About Carsten
German
Native or bilingual
English
Fluent
French
Fluent
Experience
- PostbankDevops Development PBS Fabric / Openshift Container PlatformBANKING AND INSURANCEAugust 2019 - December 2021 (2 years and 4 months)
- Architecture / Design: Design, implementation, and further development of a private cloud container platform using Red Hat OpenShift v3.
- Enterprise Architecture Management
- Setup / continuous operation of a private Docker Registry with Artifactory;
- Vulnerability Analysis JFrog XRay; instance for security and vulnerability analysis of application images.
- Conception / implementation of the OpenShift user rights concept (RBAC)
- Log Aggregation (Filebeat) and Monitoring (ELK); setup of dashboards for operational use
- IAC: Ansible and Terraform
- Zero Trust approach
- BarmeniaGothaer,Infrastructure Project ManagementBANKING AND INSURANCEApril 2025 - Today (1 year and 2 months)Cologne, GermanyRelease planning and control, architecture development and further development of the security concept, guidelines for achieving basic IT protection according to "BSI-Grundschutz", control of external broker connections and GDV integration, connection of the commercial insurance product platform to the central Bipro services of BarmeniaGothaer.
- Bundesdruckerei GmbH,Plain 2.0, Devops Engineering and Setup of a Data Science Platform for the Federal GovernmentPUBLIC SECTORJuly 2023 - April 2025 (1 year and 9 months)Berlin, GermanyCloud / Platform Engineer and Enterprise Architecture Management(EAM),Technology and tasks: Openshift, Kubernetes, Terraform, Ansible, Gitlab,Artifactory, Ceph, Rook, K3S, Hashicorp Vault, CertManagerCertificate Management via HC Vault PKI, BitWarden - VaultWarden, Cisco ACI –Software-defined network, BSI IT Grundschutz, Enterprise ArchitectureManagement (EAM)Excerpt of individual results• Development of IaC code for building a Proxmox cluster• IaC for VM-distributed services such as LDAPs, Vault Cluster, PowerDNS,• K3S and Terraform code for building services such as Gitlab, Vault-PKIand Certmanager connection for connecting K3S to the PKI• Hashicorp Vault security policies for tenant separation underZero Trust Guideline• Setup of an Openstack / Openshift hybrid architecture with Undercloudand Overcloud strategy.• Automated setup of the Openshift cluster via IaC (Ansible);Continuous operation of Openshift management via Red HatCluster Management (RHCM)• Hardening of security-sensitive container applications in K3Sthrough Ingress, Egress, Network Policies, separation of network trafficby 1-to-1 assignment of NICs to service PODs via Multus• Hardening of Proxmox VMs according to Openscap vulnerability assessment• Setup of a pipeline for CVE analysis of all container images andsoftware artifacts via JFrog Artifact and JFrog Xray. Risk assessmentand risk mitigationProject methods and development principles:• Agile project organization according to Scrum principles• Requirements management in Jira
Recommendations
Be the first to recommend Carsten
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Dipl.-Ing.Engineering degree, University of the Federal Armed ForcesDipl.-Ing.
- Oracle DB Certified Administrator2006Oracle DB Certified Administrator