I?m a Cloud & DevSecOps Architect with 16+ years of experience designing secure, scalable cloud platforms.
Aktualisiert am 09.01.2026
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 09.01.2026
Verfügbar zu: 100%
davon vor Ort: 10%
DevOps
Cloud Architect
Kubernetes
Azure
Azure Devops
AWS
Google Cloud
GitLab
German
native
English
C2

Einsatzorte

Einsatzorte

Frankfurt am Main (+50km)
Deutschland
möglich

Projekte

Projekte

2 Monate
2026-01 - heute

GitLab Enterprise/ Google Cloud Platform

Senior DevOps and Cloud Architect GitLab Enterprise Bitbucket Jenkins ...
Senior DevOps and Cloud Architect
  • Leading the GitLab Enterprise migration from Bitbucket and Jenkins in a highly regulated insurance environment. Responsible for the target architecture, migration strategy, and standardization of CI/CD workflows across development teams.
  • Designed and implemented the integration of GitLab with OpenShift and Google Cloud, enabling secure, scalable build and deployment pipelines. Established GitOps-based delivery using ArgoCD, including repository structures, environment separation, and controlled promotion workflows.
  • Defined platform standards for Infrastructure as Code and build automation, supporting tools such as Terraform, Helm, container-based build pipelines, and policy-driven deployments. Ensured compliance with internal security, audit, and governance requirements throughout the migration and platform rollout.
GitLab Enterprise Bitbucket Jenkins OpenShift Kubernetes Google Cloud Platform (GCP) ArgoCD Terraform Helm CI/CD GitOps Container Build Pipelines RBAC IAM Compliance & Governance Google Kubernetes Engine
Signal Iduna
2 Jahre 2 Monate
2024-01 - heute

IT Consulting

Managing Partner
Managing Partner
We at Jongerius & Partner are seasoned Cloud and DevOps experts with over 15 years of hands-on experience in the industry. Passionate about driving digital transformation and optimizing operations, we specialize in DevOps methodologies, Azure, AWS, and cutting-edge container technologies like Kubernetes.
  • Founded and currently leading Jongerius & Partner IT Consulting, driving the strategic vision and operational excellence of the company.
  • Overseeing all aspects of the business including client acquisition, project management, and team leadership.
  • Responsible for business development, ensuring sustained growth and establishing strong client relationships.
on request
3 Jahre 4 Monate
2022-11 - heute

Cloud architecture, platform development and DevOps governance

Senior DevOps and Cloud Architect (AWS/ Azure) Azure AWS Kubernetes (Azure AKS) ...
Senior DevOps and Cloud Architect (AWS/ Azure)
  • I am responsible for the architecture, design, and operation of KfW?s cloud and DevOps platforms, with a primary focus on Azure and GitLab in a highly regulated enterprise environment. My role spans cloud architecture, platform engineering, and DevOps governance, supporting multiple product and delivery teams.
  • I lead the strategic migration from Azure DevOps to GitLab, defining target architectures, CI/CD standards, security controls, and operating models while ensuring stability of existing delivery pipelines and developer productivity.
  • A core responsibility is the end-to-end architecture and foundation of the HashiCorp Vault Enterprise platform. I designed and established a highly available Vault cluster on OpenShift, serving a hybrid and multi-cloud environment (on-premises and Azure), including secure integration with GitLab (JWT authentication for CI/CD) and OpenShift (Kubernetes authentication for workloads).
  • AWS is used as a secondary / backup cloud, aligned with the overall cloud architecture and automation standards.
  • In addition, I act as a technical authority and trusted advisor, supporting architectural decisions, resolving complex platform issues, and continuously improving security, automation, and scalability across the cloud landscape.
Azure AWS Kubernetes (Azure AKS) VWAN Hub OpenShift Terraform ARM (Azure Resource Manager) PowerShell Core Event Grid Service Bus Frontdoor Python Bash Azure Functions Azure DevOps Data Factory Databricks CI/CD Build and Release Pipelines Azure CLI Azure Cloud Networking and Storage Azure Firewall and VPN Multi-Region Kubernetes Clusters Azure Stream Analytics GitLab CI/CD Nexus KeyCloak Istio Service Mesh ArgoCD Hashicorp Vault AWS Lambda S3 SQS CloudWatch EventBridge AWS Elastic Kubernetes (EKS) Fargate SNS Cognito EC2 ELB IoT IAM IRSA PKI RDS Kinesis API Gateway CloudFront Route 53
Kreditanstalt für Wiederaufbau (KfW)
3 Monate
2025-10 - 2025-12

Support in reviewing the Azure Landing Zone architecture

Senior DevOps and Cloud Architect (GitHub Enterprise/ Azure) Azure Azure Landing Zones Azure Virtual WAN (vWAN) ...
Senior DevOps and Cloud Architect (GitHub Enterprise/ Azure)
  • Supported DVAG in a focused Azure Landing Zone architecture review and the secure modernization of their Azure platform. Key responsibilities included the migration of core services to Private Endpoints, significantly reducing public exposure and improving the overall security posture.
  • Designed and reviewed a hub-and-spoke network architecture based on Azure Virtual WAN, including routing, Private DNS, and network segmentation. Infrastructure was implemented using Infrastructure as Code with Bicep and automated via GitHub-based CI/CD pipelines.
  • Provided architectural guidance for Azure AKS environments, including private cluster setups, identity and access management, and integration with core Azure platform services.
Azure Azure Landing Zones Azure Virtual WAN (vWAN) Private Endpoints Private DNS Azure AKS Kubernetes Bicep GitHub GitHub Actions Azure Policy RBAC Managed Identities Azure Firewall
Deutsche Vermögensberatung AG (DVAG)
1 Jahr
2025-01 - 2025-12

