Highlights

About Me

🛠️ DevOps as a lifestyle
I help products scale and teams breathe freely.
Instead of endless tickets and “why did everything crash?” — you get reliable infrastructure, automation, and peaceful nights.

My clients are startups, product teams, and engineers who want to build, not fight fires.
I take care of everything between their idea and production 💡➡️🚀

🔧 What do I do?

☁️ Clouds? Yes, all of them.
AWS, Azure, GCP — the classics. But I also work well with Yandex Cloud, Selectel, Hetzner, DigitalOcean, OVH, Linode, and Lancloud.
I migrate from on-prem → cloud, design architectures, and optimize costs — up to −30% without compromising reliability.

☸️ Kubernetes is my second home.
I build and manage clusters using kubeadm, RKE2, RKE, k3s — in the cloud, on-prem, or hybrid.
GitOps? ArgoCD, Flux, Jenkins, GitLab CI — we set up pipelines that work, not break your nerves.

🏗️ Infrastructure as Code — no compromises.
Terraform, Pulumi, best practices, modular templates, repeatability.
If it can be automated — I’ve already done it.

👁️‍🗨️ Monitoring, logs, alerts — all under control.
EFK / ELK for logs, Prometheus + AlertManager for metrics, alerts to Slack or OpsGenie.
You sleep — I watch.

🔐 Security isn’t “at the end” — it starts from day one.
SSO for Kubernetes and clouds, secret management (Vault, SOPS), resource isolation, Istio, Service Mesh.
Compliance? Yes — and done smartly.

🐳 Docker, builds, image optimization
I write Dockerfiles, squeeze every drop from multi-stage builds, minimize image size and vulnerabilities.
Plus — I build custom metric exporters when standard ones fall short.

🖥️ Virtualization? No problem.
Proxmox, VMware, Hyper-V — I design and deploy private and hybrid environments for any workload.

🌱 And I’m also human

🌟 Personal growth isn’t a trend for me — it’s my engine.

When I’m not in the terminal — I’m at the climbing gym 🧗‍♂️ or doing pull-ups 💪.
Climbing teaches me patience, focus, and that even the hardest route can be conquered — one move at a time.

DevOps and climbing are alike:
— You need a strategy.
— Discipline is essential.
— Sometimes you must retreat to find a better path.
— And always — belief that you’ll reach the top. 🏁

💬 Want to work together?
If you need a DevOps engineer who thinks like an architect, acts like an automator, and speaks the language of business
message me on LinkedIn ✍️
I’m ready to discuss your challenge, propose a solution — and start as early as tomorrow.

My Services

  • cloud icon

    Cloud Consulting

    Modern and professional cloud consulting — tailored solutions for your specific needs.

  • security icon

    Cloud Security

    High-quality cloud security solutions — professional protection of your digital assets.

  • monitoring

    Monitoring

    Comprehensive monitoring solutions — ensuring reliable operation of your applications.

