Перегляд резюме
Senior DevOps-інженер
Договірна
Грузiя
ПовнаВіддалена робота
Досвід роботи
2 роки 8 місяців
Останнє місце роботи
Компанія під NDA
Devsecops
2 роки 8 місяців
Про себе
Про себе
I am a Senior DevOps / DevSecOps Engineer with 10+ years of experience in cloud infrastructure, automation, CI/CD, and security engineering. I specialize in building secure, production-grade platforms from scratch, with a strong focus on AWS, Kubernetes, and policy-driven security.
In my last fintech role, I designed and implemented an AWS EKS-based platform using Terraform and Ansible, GitOps with FluxCD, and secure CI/CD pipelines in GitLab. I delivered centralized secret management (Vault, AWS Secrets Manager), backup and DR with Velero, and enforced Kubernetes security using Kyverno and Falco.
I have hands-on experience implementing SIEM with Wazuh, integrating it with AWS CloudTrail, and performing vulnerability scanning using OpenVAS, along with SAST/DAST tools such as Semgrep, OWASP ZAP, and Checkov. I also managed Cloudflare (DNS, WAF, DDoS protection) and observability stacks based on Grafana, Loki, and VictoriaMetrics.
I communicate security concepts clearly, work effectively in cross-functional teams, and focus on delivering secure, scalable, and human-centric solutions.
Досвід в Affiliate
Дані відсутні
Досвід роботи2 роки 8 місяців
Жовтень 2023 - по т.ч.
(2 роки 8 місяців)
Компанія під NDA
Devsecops
DevOps / DevSecOps Engineer/NDA - Fintech PresentBuilt a complete AWS/Kubernetes-based infrastructure platform and security ecosystem from scratch.
Built AWS infrastructure from zero using Terraform and Ansible
Designed and improved GitLab CI/CD pipelines for build, testing and deployment (FluxCD)
Automated testing workflows and enhanced pipeline reliability
Delivered secret management using AWS Secrets Manager, Bank-Vaults, HashiCorp Vault
Implemented GitOps approach with FluxCD
Configured backups & disaster recovery using Velero
Introduced security tools: Talisman, Gitleaks, Checkov, Semgrep (SAST), OWASP ZAP (DAST)
Implemented SIEM monitoring with Wazuh
Integrated Wazuh with AWS CloudTrail for correlation and security analysis of cloud activity
Set up Cloudflare (DNS, DDoS protection, WAF)
Applied Kubernetes policy enforcement using Kyverno
Integrated Falco for real-time runtime security monitoring in Kubernetes
Performed vulnerability scanning and assessment using OpenVAS
Tech stack: AWS, Kubernetes (EKS), GitLab CI, FluxCD, Grafana, VictoriaMetrics, Loki, Velero, Vault, Wazuh, Falco, Cloudflare
Навички
OWASP
WAZUH
SAST
DAST
k8s
Falco
Vault
Володіння мовами
Дані відсутні
Зайнятість
Зайнятість
Повна, Часткова
Формат роботи
Віддалена робота, Офіс
Графік роботи
Гнучкий, 5/2
Переїзд
Можливий
Відрядження
Відрядження можливі