Ongoing and completed projects

DevOps Engineer at myToys from 05/22 to 10/22

  • Deploying Terragrunt organization wide to all accounts managed by AWS LandingZone
  • Automate deployments spanning multiple accounts with Jenkins
  • Improvement and extension of existing AWS LandingZone with Python and boto3
  • Development of internally used Kubernetes module containing Services such as Istio, Kubeclarity, ExternalSecrets and Gatekeeper
  • Improving and enforcing security and compliance through ConfigRules, Service Control Policies (SCP) and SecurityHub
  • Evaluate use of AWS ControlTower instead of LandingZone

Keywords: Terraform, Python, Kubernetes, AWS LandingZone, ConfigRules,


Serverless DevOps Engineer at Telefonica from 09/21 to 05/22

  • Deploying Terragrunt/Terraform through GitLab Pipelines
  • Analyze logs and metrics with CloudWatch and present results in architecture forum
  • Maintain and deploy Serverless infrastructure (Lambda, RDS, API Gateway, S3, X-Ray, SNS, SQS, DNS, IAM)
  • Create GitLab templates for NodeJS and Java Application deployments
  • Implementation of ConfigRules with python and boto3
  • Maintaining Oracle GoldenGate on EC2 for critical data replication

DevOps Coach at RWE from 06/21 to 09/21

  • Guide teams to adapt new AWS Technologies
  • Support migration of Oracle databases to AWS RDS
  • Prepare and execute Terraform workshop
  • Deployment of AWS Lambda and AWS API Gateway PoC
  • Help migrate service from EC2 to ECS in multi account environment

Kubernetes DevOps Engineer at STP from 11/20 to 05/21

  • Creating foundation for and assisting during migration of services to new Kubernetes environments
  • Design and setup of core services on a manged Kubernetes cluster
  • Deployment of services to multistage Kubernetes clusters
  • Intensive communication and collaboration with Kubernetes service provider
  • Automate deployments with Ansible and Helmcharts
  • Conceptual design and setup of an authentication system between Kubernetes cluster and LDAP via Dex
  • Writing documentation for newly created concepts
  • Setup and update on-prem environments with Kubeadm
  • Managing selfhosted MongoDB inside of Kubernetes
  • Backup and restore of MongoDB
  • Improve observability with Prometheus and Grafana
  • Preparing on-prem Kubernetes cluster for ISO Certification 27001
  • Automating deployments to Kubernetes with ArgoCD

DevOps Engineer at MunichRe from 03/20 to 05/21

  • Kubernetes: self-managed with kops (AWS) and AWS EKS
  • Automated deployment with Bitbucket pipelines and ArgoCD
  • Create deployments with Helm Charts
  • Migration of Kubernetes Cluster to managed AWS EKS
  • Providing and maintaining MongoDB solution for development teams
  • Troubleshoot errors in MongoDB
  • Development of Infrastructure as Code with Terraform
  • Supporting developer teams (CI/CD pipelines, reviewing IaC code, debugging dev and prod services)
  • Build infrastructure based on AWS Services: SQS, SNS, EKS, IAM, IRSA, EC2, Loadbalancing (ALB/NLB), SSM, Route53, RDS (Aurora), Config, Lambda, ACM
  • Close cooperation with backend development team
  • Gathering metrics with Prometheus and storing them with Thanos
  • Evaluating Jaeger for tracing inside the Kubernetes Cluster
  • Maintain DNS and automate with ExternalDNS in Route53

Site reliability engineer at Joyn from 04/19 to 01/20

  • Infrastructure as Code/Everything as Code using CloudFormation and Terraform
  • Managing ECS Fargate based microservice infrastructure
  • Configure and Maintain Docker images
  • Working as a member an agile DevOps/SRE team / SCRUM
  • Take care of DNS entries and networking
  • Documentation of Infrastructure (technical documentation of deployed stacks/environments. Creating drow.io diagrams)
  • Used AWS Services: ECS/Fargate, ECR, CloudWatch, DynamoDB, Redis, Route53, ACM, WAF&Shield, CloudFront, S3, Lambda, API Gateway, IAM, SSM
  • Monitoring and alerting with Grafana, Prometheus, OpsGenie and Dynatrace
  • Configuration and maintenance of end-user facing CloudFront CDN, reverse proxy based on nginx and Server Side Rendering (SSR) for www.joyn.de
  • Logging with CloudWatch, logstash, ElasticSearch, Kibana (ELK)
  • On-call service for live-tv and video streaming platform used by over 2 million unique users
  • Live deployments to production without downtime