Resume

Education

  1. Belgorod State National Research University

    2006 — 2011

    Communication Networks and Switching Systems

    Technologies 🚀: Network

Experience

  1. DevOps Engineer

    Onecta

    2018 — Present

    Design and operation of high-load bare-metal infrastructure targeting an SLA of 99.95% or higher.
    Development and maintenance of integrations via REST APIs in Python, Go, Node.js, and PHP for automation and inter-service communication.
    Deployment and management of Kubernetes clusters using RKE, K3s, kubeadm, and Kubespray; also experienced with Docker Swarm.
    Virtualization management: Proxmox VE (KVM/LXC) and VMware (including VMware Cloud Director)—from design through resource optimization and backup strategies.
    Implementation of GitOps workflows using ArgoCD and Flux for declarative infrastructure and application management.
    Full infrastructure automation using Terraform and Ansible (Infrastructure as Code).
    Configuration of CI/CD pipelines in GitLab CI/CD and Jenkins for microservices written in Python, Go, Node.js, and PHP.
    Administration and performance optimization of relational and NoSQL databases: PostgreSQL, MySQL, MongoDB—including replication, backups, indexing, and EXPLAIN-based query analysis.
    Building modern observability stacks: • Metrics: Prometheus, VictoriaMetrics, Alertmanager • Logs: Loki, EFK, Graylog • Tracing: Jaeger, Tempo • Telemetry: OpenTelemetry (OTLP) • Visualization: Grafana Active involvement in defining, monitoring, and enforcing SLOs/SLAs; conducting postmortems; and implementing proactive alerting.
    Experience with message brokers: Apache Kafka, ActiveMQ.
    Configuration and maintenance of networking infrastructure: WireGuard, ocserv, OPNsense, HAProxy.
    Operation of hybrid cloud environments: Yandex Cloud, MTS Cloud, VMware Cloud Director combined with on-premises Proxmox clusters.
    Support of enterprise services: OpenLDAP, Redis, Nextcloud, Jitsi, Mattermost, and mail servers.
    Development of backup, disaster recovery, and infrastructure modernization strategies.
    Automation of routine operational tasks using Bash, Python, and Go.
    Close collaboration with development teams within an SRE culture to improve system reliability and software delivery velocity.

    Technologies 🚀: Node.js, PHP, Python, Windows Server, Linux, Libvirt, Proxmox, Ansible, Swarm, Docker, PostgreSQL, PowerBI, Asterisk, MySQL, MongoDB, Git, Zabbix, Kubernetes, Airflow

  2. DevOps Engineer

    Datana

    2021 — 2023

    Datana enhances production efficiency. Digital consultants based on Datana Mash and Datana Sense optimize individual technological processes.
    Responsibilities:
    Designing and building infrastructure in isolated environments (Proxmox, Terraform, GPU sharing, HAProxy, K8s, Rancher, Kafka, Redis, KeyDB, MongoDB, Prometheus, Consul, VictoriaMetrics, Grafana, MinIO, ELK, Ansible, Nexus).
    Designing and deploying HA VPN bastions (ocserv).
    Building hybrid infrastructure using Proxmox, VMware, and Lancloud (Hyper-V).
    Monitoring systems: Prometheus Operator, HA VictoriaMetrics, Grafana, Karma.
    Logging systems: ELK, EFK, EVK.
    Storage solutions: CEPH, MinIO, GlusterFS, OpenEBS, etc.
    Backup systems: Veeam Backup & Recovery for VMs, Velero for Kubernetes.
    Creating GitLab CI/CD pipelines for Python, Node.js, Kotlin, Java.
    Configuration management (Ansible, SaltStack).
    Access control systems (AD, LDAP).
    Orchestration: Docker Swarm, Kubernetes (K3s, RKE, RKE2, kubeadm).
    IoT cluster design using LXD (LXDMosaic), backup (LXMIN), and K3s. GitOps with Flux.
    Converting docker-compose.yaml to Helm charts and writing custom Helm charts.

    Technologies 🚀: Kubernetes, Helm, AWS, GitLab CI/CD, Docker, Arc42, PlantUML

  3. System Administrator - DevOps Engineer

    Factory of Information Technologies

    2015 — 2018

    Developer of intelligent platforms for smart cities and software producer.
    Responsibilities:
    Administering Linux and Windows computer fleets.
    Managing Linux (CentOS, Debian, Proxmox, Gentoo) and Windows Server 2012 servers; supporting network equipment.
    Maintaining 24/7 high-load websites (2do2go.ru, all.culture.ru, culture.ru, cultreg.ru, vsopen.ru, etc.).
    VoIP administration (Asterisk): queues, group calls, follow-me, IVR, CDR, PBX monitoring, reporting.
    Managing websites on various CMS (Modx, WordPress, Joomla, Yii, Java).
    Building Docker images and deploying to production (GitLab CI/CD, Ansible).
    Managing container clusters (Swarm, Kubernetes).
    Building open-source-based info kiosks.
    Working with MySQL, PostgreSQL, MongoDB.
    Programming in PHP, Node.js, Java, Python.
    Monitoring with Zabbix and Grafana.
    Log collection via EFK and Graylog.

