Работал в 4 компаниях 10 лет 6 месяцев
Финансовые услуги, Услуги для бизнеса - другое, IT, Охрана и Безопасность
Site Reliability / DevOps Engineer
NDA USA Fintech startup
Финансовые услуги
1 год 9 месяцев
02.2025 - по настоящее время
• Operate and improve production and staging infrastructure for a US fintech startup under NDA, focusing on Kubernetes reliability, CI/CD automation, secrets management and observability.
• Designed and implemented centralized secret management for multi-cluster Kubernetes environments using HashiCorp Vault, KV v2 and Vault Secrets Operator.
• Migrated application secrets from native Kubernetes Secrets to Vault-backed synchronization while preserving existing secret names and avoiding application-side changes.
• Built automation scripts for auditing, exporting, classifying and migrating Kubernetes secrets across namespaces and environments.
• Improved GitLab CI workflows for infrastructure and application delivery, reducing manual deployment steps and making releases more predictable.
• Maintained Kubernetes workloads, ingress routing, services, persistent volumes, DNS, certificates and environment-specific configuration.
• Improved monitoring and troubleshooting workflows using Prometheus/Grafana-based observability and alerting.
• Supported infrastructure security hardening, access control improvements, secret rotation readiness and operational standardization for fintech workloads.
• Collaborated with developers to troubleshoot production and staging incidents, analyze deployment failures and improve service reliability.
DevOps Engineer
Fin++
Услуги для бизнеса - другое
1 год 3 месяца
12.2023 - 02.2025
- • Designed and deployed a Kubernetes cluster and migrated bare-metal hosted services to it, improving reliability, scalability and observability.
- • Implemented Rancher RKE with autoscaling to provide additional cluster capacity during peak load.
- • Redesigned the Jenkins-based build system, reducing build times for selected projects by up to 70%.
- • Refactored a frontend application build process with Docker, enabling consistent builds and a more flexible testing approach.
- • Administered MikroTik-based network infrastructure.
- • Maintained Infrastructure-as-Code repositories and automated configuration management with Ansible.
Site Reliability Engineer
The Kernel
IT
3 года 11 месяцев
02.2020 - 12.2023
- • Deployed a Kubernetes cluster with a Ceph storage backend and migrated website hosting infrastructure to it, increasing fault tolerance and uptime to 99.95%.
- • Implemented automated testing and vulnerability pre-check infrastructure for user websites, including rollback to previous Ceph snapshots in case of exploitation or failure.
- • Consolidated servers scattered across low-performance hardware onto a Proxmox-based platform, improving stability and performance while reducing hardware maintenance overhead.
- • Established automated product build and delivery workflows using Jenkins and GitLab CI, introducing a testing-stage-production process.
- • Containerized products that did not require strict hardware binding into Docker containers, standardizing deployment across Linux servers.
- • Automated host-based product deployments using Ansible.
- • Implemented secure access control workflows and supported infrastructure security hardening, including RKHunter and SELinux configuration.
- • Monitored vulnerabilities, applied fixes and identified a MikroTik network vulnerability that allowed unauthorized access and developer-mode switching.
- • Set up infrastructure monitoring with Prometheus and Grafana, integrating alerts with Slack and Telegram.
- • Managed a team of two employees, including task planning, priority distribution and operational follow-up.
Linux system administrator
Кодекс, ООО
Охрана и Безопасность
3 года 10 месяцев
05.2016 - 02.2020
• Administered Linux-based production and internal systems.
• Automated product deployment using Ansible and containerized core products with Docker.
• Built and administered industrial-grade servers in an in-house data center, using VMware ESXi or Proxmox depending on project requirements.
• Monitored and mitigated newly discovered vulnerabilities.
• Managed MikroTik-based network infrastructure.
Ключевая информация
• Operating Systems: Ubuntu, Debian, CentOS, Arch Linux, Gentoo, FreeBSD
• Virtualization: VMware ESXi, Hyper-V, KVM/QEMU, Proxmox
• Containers & Orchestration: Docker, Docker Compose, Docker Swarm, Kubernetes, Helm, Rancher/RKE, Ceph-backed Kubernetes storage
• CI/CD & Automation: Ansible, Terraform, Jenkins, GitLab CI
• Monitoring & Observability: Prometheus, Grafana, VictoriaMetrics, Zabbix, alerting integrations with Slack/Telegram
• Cloud Platforms: AWS, Hetzner Cloud
• AWS Services: IAM, EC2, S3, EBS, EFS, EKS, ELB, VPC, RDS, Route 53
• Databases & Queues: PostgreSQL, MySQL/MariaDB, MongoDB, ClickHouse, Redis, Elasticsearch, RabbitMQ
• Networking & VPN: MikroTik, Cisco, D-Link, OpenVPN, WireGuard, IPsec
• Scripting & Programming: Bash, Python, PHP, JavaScript, Lua, zsh, csh
• Additional: Asterisk, FreePBX
Учился в 1 заведении
УГХТУ
Компьютерных наук и инженерии, АПП.
2022
Владеет языками
Английский
выше среднего
Может проходить собеседование на этом языке
Может проходить собеседование на этом языке
Русский
родной
Может проходить собеседование на этом языке
Может проходить собеседование на этом языке
Украинский
родной
Может проходить собеседование на этом языке
Может проходить собеседование на этом языке
Алексей Андреевич
Алексей Андреевич
Senior Site Reliability Engineer/DevOps

Днепр
Готов переехать: Киев, Львов, Одесса
полная занятость, неполная занятость, проектная работа
Характер работы: удаленная работа
Последняя активность 2 месяца назад