I design and deploy production-grade cloud infrastructure on AWS — from Terraform provisioning to Kubernetes orchestration, GitOps delivery, and full observability stacks. Security-first, automation-always.
I'm a DevOps and Cloud Engineer with a foundation in networking (Cisco CCNA) and systems administration, passionate about building reliable, scalable infrastructure and automating everything that can be automated.
I work across the full infrastructure stack — from provisioning cloud resources with Terraform, to containerizing applications with Docker, deploying on Kubernetes (k3s and EKS), and setting up GitOps pipelines with ArgoCD.
My approach to infrastructure is security-first — I integrate scanning tools (Trivy, Checkov, Gitleaks) directly into CI pipelines so security is enforced automatically, not as an afterthought.
On the observability side, I build monitoring stacks with Prometheus, Grafana, and Loki — because you can't operate what you can't see.
Production-grade Saleor Commerce 3.20 deployed on AWS EKS v1.31 with GitOps (ArgoCD), dual autoscaling (HPA + KEDA), 4-stage DevSecOps CI/CD pipeline (Gitleaks + Checkov + Trivy), and full observability (Prometheus + Grafana + Loki). Deployed to both k3s and EKS with zero Helm chart changes — proving Kubernetes portability.
2-node k3s cluster on AWS with full GitOps workflow: GitHub Actions builds → ECR push → ArgoCD auto-deploys. Wiki.js with HTTPS (cert-manager + Let's Encrypt), custom Helm charts, Prometheus + Grafana monitoring, and Loki log aggregation.
3-tier production infrastructure on AWS: Terraform (7 modules, 78 resources), Ansible (9 roles), Jenkins CI/CD. 6 EC2 servers running Gitea (HA), MySQL 8, RabbitMQ, Memcached. ALB with ACM certificate, CloudWatch monitoring with SNS alerting. Mixed OS: Ubuntu 22.04 + CentOS Stream 9.
Installed, configured, and maintained network servers and infrastructure. Monitored local network traffic, diagnosed performance issues, and provided technical support for staff and students. Managed virtualization environments and server maintenance schedules.
Managed secure network operations for a financial institution. Installed, maintained, and monitored Cisco networking devices across bank branches. Implemented network security policies, access controls, and incident response procedures.
Installed and maintained network equipment. Organized structured cabling for optimal performance. Provided technical support and troubleshot network connectivity issues.
Shenyang Aerospace University, China
Sep 2024 — Present
Technological University of Tajikistan
2020 — 2024
Cisco · Dec 2022
Cisco · May 2021
Cisco / NetAcad · Apr 2021
Cisco / NetAcad · Nov 2020
I'm actively looking for Junior DevOps, Cloud Engineer, or SRE opportunities — remote or based in Tokyo, Japan. Whether you have a question or just want to say hello, feel free to reach out.