    Technologies 🚀: Linux, Windows Server, Asterisk, Node.js, PHP, Python, Ansible, Git, CI/CD, Jenkins, Modx, Joomla, Proxmox, ESXi, Kubernetes, MongoDB, PostgreSQL, ELK

  4. IT Engineer

    MBOU Secondary School №40

    2014 — 2015

    Municipal Budget Educational Institution “Secondary School No. 40”
    Responsibilities:
    Maintaining computer labs and server OS (Windows, Linux).
    Administering Linux servers (Debian, Proxmox); supporting Windows network equipment.
    Building an in-house IPTV system and providing maintenance.
    Repairing and configuring peripherals (projectors, office equipment, etc.).
    Supporting and promoting the official school website.
    Setting up digital signatures using CryptoPro CSP.
    Maintaining and upgrading the LAN.

    Technologies 🚀: Windows, Linux, Joomla, Git, CryptoPro CSP, Oracle, IPTV, LAN

  5. System Administrator

    Energomash-Stroy, Holding Company

    2016 — 2018

    Manufacturer of steam boilers and components.
    Responsibilities:
    Maintaining computer fleet and server OS (Windows, Linux).
    Administering Windows servers and network equipment.
    Managing IP telephony and mini-PBX systems; working with GSM and VoIP modules (Asterisk).
    Administering Oracle databases.

  6. System Administrator - DevOps Engineer

    Taxi Positive

    2011 — 2011

    Responsibilities:
    Maintaining computer fleet and server OS (Windows, Linux).
    Administering Windows servers and network equipment.
    Managing IP telephony and mini-PBX systems; working with GSM and VoIP modules (Asterisk).
    Administering Oracle databases.

    Technologies 🚀: Windows, Linux, Oracle, LAN, Asterisk

Certifications

28 certifications

Skills

Languages

  • Russian
    100%
  • English
    80%

Blog

Visit My DevOps Blog

Explore the latest articles, tutorials, and insights about DevOps, cloud technologies, Kubernetes, and infrastructure automation on my dedicated blog platform.

Go to Blog

Imprint

Information according to § 5 TMG

Sergei Cherniaev

Contact

E-mail: sergei.chernyaev31@gmail.com

Disclaimer - responsibility for the content

The content of our pages has been created with the utmost care. However, we accept no liability for the accuracy, completeness and timeliness of the content. As a service provider, we are responsible for the content of our pages in accordance with the general laws pursuant to § 7 para. 1 TMG. According to §§ 8-10 TMG, we are not obliged to monitor the transmitted or stored information or to investigate circumstances indicating illegal activities. The obligation to delete or block the use of information in accordance with general laws remains unchanged. However, liability in this regard is only possible from the moment we become aware of a specific infringement. Upon receipt of notification of infringements, we will immediately remove the content concerned.

Liability for links

Our website contains links to external third-party websites, the content of which we have no control over. We therefore accept no responsibility for the content of these external sites. The content of linked sites is always the responsibility of the respective provider or operator. At the time the links were placed, the pages to which they lead were checked for possible infringements of the law. However, ongoing monitoring of the linked pages is not practical without concrete evidence of an infringement. If we become aware of any infringements, we will remove such links immediately.

Copyright

The content and works created by the site operators on these pages are subject to copyright law. Duplication, processing, distribution, or any commercialization of this material beyond the limits of copyright law requires the prior written consent of the respective author or creator. Downloads and copies of this site are only permitted for private, non-commercial use. Where content on this site was not created by the operator, third-party copyrights are respected and indicated as such. If you nonetheless notice any copyright infringement, please inform us. Upon notification of violations, we will remove such content immediately.

Legal notice for warning attempts

No warning without prior contact with us! If any rights of third parties or legal provisions are infringed by the presentation or content of these web pages, please notify us without issuing a cost notice. We guarantee the immediate removal of any rightly objected passages without the need for legal action on your part. Should you incur costs without first contacting us, we will reject these in full. If necessary, we will file a counterclaim for violation of these provisions.