DevOps / Platform Engineering • Kubernetes • IaC • CI/CD

I build production-ready Kubernetes platforms that ship fast and stay reliable

Senior-level platform engineering: From bare metal K8s clusters to multi-cloud CI/CD pipelines. Production-first patterns for teams that need stability without slowing down.

8-node
production K8s cluster
🗄️
3-node
PostgreSQL HA clusters
🚀
50+
containerized applications
📦
6
major infrastructure projects
☁️
Multi-cloud
GCP + Azure + On-Prem

About

Full-Stack Infrastructure Engineer

I specialize in building production-ready infrastructure that developers love to work with.

From setting up Kubernetes clusters from scratch to implementing CI/CD pipelines that deploy confidently, I focus on reliability, security, and developer experience.

My approach: High availability by default, infrastructure as code everywhere, and documentation that actually helps.

What I Do

Design & implement production Kubernetes clusters (bare metal & cloud)

Build CI/CD pipelines that deploy fast and fail safe

Configure high-availability databases (PostgreSQL, Redis) with automated failover

Implement security best practices (Vault, TLS automation, RBAC)

Troubleshoot complex infrastructure issues (DNS, networking, OAuth2)

Write comprehensive documentation & runbooks

Available for freelance projects, consulting, or full-time positions
🐳Docker Build • Values & Mindset

Building marius:latest

A multi-stage build process defining the core principles, mindset, and passions that power everything I do

docker build -t marius:latest .
$ cat Dockerfile
# Multi-stage build for DevOps Engineer
FROM human:base
# Core professional values
RUN install curiosity continuous-learning
RUN configure adaptability
RUN apply solution-oriented-mindset
# Personal traits
ADD active-lifestyle team-collaboration
COPY travel-experiences life-wealth
LABEL version="latest"
LABEL maintainer="Marius Nastase"

Projects

Helm Release Manager

Interactive terminal to explore my projects. Try commands like helm list or help

helm-terminal
Helm Terminal v3.0 - Interactive Project Explorer
Type "help" for available commands or "helm list" to see all projects.
Infrastructure as Code

Terraform Infrastructure

Provision my tech stack infrastructure. Click "Provision Infrastructure" to deploy all resources, then expand any card to see detailed descriptions of my hands-on experience.

Resources: 50

#Container & Orchestration

Kubernetes, Docker, Helm, and container orchestration tools

Kubernetes

senior5+ years

Production cluster setup with bare metal and GCP GKE. Built 8-node on-prem clusters for Togo GIS, managed multi-cluster deployments at Deutsche Bank. Expert in operators (CloudNativePG, Vault), HA configurations, network policies, and Calico CNI.

Docker

senior7+ years

Multi-stage builds, image optimization, and enterprise container management. Built secure base images, optimized layer caching, and managed Docker registries with JFrog Artifactory for my project at Deutsche Bank.

Podman

advanced4+ years

Rootless container deployments

Helm

senior4+ years

Custom charts library, values templating, and dependency management. Designed reusable Helm chart libraries for my project at Deutsche Bank for standardized deployments. Expert in complex templating with Go templates and chart lifecycle management.

Kaniko

advanced2+ years

Daemonless container builds

#Cloud Platforms

GCP, Azure, and cloud infrastructure management

Google Cloud Platform

senior3+ years

Led cloud migration from on-prem to GCP for my project at Deutsche Bank. Expert in GKE, Cloud Run, Compute Engine, Artifact Registry, Cloud SQL, GCS, Cloud DNS, IAM, VPC networking, Cloud Monitoring, and Logs Explorer. Terraform-managed infrastructure with Workload Identity Federation.

Cloud Run

advanced2+ years

Serverless container deployments

Compute Engine

advanced3+ years

VM management, cost optimization

Microsoft Azure

intermediate2+ years

Entra ID (identity management)

Infomaniak

intermediate1+ years

Managed Kubernetes cluster hosting for Togo GIS project. Initial infrastructure deployment before migration to bare metal cluster on their VMs.

Terraform

advanced3+ years

Infrastructure as Code for GCP and AWS-to-Azure migrations. Built modular Terraform configurations for VPC, GKE, IAM, Cloud Run, and multi-environment deployments. Advanced Terraform certification from NobleProg. Provisioned complete GCP infrastructure for my project at Deutsche Bank.

