██████╗ ██╗      █████╗ ████████╗███████╗ ██████╗ ██████╗ ███╗   ███╗
 ██╔══██╗██║     ██╔══██╗╚══██╔══╝██╔════╝██╔═══██╗██╔══██╗████╗ ████║
 ██████╔╝██║     ███████║   ██║   █████╗  ██║   ██║██████╔╝██╔████╔██║
 ██╔═══╝ ██║     ██╔══██║   ██║   ██╔══╝  ██║   ██║██╔══██╗██║╚██╔╝██║
 ██║     ███████╗██║  ██║   ██║   ██║     ╚██████╔╝██║  ██║██║ ╚═╝ ██║
 ╚═╝     ╚══════╝╚═╝  ╚═╝   ╚═╝   ╚═╝      ╚═════╝ ╚═╝  ╚═╝╚═╝     ╚═╝
$ whoami
_

10+ years building cloud infrastructure for startups, Fortune 500, and US government security teams. Currently Platform Engineer @ TikTok USDS, securing offensive security operations across four major cloud providers.

$ [location] SF Bay Area, CA
$ scroll-down --section=skills_
// ============================================================

skills.sh

$ cat skills.txt | sort -u

// Cloud Platforms
AWS GCP Azure OCI Alibaba Cloud
// Orchestration
Kubernetes GKE AKS EKS Helm Docker ArgoCD
// IaC & Automation
Terraform Ansible Puppet CloudFormation
// CI/CD
GitHub Actions Argo Rollouts Concourse CI Jenkins Azure DevOps
// Languages
Python Bash
// Observability
Datadog Grafana Prometheus Splunk
// Security
Wiz Lacework WAF / ALB SSO / SAML SailPoint RBAC
// AI / ML Infra
GCP Vertex AI Gemini API LLM Pipelines MCP Tooling
// ============================================================

experience.log

$ git log --oneline --author="Slava"

Platform Engineer  @  TikTok (USDS) CURRENT
San Francisco, CA Nov 2024 – Present

Offensive Security Operations — securing OSO infrastructure across AWS, Azure, GCP, and OCI.

  • Architected LLM testing pipeline on Merlin/VPC1; saved $240k+ annually, eliminating ~6-month H100 GPU procurement lead time.
  • Co-built proprietary Attack Surface Management tool from 0→1 in Python, replacing Censys + Assetnote; saved $200k+ annually.
  • Zero-data-loss migration of entire Blue Team lab (35 resources) from Azure EU → Azure US for regulatory compliance.
  • Operationalized Vectr platform: MongoDB → PostgreSQL migration, SSO integration, load balancers, and automated backups.
  • Deployed Ansible across 7 cloud environments (15 servers) for unified SSH access management.
  • Drove GitHub Enterprise adoption for USDS; authored DevSecOps guidelines and onboarded engineering teams.
  • Remediated vulnerabilities across 85 Windows/Linux hosts; cleaned 28 unused AWS VMs and 44 stale security groups.
[★] USDS Excellent New Employee Award (2025)
AWSAzureGCP OCIKubernetesAnsible TerraformPythonBash WizGitHub Actions
Senior Infrastructure Engineer  @  Highnote
San Francisco, CA Jun 2023 – Nov 2024

FinTech startup — modern card and payment platform.

  • Rebuilt container security posture: PSP → Pod Security Standards migration; +20% compliance, unblocked K8s upgrade path.
  • Launched Argo Rollouts for canary deployments across all production services, enabling swift rollback.
  • Achieved CIS benchmark compliance for GCP and AWS; pivotal in securing a major bank partnership.
  • Implemented Lacework and Wiz for cloud security posture management across all environments.
GCPAWSGKE TerraformArgo Rollouts GitHub ActionsLaceworkWiz
Cloud Solutions Architect  @  Altoros
US (Remote) Apr 2022 – May 2023
  • Built Azure AKS security analysis POCs; GitHub Actions automation cut testing time 50% and manual effort 40%.
  • Trained 5 platform engineers at Canada's largest bank on VMware Tanzu; enhanced Concourse CI pipelines reducing deployment failures.
  • Designed and delivered Kubernetes security workshops for enterprise engineering teams.
KubernetesAzureAKS GitHub ActionsVMware TanzuConcourse CI
Solutions Architect  @  CTDev
Minsk, Belarus Jul 2020 – Mar 2022
  • Designed cloud-native reporting solution on Azure + Alibaba Cloud for the world's largest reinsurance company.
  • Led Kubernetes migration for core business services, reducing infrastructure costs and improving deployment velocity.
AzureAlibaba Cloud KubernetesHelmTerraform
Cloud Solutions Architect  @  Altoros
US / Australia / Belarus Oct 2018 – Jul 2020
  • Led global cloud transformations for Fortune 500 clients — Toyota, Vanguard, eBay/StubHub, AAA; reduced cloud costs up to 50%.
  • Tech Lead for PCF delivery at Vanguard (AWS + vSphere); GitOps pipelines cut upgrade time 50%.
  • Delivered cloud architecture workshops and trainings across the US and Australia.
AWSAzureTerraform Concourse CIVMware TanzuPCF
Systems Engineer / DevOps  @  EPAM Systems
Minsk, Belarus Sep 2017 – Oct 2018
  • Administered CI/CD infrastructure serving 30,000 users; defined SLOs/SLIs and maintained on-call rotation.
  • Automated provisioning workflows with Puppet, reducing configuration drift and manual toil.
JenkinsPuppet GitLabRed Hat Linux
// ============================================================

certs_and_awards.json

$ jq '.[]' certs.json

Microsoft Azure Solutions Architect Expert
Google Professional Cloud Architect
CNCF Certified Kubernetes Administrator (CKA)

// Recognition

[★]
USDS Excellent New Employee Award — TikTok, 2025

"Seamlessly ramped up in under a month... rarely do I see resources ramp up so fast and drive things with minimal supervision."

[#]
Alibaba Cloud MVP · DevOps Institute Ambassador · CD Foundation Ambassador
[5]
OSO CTF Hackathon — 5th of 40 teams · PDPO Vuln Quest — 4th of 25 teams
// ============================================================

education.md

Master's Degree in Computer Science Belarusian National Technical University 2010 – 2015 · Minsk, Belarus