Hi, I'm
Konstantin Makeikin
DevOps Engineer | Platform & Infrastructure Architect
Building and managing infrastructure at scale. Automation, monitoring, and reliability across 30+ countries.
01.About
DevOps/SRE Engineer with 20 years in infrastructure — from ISP backbone (180 Gbps, team of 35 engineers) to cloud-native platforms. Currently the sole engineer running a VPN platform: 500+ servers, 30+ countries, 99.9% uptime.
My day-to-day: Kubernetes, Terraform, Ansible, GitLab CI/CD with blue-green deployments, Prometheus/Grafana observability. Not a developer by trade, but language-agnostic when it comes to backend — Java, Python, Go, C#, doesn't matter. I can trace an API call, debug auth flows, fix token handling, untangle Redis sessions. From kernel-level networking (nftables, flowtable) to application-layer services.
I leverage AI-powered engineering tools and MCP integrations as a productivity multiplier — handling infrastructure, backend, CI/CD, monitoring, and incident response solo. One engineer with the right tooling and deep systems knowledge delivers what traditionally requires a full team.
Cisco CCNP, MikroTik MTCNA, AWS Cloud Practitioner certified. Based in Florianópolis, Brazil. Open to remote opportunities worldwide.
Languages
Soft Skills
Americas, Europe, Middle East
Full-time, part-time, or one-off tasks
02.Skills
Cloud & Infrastructure
Containers & Orchestration
IaC & Automation
CI/CD
Monitoring & Observability
Languages & Frameworks
Databases
Networking
AI-Augmented Engineering
03.Experience
DevOps Engineer & Platform Architect @ ShivaVPN
Feb 2022 — PresentFlorianópolis, Brazil · Remote
- > Own the full infrastructure lifecycle for a multi-cloud VPN platform: 259 servers, 30+ countries, 5,000+ active subscribers
- > Designed and implemented IaC with Ansible — automated provisioning, configuration management, and rolling updates across the entire fleet
- > Built CI/CD pipelines (GitLab CI) with blue-green deployments, automated tests, and zero-downtime releases for Java/Spring Boot backend
- > Full observability stack: Prometheus + Grafana (26 alert rules, 13 dashboards), centralized logging, multi-channel incident alerting with <5 min MTTR
- > Migrated L4 proxy layer from nginx to kernel-space nftables + flowtable — eliminated userspace overhead, cut RAM usage by 75% (1.6 GB → 400 MB per node)
- > Developed Python async service (FastAPI + AsyncSSH) for parallel orchestration of 86 servers with 50 concurrent connections — config sync, health checks, traffic analytics
- > Architected account pool pre-provisioning system reducing user activation latency from 30s to near-zero
- > Integrated 3 payment providers with webhook reconciliation, idempotent processing, and automated retry logic
DevOps & Backend Engineer @ NaviScope — Maritime IoT Platform
Mar 2024 — Jan 2026Florianópolis, Brazil · Remote
- > Designed and maintained a 31-microservice platform for real-time vessel monitoring and fleet management across international waters
- > Owned CI/CD for all 31 services: GitLab pipelines with automated testing, container builds, and staged rollouts
- > Developed 15+ backend microservices (Java/Kotlin, Spring Boot): authentication, admin, data ingestion, alerting, and monitoring
- > Built edge agent in Go for onboard data collection from vessels via MQTT, Modbus, and NMEA-0183 protocols over satellite links
- > Designed event-driven data pipeline: NATS JetStream for reliable inter-service messaging, Redis Pub/Sub for real-time notifications
- > Managed PostgreSQL + TimescaleDB cluster for high-throughput time-series telemetry ingestion and retention policies
DevOps Engineer @ Fintech / Crypto Platform — NDA
Sep 2023 — Aug 2024Remote
- > Kubernetes cluster management (EKS): namespace isolation, RBAC, network policies, pod security standards for regulated fintech workloads
- > Secrets management with HashiCorp Vault: dynamic secrets for databases, transit encryption for sensitive data, PKI for internal mTLS
- > Infrastructure as Code with Terraform: multi-environment provisioning (dev/staging/prod), state management with remote backends and locking
- > GitLab CI/CD pipelines with SAST/DAST scanning, container image signing, and automated compliance checks before production deploys
- > Designed blue-green deployment strategy for zero-downtime releases of payment-critical services processing crypto transactions
Infrastructure Consultant @ HHIVP.com — B2B IT Services
Oct 2019 — Nov 2025- > Provided infrastructure consulting for 15+ B2B clients: architecture design, capacity planning, migration strategies
- > Managed 10+ VMs running full service stack: VoIP, email, VPN, Telegram bot with AI integration, push notifications
- > Virtualization infrastructure for multiple client environments with Zabbix monitoring and 99.5%+ uptime SLA
- > Implemented backup strategies, disaster recovery procedures, and security hardening across all client environments
Network Operations Lead @ ISP Operations (Multiple Companies)
2008 — 2021- > Progressed from Network Admin to Operations Lead managing a regional ISP serving 10,000+ subscribers
- > Full ISP infrastructure: BGP/IX peering, VRF, redundant routing, multi-operator interconnects — peak 180 Gbps
- > Managed 500+ network switches (24-port) covering 2 districts, fiber backbone with redundant optical links
- > Core services: billing system, DHCP, DNS, NAT, NetFlow collectors, IP address management, VoIP telephony
- > Data center rack architecture design, server provisioning, and network segmentation
- > Led disaster recovery after catastrophic database failure — restored service for 10,000+ customers within SLA
- > Managed cross-functional teams: network engineers, field technicians, NOC operators, and customer support
Co-Founder @ Claustrophobia — "Philosopher's Stone" Quest Room
Jun 2014 — Oct 2016Moscow, Russia
- > "Quest of the Year 2016" — launched from zero to 150+ bookings/month, built a team of 8, managed 7M+ RUB budget
Senior System & Network Administrator @ Pushkino-Telecom — ISP
Feb 2006 — Aug 2008Moscow Region, Russia
- > Promoted twice in 2 years (Support → Admin → Senior Admin), managed DOCSIS 2/3 cable infrastructure and network topology redesign
04.Projects
Global VPN Platform
Multi-cloud VPN infrastructure spanning 30+ countries with automated provisioning, health checks, account pool management, and 5,000+ active subscribers.
Maritime IoT Platform
31-microservice platform for real-time vessel monitoring and fleet management. Edge agents on ships, NATS messaging, TimescaleDB for telemetry.
Kernel-Space Proxy Migration
Replaced nginx stream proxies with nftables + flowtable for zero-copy TCP forwarding at kernel level.
Monitoring & Alerting
Full observability stack with Prometheus metrics collection, Grafana dashboards, and multi-channel alerting via Telegram.
Telegram Commerce Bot
Subscription sales bot with payment processing, referral program, admin dashboard, and automated CI/CD. 180 Python files, 399 tests.
Python Sync Service
FastAPI microservice for parallel SSH to 86 servers with 50 concurrent connections, config sync, health checks, and traffic analytics.
E-Commerce Platform
Marketplace for beauty industry with custom order workflows, multi-role storefronts, and course management. MedusaJS backend + Next.js frontend.
ADHD Task Manager
Productivity app for ADHD brains — progressive feature unlocking, energy matching, gamification with XP and collectible creatures. Live at beatyour8.com.
05.Education
State University of Management (SUM)
Bachelor's — Organization Management
2021 — 2025
International University of Kyrgyzstan
Bachelor's — Computer Science
2019 — 2023
Gymnasium Shchyolkovo
Silver Medal — Secondary Education
2008 — 2019