Cloud architecture, DevOps engineering, and infrastructure automation

Senior DevOps and Cloud Architect (AWS/ Azure DevOps) AWS Cloud Architecture EKS ...
Senior DevOps and Cloud Architect (AWS/ Azure DevOps)
  • I was responsible for the architecture, modernization, and operation of AWS-based cloud platforms for energy-sector workloads. My role covered cloud architecture, DevOps engineering and infrastructure automation, with a strong focus on scalability, resilience, and security.
  • I designed and evolved AWS reference architectures and Kubernetes (EKS) platforms, defining standards for networking, identity, CI/CD integration and runtime security. This included enabling high availability and multi-region architectures and improving overall platform reliability.
  • In addition, I acted as a technical authority for cloud and Kubernetes topics, driving automation, GitOps workflows and secure platform integrations across delivery teams.
AWS Cloud Architecture EKS Fargate Lambda S3 SQS CloudWatch EventBridge ELB API Gateway EC2 CloudFront Route 53 IAM IRSA RDS Kinesis Cognito IoT Terraform Kubernetes (EKS) Istio Service Mesh ArgoCD HashiCorp Vault RBAC Nexus Multi-Region Kubernetes Clusters Python Bash Azure DevOps
RWE AG
3 Jahre 5 Monate
2021-10 - 2025-02

Setup and management of the complete Microsoft 365 environment

Microsoft 365 Lead Solution Architect/ External Team Lead .NET/C# 365 PowerShell ...
Microsoft 365 Lead Solution Architect/ External Team Lead
As a Microsoft 365 Solution Architect, I was responsible for setting up and managing the complete Microsoft 365 environment for the customer. My key contributions included:
  • Designed and implemented the entire Office 365 platform, including Exchange Online, SharePoint Online, and Teams.
  • Configured and managed Azure Active Directory for seamless integration and single sign-on (SSO) capabilities.
  • Established and maintained device management using Intune and AutoPilot, ensuring secure and efficient management of all company devices.
  • Developed and deployed a comprehensive cloud telephony system, enhancing communication and collaboration across the organization.
  • Assisted in the implementation of an intranet platform SaaS solution, facilitating better internal communication and resource sharing.
  • Created and managed various Azure Functions for synchronizing Exchange data with the customer's CRM using Microsoft Graph, improving data consistency and accessibility.
  • Conducted regular security assessments and implemented best practices to ensure compliance and protect company data.
  • Provided training and support to end-users, ensuring smooth adoption and efficient use of the new Microsoft 365 tools.
  • Set up and automated the entire deployment and configuration process using PowerShell scripts and Microsoft Endpoint Manager.
  • Implemented advanced threat protection and compliance solutions, including Microsoft Defender for Office 365 and data loss prevention (DLP) policies.
  • Monitored and optimized the performance of the Microsoft 365 environment, ensuring high availability and reliability.
.NET/C# 365 PowerShell Azure Functions Azure App Services Microsoft Graph Teams Intune Exchange Online SharePoint Online Azure DevOps Entra ID Conditional Access MFA Azure Policy
liquidMoon GmbH
7 Monate
2024-07 - 2025-01

Migration of local infrastructure to the Azure cloud

Lead Azure Cloud Solution Architect Azure Kubernetes (Azure AKS) VWAN Hub ...
Lead Azure Cloud Solution Architect
As the Lead Architect at Hamburg Airport, I am spearheading the migration of their on-premises infrastructure to the Azure Cloud. My responsibilities include designing and implementing a comprehensive cloud and hybrid cloud environment:
  • Leading the migration of Hamburg Airport's on-premises infrastructure to the Azure Cloud.
  • Designing the entire cloud and hybrid cloud environment, encompassing storage solutions, SQL and NoSQL databases, message broker systems and Kubernetes services
  • Implementing comprehensive CI/CD pipelines using Azure DevOps, GitLab and Terraform.
  • Ensuring seamless integration and optimization of cloud resources to enhance operational efficiency and support the airport's digital transformation initiatives.
Azure Kubernetes (Azure AKS) VWAN Hub Terraform PowerShell Core C# Azure Functions Event Grid Event Hub Service Bus Azure DevOps CI/CD Build and Release Pipelines Azure Cloud Networking and Storage Azure Firewall and VPN Multi-Region Kubernetes Clusters GitLab Azure Firewall Istio Service Mesh ArgoCD Hashicorp Vault Azure Policy Frontdoor Cosmos DB Virtual Networks Global Peering API Management Traffic Manager IAM Managed/Workload Identity Azure AI
Hamburg Airport
2 Jahre 1 Monat
2022-11 - 2024-11

Transformation to the public cloud (Azure and AWS)

Senior DevOps and Cloud Architect (AWS/ Azure) Azure AWS Kubernetes (Azure AKS) ...
Senior DevOps and Cloud Architect (AWS/ Azure)

As a contractor of NordCloud (an IBM company), I am working for customers in the financial industry throughout Germany and support them with their transformation into the public cloud (Azure and AWS). I fully cover the areas of technical project management, DevOps engineering and solution/ cloud architecture for both AWS and Azure.

  • Mainly I was supporting KfW (Kreditanstalt für Wiederaufbau) in designing and operating their Azure and Azure DevOps cloud landscape as well as in the gradual migration from Azure DevOps to GitLab. AWS was used as backup cloud.

Azure AWS Kubernetes (Azure AKS) VWAN Hub OpenShift Tekton Terraform ARM (Azure Resource Manager) PowerShell Core Event Grid Service Bus Frontdoor Python Bash Azure Functions Azure DevOps Azure DevOps Server CI/CD Build and Release Pipelines Azure CLI Azure Cloud Networking and Storage Azure Firewall and VPN Multi-Region Kubernetes Clusters Azure Stream Analytics GitLab Nexus KeyCloak Istio Service Mesh ArgoCD Hashicorp Vault AWS Lambda S3 SQS CloudWatch EventBridge AWS Elastic Kubernetes (EKS) Fargate SNS Cognito EC2 ELB IoT IAM IRSA RDS Kinesis API Gateway CloudFront Route 53 Azure AI Prometheus Grafana Azure HSM
NordCloud (IBM)
3 Jahre 4 Monate
2021-02 - 2024-05

Conception and development of IIoT applications

Senior Solution Architect Cloud (Multi Region AWS) and IIoT C# TypeScript Python ...
Senior Solution Architect Cloud (Multi Region AWS) and IIoT
Conceptualization and development of IIoT applications with a cloud-based backend. The resultant applications form an integral part of a SaaS platform, delivering comprehensive analytics for industrial machinery to a broad international clientele. Machine communication is facilitated through an embedded IoT device (Yocto) equipped with an array of sensors installed on customer machinery. This sensor data is processed and transmitted to the cloud backend using AWS GreenGrass and AWS IoT Core. Within this backend, customers can monitor machine status through various dashboards, and configure notifications and alarms for threshold breaches. Machine learning and AI is utilized to calculate various state variables.
  • Designing, implementing, and operating the cloud platform (AWS)
  • Designing software for IoT devices using .NET 6+ and Yocto Linux
  • Creating functions for sensor communication, reading raw data from the machine sensors, and performing further processing
  • Designing the CI/CD platform based on Azure DevOps, GitHub
  • Maintaining the IoT landscape with Docker, Ansible, Terraform and ArgoCD
  • Deploying and managing Kubernetes (EKS) with Terraform
  • Implementing service mesh with Istio
  • Global load balancing with AWS CloudFront and Route53
  • Ensuring observability with Grafana, Grafana Loki, Prometheus, and Jaeger Tracing
  • Architecting MSSQL, MongoDB, TimeStream, and DynamoDB databases
  • Implementing OAuth and SSO with KeyCloak, Cognito, Okta, and Azure AD
  • Optimizing the software development process, including introducing tools to increase software quality (Azure DevOps, SonarQube, Snyk, DevOps CI/CD/CT processes) and compliance
  • Technical project management
C# TypeScript Python .NET Framework .NET 6 and above ASP.NET Azure DevOps GitHub ArgoCD GitHub Actions Terraform SAST DAST SCA PKI Ubuntu / Yocto Linux Amazon Web Services SonarQube Network Management (VPN Gateway Transit Gateway VPC) Serverless / Lambda Docker Kubernetes Elastic Kubernetes Service (EKS) Azure Kubernetes (AKS) AWS IoT AWS IoT GreenGrass EC2 ELB SQS EventBridge S3 AppSync CloudFront Route 53 API Gateway Cognito DynamoDB Istio Kinesis IAM IRSA KeyCloak TimeStream InfluxDB Prometheus Grafana Loki Jaeger AWS RDS (MySQL) Snyk Machine Learning AI MongoDB Bedrock (AI) Weaviate Vector Database Copilot Unstructured
Schenck Process Germany GmbH
1 Jahr 5 Monate
2022-08 - 2023-12

Migration of existing on-premises workloads

Senior DevOps and Cloud/Solution Architect .NET/C# PowerShell Core Azure Functions ...
Senior DevOps and Cloud/Solution Architect
  • I have advised the customer on migrating existing on-premises workloads to the cloud. 
  • As a Cloud/ Solution Architect, I managed the entire planning of the Azure solution, particularly Azure Kubernetes Services and related services, as well as hybrid cloud integration and connection to on-premises systems via VPN and ExpressRoute (including SAP and local databases). 
  • I provisioned the entire Azure environment using Terraform and set up the associated release pipelines using Azure DevOps.
.NET/C# PowerShell Core Azure Functions Azure App Services Azure Graph API Azure DevOps Kubernetes (Azure AKS) ARM (Azure Resource Manager) Azure CLI Azure Cloud Networking and Storage MongoDB RabbitMQ highly available and multi-regional Kubernetes clusters Open Telemetry Application Insights Blue-green deployments Canary deployments feature toggles Azure CosmosDB Istio Prometheus Grafana
Teckentrup GmbH & Co. KG

Aus- und Weiterbildung

Aus- und Weiterbildung

2012 ? 2015
Computer Science
Conservatoire national des arts et métiers, HDA Darmstadt, University Of Applied Sciences

2010 - 2013
Apprenticeship as IT specialist for system integration
Technische Universität Darmstadt

Certification
  • Azure DevOps Engineer Expert
  • Certified Azure Developer
  • SBB Scholarship (Graduation)
  • Windows Presentation Foundation (WPF)
  • ITIL Foundation
  • SharePoint 2013 Applications ? Server Solutions
  • TOEIC B2 - Test of English for International Communication
  • Cisco Nexus Expert
  • Gas extinguishing systems - Vertrauen durch Sicherheit
  • CAST Award for IT-Security
  • Best degree in the apprenticeship as an IT expert
  • Special achievements award for trainees
  • Industrial Safety

Kompetenzen

Kompetenzen

Top-Skills

DevOps Cloud Architect Kubernetes Azure Azure Devops AWS Google Cloud GitLab

Produkte / Standards / Erfahrungen / Methoden

Profile
  • I?m a Cloud & DevSecOps Architect with 16+ years of experience designing secure, scalable cloud platforms for clients in energy, finance, insurance, mechanical engineering, and aviation. As Managing Partner at Jongerius & Partner IT Consulting, I combine hands-on delivery with technical leadership and strategic consulting.
  • One of my key contributions is the development of KubeStack, a production-ready Kubernetes delivery and operations framework enabling scalable, secure, and observable platforms across enterprise environments.
  • I specialize in platform engineering, security automation, and multi-cloud DevSecOps, with a strong track record in leading critical transformations ? including the Azure DevOps ? GitLab migration at KfW and the design of a microservice-based global IIoT platform on AWS EKS at Schenck Process. Clients value my ability to connect deep technical execution with business outcomes, long-term stability, and scalable architecture
  • In recent years, my focus has expanded to AI-enabled cloud platforms, including the secure integration of AI-assisted developer workflows into regulated enterprise environments. This includes designing cloud-native architectures for AI workloads, integrating services such as AWS Bedrock and Azure AI, and establishing governance, security, and cost controls for AI at scale
  • Clients value my ability to connect deep technical execution with business outcomes, long-term stability, and scalable architecture.


DevSecOps
  • Azure DevOps and Azure DevOps Server 
  • GitHub 
  • GitLab 
  • Jenkins 
  • Terraform (TF)
  • ArgoCD/ Flux 
  • Azure Resource Manager (ARM) 
  • Azure Biceps 
  • CloudFormation, Ansible 
  • Cloud Development Kit (CDK) 
  • SAST, SCA, DAST
  • SonarQube, SonarCloud, Snyk, Mend
  • OAuth2, OpenID Connect, SAML, KeyCloak
  • Hashicorp Vault
  • SonaType Nexus, JFrog Artifactory
  • Message Brokers (Kafka, RabbitMQ)

Cloud
  • Microsoft 365 
    • Microsoft 365, Azure AD, Azure AD Hybrid Exchange Online, SharePoint Online Teams, Yammer, MDM, Intune, AutoPilot Power Apps, Microsoft Graph API
  • Microsoft Azure
    • Microsoft Azure, Azure Web App, Azure DNS, Data Factory Azure Functions, Azure Storage, IAM, Workload Identity, Azure Networking and VPN, API Management, Azure AI Azure Firewall, Azure Kubernetes (AKS), Stream Analytics, CosmosDB, Azure SQL, Azure Table, Azure IoT, Container Registry, Key Vault, Container Apps, Azure FrontDoor, Azure Traffic Manager, VWAN Hub, Azure Policy, Event Grid, Event Hub, Service Bus
  • Amazon AWS
    • ?Lambda, S3, SQS, CloudWatch, EventBridge, AWS Elastic Kubernetes (EKS), Fargate, SNS, Cognito, EC2, ELB, IoT, IAM, IRSA, DynamoDB, TimeStream, RDS, Kinesis, Bedrock API Gateway, CloudFront, AppSync, Transit Gateway, Route 53
  • Google Cloud Platform 2 Yrs 
    • Google Kubernetes Engine, Compute Engine, Cloud Run, VPC, IAM, Workload Identity, Cloud Load Balancing, Cloud VPN, Secret Manager, Artifact Registry, Pub/Sub, API Gateway


Software
  • .NET C#, VB.NET, ASP.NET
  • WinForms, WPF, UWP, MAUI
  • SOAP, REST, GRAPHQL
  • HTML5, CSS3, XML, JSON, YAML, JS, TS
  • DevExpress. DevExtreme, Telerik
  • Razor, Blazor 
  • Perl, Bash, PowerShell, PowerShell Core, LUA 
  • Python, Go
  • C/C++

Containers/ Orchestration
  • Kubernetes 
  • Helm 
  • Docker 
  • Istio, Traefik, Linkerd 
  • Jaeger, Open Telemetry 
  • Open Service Mesh (OSM)
  • Azure Kubernetes (AKS) 
  • AWS Kubernetes (EKS) 
  • Google Kubernetes (GKE) 
  • Open Shift
  • Prometheus, Grafana, Loki, ElasticSearch
  • Tekton 
  • Kyverno

Networking formerly worked as a Cisco Network Engineer
  • TCP/IP, Ethernet, ATM/DSL, Frame-Relay 
  • Quality of Service (QoS), Policy-based Routing 
  • High-Availability/ Load-Balancing
  • Firewall 
  • Tunneling/ VPN, VRF, ALG 
  • Security/ AAA (TACACS+/ RADIUS/ LDAP) 
  • Infrastructure (DNS, DHCP) 
  • Provider Technologies (MPLS, BGP, AnyCast) 
  • Routing (OSPF, IS-IS, RIP, IBGP, EBGP, EIGRP) 
  • Industry busses (OPC, OPCUA, Modbus)
  • Voice and Wireless
  • Cellular 
  • Storage Networks

Miscellaneous
  • Jira, Confluence 
  • Agile Delivery 
  • ITSM, Change / Release Management


AI / Machine Learning

  • AWS Bedrock, Azure AI, Google Gemini, Copilot 
  • MLOps, GenAI 
  • Prompt Engineering 
  • AI Security & Governance


At a glance (Last 5 years)
  • Cloud and Solution Architect/ Engineer
    • Cloud Platforms: Azure, AWS, Hybrid & Multi-Cloud Solutions
    • Workload Architecture: Serverless, Containerized, Microservices, Event-Driven Architectures
    • Networking & Security: Global Load Balancing, VPN, PKI, Firewalls, Zero Trust, IAM, OAuth2, Keycloak
    • Storage & Databases: SQL (PostgreSQL, MySQL, MSSQL), NoSQL (CosmosDB, DynamoDB, MongoDB), Oracle EE, Object Storage (AWS S3/ Azure Blob Storage), Weaviate Vector Database, Unstructured
    • AI, IIoT & IoT: Edge Computing, Industrial IoT, MQTT, Azure IoT Hub, AWS IoT Core, Azure AI, AWS Bedrock
    • Security & Compliance: Risk Management, CIS/NIST/ISO 27001, Governance, Policy Enforcement
  • DevSecOps Engineer
    • CI/CD & Automation: Azure DevOps, GitLab Enterprise, GitHub Actions, Jenkins, GitOps (ArgoCD, FluxCD), Blue-Green/Canary Deployments
    • IaC & Policy-as-Code: Terraform, Bicep, CloudFormation, CDK, Helm, Kustomize, OPA, Sentinel, Checkov
    • Security & Compliance: SAST (SonarQube, CodeQL), DAST (OWASP ZAP, Burp Suite), SCA (Trivy, Snyk), CIS/NIST benchmarks, Zero Trust, IAM & RBAC, Quality Gates
    • Secrets Management: HashiCorp Vault Enterprise, Azure Key Vault, AWS Secrets Manager
    • Observability & Logging: Prometheus, Grafana, Loki, OpenTelemetry, Jaeger, Azure Sentinel, Splunk, ELK
  • Container/ Orchestration
    • Containerization: Docker, Podman, Buildah, container security best practices
    • Orchestration: Azure Kubernetes Service (AKS), Amazon Elastic Kubernetes Service (EKS), OpenShift, Rancher, Kubernetes bare-metal deployments
    • Service Mesh: Istio, Open Service Mesh (OSM), Linkerd, Consul Connect
    • Workload Management: ArgoCD, Kubernetes Operators, CRDs, Helm Charts, Kustomize
    • Scalability & Resilience: HPA, VPA, Cluster Autoscaler, KEDA, multi-cluster federation
    • Networking: CNI plugins (Calico, Cilium, Flannel), Service Discovery, Ingress/Egress, Envoy Proxy, Nginx, API Gateway integration
    • Security: Pod Security Policies (PSP), Open Policy Agent (OPA), Kyverno, Pod / Workload Identity (Azure Managed Identities, IAM roles for Service Accounts)

Datenbanken

MSSQL
Oracle
PostgreSQL
MongoDB
Redis
CosmosDB
DynamoDB
TimeStream
DB2
MySQL
SQLite
InfluxDB
Weaviate Vector Database (AI)
TimescaleDB





Branchen

Branchen

  • mechanical engineering
  • finance
  • insurance
  • law
  • automotive industry
  • energy
  • aviation

Einsatzorte

Einsatzorte

Frankfurt am Main (+50km)
Deutschland
möglich

Projekte

Projekte

2 Monate
2026-01 - heute

GitLab Enterprise/ Google Cloud Platform

Senior DevOps and Cloud Architect GitLab Enterprise Bitbucket Jenkins ...
Senior DevOps and Cloud Architect
  • Leading the GitLab Enterprise migration from Bitbucket and Jenkins in a highly regulated insurance environment. Responsible for the target architecture, migration strategy, and standardization of CI/CD workflows across development teams.
  • Designed and implemented the integration of GitLab with OpenShift and Google Cloud, enabling secure, scalable build and deployment pipelines. Established GitOps-based delivery using ArgoCD, including repository structures, environment separation, and controlled promotion workflows.
  • Defined platform standards for Infrastructure as Code and build automation, supporting tools such as Terraform, Helm, container-based build pipelines, and policy-driven deployments. Ensured compliance with internal security, audit, and governance requirements throughout the migration and platform rollout.
GitLab Enterprise Bitbucket Jenkins OpenShift Kubernetes Google Cloud Platform (GCP) ArgoCD Terraform Helm CI/CD GitOps Container Build Pipelines RBAC IAM Compliance & Governance Google Kubernetes Engine
Signal Iduna
2 Jahre 2 Monate
2024-01 - heute

IT Consulting

Managing Partner
Managing Partner
We at Jongerius & Partner are seasoned Cloud and DevOps experts with over 15 years of hands-on experience in the industry. Passionate about driving digital transformation and optimizing operations, we specialize in DevOps methodologies, Azure, AWS, and cutting-edge container technologies like Kubernetes.
  • Founded and currently leading Jongerius & Partner IT Consulting, driving the strategic vision and operational excellence of the company.
  • Overseeing all aspects of the business including client acquisition, project management, and team leadership.
  • Responsible for business development, ensuring sustained growth and establishing strong client relationships.
on request
3 Jahre 4 Monate
2022-11 - heute

Cloud architecture, platform development and DevOps governance

Senior DevOps and Cloud Architect (AWS/ Azure) Azure AWS Kubernetes (Azure AKS) ...
Senior DevOps and Cloud Architect (AWS/ Azure)
  • I am responsible for the architecture, design, and operation of KfW?s cloud and DevOps platforms, with a primary focus on Azure and GitLab in a highly regulated enterprise environment. My role spans cloud architecture, platform engineering, and DevOps governance, supporting multiple product and delivery teams.
  • I lead the strategic migration from Azure DevOps to GitLab, defining target architectures, CI/CD standards, security controls, and operating models while ensuring stability of existing delivery pipelines and developer productivity.
  • A core responsibility is the end-to-end architecture and foundation of the HashiCorp Vault Enterprise platform. I designed and established a highly available Vault cluster on OpenShift, serving a hybrid and multi-cloud environment (on-premises and Azure), including secure integration with GitLab (JWT authentication for CI/CD) and OpenShift (Kubernetes authentication for workloads).
  • AWS is used as a secondary / backup cloud, aligned with the overall cloud architecture and automation standards.
  • In addition, I act as a technical authority and trusted advisor, supporting architectural decisions, resolving complex platform issues, and continuously improving security, automation, and scalability across the cloud landscape.
Azure AWS Kubernetes (Azure AKS) VWAN Hub OpenShift Terraform ARM (Azure Resource Manager) PowerShell Core Event Grid Service Bus Frontdoor Python Bash Azure Functions Azure DevOps Data Factory Databricks CI/CD Build and Release Pipelines Azure CLI Azure Cloud Networking and Storage Azure Firewall and VPN Multi-Region Kubernetes Clusters Azure Stream Analytics GitLab CI/CD Nexus KeyCloak Istio Service Mesh ArgoCD Hashicorp Vault AWS Lambda S3 SQS CloudWatch EventBridge AWS Elastic Kubernetes (EKS) Fargate SNS Cognito EC2 ELB IoT IAM IRSA PKI RDS Kinesis API Gateway CloudFront Route 53
Kreditanstalt für Wiederaufbau (KfW)
3 Monate
2025-10 - 2025-12

Support in reviewing the Azure Landing Zone architecture

Senior DevOps and Cloud Architect (GitHub Enterprise/ Azure) Azure Azure Landing Zones Azure Virtual WAN (vWAN) ...
Senior DevOps and Cloud Architect (GitHub Enterprise/ Azure)
  • Supported DVAG in a focused Azure Landing Zone architecture review and the secure modernization of their Azure platform. Key responsibilities included the migration of core services to Private Endpoints, significantly reducing public exposure and improving the overall security posture.
  • Designed and reviewed a hub-and-spoke network architecture based on Azure Virtual WAN, including routing, Private DNS, and network segmentation. Infrastructure was implemented using Infrastructure as Code with Bicep and automated via GitHub-based CI/CD pipelines.
  • Provided architectural guidance for Azure AKS environments, including private cluster setups, identity and access management, and integration with core Azure platform services.
Azure Azure Landing Zones Azure Virtual WAN (vWAN) Private Endpoints Private DNS Azure AKS Kubernetes Bicep GitHub GitHub Actions Azure Policy RBAC Managed Identities Azure Firewall
Deutsche Vermögensberatung AG (DVAG)
1 Jahr
2025-01 - 2025-12

Cloud architecture, DevOps engineering, and infrastructure automation

Senior DevOps and Cloud Architect (AWS/ Azure DevOps) AWS Cloud Architecture EKS ...
Senior DevOps and Cloud Architect (AWS/ Azure DevOps)
  • I was responsible for the architecture, modernization, and operation of AWS-based cloud platforms for energy-sector workloads. My role covered cloud architecture, DevOps engineering and infrastructure automation, with a strong focus on scalability, resilience, and security.
  • I designed and evolved AWS reference architectures and Kubernetes (EKS) platforms, defining standards for networking, identity, CI/CD integration and runtime security. This included enabling high availability and multi-region architectures and improving overall platform reliability.
  • In addition, I acted as a technical authority for cloud and Kubernetes topics, driving automation, GitOps workflows and secure platform integrations across delivery teams.
AWS Cloud Architecture EKS Fargate Lambda S3 SQS CloudWatch EventBridge ELB API Gateway EC2 CloudFront Route 53 IAM IRSA RDS Kinesis Cognito IoT Terraform Kubernetes (EKS) Istio Service Mesh ArgoCD HashiCorp Vault RBAC Nexus Multi-Region Kubernetes Clusters Python Bash Azure DevOps
RWE AG
3 Jahre 5 Monate
2021-10 - 2025-02

