Ongoing and completed projects
DevOps Engineer at myToys from 05/22 to 10/22
- Deploying Terragrunt organization wide to all accounts managed by AWS LandingZone
- Automate deployments spanning multiple accounts with Jenkins
- Improvement and extension of existing AWS LandingZone with Python and boto3
- Development of internally used Kubernetes module containing Services such as Istio, Kubeclarity, ExternalSecrets and Gatekeeper
- Improving and enforcing security and compliance through ConfigRules, Service Control Policies (SCP) and SecurityHub
- Evaluate use of AWS ControlTower instead of LandingZone
Keywords: Terraform, Python, Kubernetes, AWS LandingZone, ConfigRules,
Serverless DevOps Engineer at Telefonica from 09/21 to 05/22
- Deploying Terragrunt/Terraform through GitLab Pipelines
- Analyze logs and metrics with CloudWatch and present results in architecture forum
- Maintain and deploy Serverless infrastructure (Lambda, RDS, API Gateway, S3, X-Ray, SNS, SQS, DNS, IAM)
- Create GitLab templates for NodeJS and Java Application deployments
- Implementation of ConfigRules with python and boto3
- Maintaining Oracle GoldenGate on EC2 for critical data replication
DevOps Coach at RWE from 06/21 to 09/21
- Guide teams to adapt new AWS Technologies
- Support migration of Oracle databases to AWS RDS
- Prepare and execute Terraform workshop
- Deployment of AWS Lambda and AWS API Gateway PoC
- Help migrate service from EC2 to ECS in multi account environment
Kubernetes DevOps Engineer at STP from 11/20 to 05/21
- Creating foundation for and assisting during migration of services to new Kubernetes environments
- Design and setup of core services on a manged Kubernetes cluster
- Deployment of services to multistage Kubernetes clusters
- Intensive communication and collaboration with Kubernetes service provider
- Automate deployments with Ansible and Helmcharts
- Conceptual design and setup of an authentication system between Kubernetes cluster and LDAP via Dex
- Writing documentation for newly created concepts
- Setup and update on-prem environments with Kubeadm
- Managing selfhosted MongoDB inside of Kubernetes
- Backup and restore of MongoDB
- Improve observability with Prometheus and Grafana
- Preparing on-prem Kubernetes cluster for ISO Certification 27001
- Automating deployments to Kubernetes with ArgoCD
DevOps Engineer at MunichRe from 03/20 to 05/21
- Kubernetes: self-managed with kops (AWS) and AWS EKS
- Automated deployment with Bitbucket pipelines and ArgoCD
- Create deployments with Helm Charts
- Migration of Kubernetes Cluster to managed AWS EKS
- Providing and maintaining MongoDB solution for development teams
- Troubleshoot errors in MongoDB
- Development of Infrastructure as Code with Terraform
- Supporting developer teams (CI/CD pipelines, reviewing IaC code, debugging dev and prod services)
- Build infrastructure based on AWS Services: SQS, SNS, EKS, IAM, IRSA, EC2, Loadbalancing (ALB/NLB), SSM, Route53, RDS (Aurora), Config, Lambda, ACM
- Close cooperation with backend development team
- Gathering metrics with Prometheus and storing them with Thanos
- Evaluating Jaeger for tracing inside the Kubernetes Cluster
- Maintain DNS and automate with ExternalDNS in Route53
Site reliability engineer at Joyn from 04/19 to 01/20
- Infrastructure as Code/Everything as Code using CloudFormation and Terraform
- Managing ECS Fargate based microservice infrastructure
- Configure and Maintain Docker images
- Working as a member an agile DevOps/SRE team / SCRUM
- Take care of DNS entries and networking
- Documentation of Infrastructure (technical documentation of deployed stacks/environments. Creating drow.io diagrams)
- Used AWS Services: ECS/Fargate, ECR, CloudWatch, DynamoDB, Redis, Route53, ACM, WAF&Shield, CloudFront, S3, Lambda, API Gateway, IAM, SSM
- Monitoring and alerting with Grafana, Prometheus, OpsGenie and Dynatrace
- Configuration and maintenance of end-user facing CloudFront CDN, reverse proxy based on nginx and Server Side Rendering (SSR) for www.joyn.de
- Logging with CloudWatch, logstash, ElasticSearch, Kibana (ELK)
- On-call service for live-tv and video streaming platform used by over 2 million unique users
- Live deployments to production without downtime