engineer
DevOps Engineer
Designed and implemented CI/CT pipelines using Jenkins controllers to orchestrate end-to-end builds, tests and deployments for Linux-based engineering workflows serving 15+ developers.
Built CI pipelines for artifact management with JFrog Artifactory; created Docker images for standardized containerized build/test environments, improving reproducibility to 95%+.
Integrated QEMU ARM emulation into Jenkins pipelines, enabling CI/CT workloads to run cross-architecture on x86 agents for embedded cross-platform validation.
Integrated webhooks across GitHub, SonarQube, and Jenkins for automated quality gates; worked with Docker, AWS and Kubernetes for scalable execution environments and IaC-managed configurations.
AGCO
1 year 3 months
2022-06 - 2023-08
Development and Implementation - Automation Frameworks
DevOps Engineer
DevOps Engineer
Designed and implemented a Python-based automation framework for an embedded Linux GUI application, integrating Squish, CANoe and Jenkins into the CI/CD pipeline; increased automated test coverage by ?50%.
Built a Win32 COM API bridge between Squish and CANoe; simulated communication layer logic with CAPL for subsystem interfacing; automated integration tests.
Wrote production-grade Python: pytest test suites and CI-enforced linting for the automation framework.
Livanova (Essenz Perfusion System)
3 years 6 months
2018-09 - 2022-02
various
System Integration Responsible
System Integration Responsible
Co-founded and scaled the business activity from 3 to 20 engineers; led systems integration, validation planning and cross-functional technical reviews across multiple workstreams using CANoe, Git, Jira, and Python-based tooling.
Performed root cause analysis of software and safety-related failures from validation tests; drove reliability improvements and managed contractor interfaces for test infrastructure delivery.
on request
Aus- und Weiterbildung
Aus- und Weiterbildung
2013 ? 2018 National School of Applied Sciences (ENSA) Degree in Electronics & Embedded Systems Engineering
Profile I help engineering teams ship faster and run leaner on cloud-native infrastructure. With 7+ years in DevOps, cloud, and Kubernetes ? and a growing focus on AI/ML platform engineering ? I work with enterprise clients across the DACH market to architect, build, and operate the platforms their teams depend on. Led the DevOps function for 40+ SW Engineers at Porsche; built CI/CD infrastructure that drastically reduced release cycles. Proficient in AWS cloud-native patterns, infrastructure-as-code, Python, data orchestration, with practical experience in emerging LLM/RAG architectures.
Programmiersprachen
Python
Bash
Node.js
JavaScript
TypeScript
C++
Einsatzorte
Einsatzorte
Deutschland, Schweiz, Österreich
möglich
Projekte
Projekte
10 months
2025-07 - now
Consulting and product development for companies
Independent Cloud & DevOps Consultant
Independent Cloud & DevOps Consultant
Consulting and product engineering for enterprise clients in the DACH market
Kubernetes Platform Migration & Cloud Infrastructure ? kOps, Cilium, AWS, NGINX Gateway API (Medium Article): Designed and executed a full migration from Docker Compose to Kubernetes on AWS (kOps), deploying a multi-service Java/Spring application (Tomcat, MySQL, Memcached, RabbitMQ, Nginx) across a production cluster with Cilium CNI (eBPF-based networking, kube-proxy disabled) and persistent storage for stateful workloads.
Implemented Kubernetes networking progression: ClusterIP services for internal discovery, NGINX Ingress Controller for external traffic routing, then migrated to Gateway API (NGINX Gateway Fabric via Helm OCI) with GatewayClass, Gateway, and HTTP-Route resources ? maintaining zero-downtime DNS switchover via Route 53 and Cloudflare.
Configured cloud security fundamentals: ETCD encryption at rest, IAM-based node authentication (no static credentials), Kubernetes Secrets management, Cloudflare SSL termination with proxied mode and NGINX Gateway Fabric internal mTLS certificate generation.
Managed infrastructure provisioning with kOps (cluster state in S3, multi-AZ deployment, kubelet auth hardening) and Helm for controller lifecycle; built Docker multi-stage images with buildx for platform-specific AMD64 targeting.
