DevOps engineer with a development background. I set up delivery from commit to cluster and run the cluster itself. Led a development team on a commercial project, and still write the services that live in the infrastructure I build.
Software Engineering student at RTU MIREA, Moscow. Writing code since 2020.
Hand-provisioned with kubeadm: a 5-node cluster with a 3-master HA control plane.
Golden VM images for Proxmox built with Packer: Ubuntu autoinstall, Kubernetes node images, Talos Image Factory schematics. Every template is tested by booting a clone.
From commit to cluster in one pipeline: tests, image builds with Docker Buildx, publishing to a self-hosted registry, rollout to Kubernetes.
Images scanned against the CIS Level 1 benchmark with OpenSCAP and for CVEs with Trivy, verified with goss. Hardened CI: actions pinned by SHA, minimal permissions, secrets scoped to protected environments; the cloud runner reaches the lab only through a per-job WireGuard peer, nothing is exposed to the internet. OpenSSF Best Practices passing badge and Scorecard.
Stateful workloads through operators, not hand-written manifests. SSO on Keycloak, internal dashboards behind OAuth2 Proxy.
Microservices in Java with Spring Boot. Systems code in C and C++: freestanding environments without libc, manual memory management, ELF and the linker.