#Databases & Storage

PostgreSQL, Redis, MinIO, and data storage solutions

PostgreSQL

senior3+ years

CloudNativePG operator, HA clusters, PostGIS

CloudNativePG

advanced1+ years

PostgreSQL operator for Kubernetes, 3-node HA

PostGIS

advanced2+ years

Spatial database extensions for GIS

Redis

advanced2+ years

Master-replica HA configuration

MinIO

advanced3+ years

S3-compatible object storage

#CI/CD & Automation

GitLab CI/CD, GitHub Actions, and automation tools

GitLab CI/CD

senior2+ years

Multi-stage pipelines, Kaniko builds, automated deployments

GitHub Actions

senior4+ years

Migrated Jenkins pipelines to GitHub Actions for my project at Deutsche Bank. Expert in Workload Identity Federation for secure GCP access, matrix strategies for multi-environment deployments, reusable workflows, and automated security scanning integration. Built hackathon CI/CD from scratch for Cloud Run.

Bash

senior7+ years

Deployment automation scripts

Jenkins

advanced2+ years

Enterprise CI/CD pipelines, Groovy scripts, multi-stage builds. Managed legacy infrastructure for my project at Deutsche Bank with complex pipeline orchestration.

Ansible

advanced2+ years

Infrastructure automation and configuration management. Used for on-prem deployments, server provisioning, and application configuration at scale.

#Networking & Load Balancing

NGINX, Calico, DNS, and network infrastructure

NGINX

senior5+ years

Ingress Controller, reverse proxy, TLS termination

Istio

advanced3+ years

Service mesh for microservices

NGINX Ingress Controller

advanced2+ years

Kubernetes ingress management

Calico

advanced1+ years

Kubernetes CNI v3.28.0

DNS Management

advanced3+ years

Google Cloud DNS, CoreDNS configuration

#Security & Secrets

Vault, cert-manager, Keycloak, and security tools

HashiCorp Vault

advanced2+ years

Centralized secrets management

External Secrets Operator

advanced3+ years

Vault to Kubernetes sync

cert-manager

advanced3+ years

Automated Let's Encrypt TLS certificates

Google Secret Manager

advanced3+ years

GCP native secrets management

Keycloak

advanced3+ years

OAuth2/OIDC provider

Network Policies

senior4+ years

Kubernetes namespace isolation

SonarQube

advanced3+ years

Code quality and security scanning integrated into CI/CD pipelines. Enforced quality gates and compliance checks for my project at Deutsche Bank.

Veracode

advanced3+ years

Application security testing platform. Integrated SAST/DAST scans into automated release workflows with compliance gate enforcement for banking-grade security.

Prisma Cloud (Xray)

advanced2+ years

Container and artifact security scanning

#Monitoring & Observability

Prometheus, Grafana, and monitoring solutions

Prometheus

advanced3+ years

Metrics collection, alerting, and service monitoring for on-prem Kubernetes. Set up and maintained Prometheus stacks for my project at Deutsche Bank, configured alert rules, and integrated with Alertmanager for incident management.

Grafana

advanced3+ years

Visualization dashboards and monitoring. Built custom Grafana dashboards for Kubernetes metrics, application performance, and infrastructure health for my project at Deutsche Bank. Integrated with Prometheus for unified on-prem observability.

k6 Performance Testing

advanced2+ years

Load testing and performance benchmarking

#Languages & Frameworks

Python, Node.js, TypeScript, React

Python

senior4+ years

Flask, FastAPI, Frappe framework

Node.js

advanced3+ years

Express APIs, Next.js websites

TypeScript

advanced2+ years

Type-safe development

React

advanced3+ years

Admin panels, frontends

#DevOps Tools

kubectl, k9s, Git, and other CLI tools

kubectl

senior5+ years

Kubernetes CLI management

k9s

advanced2+ years

Terminal UI for Kubernetes

Git

senior7+ years

Version control

Docker Compose

senior7+ years

Local development orchestration

JFrog Artifactory

senior4+ years

Universal artifact repository manager. Managed Docker images, Helm charts, and build artifacts with Xray security scanning for vulnerability detection.

Groovy

advanced2+ years

Scripting language for Jenkins pipelines. Developed complex shared libraries and reusable pipeline templates with OOP principles for standardized CI/CD.

Go Templates

senior4+ years

Template engine for dynamic configuration generation. Used in Helm charts and Kubernetes manifests for environment-specific deployments.

Renovate

advanced1+ years

Automated dependency updates

Get in Touch

Contact Pipeline

Run the CI/CD pipeline to deploy my contact information. Each stage reveals a different way to connect.

prepare-environment

Stage 1 of 5

build-connection

Stage 2 of 5

test-social-links

Stage 3 of 5

deploy-professional-network

Stage 4 of 5

pipeline-complete

Stage 5 of 5