Setup and management of the complete Microsoft 365 environment

Microsoft 365 Lead Solution Architect/ External Team Lead .NET/C# 365 PowerShell ...
Microsoft 365 Lead Solution Architect/ External Team Lead
As a Microsoft 365 Solution Architect, I was responsible for setting up and managing the complete Microsoft 365 environment for the customer. My key contributions included:
  • Designed and implemented the entire Office 365 platform, including Exchange Online, SharePoint Online, and Teams.
  • Configured and managed Azure Active Directory for seamless integration and single sign-on (SSO) capabilities.
  • Established and maintained device management using Intune and AutoPilot, ensuring secure and efficient management of all company devices.
  • Developed and deployed a comprehensive cloud telephony system, enhancing communication and collaboration across the organization.
  • Assisted in the implementation of an intranet platform SaaS solution, facilitating better internal communication and resource sharing.
  • Created and managed various Azure Functions for synchronizing Exchange data with the customer's CRM using Microsoft Graph, improving data consistency and accessibility.
  • Conducted regular security assessments and implemented best practices to ensure compliance and protect company data.
  • Provided training and support to end-users, ensuring smooth adoption and efficient use of the new Microsoft 365 tools.
  • Set up and automated the entire deployment and configuration process using PowerShell scripts and Microsoft Endpoint Manager.
  • Implemented advanced threat protection and compliance solutions, including Microsoft Defender for Office 365 and data loss prevention (DLP) policies.
  • Monitored and optimized the performance of the Microsoft 365 environment, ensuring high availability and reliability.
.NET/C# 365 PowerShell Azure Functions Azure App Services Microsoft Graph Teams Intune Exchange Online SharePoint Online Azure DevOps Entra ID Conditional Access MFA Azure Policy
liquidMoon GmbH
7 Monate
2024-07 - 2025-01

Migration of local infrastructure to the Azure cloud

Lead Azure Cloud Solution Architect Azure Kubernetes (Azure AKS) VWAN Hub ...
Lead Azure Cloud Solution Architect
As the Lead Architect at Hamburg Airport, I am spearheading the migration of their on-premises infrastructure to the Azure Cloud. My responsibilities include designing and implementing a comprehensive cloud and hybrid cloud environment:
  • Leading the migration of Hamburg Airport's on-premises infrastructure to the Azure Cloud.
  • Designing the entire cloud and hybrid cloud environment, encompassing storage solutions, SQL and NoSQL databases, message broker systems and Kubernetes services
  • Implementing comprehensive CI/CD pipelines using Azure DevOps, GitLab and Terraform.
  • Ensuring seamless integration and optimization of cloud resources to enhance operational efficiency and support the airport's digital transformation initiatives.
Azure Kubernetes (Azure AKS) VWAN Hub Terraform PowerShell Core C# Azure Functions Event Grid Event Hub Service Bus Azure DevOps CI/CD Build and Release Pipelines Azure Cloud Networking and Storage Azure Firewall and VPN Multi-Region Kubernetes Clusters GitLab Azure Firewall Istio Service Mesh ArgoCD Hashicorp Vault Azure Policy Frontdoor Cosmos DB Virtual Networks Global Peering API Management Traffic Manager IAM Managed/Workload Identity Azure AI
Hamburg Airport
2 Jahre 1 Monat
2022-11 - 2024-11

Transformation to the public cloud (Azure and AWS)

Senior DevOps and Cloud Architect (AWS/ Azure) Azure AWS Kubernetes (Azure AKS) ...
Senior DevOps and Cloud Architect (AWS/ Azure)

As a contractor of NordCloud (an IBM company), I am working for customers in the financial industry throughout Germany and support them with their transformation into the public cloud (Azure and AWS). I fully cover the areas of technical project management, DevOps engineering and solution/ cloud architecture for both AWS and Azure.

  • Mainly I was supporting KfW (Kreditanstalt für Wiederaufbau) in designing and operating their Azure and Azure DevOps cloud landscape as well as in the gradual migration from Azure DevOps to GitLab. AWS was used as backup cloud.

Azure AWS Kubernetes (Azure AKS) VWAN Hub OpenShift Tekton Terraform ARM (Azure Resource Manager) PowerShell Core Event Grid Service Bus Frontdoor Python Bash Azure Functions Azure DevOps Azure DevOps Server CI/CD Build and Release Pipelines Azure CLI Azure Cloud Networking and Storage Azure Firewall and VPN Multi-Region Kubernetes Clusters Azure Stream Analytics GitLab Nexus KeyCloak Istio Service Mesh ArgoCD Hashicorp Vault AWS Lambda S3 SQS CloudWatch EventBridge AWS Elastic Kubernetes (EKS) Fargate SNS Cognito EC2 ELB IoT IAM IRSA RDS Kinesis API Gateway CloudFront Route 53 Azure AI Prometheus Grafana Azure HSM
NordCloud (IBM)
3 Jahre 4 Monate
2021-02 - 2024-05