Route Optimization SaaS ? React, Node.js, PostgreSQL: Built/deployed multi-tenant platform with real-road routing (OSRM ? Mapbox) and VRP heuristics for a logistics company including multi-trip and capacity constraints. Full-stack delivery with SSO (Kinde) and multi-tenant RLS patterns; infrastructure on DigitalOcean App Platform with GitHub auto-deploy, SSL/CDN, pipelines with automated tests.
LLM-Powered Agentic Coding Platform ? AI Solutions Architecture capstone (FastAPI, Docker, Cloudflare): Designed and deployed a secure AI service implementing a tool-calling loop with workspace-confined file operations, containerized via Docker for isolated multi-tenant workspaces. Exposed RESTful endpoints for workspace lifecycle and execution.
Designed and delivered Brusa?s Internal Developer Platform (IDP) for the Porsche wireless charging program: self-service CI/CD (Azure DevOps), infrastructure provisioning (Terraform + Azure), artifact management (ACR) and observability (Azure Monitor + Grafana) ? unified under a single developer portal. 40+ engineers across 3 countries self-serve without filing tickets.
Reduced firmware build times from 2 hours to 12 minutes through multi-stage Docker caching, parallel cross-compilation (ARM Cortex-M + ARM Linux + Windows targets) and incremental build optimization. Release cadence moved from bi-monthly to twice-weekly with no rollbacks.
Identified and drove the migration from WSL-based Windows build agents to native Linux/ Docker, eliminating an entire class of non-deterministic build failures.
Introduced GitOps practices: infrastructure definitions in Terraform, with environment configurations version-controlled in YAML pipeline-as-code.
Authored the team?s IaC standards using Terraform for Azure infrastructure provisioning; mentored junior DevOps engineers on pipeline design and container best practices and documented the design and usage of the project pipeline interdependencies.
Porsche
1 year 1 month
2023-08 - 2024-08
Development and implementation of CI/CT pipelines
DevOps Engineer
DevOps Engineer
Designed and implemented CI/CT pipelines using Jenkins controllers to orchestrate end-to-end builds, tests and deployments for Linux-based engineering workflows serving 15+ developers.
Built CI pipelines for artifact management with JFrog Artifactory; created Docker images for standardized containerized build/test environments, improving reproducibility to 95%+.
Integrated QEMU ARM emulation into Jenkins pipelines, enabling CI/CT workloads to run cross-architecture on x86 agents for embedded cross-platform validation.
Integrated webhooks across GitHub, SonarQube, and Jenkins for automated quality gates; worked with Docker, AWS and Kubernetes for scalable execution environments and IaC-managed configurations.
AGCO
1 year 3 months
2022-06 - 2023-08
Development and Implementation - Automation Frameworks
DevOps Engineer
DevOps Engineer
Designed and implemented a Python-based automation framework for an embedded Linux GUI application, integrating Squish, CANoe and Jenkins into the CI/CD pipeline; increased automated test coverage by ?50%.
Built a Win32 COM API bridge between Squish and CANoe; simulated communication layer logic with CAPL for subsystem interfacing; automated integration tests.
Wrote production-grade Python: pytest test suites and CI-enforced linting for the automation framework.
Livanova (Essenz Perfusion System)
3 years 6 months
2018-09 - 2022-02
various
System Integration Responsible
System Integration Responsible
Co-founded and scaled the business activity from 3 to 20 engineers; led systems integration, validation planning and cross-functional technical reviews across multiple workstreams using CANoe, Git, Jira, and Python-based tooling.
Performed root cause analysis of software and safety-related failures from validation tests; drove reliability improvements and managed contractor interfaces for test infrastructure delivery.
on request
Aus- und Weiterbildung
Aus- und Weiterbildung
2013 ? 2018 National School of Applied Sciences (ENSA) Degree in Electronics & Embedded Systems Engineering
Profile I help engineering teams ship faster and run leaner on cloud-native infrastructure. With 7+ years in DevOps, cloud, and Kubernetes ? and a growing focus on AI/ML platform engineering ? I work with enterprise clients across the DACH market to architect, build, and operate the platforms their teams depend on. Led the DevOps function for 40+ SW Engineers at Porsche; built CI/CD infrastructure that drastically reduced release cycles. Proficient in AWS cloud-native patterns, infrastructure-as-code, Python, data orchestration, with practical experience in emerging LLM/RAG architectures.
Programmiersprachen
Python
Bash
Node.js
JavaScript
TypeScript
C++
Vertrauen Sie auf Randstad
Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung