Full-Stack DevOps with focus on IT-Security
Aktualisiert am 07.09.2020
Profil
Freiberufler / Selbstständiger
Verfügbar ab: 09.09.2020
Verfügbar zu: 100%
davon vor Ort: 80%
Java 1.8
Angular
DevOps
TypeScript
JavaScript
Python
Django
AWS
Heroku
Scrum
Kanban
React
Kubernetes
Docker

Einsatzorte

Einsatzorte

Hamburg (+50km)
nicht möglich

Projekte

Projekte

6 Monate
2020-02 - 2020-07

Development and operaAon of web-platform

Full-Stack DevOps
Full-Stack DevOps

Development and operaAon of web-platform to connect and bill advisory services.

  • Coding of new features in Spring Boot on backend and Angular8 on frontend side
  • OperaAon of infrastructure based on heroku cloud services
  • Maintaining conAnuous integraAon build queues and scripts based on heroku tesAng
  • Threat modelling of new features, like oneAme-link-sharing, which were posing potenAal security risks
  • Improved overall release process by hardening release process with addiAonal acceptance tests and staAc code analysis
  • Delivered and shipped product conAnuously in agile scrum process in team of three
Spring Boot Angular 8 Postgres Lightning Design System Sass Heroku
Otto GmbH und Co. KG
Hamburg
1 Monat
2020-04 - 2020-04

Penetration testing of AWS cloud infrastructure

Penetration tester
Penetration tester

Penetration testing of AWS cloud infrastructure for B2C financial service provider.

  • Audit of exisAng AWS cloud infrastructure
  • Identification of insecure usage of S3 storage leading to cross-site scripting anack vectors in CRM
    software
  • WriAng of detailed report with findings
  • Debriefing and consulting of fixing true positives
UNDISCLOSED - NDA
Hamburg
5 Monate
2019-09 - 2020-01

Development of mobile applicaAon

Full-Stack DevOps
Full-Stack DevOps

Development of mobile applicaAon for journalists wriAng and creaAng news content on the go for the dpa (German News Agency).

  • Development of mobile PWA (Progressive Web App) consuming GraphQL interface with Angular7
  • Coaching of product owner in wriAng user stories and uAlising scrum process
  • Implemented conAnuous integraAon using AWS Amplify and adding staAc code analysis to build and delivery process as well as acceptance tests
  • Delivered and shipped product conAnuously in agile scrum process in team of six
HTML5 Sass Angular 7+ GoogleMapsAPI
dpa Deutsche Presse-Agentur GmbH
Hamburg
1 Monat
2019-08 - 2019-08

PenetraAon tesAng of electronic commerce sogware

Penetration tester
Penetration tester
  • DetecAon of broken authenAcaAon management
  • UAlising insufficient cross- site request forgery protecAon
  • Fuzzing of backend interface
  • WriAng of detailed report with findings
  • Debriefing and consulAng of fixing true posiAves
Python OWASP ZAP curl
UNDISCLOSED - NDA
Hamburg
4 Monate
2019-04 - 2019-07

DevSecOps of individual GDPR documentation tool

Full-Stack DevSecOps
Full-Stack DevSecOps

DevSecOps of individual GDPR documentation tool, which is designed to help companies to fullfill and follow GDPR rules.

  • Development of features in reactJS in frontend and ruby on rails in the backend
  • CreaAng security concept for new features
  • MigraAon of conAnuous integraAon process from CircleCI to TravicCI
  • Hardening of build and delivery process by adding automated dependency checking, staAc code analysis, as well as automated tesAng of authorisaAon layer
  • OperaAon of cloud based infrastructure on heroku and AWS
  • Delivered and shipped product conAnuously in agile kanban process in team of three
Ruby on Rails React Postgres Heroku Lightning Design System Sass Travis CI
fox-on Datenschutz GmbH
Lindlar
8 Monate
2018-09 - 2019-04

Development of digital user account and service platorm

Full-Stack Developer
Full-Stack Developer

Development of digital user account and service platorm for members of the Hamburg Chamber of Commerce.

  • Start of development of platorm in Spring boot and Angular
  • CreaAng security concept of user account creaAon process
  • Deploying of micro service applicaAon in docker containers for later kubernetes producAon enrolment
  • Setup and design of conAnuous integraAon process using TravisCI with automaAc docker image security checks, staAc code analysis and dependency checker
  • Delivered and shipped product continuously in agile scrum process in team of four
Spring Boot Angular 2+ Angular Material Sass Thymeleaf für E-Mails Docker Heroku Travis CI Kubernetes
Handelskammer Hamburg
Hamburg
5 Monate
2018-05 - 2018-09

DevSecOps of individual GDPR documentation tool

Full-Stack DevSecOps
Full-Stack DevSecOps

DevSecOps of individual GDPR documentation tool, which is designed to help companies to fullfill and follow GDPR rules.

  • Development of features in reactJS in frontend and ruby on rails in the backend
  • CreaAng security concept for new features
  • MigraAon of conAnuous integraAon process from CircleCI to TravicCI
  • Hardening of build and delivery process by adding automated dependency checking, staAc code analysis, as well as automated tesAng of authorisaAon layer
  • OperaAon of cloud based infrastructure on heroku and AWS
  • Delivered and shipped product continuously in agile kanban process in team of three
Ruby on Rails React Postgres Heroku Lightning Design System Sass Travis CI
fox-on Datenschutz GmbH
Lindlar
1 Jahr 4 Monate
2017-01 - 2018-04

Development of onboarding platform

Full-Stack Developer
Full-Stack Developer

Development of onboarding platform for new customers of the product Easycontract. It is the pay engine of financial online service provider Concardis.

  • Development of platform features in Spring boot and Angular2+
  • CreaAng security concept of user registration process and transfer of data to external SalesForce API
  • Hardening of build pipeline by adding staAc code analysis and automated fuzzing of release candidates
  • CommunicaAon with external penetraAon testers, who frequently tested applicaAon for the releases and evaluaAon of penetration test findings. Priorisation of true-positives
  • Delivered and shipped product continuously in agile scrum process in team of seven
Java Spring Boot Angular 2+ Postgres Heroku Lightning Design System Sass CircleCI Salesforce Docker
Concardis GmbH
Frankfurt
8 Monate
2016-06 - 2017-01

Development of mobile shopping app

Mobile Developer
Mobile Developer

Development of mobile shopping app (Android und iOS) for the existing backend of hagebau.

  • Development of mobile client iOS in swig
  • Development of mobile client on Andoird in Java
  • Creating continuous integration build pipeline with CircleCI, Bitrise, Fastlane and HockeyApp
  • Delivered and shipped product continuously in agile scrum process in team of five
Swig Java CircleCI Bitrise Fastlane
hagebau connect GmbH & Co. KG
Hamburg
10 Monate
2016-01 - 2016-10

Startup called neenuu

Full-Stack Developer
Full-Stack Developer

Development of workshop platform for teachers and customers. Goal of the service was, to make it easier to find workshops and classes in your area.

  • Development of pltform features in Python and Django
  • Hosting of platform on own server infrastructure
  • Delivered and shipped product continuously in agile scrum process in team of two
Python + Django GoogleMapsAPI Postgres gunicorn Bootstrap
Hamburg
7 Monate
2015-12 - 2016-06

Moderating of agile scrum meetings

Team Lead Development
Team Lead Development

Joined the IT management team containing of eight team leads, one head of engineering and the CTO. Helped manage and build development department and foster communication between the different sub-departments.

  • Hiring new team members
  • Laying out new hiring process with other leads
  • Creating drag for career concept for the IT department
  • Management of three agile teams (driver app, business intelligence, internal tooling)
  • Moderating of agile scrum meetings like grooming or retrospectives
Hamburg

Aus- und Weiterbildung

Aus- und Weiterbildung

Degree: Bachelor of Science, Technical Computer Science

Kompetenzen

Kompetenzen

Top-Skills

Java 1.8 Angular DevOps TypeScript JavaScript Python Django AWS Heroku Scrum Kanban React Kubernetes Docker

Produkte / Standards / Erfahrungen / Methoden

Angular2+
Django
ReactJS
Spring Boot

Profile

Full-Stack DevOps with focus on IT-Security (Threat-Modelling, PenetraAon TesAng, Code-Audits & hardening of build processes). High focus on working in agile teams with cloud naAve technologies (AWS, Heroku, Google Cloud).

