Bartosz Jedynak
DevOps Engineer | Azure and GCP
I build and secure cloud platforms on Microsoft Azure and Google Cloud: Kubernetes, CI/CD, infrastructure as code and observability. Open to fully remote DevOps / SecOps roles on a B2B contract.
~/about
About
DevOps engineer with 6 years on cloud platforms, split between Google Cloud and Microsoft Azure. I work hands-on with CI/CD pipelines, Kubernetes (CKA and CKS certified), infrastructure as code and monitoring, and bring a security angle from running SecOps for a multi-team Azure estate: pipeline scanning, cluster hardening, identity and secrets management. Before moving into infrastructure I spent four years building backend services in Java, which is why I design platforms around the teams that deploy on them.
strengths
-
Incident response
alerting tied to SLOs, so incidents come from alerts, not from users
-
Troubleshooting across the stack
from pipeline to pod - four years as a backend developer help here
-
Automation
security gates in 50+ pipelines, cost governance as Cloud Custodian policies
-
Documentation
cloud architecture standards that other teams actually follow
-
Cross-team collaboration
one platform serving 8+ delivery teams
languages
- English C1
- German A2
- Polish Native
technical skills
- Public clouds
- Microsoft Azure Google Cloud Platform
- Programming languages
- Python Bash Java Go
- IaC tools
- Terraform Bicep Ansible Cloud Custodian ARM templates
- Containerization
- Docker Kubernetes Helm AKS GKE
- DevOps tools
- Azure DevOps CI/CD Git ArgoCD GitOps Jenkins GitLab GitHub Actions Jira
- Security tools
- Microsoft Defender for Cloud Trivy SonarQube Entra ID Azure Key Vault RBAC Google Cloud IAM
- Monitoring tools
- Grafana Prometheus ELK Azure Monitor Log Analytics Google Cloud Monitoring
- Other
- Linux PowerShell FinOps Agile/Scrum SLO/SLI
~/experience
Experience
Apr 2024 - Present
Remote, Zielona Góra
DevOps / SecOps Engineer
Digital Technology Poland
- Operate and secure the Azure platform for 8+ engineering teams: CI/CD, AKS, GitOps with Helm and ArgoCD, identity, observability.
- Own the Terraform and Bicep code provisioning AKS, networking and identity across 10+ subscriptions.
- Embedded Trivy, SonarQube and Microsoft Defender for Cloud gates into 50+ Azure DevOps pipelines, catching vulnerabilities at build time.
- Hardened 8 AKS clusters with RBAC, network policies and pod security admission.
- Built SLO-based alerting in Grafana, ELK and Azure Monitor, so incidents surface from alerts rather than user reports.
- Moved credentials into Key Vault and enforced least-privilege access across 10+ subscriptions.
- Automate FinOps and cost governance with Cloud Custodian policies.
- Work with delivery teams on secure-by-default services and pipelines.
Microsoft AzureAzure DevOpsAKSKubernetesHelmArgoCDTerraformBicepCloud CustodianGrafanaELKCI/CDFinOpsCloud securityNov 2020 - Mar 2024
Remote
Cloud Engineer
Cinkciarz.pl
- Built and ran the GCP infrastructure for payment systems in a regulated fintech, provisioned with Terraform.
- Designed the IAM hierarchy, project structure and cost budgets with alerting for every team.
- Cut GCP spend by rightsizing GKE node pools, applying committed use discounts and reclaiming idle resources.
- Built hybrid on-premises to GCP connectivity to meet data residency requirements.
- Documented the cloud architecture standards used across engineering teams.
Google CloudGKEKubernetesTerraformAnsibleLinuxPythonDockerCI/CDCloud securityApr 2019 - Oct 2020
Zielona Góra
Software Developer
Cinkciarz.pl
- Built the production backend for payment and transaction systems in Java and Spring Boot, with REST APIs and CI/CD.
- Moved on to run the cloud platform for the same systems I had built.
Java 11/17Spring BootQuarkusHibernateJUnitSQLTDDKotlinDockerOpenShiftOct 2016 - Mar 2019
Zielona Góra
Software Engineer
Reed Business Information
- Backend development in Java and Spring Boot.
Java 8Spring BootApache TomcatJUnit
~/certs
Certs
CKA
valid until June 2027verify on CredlyCertified Kubernetes Administrator
The Linux Foundation
CKS
valid until October 2027verify on CredlyCertified Kubernetes Security Specialist
The Linux Foundation
previously held
- Professional Cloud Architect- Google Cloudexpired 2026
- Professional Cloud DevOps Engineer- Google Cloudexpired 2025
~/education
Education
2014 - 2018
Engineer of Computer Science
University of Zielona Góra
2010 - 2014
IT Technician
The Electronic and Automotive School Complex
~/community
Community
2018 - present
Greenfield Conference
Lead organizer
IT conference for 100-500 attendees, held annually since 2018.
~/hire
Work with me
I'm currently looking for new contracts: DevOps, SecOps and cloud platform work. Fully remote, B2B.
Kubernetes platform and hardening
Running AKS and GKE clusters, GitOps with Helm and ArgoCD, RBAC, network policies and pod security admission.
CI/CD with security gates
Azure DevOps and GitHub Actions pipelines with Trivy, SonarQube and Defender for Cloud built in, so issues stop at build time.
Infrastructure as code
Terraform and Bicep for Azure, Terraform for Google Cloud: landing zones, networking, identity and multi-subscription estates.
Observability and SLO-based alerting
Grafana, Prometheus, ELK and Azure Monitor wired to service level objectives, so incidents surface from alerts, not from users.
Identity, secrets and cloud security
Entra ID, Key Vault and Google Cloud IAM: least-privilege access models and secrets management across teams.
FinOps and cost governance
Cloud Custodian policies, rightsizing, committed use discounts and budgets with alerting on Azure and GCP.