Senior DevOps Engineer

Infrastructure that earns trust under pressure.

I build the operating layer between product velocity and institutional trust—cloud platforms, security operations, and controls that survive real production pressure.

Operating system map

Production / governed

  1. 01

    Cloud foundations

    AWS · GCP · Networking · IAM

  2. 02

    Kubernetes platform

    Workloads · Scaling · Resilience

  3. 03

    Delivery systems

    CI/CD · GitOps · Automation

Observability
Security
Compliance
Reliable by designClear ownership, observable behavior, and controls that survive production.
6+
Years operating
4
Selected case studies

How I work

Technical depth, with the wider business in view.

01

Infrastructure & Platform

Cloud foundations, Kubernetes, IaC, delivery systems, observability, and operational resilience.

02

Security Operations

Detection engineering, SIEM operations, access controls, hardening, and actionable incident visibility.

03

GRC & Compliance

Technical controls and evidence pathways for PCI DSS, ISO 27001, SOC 2, and NIST-aligned programs.

Where I can help

From fragile systems to confident operations.

From the first infrastructure decision to the evidence an auditor asks for months later.

01

Cloud systems

AWS and GCP foundations, Terraform, networking, DNS, identity, resilience, and cost-aware architecture.

02

Kubernetes platforms

EKS and GKE, Helm, ArgoCD, workload scaling, ingress, certificates, and platform standards.

03

Delivery automation

GitHub Actions, Jenkins, containers, Ansible, progressive delivery, and dependable rollback paths.

04

Observability

Metrics, logs, alerts, dashboards, runbooks, and production feedback loops built for operators.

05

Security & compliance

Wazuh, hardening, access review, evidence collection, and controls designed into daily operations.

06

Operational enablement

Clear documentation, ownership boundaries, incident readiness, and systems that are easy to hand over.

Evidence of work

Systems designed for real operating environments.

View all projects →
01
Engineering Blueprint

Infrastructure as Code Platform with Terraform and Terragrunt

Read case study

A governed Infrastructure as Code platform for reusable AWS and GCP environments, with Terraform modules, Terragrunt composition, CI validation, and controlled delivery.

Infrastructure as CodeTerraformTerragrunt
02
Engineering Blueprint

DevSecOps Pipeline with SonarQube, OWASP ZAP and Nuclei

Read case study

A reusable DevSecOps pipeline combining SonarQube quality gates with OWASP ZAP, Nuclei, policy decisions, pull-request feedback, and audit-ready security evidence.

SonarQubeDevSecOpsDAST
03
Consulting Offer

Wazuh Compliance Operations – Security Monitoring for Audit-Ready Environments

Read case study

Wazuh security monitoring for audit-ready environments, combining repeatable deployment, alert engineering, malware detection, evidence, and operational guardrails.

WazuhISO 27001PCI DSS

Operating record

Judgment built where systems actually fail.

Explore the timeline →
  1. 01

    6+ years helping teams build, stabilize, and evolve production systems across different stages of growth.

  2. 02

    Hands-on ownership of reliability, security, migrations, cost, and the operational details that determine whether a system holds up.

  3. 03

    A practical approach to risk and assurance: controls that satisfy real requirements without making daily engineering harder than it needs to be.

From the field

Lessons documented while they are still useful.

Browse the archive →

Scan Dependency CVEs with Syft and Grype in GitHub Actions

Software Supply ChainSBOM
Read

Wazuh Ansible Series

SecurityAnsible
Read

Integrate Zeek Network Telemetry with Wazuh (Part 11)

WazuhCloud Security
Read

Consulting & collaboration

Have an infrastructure challenge worth solving together?

Bring the difficult context. I can help clarify the problem, shape a practical path forward, and work alongside your team to deliver it.

Discuss your challenge