Programmiersprachen

Java
JavaScript
Python
TypeScript

Einsatzorte

Einsatzorte

Hamburg (+50km)
nicht möglich

Projekte

Projekte

6 Monate
2020-02 - 2020-07

Development and operaAon of web-platform

Full-Stack DevOps
Full-Stack DevOps

Development and operaAon of web-platform to connect and bill advisory services.

  • Coding of new features in Spring Boot on backend and Angular8 on frontend side
  • OperaAon of infrastructure based on heroku cloud services
  • Maintaining conAnuous integraAon build queues and scripts based on heroku tesAng
  • Threat modelling of new features, like oneAme-link-sharing, which were posing potenAal security risks
  • Improved overall release process by hardening release process with addiAonal acceptance tests and staAc code analysis
  • Delivered and shipped product conAnuously in agile scrum process in team of three
Spring Boot Angular 8 Postgres Lightning Design System Sass Heroku
Otto GmbH und Co. KG
Hamburg
1 Monat
2020-04 - 2020-04

Penetration testing of AWS cloud infrastructure

Penetration tester
Penetration tester

Penetration testing of AWS cloud infrastructure for B2C financial service provider.

  • Audit of exisAng AWS cloud infrastructure
  • Identification of insecure usage of S3 storage leading to cross-site scripting anack vectors in CRM
    software
  • WriAng of detailed report with findings
  • Debriefing and consulting of fixing true positives
UNDISCLOSED - NDA
Hamburg
5 Monate
2019-09 - 2020-01

Development of mobile applicaAon

Full-Stack DevOps
Full-Stack DevOps

Development of mobile applicaAon for journalists wriAng and creaAng news content on the go for the dpa (German News Agency).

  • Development of mobile PWA (Progressive Web App) consuming GraphQL interface with Angular7
  • Coaching of product owner in wriAng user stories and uAlising scrum process
  • Implemented conAnuous integraAon using AWS Amplify and adding staAc code analysis to build and delivery process as well as acceptance tests
  • Delivered and shipped product conAnuously in agile scrum process in team of six
HTML5 Sass Angular 7+ GoogleMapsAPI
dpa Deutsche Presse-Agentur GmbH
Hamburg
1 Monat
2019-08 - 2019-08

PenetraAon tesAng of electronic commerce sogware

Penetration tester
Penetration tester
  • DetecAon of broken authenAcaAon management
  • UAlising insufficient cross- site request forgery protecAon
  • Fuzzing of backend interface
  • WriAng of detailed report with findings
  • Debriefing and consulAng of fixing true posiAves
Python OWASP ZAP curl
UNDISCLOSED - NDA
Hamburg
4 Monate
2019-04 - 2019-07

DevSecOps of individual GDPR documentation tool

Full-Stack DevSecOps
Full-Stack DevSecOps

DevSecOps of individual GDPR documentation tool, which is designed to help companies to fullfill and follow GDPR rules.

  • Development of features in reactJS in frontend and ruby on rails in the backend
  • CreaAng security concept for new features
  • MigraAon of conAnuous integraAon process from CircleCI to TravicCI
  • Hardening of build and delivery process by adding automated dependency checking, staAc code analysis, as well as automated tesAng of authorisaAon layer
  • OperaAon of cloud based infrastructure on heroku and AWS
  • Delivered and shipped product conAnuously in agile kanban process in team of three
Ruby on Rails React Postgres Heroku Lightning Design System Sass Travis CI
fox-on Datenschutz GmbH
Lindlar
8 Monate
2018-09 - 2019-04

Development of digital user account and service platorm

Full-Stack Developer
Full-Stack Developer

Development of digital user account and service platorm for members of the Hamburg Chamber of Commerce.

