Sergey Stebakov
Senior DevOps Engineer
Platform and releases: Kubernetes, GitLab CI, Argo CD, Terraform, and Helm. From monitoring and incidents to DevSecOps in the pipeline. Remote, full-time or project-based.
Target: from USD 6,000 net
Experience · recent roles
- Gambchamp Nov 2025 — presentSenior DevOps Engineer · Tbilisi
Kubernetes automation, GitOps with Argo CD, cloud infrastructure.
- Optimacros Aug 2024 — presentDevOps / SRE · Batumi
CI/CD & GitOps: GitLab CI, Argo CD, Helm, multi-env. DevSecOps: SonarQube, Trivy, Suricata. Kubernetes on bare metal and EKS, Terraform, Ansible, Go/Python tooling; data path with Kafka and ClickHouse where needed.
- Sberbank-Service Feb 2023 — Apr 2025DevOps / Linux engineer · Moscow
Huawei/Dell/HPE infrastructure, Blue-Green for video conferencing (Docker, K8s, Kafka, ClickHouse, Terraform, ELK). GitLab CI, Zabbix/Prometheus, Proxmox/VMware, team mentoring.
- Open Selection LLC Jun 2020 — Feb 2023Linux engineer · Moscow
VMware, Python bots, 24/7 incidents. Bare metal: sizing, procurement, racking servers and networking gear.
Focus
- CI/CD & GitOps
GitLab CI pipelines: checks, build, deploy, tests. Argo CD, Helm charts, multi-environment, reusable templates.
- DevSecOps & platform
SonarQube, Trivy, Suricata in the CI/CD path. Kubernetes, ingress, HPA, service mesh, hardened images, Proxmox and hybrid.
- IaC & operations
Terraform and Terragrunt, Ansible roles, Debian/RHEL/Arch in production—on bare metal and in cloud. Prometheus, VictoriaMetrics, Grafana, Zabbix, alerts and an SRE take on incidents; Kafka and ClickHouse in the data plane when the stack calls for it.
Stack
- Linux Production Debian/RHEL, systemd, kernel tuning, troubleshooting.
- Kubernetes Clusters, workloads, networking, operators, ingress, day-2 ops.
- Argo CD GitOps: apps, sync policies, multi-env, Helm/Kustomize integration.
- GitLab CI Pipelines, runners, MR workflows, artifacts, security stages.
- Helm Charts, releases, values, templating for Kubernetes apps.
- Terraform IaC modules, state, remote backends, providers, drift awareness.
- Terragrunt DRY Terraform layouts, env layering, remote state wiring.
- Ansible Playbooks, roles, idempotent config across bare metal and VMs.
- Docker Images, multi-stage builds, compose, runtime and registry hygiene.
- Prometheus Metrics model, scrape configs, recording rules, Alertmanager path.
- Grafana Dashboards, alerts-as-code, data sources, on-call visibility.
- VictoriaMetrics Long-term metrics storage, Prometheus-compatible, cardinality.
- Zabbix Classic monitoring, agents, templates, SLA-oriented alerting.
- Python Automation, APIs, small services, CI glue and tooling.
- Golang CLIs, Kubernetes operators, performant services and integrations.
- Bash Shell glue in pipelines, packaging, and one-off ops scripts.
- Nginx Reverse proxy, TLS termination, caching, upstream health.
- PostgreSQL Relational ops: backups, replication basics, tuning and migrations.
- ClickHouse Columnar analytics: clusters, ingestion, query performance, backups and upgrades.
- Proxmox KVM/LXC clusters, storage, HA, VM lifecycle for lab and prod.
- VMware vSphere: VMs, networking, storage, migration and capacity.
- DevSecOps Security in SDLC: policies, gates, secrets hygiene, shift-left.
- SonarQube SAST, quality gates, tech debt tracking in CI.
- Trivy Image and IaC scanning for CVEs and misconfigurations.
- S3 Object storage: backups, artifacts, lifecycle and access policies.
- RabbitMQ Queues, exchanges, reliable messaging between services.
- Kafka Brokers, topics, retention, streaming and ops for event-driven platforms.
- Bare metal Racks, provisioning, firmware, switching, IPMI/BMC, hybrid with VMs and Kubernetes.