Skip to content
Available for new contracts

Bartosz Jedynak

DevOps Engineer | Azure and GCP

I build and secure cloud platforms on Microsoft Azure and Google Cloud: Kubernetes, CI/CD, infrastructure as code and observability. Open to fully remote DevOps / SecOps roles on a B2B contract.

~/about

About

DevOps engineer with 6 years on cloud platforms, split between Google Cloud and Microsoft Azure. I work hands-on with CI/CD pipelines, Kubernetes (CKA and CKS certified), infrastructure as code and monitoring, and bring a security angle from running SecOps for a multi-team Azure estate: pipeline scanning, cluster hardening, identity and secrets management. Before moving into infrastructure I spent four years building backend services in Java, which is why I design platforms around the teams that deploy on them.

strengths

  • Incident response

    alerting tied to SLOs, so incidents come from alerts, not from users

  • Troubleshooting across the stack

    from pipeline to pod - four years as a backend developer help here

  • Automation

    security gates in 50+ pipelines, cost governance as Cloud Custodian policies

  • Documentation

    cloud architecture standards that other teams actually follow

  • Cross-team collaboration

    one platform serving 8+ delivery teams

languages

  • English C1
  • German A2
  • Polish Native

technical skills

Public clouds
Microsoft Azure Google Cloud Platform
Programming languages
Python Bash Java Go
IaC tools
Terraform Bicep Ansible Cloud Custodian ARM templates
Containerization
Docker Kubernetes Helm AKS GKE
DevOps tools
Azure DevOps CI/CD Git ArgoCD GitOps Jenkins GitLab GitHub Actions Jira
Security tools
Microsoft Defender for Cloud Trivy SonarQube Entra ID Azure Key Vault RBAC Google Cloud IAM
Monitoring tools
Grafana Prometheus ELK Azure Monitor Log Analytics Google Cloud Monitoring
Other
Linux PowerShell FinOps Agile/Scrum SLO/SLI

~/experience

Experience

  1. Apr 2024 - Present

    Remote, Zielona Góra

    DevOps / SecOps Engineer

    Digital Technology Poland

    • Operate and secure the Azure platform for 8+ engineering teams: CI/CD, AKS, GitOps with Helm and ArgoCD, identity, observability.
    • Own the Terraform and Bicep code provisioning AKS, networking and identity across 10+ subscriptions.
    • Embedded Trivy, SonarQube and Microsoft Defender for Cloud gates into 50+ Azure DevOps pipelines, catching vulnerabilities at build time.
    • Hardened 8 AKS clusters with RBAC, network policies and pod security admission.
    • Built SLO-based alerting in Grafana, ELK and Azure Monitor, so incidents surface from alerts rather than user reports.
    • Moved credentials into Key Vault and enforced least-privilege access across 10+ subscriptions.
    • Automate FinOps and cost governance with Cloud Custodian policies.
    • Work with delivery teams on secure-by-default services and pipelines.
    Microsoft AzureAzure DevOpsAKSKubernetesHelmArgoCDTerraformBicepCloud CustodianGrafanaELKCI/CDFinOpsCloud security
  2. Nov 2020 - Mar 2024

    Remote

    Cloud Engineer

    Cinkciarz.pl

    • Built and ran the GCP infrastructure for payment systems in a regulated fintech, provisioned with Terraform.
    • Designed the IAM hierarchy, project structure and cost budgets with alerting for every team.
    • Cut GCP spend by rightsizing GKE node pools, applying committed use discounts and reclaiming idle resources.
    • Built hybrid on-premises to GCP connectivity to meet data residency requirements.
    • Documented the cloud architecture standards used across engineering teams.
    Google CloudGKEKubernetesTerraformAnsibleLinuxPythonDockerCI/CDCloud security
  3. Apr 2019 - Oct 2020

    Zielona Góra

    Software Developer

    Cinkciarz.pl

    • Built the production backend for payment and transaction systems in Java and Spring Boot, with REST APIs and CI/CD.
    • Moved on to run the cloud platform for the same systems I had built.
    Java 11/17Spring BootQuarkusHibernateJUnitSQLTDDKotlinDockerOpenShift
  4. Oct 2016 - Mar 2019

    Zielona Góra

    Software Engineer

    Reed Business Information

    • Backend development in Java and Spring Boot.
    Java 8Spring BootApache TomcatJUnit

~/certs

Certs

  • CKA

    valid until June 2027

    Certified Kubernetes Administrator

    The Linux Foundation

    verify on Credly
  • CKS

    valid until October 2027

    Certified Kubernetes Security Specialist

    The Linux Foundation

    verify on Credly

previously held

  • Professional Cloud Architect- Google Cloudexpired 2026
  • Professional Cloud DevOps Engineer- Google Cloudexpired 2025

~/education

Education

  1. 2014 - 2018

    Engineer of Computer Science

    University of Zielona Góra

  2. 2010 - 2014

    IT Technician

    The Electronic and Automotive School Complex

~/community

Community

  1. 2018 - present

    Greenfield Conference

    Lead organizer

    IT conference for 100-500 attendees, held annually since 2018.

~/hire

Work with me

I'm currently looking for new contracts: DevOps, SecOps and cloud platform work. Fully remote, B2B.

  • Kubernetes platform and hardening

    Running AKS and GKE clusters, GitOps with Helm and ArgoCD, RBAC, network policies and pod security admission.

  • CI/CD with security gates

    Azure DevOps and GitHub Actions pipelines with Trivy, SonarQube and Defender for Cloud built in, so issues stop at build time.

  • Infrastructure as code

    Terraform and Bicep for Azure, Terraform for Google Cloud: landing zones, networking, identity and multi-subscription estates.

  • Observability and SLO-based alerting

    Grafana, Prometheus, ELK and Azure Monitor wired to service level objectives, so incidents surface from alerts, not from users.

  • Identity, secrets and cloud security

    Entra ID, Key Vault and Google Cloud IAM: least-privilege access models and secrets management across teams.

  • FinOps and cost governance

    Cloud Custodian policies, rightsizing, committed use discounts and budgets with alerting on Azure and GCP.