  • Start of development of platorm in Spring boot and Angular
  • CreaAng security concept of user account creaAon process
  • Deploying of micro service applicaAon in docker containers for later kubernetes producAon enrolment
  • Setup and design of conAnuous integraAon process using TravisCI with automaAc docker image security checks, staAc code analysis and dependency checker
  • Delivered and shipped product continuously in agile scrum process in team of four
Spring Boot Angular 2+ Angular Material Sass Thymeleaf für E-Mails Docker Heroku Travis CI Kubernetes
Handelskammer Hamburg
Hamburg
5 Monate
2018-05 - 2018-09

DevSecOps of individual GDPR documentation tool

Full-Stack DevSecOps
Full-Stack DevSecOps

DevSecOps of individual GDPR documentation tool, which is designed to help companies to fullfill and follow GDPR rules.

  • Development of features in reactJS in frontend and ruby on rails in the backend
  • CreaAng security concept for new features
  • MigraAon of conAnuous integraAon process from CircleCI to TravicCI
  • Hardening of build and delivery process by adding automated dependency checking, staAc code analysis, as well as automated tesAng of authorisaAon layer
  • OperaAon of cloud based infrastructure on heroku and AWS
  • Delivered and shipped product continuously in agile kanban process in team of three
Ruby on Rails React Postgres Heroku Lightning Design System Sass Travis CI
fox-on Datenschutz GmbH
Lindlar
1 Jahr 4 Monate
2017-01 - 2018-04

Development of onboarding platform

Full-Stack Developer
Full-Stack Developer

Development of onboarding platform for new customers of the product Easycontract. It is the pay engine of financial online service provider Concardis.

  • Development of platform features in Spring boot and Angular2+
  • CreaAng security concept of user registration process and transfer of data to external SalesForce API
  • Hardening of build pipeline by adding staAc code analysis and automated fuzzing of release candidates
  • CommunicaAon with external penetraAon testers, who frequently tested applicaAon for the releases and evaluaAon of penetration test findings. Priorisation of true-positives
  • Delivered and shipped product continuously in agile scrum process in team of seven
Java Spring Boot Angular 2+ Postgres Heroku Lightning Design System Sass CircleCI Salesforce Docker
Concardis GmbH
Frankfurt
8 Monate
2016-06 - 2017-01

Development of mobile shopping app

Mobile Developer
Mobile Developer

Development of mobile shopping app (Android und iOS) for the existing backend of hagebau.

  • Development of mobile client iOS in swig
  • Development of mobile client on Andoird in Java
  • Creating continuous integration build pipeline with CircleCI, Bitrise, Fastlane and HockeyApp
  • Delivered and shipped product continuously in agile scrum process in team of five
Swig Java CircleCI Bitrise Fastlane
hagebau connect GmbH & Co. KG
Hamburg
10 Monate
2016-01 - 2016-10

Startup called neenuu

Full-Stack Developer
Full-Stack Developer

Development of workshop platform for teachers and customers. Goal of the service was, to make it easier to find workshops and classes in your area.

  • Development of pltform features in Python and Django
  • Hosting of platform on own server infrastructure
  • Delivered and shipped product continuously in agile scrum process in team of two
Python + Django GoogleMapsAPI Postgres gunicorn Bootstrap
Hamburg
7 Monate
2015-12 - 2016-06

Moderating of agile scrum meetings

Team Lead Development
Team Lead Development

Joined the IT management team containing of eight team leads, one head of engineering and the CTO. Helped manage and build development department and foster communication between the different sub-departments.

  • Hiring new team members
  • Laying out new hiring process with other leads
  • Creating drag for career concept for the IT department
  • Management of three agile teams (driver app, business intelligence, internal tooling)
  • Moderating of agile scrum meetings like grooming or retrospectives
Hamburg

Aus- und Weiterbildung

Aus- und Weiterbildung

Degree: Bachelor of Science, Technical Computer Science

Kompetenzen

Kompetenzen

Top-Skills

Java 1.8 Angular DevOps TypeScript JavaScript Python Django AWS Heroku Scrum Kanban React Kubernetes Docker

Produkte / Standards / Erfahrungen / Methoden

Angular2+
Django
ReactJS
Spring Boot

Profile

Full-Stack DevOps with focus on IT-Security (Threat-Modelling, PenetraAon TesAng, Code-Audits & hardening of build processes). High focus on working in agile teams with cloud naAve technologies (AWS, Heroku, Google Cloud).

Programmiersprachen

Java
JavaScript
Python
TypeScript

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.