Conception and development of IIoT applications

Senior Solution Architect Cloud (Multi Region AWS) and IIoT C# TypeScript Python ...
Senior Solution Architect Cloud (Multi Region AWS) and IIoT
Conceptualization and development of IIoT applications with a cloud-based backend. The resultant applications form an integral part of a SaaS platform, delivering comprehensive analytics for industrial machinery to a broad international clientele. Machine communication is facilitated through an embedded IoT device (Yocto) equipped with an array of sensors installed on customer machinery. This sensor data is processed and transmitted to the cloud backend using AWS GreenGrass and AWS IoT Core. Within this backend, customers can monitor machine status through various dashboards, and configure notifications and alarms for threshold breaches. Machine learning and AI is utilized to calculate various state variables.
  • Designing, implementing, and operating the cloud platform (AWS)
  • Designing software for IoT devices using .NET 6+ and Yocto Linux
  • Creating functions for sensor communication, reading raw data from the machine sensors, and performing further processing
  • Designing the CI/CD platform based on Azure DevOps, GitHub
  • Maintaining the IoT landscape with Docker, Ansible, Terraform and ArgoCD
  • Deploying and managing Kubernetes (EKS) with Terraform
  • Implementing service mesh with Istio
  • Global load balancing with AWS CloudFront and Route53
  • Ensuring observability with Grafana, Grafana Loki, Prometheus, and Jaeger Tracing
  • Architecting MSSQL, MongoDB, TimeStream, and DynamoDB databases
  • Implementing OAuth and SSO with KeyCloak, Cognito, Okta, and Azure AD
  • Optimizing the software development process, including introducing tools to increase software quality (Azure DevOps, SonarQube, Snyk, DevOps CI/CD/CT processes) and compliance
  • Technical project management
C# TypeScript Python .NET Framework .NET 6 and above ASP.NET Azure DevOps GitHub ArgoCD GitHub Actions Terraform SAST DAST SCA PKI Ubuntu / Yocto Linux Amazon Web Services SonarQube Network Management (VPN Gateway Transit Gateway VPC) Serverless / Lambda Docker Kubernetes Elastic Kubernetes Service (EKS) Azure Kubernetes (AKS) AWS IoT AWS IoT GreenGrass EC2 ELB SQS EventBridge S3 AppSync CloudFront Route 53 API Gateway Cognito DynamoDB Istio Kinesis IAM IRSA KeyCloak TimeStream InfluxDB Prometheus Grafana Loki Jaeger AWS RDS (MySQL) Snyk Machine Learning AI MongoDB Bedrock (AI) Weaviate Vector Database Copilot Unstructured
Schenck Process Germany GmbH
1 Jahr 5 Monate
2022-08 - 2023-12

Migration of existing on-premises workloads

Senior DevOps and Cloud/Solution Architect .NET/C# PowerShell Core Azure Functions ...
Senior DevOps and Cloud/Solution Architect
  • I have advised the customer on migrating existing on-premises workloads to the cloud. 
  • As a Cloud/ Solution Architect, I managed the entire planning of the Azure solution, particularly Azure Kubernetes Services and related services, as well as hybrid cloud integration and connection to on-premises systems via VPN and ExpressRoute (including SAP and local databases). 
  • I provisioned the entire Azure environment using Terraform and set up the associated release pipelines using Azure DevOps.
.NET/C# PowerShell Core Azure Functions Azure App Services Azure Graph API Azure DevOps Kubernetes (Azure AKS) ARM (Azure Resource Manager) Azure CLI Azure Cloud Networking and Storage MongoDB RabbitMQ highly available and multi-regional Kubernetes clusters Open Telemetry Application Insights Blue-green deployments Canary deployments feature toggles Azure CosmosDB Istio Prometheus Grafana
Teckentrup GmbH & Co. KG

Aus- und Weiterbildung

Aus- und Weiterbildung

2012 ? 2015
Computer Science
Conservatoire national des arts et métiers, HDA Darmstadt, University Of Applied Sciences

2010 - 2013
Apprenticeship as IT specialist for system integration
Technische Universität Darmstadt

Certification
  • Azure DevOps Engineer Expert
  • Certified Azure Developer
  • SBB Scholarship (Graduation)
  • Windows Presentation Foundation (WPF)
  • ITIL Foundation
  • SharePoint 2013 Applications ? Server Solutions
  • TOEIC B2 - Test of English for International Communication
  • Cisco Nexus Expert
  • Gas extinguishing systems - Vertrauen durch Sicherheit
  • CAST Award for IT-Security
  • Best degree in the apprenticeship as an IT expert
  • Special achievements award for trainees
  • Industrial Safety

Kompetenzen

Kompetenzen

Top-Skills

DevOps Cloud Architect Kubernetes Azure Azure Devops AWS Google Cloud GitLab

Produkte / Standards / Erfahrungen / Methoden

Profile
  • I?m a Cloud & DevSecOps Architect with 16+ years of experience designing secure, scalable cloud platforms for clients in energy, finance, insurance, mechanical engineering, and aviation. As Managing Partner at Jongerius & Partner IT Consulting, I combine hands-on delivery with technical leadership and strategic consulting.
  • One of my key contributions is the development of KubeStack, a production-ready Kubernetes delivery and operations framework enabling scalable, secure, and observable platforms across enterprise environments.
  • I specialize in platform engineering, security automation, and multi-cloud DevSecOps, with a strong track record in leading critical transformations ? including the Azure DevOps ? GitLab migration at KfW and the design of a microservice-based global IIoT platform on AWS EKS at Schenck Process. Clients value my ability to connect deep technical execution with business outcomes, long-term stability, and scalable architecture
  • In recent years, my focus has expanded to AI-enabled cloud platforms, including the secure integration of AI-assisted developer workflows into regulated enterprise environments. This includes designing cloud-native architectures for AI workloads, integrating services such as AWS Bedrock and Azure AI, and establishing governance, security, and cost controls for AI at scale
  • Clients value my ability to connect deep technical execution with business outcomes, long-term stability, and scalable architecture.


