PATRICK EICHLER
KUBERNETES EXPERT | CLOUD ENGINEER
PROFILE
CONTACT
--Sperberzug 16, 15745 Wildau
As a certified Kubestronaut and Cloud Architect, I design and implement robust, secure, and highly
automated cloud infrastructures that enable companies to accelerate their software development
and bring innovations to market faster. I see myself as a strategic partner who translates technical
excellence into measurable business success.
My expertise focuses on three core areas:
Migration & Modernization: I transition monolithic on-premise systems to scalable, cloudnative architectures (Kubernetes, Microservices), thereby sustainably reducing technical debt
and operational costs
Security & Compliance: I implement "Security by Design" principles throughout the entire
cloud infrastructure and ensure compliance with industry standards and regulatory
requirements
Automation & Efficiency: By introducing GitOps, IaC, and comprehensive observability, I
increase the efficiency of development teams, minimize manual errors, and significantly reduce
the mean time to repair (MTTR)
https://yunacloud.com
https://blog.yunacloud.com
WORK EXPERIENCE
YunaCloud
02/2025 - NOW
Kubernetes Expert | Google Cloud Platform Engineer
PURPOSE
My goal is to act as a strategic partner,
transforming technology into a
competitive advantage. I build the
stable, secure, and scalable cloudnative solutions that directly lead to
better business outcomes by speeding
up application delivery and improving
the end-user experience. By reducing
IaC complexity, I enhance the DevOps
experience, empowering agile teams
to build and release superior products
with both speed and quality
Developer Platform
Architected a complete Google Cloud Foundation using Terraform, establishing a
robust organizational structure, network topology, and project hierarchy with reusable
modules to enforce separation between development and production environments
Designed and implemented a secure Hub-and-Spoke network architecture,
incorporating advanced components like Shared VPCs, private DNS, NAT Gateways,
and next-hop firewalls to ensure strict network isolation and security
Established secure hybrid connectivity by integrating on-premise systems with the cloud
environment via high-availability Cloud VPN tunnels, enabling seamless and protected
data flow
Engineered a comprehensive, production-ready developer platform on a private Google
Kubernetes Engine (GKE) cluster, fully integrated with a secure software supply chain
to accelerate development cycles
Integrated a full suite of best-in-class tools including ArgoCD for GitOps,
Prometheus/Grafana for observability, Jaeger/OpenTelemetry for tracing, Cilium for
CNI, Keycloak for IAM, and a complete DevSecOps toolkit with Falco, Kyverno, Trivy,
and SonarQube
Automated the entire platform setup and application deployment process using GitHub
Actions, empowering developers to self-serve and deploy services with speed,
confidence, and adherence to best practices
Spearheaded the end-to-end setup and administration of a secure Google Workspace
environment, aligning service configurations with business and security requirements
Established a comprehensive identity and access management framework, structuring
users and groups into Organizational Units (OUs) and enforcing security policies for
access control
Implemented robust security and compliance controls, including Data Loss Prevention
(DLP) rules, 2-Step Verification enforcement, and configured Google Vault for data
retention and eDiscovery
Managed core service configurations for Gmail, Drive, and Calendar, including mail
routing rules and data sharing policies, and established endpoint management for
mobile and desktop devices
Implemented a resilient, cloud-native database strategy by provisioning highly available
PostgreSQL clusters via the CloudNativePG operator, ensuring data integrity and high
uptime
Cassandra database cluster deployment via K8ssandra operator for tracing
Established automated, disaster-recovery-ready backup processes using Velero,
securing database backups to Google Cloud Storage buckets and regularly validating
restore procedures to guarantee business continuity
PATRICK EICHLER
KUBERNETES EXPERT | CLOUD ENGINEER
WORK EXPERIENCE
SKILLS
Kubernetes Expert
