Back to the experienceDownload PDF2 pages · A4

Or use your browser's print function — this page is styled for paper.

Alper Devrim

DevOps Engineer

CNCF Kubestronaut

Location
Sivas, Türkiye — Remote

Profile

CNCF Kubestronaut and DevOps Engineer with 4+ years across Linux systems engineering and cloud infrastructure, operating production Kubernetes platforms on AWS, Azure, Oracle Cloud and bare metal. Runs multi-tenant clusters serving enterprise SaaS customers, delivered a legacy-to-microservice migration for a regulated banking environment spanning a multi-cloud estate with cross-provider disaster recovery, and productised a complete application stack into a published AWS Marketplace appliance.

Specialises in GitOps delivery with ArgoCD and Helm, policy-driven cluster security with Kyverno and HashiCorp Vault, and observability with Prometheus, Grafana and Alertmanager, backed by Terraform and Ansible automation.

Skills

Kubernetes

Distributions operated in production, not just clusters created.

  • RKE2
  • OKD / OpenShift
  • AKS
  • EKS
Containers & Packaging

How a change becomes an artefact.

  • Docker
  • Helm
  • Kustomize
GitOps & CI/CD

How an artefact becomes a running system.

  • ArgoCD
  • GitHub Actions
  • GitLab CI
  • Azure DevOps
Infrastructure as Code

The estate, declared.

  • Terraform
  • Ansible
Observability

Symptoms a human recognises, routed to someone who can act.

  • Prometheus
  • Grafana
  • Alertmanager
  • ELK
Cluster Security

Admission control and secret delivery as platform defaults.

  • Kyverno
  • HashiCorp Vault
  • External Secrets
  • RBAC
Cloud

Five providers, including a cross-provider DR path.

  • AWS
  • Azure
  • Oracle Cloud
  • Huawei Cloud
  • Hetzner
Systems & Data

The layer everything else is standing on.

  • Linux
  • PostgreSQL
  • MSSQL
  • Redis
Scripting

Glue, and the tooling around the glue.

  • Python
  • Bash
  • YAML

Experience

R-01

DevOps Engineer at Raynet GmbH

Raynet GmbH · Paderborn, Germany — Remote

Current

Multi-tenant production Kubernetes for enterprise IT asset and endpoint management SaaS.

  • Operate multi-tenant production Kubernetes clusters (RKE2, OKD/OpenShift) spanning 10+ nodes across Hetzner, AWS and Azure, hosting enterprise IT asset management and endpoint management SaaS products.
  • Run a production CloudNativePG cluster serving tenant-isolated namespaces at scale; eliminated connection exhaustion incidents by redesigning PgBouncer session-mode pooling.
  • Hardened clusters with a restrictive Kyverno admission baseline and centralised secret delivery via HashiCorp Vault + External Secrets Operator with RS256 JWT authentication.
  • Built the OKD observability layer: alerting rules across infrastructure, database, GitOps and backup domains, wired to Alertmanager and a service that opens and resolves GitLab issues automatically.
  • Delivered an MSSQL backup solution as a reusable Helm chart for OpenShift (ServiceAccount, Role, RoleBinding, ExternalSecret and CronJob templates) with edition-aware compression, streaming backups to Hetzner S3 storage.
  • Migrated ArgoCD multi-source Applications to Helm chart v3, refactoring the values structure and moving secret delivery to ExternalSecret-based injection.
  • Recovered a customer-hosted production environment after a failed platform upgrade: analysed Helm release drift against previous revisions and executed a layered rollback across data, identity, cache, application and frontend tiers.
  • Hardened golden AMIs for public distribution: removed authorised keys and SSH host keys, reset cloud-init state, and sanitised journal and authentication logs so no build-time credentials or identity persisted into customer instances.
  • Published and maintain an AMI-based server product on AWS Marketplace, handling scanner-account sharing with snapshot create-volume permissions, submission review and version replacement workflows.

Stack

  • RKE2
  • OKD / OpenShift
  • Kyverno
  • HashiCorp Vault
  • External Secrets
  • ArgoCD
  • Helm
  • PostgreSQL
  • MSSQL
  • Alertmanager
  • GitLab CI
  • AWS
  • Azure
  • Hetzner
Cluster nodes
10+
Cloud providers
3
AWS Marketplace product
1

R-02

DevOps Engineer at Bestcloudfor.me

Bestcloudfor.me · Istanbul, Türkiye — Remote

Banking modernisation: legacy monolith to microservices across a multi-cloud estate with cross-provider DR.