DevSecOps
  • Azure DevOps and Azure DevOps Server 
  • GitHub 
  • GitLab 
  • Jenkins 
  • Terraform (TF)
  • ArgoCD/ Flux 
  • Azure Resource Manager (ARM) 
  • Azure Biceps 
  • CloudFormation, Ansible 
  • Cloud Development Kit (CDK) 
  • SAST, SCA, DAST
  • SonarQube, SonarCloud, Snyk, Mend
  • OAuth2, OpenID Connect, SAML, KeyCloak
  • Hashicorp Vault
  • SonaType Nexus, JFrog Artifactory
  • Message Brokers (Kafka, RabbitMQ)

Cloud
  • Microsoft 365 
    • Microsoft 365, Azure AD, Azure AD Hybrid Exchange Online, SharePoint Online Teams, Yammer, MDM, Intune, AutoPilot Power Apps, Microsoft Graph API
  • Microsoft Azure
    • Microsoft Azure, Azure Web App, Azure DNS, Data Factory Azure Functions, Azure Storage, IAM, Workload Identity, Azure Networking and VPN, API Management, Azure AI Azure Firewall, Azure Kubernetes (AKS), Stream Analytics, CosmosDB, Azure SQL, Azure Table, Azure IoT, Container Registry, Key Vault, Container Apps, Azure FrontDoor, Azure Traffic Manager, VWAN Hub, Azure Policy, Event Grid, Event Hub, Service Bus
  • Amazon AWS
    • ?Lambda, S3, SQS, CloudWatch, EventBridge, AWS Elastic Kubernetes (EKS), Fargate, SNS, Cognito, EC2, ELB, IoT, IAM, IRSA, DynamoDB, TimeStream, RDS, Kinesis, Bedrock API Gateway, CloudFront, AppSync, Transit Gateway, Route 53
  • Google Cloud Platform 2 Yrs 
    • Google Kubernetes Engine, Compute Engine, Cloud Run, VPC, IAM, Workload Identity, Cloud Load Balancing, Cloud VPN, Secret Manager, Artifact Registry, Pub/Sub, API Gateway


Software
  • .NET C#, VB.NET, ASP.NET
  • WinForms, WPF, UWP, MAUI
  • SOAP, REST, GRAPHQL
  • HTML5, CSS3, XML, JSON, YAML, JS, TS
  • DevExpress. DevExtreme, Telerik
  • Razor, Blazor 
  • Perl, Bash, PowerShell, PowerShell Core, LUA 
  • Python, Go
  • C/C++

Containers/ Orchestration
  • Kubernetes 
  • Helm 
  • Docker 
  • Istio, Traefik, Linkerd 
  • Jaeger, Open Telemetry 
  • Open Service Mesh (OSM)
  • Azure Kubernetes (AKS) 
  • AWS Kubernetes (EKS) 
  • Google Kubernetes (GKE) 
  • Open Shift
  • Prometheus, Grafana, Loki, ElasticSearch
  • Tekton 
  • Kyverno

Networking formerly worked as a Cisco Network Engineer
  • TCP/IP, Ethernet, ATM/DSL, Frame-Relay 
  • Quality of Service (QoS), Policy-based Routing 
  • High-Availability/ Load-Balancing
  • Firewall 
  • Tunneling/ VPN, VRF, ALG 
  • Security/ AAA (TACACS+/ RADIUS/ LDAP) 
  • Infrastructure (DNS, DHCP) 
  • Provider Technologies (MPLS, BGP, AnyCast) 
  • Routing (OSPF, IS-IS, RIP, IBGP, EBGP, EIGRP) 
  • Industry busses (OPC, OPCUA, Modbus)
  • Voice and Wireless
  • Cellular 
  • Storage Networks

Miscellaneous
  • Jira, Confluence 
  • Agile Delivery 
  • ITSM, Change / Release Management


AI / Machine Learning

  • AWS Bedrock, Azure AI, Google Gemini, Copilot 
  • MLOps, GenAI 
  • Prompt Engineering 
  • AI Security & Governance


At a glance (Last 5 years)
  • Cloud and Solution Architect/ Engineer
    • Cloud Platforms: Azure, AWS, Hybrid & Multi-Cloud Solutions
    • Workload Architecture: Serverless, Containerized, Microservices, Event-Driven Architectures
    • Networking & Security: Global Load Balancing, VPN, PKI, Firewalls, Zero Trust, IAM, OAuth2, Keycloak
    • Storage & Databases: SQL (PostgreSQL, MySQL, MSSQL), NoSQL (CosmosDB, DynamoDB, MongoDB), Oracle EE, Object Storage (AWS S3/ Azure Blob Storage), Weaviate Vector Database, Unstructured
    • AI, IIoT & IoT: Edge Computing, Industrial IoT, MQTT, Azure IoT Hub, AWS IoT Core, Azure AI, AWS Bedrock
    • Security & Compliance: Risk Management, CIS/NIST/ISO 27001, Governance, Policy Enforcement
  • DevSecOps Engineer
    • CI/CD & Automation: Azure DevOps, GitLab Enterprise, GitHub Actions, Jenkins, GitOps (ArgoCD, FluxCD), Blue-Green/Canary Deployments
    • IaC & Policy-as-Code: Terraform, Bicep, CloudFormation, CDK, Helm, Kustomize, OPA, Sentinel, Checkov
    • Security & Compliance: SAST (SonarQube, CodeQL), DAST (OWASP ZAP, Burp Suite), SCA (Trivy, Snyk), CIS/NIST benchmarks, Zero Trust, IAM & RBAC, Quality Gates
    • Secrets Management: HashiCorp Vault Enterprise, Azure Key Vault, AWS Secrets Manager
    • Observability & Logging: Prometheus, Grafana, Loki, OpenTelemetry, Jaeger, Azure Sentinel, Splunk, ELK
  • Container/ Orchestration
    • Containerization: Docker, Podman, Buildah, container security best practices
    • Orchestration: Azure Kubernetes Service (AKS), Amazon Elastic Kubernetes Service (EKS), OpenShift, Rancher, Kubernetes bare-metal deployments
    • Service Mesh: Istio, Open Service Mesh (OSM), Linkerd, Consul Connect
    • Workload Management: ArgoCD, Kubernetes Operators, CRDs, Helm Charts, Kustomize
    • Scalability & Resilience: HPA, VPA, Cluster Autoscaler, KEDA, multi-cluster federation
    • Networking: CNI plugins (Calico, Cilium, Flannel), Service Discovery, Ingress/Egress, Envoy Proxy, Nginx, API Gateway integration
    • Security: Pod Security Policies (PSP), Open Policy Agent (OPA), Kyverno, Pod / Workload Identity (Azure Managed Identities, IAM roles for Service Accounts)

Datenbanken

MSSQL
Oracle
PostgreSQL
MongoDB
Redis
CosmosDB
DynamoDB
TimeStream
DB2
MySQL
SQLite
InfluxDB
Weaviate Vector Database (AI)
TimescaleDB





Branchen

Branchen

  • mechanical engineering
  • finance
  • insurance
  • law
  • automotive industry
  • energy
  • aviation

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.