DevOps Culture
Teamwork
Site Reliability / Observability
Leadership / Peopleware
Effective Communication
Agile Work / Coaching
Microservice Architecture
Cloud Engineering
Consulting / Training
LANGUAGES
German (Mother tongue)
English (Fluent)
EDUCATION
2009 - 2012
OSZ IMT BERLIN
Mathematical-technical Software
Engineer
SHE Informationstechnologie AG
Kubernetes Expert | Azure Cloud Engineer
08/2024 - 07/2025
IT Service Consultant
Acted as the lead Azure Architect, designing a secure and scalable Huband-Spoke VNET architecture to serve as the foundation for the entire
cloud environment
Engineered a comprehensive cloud migration strategy, successfully
transforming legacy applications from an on-premise OpenShift
environment into a modern, containerized architecture running on Azure
Designed and implemented a C5-compliant environment, ensuring all
infrastructure components and configurations met the stringent security
requirements for processing sensitive data
Implemented a robust security posture by centrally managing all secrets,
keys, and certificates in Azure KeyVault and utilizing a suite of Azure-native
services, including Azure Firewall, Web Application Firewall (WAF), and
Azure Application Gateway
Served as the primary consultant for all architectural decisions regarding
Azure services and their integration with Kubernetes, ensuring best
practices and alignment with strategic goals
Led the provisioning and maintenance of production-grade Azure
Kubernetes Service (AKS) clusters, establishing a resilient and scalable
environment for containerized workloads
Championed a full GitOps workflow using ArgoCD, Helm, and Terraform
(IaC) to automate the deployment and lifecycle management of both
infrastructure and applications, significantly increasing deployment velocity
and reliability
Established best practices for environment separation, creating reusable
Terraform modules to ensure consistency and isolation between
development and production environments
Engineered a comprehensive observability solution, implementing IaCdriven provisioning of Grafana dashboards and alerts and establishing a
centralized logging pipeline with Fluentbit and OpenSearch
Implemented a data lifecycle management strategy using Azure Storage,
automatically transitioning data from hot to cold/archive tiers to optimize
storage costs while maintaining compliance
Executed a critical database migration, successfully moving on-premise
PostgreSQL databases to a highly available active-standby configuration in
Azure using the Crunchy Operator, ensuring business continuity and data
resilience
Supported project delivery by serving as a part-time Project Management
Assistant, coordinating tasks and ensuring alignment between technical
teams and project goals
Authored and maintained comprehensive IaC documentation to empower
developer teams and ensure effective knowledge transfer.
Delivered detailed C5 compliance documentation to the end customer,
fulfilling all regulatory and security requirements for the project.
PATRICK EICHLER
KUBERNETES EXPERT | CLOUD ENGINEER
WORK EXPERIENCE
CERTIFICATES
Anonymous Customer
Kubernetes Expert | Site Reliability Engineer
11/2022 - 07/2024
Industry 4.0
2022
THE LINUX FOUNDATION
CKAD: Certified Kubernetes
Application Developer
2025
THE LINUX FOUNDATION
CKA: Certified Kubernetes
Administrator
KCNA: Kubernetes and Cloud Native
Associate
KCSA: Kubernetes and Cloud Native
Security Associate
CKS: Certified Kubernetes Security
Specialist
Kubestronaut
CGOA: Certified GitOps Associate
LFCA: Linux Foundation Certified IT
Associate
CAPA: Certified Argo Project
Associate
OTCA: OpenTelemetry Certified
Associate
PCA: Prometheus Certified Associate
CCA: Cilium Certified Associate
KCA: Kyverno Certified Associate
CBA: Certified Backstage Associate
CNPA: Certified Cloud Native Platform
Engineering Associate
2025
GOOGLE CLOUD
Google Cloud Certified Digital Leader
Google Cloud Certified Associate
Cloud Engineer
Google Cloud Certified Associate
Google Workspace Administrator
Architected and optimized a large-scale Kubernetes platform (Rancher) supporting
over 1200 business-critical applications, achieving a 30% increase in deployment
efficiency and a 15% reduction in downtime
Engineered a comprehensive DevOps transformation, migrating legacy on-premise
