Senior Cloud / Platform & DevSecOps Engineer
I design and build secure, scalable cloud and platform solutions, with a strong focus on automation, standardisation and developer enablement.
My background is deeply rooted in AWS, Infrastructure as Code and CI/CD, complemented by hands-on experience with Azure, Kubernetes and enterprise cloud environments. In recent years my work has increasingly focused on DevSecOps, cloud security, Policy as Code and automated security and compliance guardrails.
I combine hands-on engineering with architecture, technical ownership and enablement. I enjoy taking complex requirements and turning them into practical, reusable solutions — whether that means designing cloud infrastructure, building Terraform or CDK components, improving CI/CD platforms, implementing security controls, or establishing engineering standards that can be adopted across an organisation.
What I do
Cloud & Platform Engineering
Designing and building cloud infrastructure and platform capabilities across AWS and Azure, from individual services to reusable organisation-wide solutions.
My AWS background spans architecture, networking, security, automation and large-scale multi-account environments. I also have hands-on Azure experience, particularly around platform engineering, security controls, governance and AKS.
Infrastructure & Developer Enablement
Building the foundations that allow engineering teams to work consistently and independently.
This includes Terraform and AWS CDK building blocks, InnerSource models, CI/CD pipelines, repository and branching standards, automated validation, golden paths and reusable engineering patterns.
The objective isn’t simply to automate infrastructure, but to make good engineering practices repeatable across teams.
DevSecOps & Cloud Security
Integrating security into platforms and development workflows rather than treating it as a separate step at the end.
My work includes Policy as Code, security guardrails, Infrastructure as Code scanning, container and dependency scanning, secrets management, CI/CD security gates, Kubernetes security controls and automated compliance monitoring.
I focus on controls that are practical, automated and understandable to the engineers who have to work with them.
Architecture, Standardisation & Governance
Helping organisations turn technical and security requirements into solutions engineers can actually use.
I have extensive experience designing reusable cloud patterns, reviewing architectures, defining engineering standards and taking solutions from initial design through implementation and adoption.
I remain hands-on throughout: architecture is most valuable when it results in something that works.
Core expertise
Cloud
AWS · Azure
Containers & Platforms
Kubernetes · AKS · Docker
Infrastructure as Code
Terraform · AWS CDK · CloudFormation
DevSecOps & Security
OPA · Rego · Conftest · Checkov · Trivy · Terrascan · Policy as Code · Security Guardrails · Secrets Management · Threat Modelling
CI/CD & Engineering
Azure DevOps · GitHub Actions · GitLab CI/CD · Git · SonarQube
Development & Automation
Python · Bash · TypeScript
How I work
I am primarily a hands-on engineer. I like designing solutions, but I also want to build them, test them and see them working in production.
Over the years I have frequently taken ownership beyond the implementation itself: helping establish teams and engineering practices, designing reusable standards, mentoring engineers, acting as a technical sparring partner and driving complex work through to a finished deliverable.
I value clear technical reasoning, pragmatic solutions and candid communication. When something can be simplified, automated or improved, I will usually find it.
Experience
I have worked in IT for more than two decades, including senior cloud and DevOps engineering roles within large enterprise environments.
Recent work has included cloud enablement, reusable Infrastructure as Code, CI/CD standardisation, Kubernetes and AKS security, Policy as Code, cloud security guardrails and automated compliance.
My AWS experience includes working in environments spanning hundreds of AWS accounts, designing and productising reusable infrastructure components and implementing security and quality controls throughout the development lifecycle.
Alongside engineering delivery, I have helped establish cloud practices, enablement teams and engineering standards intended for use across entire organisations.
What colleagues say
“His technical experience when designing the actual IaC modules had a remarkable impact on the standardization across the whole company.”
— Pablo Quiroga, DevOps Engineer
“He has a strong sense of commitment, ownership and responsibility to see even the most challenging projects through to a successful deliverable.”
— Tim Neese, Senior DevOps Engineer
“He has a great sense of structure, which helped in organizing tasks and maintaining clarity throughout complex projects.”
— Cristina Stamate, Information Security Officer
Certifications & development
AWS Certified DevOps Engineer – Professional
AWS Certified Solutions Architect – Professional
AWS Certified Security – Specialty
Current professional development focuses on Kubernetes administration and security, Azure and cloud-native security, including CKA, CKS and Microsoft Azure Administrator (AZ-104).
Available for freelance assignments
I work as an independent Senior Cloud / Platform / DevOps Engineer, particularly on assignments involving cloud enablement, platform engineering, Infrastructure as Code, DevSecOps and cloud security.
Available for 32–36 hours per week, preferably hybrid in the Utrecht region or remote.
Interested in working together? Get in touch.