Aleksey Bevz

Senior DevOps / Platform Engineer — Kubernetes-focused

Production on-premises Kubernetes, Linux, Jenkins/GitLab CI, and data-platform infrastructure.

More than four years responsible for an on-premises production Kubernetes platform—from the initial hands-on build to later architectural oversight.

Current non-commercial lab and public portfolio work covers Kubernetes platform engineering, OpenTofu/Terraform, Ansible, GitOps, and Go training, with limited hands-on AWS lab work.

platform console

opsproduction + lab

$ profile

  • devops-platform-engineer

$ experience

  • on-prem-production-kubernetes
  • non-commercial-platform-lab

$ focus

  • production-kubernetes-ci-cd
  • lab-iac-gitops-observability
  • portfolio-automation-documentation

$ status

  • open-to-work

Selected Portfolio, Lab & Demo Work

Public portfolio, non-commercial lab, demo, and developer-tooling artifacts focused on Kubernetes platform engineering, infrastructure automation, CI/CD, and operational clarity.

Public Lab / Infrastructure Automation

Platform-IaC

Public lab project covering Proxmox, Kubernetes, OpenTofu, Ansible, SOPS, platform services, security tooling, observability, documentation, and runbooks.

Focus
  • OpenTofu
  • Ansible
  • Kubernetes
  • SOPS/Age
  • Cloudflare

Public Lab / GitOps Portfolio

Platform-IaC-GitOps

Public GitOps portfolio using Argo CD app-of-apps, External Secrets Operator, Vault, and Kyverno policy controls.

Focus
  • ArgoCD
  • External Secrets
  • Vault
  • Kyverno
  • Istio
  • cosign

Public Demo / Software Supply Chain

democicd

Public software-supply-chain demonstration using GitLab CI, Trivy, cosign, digest-based deployment, and admission-policy enforcement.

Focus
  • Go
  • Kaniko
  • Trivy
  • cosign
  • ArgoCD
  • Kyverno

GitHub Project / Developer Tooling

af-coordinator

Local-first coordination daemon for AI agents working across many projects, repos, and worktrees. Single write authority over SQLite, HTTP+JSON over a Unix socket, and a lease-based claim protocol so concurrent agents don't collide.

Focus
  • Go
  • SQLite
  • Unix socket
  • HTTP/JSON
  • AI agents

Core Strengths

Production Kubernetes Operations

On-premises Kubernetes and Linux across dev, test, stage, and production: initial cluster/control-plane build, upgrades, node replacement, Istio ingress certificate maintenance, capacity planning, and incident response.

Production CI/CD

Jenkins pipelines, GitLab CI integration, Harbor, shared base images, multi-stage Dockerfiles, blue-green deployments, and maintenance-mode release windows.

Production Data Platform

PostgreSQL/Patroni HA, Ceph, Istio, RabbitMQ, and Redis integrated into the Kubernetes platform foundation.

Lab / Portfolio — IaC & GitOps

Proxmox, Kubernetes, OpenTofu/Terraform, Ansible, SOPS/Age, Argo CD, External Secrets Operator, Vault, Kyverno, and cosign.

Lab / Portfolio — Kubernetes & CI Automation

cert-manager and Istio Gateway configuration; Kubernetes Gateway API CRD and Traefik automation; GitHub Actions workflows for CI, release packaging, and IaC validation.

Non-production Observability / Lab

Prometheus, Grafana, Loki, and Grafana Alloy in development/test and lab environments; dashboards adapted from public examples.

Current Focus

  • Deepening Kubernetes platform engineering through non-commercial lab work
  • Building reproducible lab environments with OpenTofu, Ansible, and GitOps
  • Turning lab troubleshooting into reusable documentation and case studies
  • Continuing AWS architecture practice and Go training in lab and portfolio projects