applications to a modern, Kubernetes-native architecture using Infrastructure as Code
(IaC), Helm, and GitOps principles
Spearheaded the adoption of GitOps with ArgoCD, establishing a fully automated,
auditable, and secure workflow for application and infrastructure deployments across
development and production environments
Designed and implemented end-to-end automated CI/CD pipelines with GitLab
pipelines for a diverse technology stack (.NET Core, Java, Golang, NodeJS),
incorporating automated builds, testing, and vulnerability scanning
Engineered a full-stack observability platform by integrating Prometheus, Grafana,
Jaeger, OpenTelemetry, OpenSearch, and the Influx stack, providing deep, real-time
insights into system health and performance
Implemented robust, IaC-driven monitoring, fully provisioning Grafana dashboards and
Prometheus alerts via code to ensure consistent and reliable monitoring across all
services
Pioneered advanced performance testing by introducing integration tests with k6,
enabling proactive identification of performance bottlenecks before they impacted
production
Integrated a comprehensive security workflow into CI/CD pipelines, utilizing Trivy for
vulnerability and SBOM scanning, and HashiCorp Vault for dynamic secrets
management to secure the software supply chain
Enhanced runtime cluster security by implementing continuous vulnerability scanning
with Trivy and enforcing security policies as code using Kyverno, significantly reducing
the attack surface
Designed and deployed a decoupled Identity and Access Management (IAM) system
using Keycloak and OAuth2-Proxy, centralizing authentication and authorization for all
platform services
Implemented a modern, secure API Gateway utilizing NGINX Fabric and Emissary
Ingress to manage and protect all north-south traffic into the Kubernetes clusters
Automated the deployment and lifecycle management of highly available Kafka
clusters on Kubernetes using the Strimzi operator
Established a comprehensive data streaming ecosystem by deploying and configuring
key components, including Kafka Connect for integration, Kafka Bridge for HTTPbased access, and MirrorMaker for cluster replication
Established a resilient, cloud-native database strategy, provisioning and managing
highly available PostgreSQL clusters via the CloudNativePG operator, including
automated backup and restore processes using MinIO
Cassandra database cluster deployment via K8ssandra operator for tracing
Directed the end-to-end development of a real-time notification system using Angular,
NestJs, GraphQL, and Golang, demonstrating full-stack leadership
Drove technical and cultural transformation by acting as a key consultant and mentor,
bridging the gap between platform architecture and development teams
Developed and delivered customized training programs and hands-on workshops on
Kubernetes, SRE principles, and secure cloud-native practices, empowering teams to
operate their services with greater autonomy
Provided direct architectural guidance to development teams, ensuring new services
were designed for scalability, reliability, and observability from day one
Architecture and strategic development of complex microservice landscapes using
proven design patterns to ensure scalability, resilience and maintainability
Facilitated agile ceremonies and led impactful retrospectives across five engineering
teams, successfully aligning technical execution with strategic business objectives and
fostering a culture of continuous improvement
PATRICK EICHLER
KUBERNETES EXPERT | CLOUD ENGINEER
WORK EXPERIENCE
INTERESTS
Continuous education
Reading
Programming
Family
Cooking
Gardening
CLOUD SKILLS
Digital Ocean
Azure Cloud
Google Cloud Platform
SICK AG
Kubernetes Expert | Site Reliability Engineer
08/2022 - 10/2022
Industry 4.0
Management, optimization and maintenance of Kubernetes clusters (Rancher)
DevOps transformation from on-premise applications to Kubernetes using IaC, Helm
Charts, GitOps and manifests
Separate development and production environments using reusable infrastructure
modules
Automated integration and deployment with GitLab CI/CD (.NetCore, Java), using jobs
such as builds, tests, vulnerability scans and deployment
Introduction of GitOps using ArgoCD and Gitlab runners
