KubestronautI help engineering teams run production Kubernetes — reliably, securely, and at scale.
CNCF Kubestronaut. 5+ years operating production K8s for trading platforms, healthcare data pipelines, 5G telco infrastructure, and AI workloads.

I keep production Kubernetes alive on a trading platform for a living. Before that, I hardened healthcare data infrastructure on AWS, built 5G telco platforms on on-prem Kubernetes, and shipped production AI workloads at medium scale.
I'm a CNCF Kubestronaut — one of roughly 1,500+ engineers globally holding all five Kubernetes certifications (CKA, CKAD, CKS, KCNA, KCSA), with 5+ years operating production K8s. I write at /blog and speak at CNCF and Kubernetes community events.
I occasionally take on select consulting engagements in production Kubernetes, security, and platform engineering.
Building scalable systems across diverse industries — from healthcare data pipelines to 5G telecom infrastructure, FinOps optimization to trading platform engineering.

FinOps, Kubernetes expert

Healthcare: Designed secure, modular AWS infrastructure with Terraform and CloudFormation (including OpenSearch with Okta SSO and EKS clusters), and automated ETL workflows using EventBridge, Lambda, Airflow, and Snowflake — cutting data processing time by 30% and improving scalability.
Developed Python-based Lambda functions and DAGs to streamline data pipelines, and strengthened software supply chain security with Wiz, JFrog, Harbor, Trivy, and SBOM generation, reducing vulnerability exposure and enhancing compliance.
Data Pipeline for Snowflake with AWS: Engineered Python-based AWS Lambda functions to automate data pipelines and streamline end-to-end workflows. Built event-driven pipelines leveraging Lambda, S3, and Snowflake for seamless and cost-effective data processing.
Azure & Kubernetes: Consulted on planning and designing Azure Kubernetes Service (AKS) clusters, focusing on cost optimization and efficient resource utilization. Implemented VNET integration, subnet allocation, and IP address management to ensure secure, scalable networking.
Designed and enforced Kubernetes Network Policies for traffic control, and optimized load balancer and ingress configurations for high availability and secure service exposure.
AI-Powerpoint Creation: Deployed a backend for apps powered by GPT-based LLM services, leveraging OpenAI endpoints, Memcached caching, and horizontally scaled MongoDB clusters on AWS EC2 instances to boost system throughput by 40% and cut latency by 30%.
Automated Dev and Prod deployments for frontend and backend with GitHub Actions, and implemented Blue/Green deployments using Route53 DNS routing to minimize downtime and enable quick updates.
AWS Infrastructure: Cost effective AWS Infrastructure planning and setup. EKS setup and IP planning for the deployment.

Telco Product: Modernized infrastructure by migrating microservices and CI/CD pipelines to AWS with Terraform and Argo CD, enabling automated GitOps deployments. Developed Ansible playbooks for server provisioning and environment consistency, reducing manual errors and speeding releases.
Implemented TLS termination and advanced load balancing across diverse servers. Boosted system reliability and cut costs through end-to-end automation and infrastructure as code.
5G Marketplace: Designed highly available on-prem Kubernetes clusters with Istio (mTLS), HAProxy TLS termination, centralized ELK logging, Grafana/Prometheus monitoring, and a custom Go-based admission controller for policy enforcement — achieving almost zero downtime.
Enhanced cloud-native readiness by testing using CNCF test suite and fixing Java bugs.
WSO2 Message Transformation Micro-services: Developed and deployed WSO2 message transformation microservices with Jenkins pipelines, accelerating releases across SIT, UAT, and PROD. Automated server configuration using Ansible for consistent and reproducible environments.
Strengthened security posture with Wiz scans and SBOM generation. Migrated services to AWS Cloud and optimized Kubernetes auto-scaling through traffic-based custom scaling rules.

Automated deployment workflows with custom scripts, reducing manual effort and ensuring consistent, error-free releases.
Collaborated with senior engineers to troubleshoot and resolve production issues, contributing to improved system stability and faster recovery.
Designed and optimized CI/CD pipelines in Jenkins, streamlining software delivery and accelerating build and deployment cycles.
Documented processes and shared best practices, improving team collaboration and onboarding efficiency.
Maintained on-premises Kubernetes clusters and Linux systems with regular security updates, while managing and optimizing CI/CD pipelines across UAT, SIT, QA, and DEV environments to enable faster and more reliable deployments.
Open source projects and tools I've built — from DevOps pipelines to developer tooling.
Kubestronaut — All 5 CNCF Kubernetes certifications + AWS Cloud Practitioner.
Clusters I work across — production Kubernetes, cloud platforms, security, observability, and AI infrastructure.
Kubernetes (CKA / CKAD / CKS), Istio, Cilium, Helm, ArgoCD, Karpenter, KServe, Docker
AWS (EKS, Lambda, OpenSearch), Azure (AKS, VNET), GCP (GKE)
CIS Benchmark, Wiz, Trivy, JFrog, Harbor, SBOM, Kyverno, Falco, OPA
Prometheus, Grafana, OpenTelemetry, ELK, Loki
Go, Python, Java, Bash
Envoy AI Gateway, LiteLLM, Ollama, vLLM, KServe, Model serving on Kubernetes
Terraform, CloudFormation, Ansible, Helm, GitHub Actions, Jenkins
I share my learnings on Kubernetes, DevOps, and cloud-native technologies.
Interested in innovative projects? Let's build something great.
Get in TouchOpen to collaborating on interesting projects and technical challenges.