  • Contributed, as part of a consultancy engagement, to a banking client's infrastructure modernisation programme, migrating legacy monolithic systems to a containerised microservice architecture with automated CI/CD and GitOps delivery.
  • Operated the client's multi-cluster Kubernetes estate: a large-scale production cluster on Oracle Cloud Infrastructure, a cross-provider disaster recovery cluster on Huawei Cloud, and a dedicated control plane cluster running core platform applications.
  • Built a two-node HAProxy and Keepalived external load balancer for an RKE2 cluster, fronting the Kubernetes API and ingress behind a virtual IP and carrying both north-south and east-west traffic.
  • Automated operating-system security patching across 50+ servers with Ansible, generating remediation playbooks from Qualys vulnerability scan data and applying them through a single dynamic-inventory run.
  • Implemented monitoring and logging with Prometheus, Grafana and the ELK stack, including AKS observability dashboards in Azure Managed Grafana covering node inventory, resource utilisation, pod health, HTTP probe status and per-namespace HTTP traffic.
  • Deployed stateful workloads on Kubernetes, including a Redis Sentinel high-availability setup, and resolved StorageClass and PVC binding failures that blocked persistent volumes from scheduling.

Stack

  • RKE2
  • AKS
  • Ansible
  • Prometheus
  • Grafana
  • ELK
  • Redis
  • Oracle Cloud
  • Huawei Cloud
  • Azure
  • ArgoCD
  • Docker
  • Linux
Kubernetes clusters
3
Servers patched
50+
Clouds, one DR path
2

R-03

DevOps Engineer at Sensey

Sensey · Delft, Netherlands — Remote

One pipeline definition that reads each service's runtime and picks its own build path.

  • Designed a language-aware CI/CD pipeline that detected each service's runtime stack and selected the matching build, test and deployment path, delivering a seven-microservice application through a single shared pipeline definition.
  • Designed, deployed and managed Azure cloud infrastructure for production application workloads.
  • Deployed and operated the containerised microservices on Kubernetes, packaging releases with Docker and Helm.
  • Integrated source control, work tracking and release automation in Azure DevOps as a single delivery workflow.
  • Implemented Prometheus and Grafana monitoring for real-time metrics and system visibility.

Stack

  • Azure DevOps
  • Azure
  • AKS
  • Docker
  • Helm
  • Prometheus
  • Grafana
  • YAML
Microservices
7
Shared pipeline definition
1

R-04

Linux System Support at Anabiltek

Anabiltek · Sivas, Türkiye — Remote

Current

Part-time, ongoing: keeping production Linux estates healthy.

  • Provide ongoing Linux system administration, performance tuning and reliability improvements for production environments.

Stack

  • Linux
  • Bash
Continuous engagement
2.5yr

R-05

System Specialist & DevOps Engineer at Freelance

Freelance · Remote

End-to-end ownership for long-term clients: provisioning, hardening, incident response.

  • Provided end-to-end Linux system administration for long-term clients, covering provisioning, hardening, performance tuning and incident response.
  • Containerised client workloads and introduced automated deployment pipelines in place of manual release processes.
  • Designed and implemented project-specific infrastructure, including monitoring, alerting, backup and recovery routines.
  • Diagnosed and resolved complex system, network and integration issues across mixed hardware and software environments.

Stack

  • Linux
  • Docker
  • Bash
  • Python
  • Prometheus
  • Grafana
Independent practice
2yr

R-06

IT Officer at AET Electronics

AET Electronics · Sivas, Türkiye

Where it started: keeping a manufacturing site running.

  • Maintained IT infrastructure across hardware, software and network layers for a manufacturing site, ensuring uninterrupted daily operations.
  • Applied security controls to protect company data and IT assets, and resolved end-user technical issues.

Stack

  • Linux
  • Bash
The first layer
0

Certifications

  • OpenTelemetry Certified Associate

    CNCF · OTCA

  • Istio Certified Associate

    CNCF · ICA

  • Certified Backstage Associate

    CNCF · CBA

  • Kyverno Certified Associate

    CNCF · KCA

  • Prometheus Certified Associate

    CNCF · PCA

  • Certified Argo Project Associate

    CNCF · CAPA

  • Certified GitOps Associate

    CNCF · CGOA

  • Certified Cloud Native Platform Engineering Associate

    CNCF · CNPA

  • AWS Certified Solutions Architect — Associate

    AWS · SAA

  • AWS Certified Cloud Practitioner

    AWS · CCP

  • CNCF Kubestronaut

    CNCF · KUBESTRONAUT · Programme distinction

  • Certified Kubernetes Security Specialist

    CNCF · CKS

  • Kubernetes and Cloud Native Security Associate

    CNCF · KCSA

  • Kubernetes and Cloud Native Associate

    CNCF · KCNA

  • Certified Kubernetes Application Developer

    CNCF · CKAD

  • Certified Kubernetes Administrator

    CNCF · CKA

  • Microsoft Certified: Azure Fundamentals

    Microsoft · AZ-900

Education

Bachelor's Degree, Computer Engineering

Cumhuriyet University · Sivas, Türkiye

Associate Degree, Computer Programming

Eskişehir Technical University · Eskişehir, Türkiye

Languages

Turkish
Native
English
Professional Working