Integration of logging, tracing and monitoring using Grafana, Prometheus, Jaeger,
Opensearch, Loki and Influx stack
Integration of endpoints with Prometheus metrics in applications (.NetCore, Java)
Consultant for architectural decisions regarding microservices in Kubernetes and tools,
as well as databases such as Postgres and MSSQL
Web development with Angular, NestJs, GraphQL, and PostgreSQL
SmartLoC GmbH
TECH Lead
03/2022 - 06/2022
Digital B2B Payment Solution
Creation of an IT architecture overview for business use cases using a microservice and
domain-driven approach
Working with AWS and creating EKS clusters (Kubernetes), Route53, S3 and EC2
instances
Management, optimization and maintenance of Kubernetes clusters (EKS)
Management of VPCs and EC2 instances using Ansible and Terraform
CI/CD pipelining with GitHub Actions, Helm Charts and ArgoCD (GitOps)
Monitoring of applications and systems using Grafana, Prometheus and Influx stack
Creation and administration of PostgreSQL databases
Deployment of microservice applications in Kubernetes using ArgoCD (GitOps), as well
as the creation of its manifests with Helm Charts (IaC)
Web development with Angular, NestJs, GraphQL, and PostgreSQL
Async Software GmbH
TECH Lead
01/2022 - 02/2022
IT Service Consultant
Working with Digital Ocean and creating Kubernetes clusters, Droplets and Container
Registries
Administration and management of Kubernetes clusters
CI/CD pipelining with GitHub Actions, Helm Charts and ArgoCD (GitOps)
Deployment of microservice applications in Kubernetes using ArgoCD (GitOps), as well
as the creation of its manifests with Helm Charts (IaC)
Monitoring of applications and systems using Grafana, Prometheus and Influx stack
Web development with Angular, NestJs, GraphQL, and PostgreSQL
Exxeta AG
Fullstack Developer
10/2021 - 12/2021
IT Service Consultant
Introduction of CI/CD pipelines for Angular applications, coupled with Nx
Deployment of applications from GitLab to AWS servers (Apache)
Further development of Azure DevOps CI/CD pipelines
Conceptual design and implementation of a Kong Gateway in an existing Azure
Kubernetes Cluster (AKS)
Architecture conception and presentation of Angular Module Federation
Web development with Angular, NestJs, GraphQL, and PostgreSQL
PATRICK EICHLER
KUBERNETES EXPERT | CLOUD ENGINEER
WORK EXPERIENCE
e2m Energy2market GmbH
Fullstack Developer
07/2020 - 09/2021
Energy Market (Public sector)
Working with Rancher Kubernetes clusters
Implementation of monitoring endpoints in NodeJs
Work with Azure DevOps
Continuous development and improvement of deployments (IaC) for
Kubernetes using Helm Charts
Maintenance and improvement of Azure DevOps pipelines (CI/CD)
Monitoring of applications with Grafana, Prometheus and Influx stack
Management and migration of MongoDB and PostgreSQL databases
Web development with Angular, NestJs, GraphQL, and PostgreSQL
Orgadata Software-Dienstleistungen AG
Fullstack Developer
10/2018 - 05/2020
Construction Industry
Deployment of web applications to Apache web servers
Management and improvement of CI/CD pipelines
Migration of an existing desktop application to a web application
Technical evaluation, conceptualization and design of the microservice
landscape of the new web application (C#, Delphi, SignalR, COM)
Web development with Angular and NestJs
Wunderding UG & Co. KG
DevOps Engineer
01/2018 - 09/2021
Web Marketing
Introduction and integration of a Google Firebase database
Linux server management (CentOS) with Ansible
Integration and administration of OnPremise Kubernetes systems
Integration and administration of Nexus Registry Server, SonarQube,
Keycloak, Influx stack, Dependency Track, ELK stack, Ingress Controllers,
Redis and PostgreSQL databases
Creation of CI/CD pipelines with TeamCity, Helm Charts, and ArgoCD
Introduction of monitoring with Grafana, Prometheus, Loki and Influx stack
Management and integration of IoT devices
Web development with Angular and NestJs
Karl Storz Endoskope GmbH Berlin OR1
Software Developer
07/2009 - 12/2017
Medical Technology
Development of medical IT-Products and systems in Delphi and C#
Working with Firemonkey
Administration and migration of Interbase Firebird databases
Introduction and migration of CI/CD pipelines using TeamCity