Skip to content
Azure Cloud Architect & DevOps Engineer — Terraform, GitHub Actions, Enterprise IaC
Azure & Terraform Expert Landing Zones & Governance High Availability & DR Kubernetes / AKS

Senior Azure DevOps Consultant
Enterprise Cloud Architecture & Automation

20+ years designing enterprise cloud architecture for Fortune 500 clients. I specialize in Azure Landing Zones, Infrastructure as Code (Terraform, Bicep), and CI/CD automation (GitHub Actions, Azure DevOps Pipelines). From high-availability multi-region setups to Azure Governance and DevSecOps—I deliver scalable, secure, and audit-ready solutions.

Risk-Free Azure Assessment Guarantee

If my initial 14-day Azure architecture audit doesn't demonstrate clear ROI, you don't pay the invoice. No questions asked.

Professionally insured up to €10M for liability coverage.

Trusted by Fortune 500 — Enterprise & Public Sector

Pharma • Finance • Logistics • Insurance • Technology

Novo Nordisk
MSD
BNP Paribas
IBM
DHL
OMV
MunichRe
PwC
Komerční banka
Linde

Core Azure Expertise

Enterprise-grade specializations across the Azure platform.

Azure Landing Zones

Enterprise-ready foundation with governance, networking, and security baselines following Microsoft CAF.

Azure Governance

Policy as Code, RBAC design, Management Groups hierarchy, Cost Management, and compliance enforcement.

Azure Networking

Hub-spoke topology, Private Endpoints, ExpressRoute, Azure Firewall, and VPN connectivity.

High Availability & DR

Multi-region deployments, Traffic Manager, Azure Site Recovery, and disaster recovery planning.

Azure Security & Compliance

Defender for Cloud, Key Vault automation, Security Center, and regulatory compliance (SOC2, ISO, GDPR).

Kubernetes / AKS

Container orchestration, Helm charts, GitOps with Flux/ArgoCD, and AKS cluster management.

CI/CD Automation

GitHub Actions, Azure DevOps Pipelines, automated testing, and deployment orchestration.

Infrastructure as Code

Terraform, Bicep, modular design patterns, remote state management, and drift detection.

Engagement Models

Flexible cooperation based on your needs.

Full-Time Engagement

Hire me as a dedicated Azure specialist on your team. I integrate fully into your workflow as a Senior Azure DevOps Engineer, Cloud Architect, or technical mentor. From Landing Zone implementations to CI/CD pipeline development—continuous hands-on collaboration.

MONTHLY RETAINER • LONG-TERM

Project Delivery

Complete Azure infrastructure delivery from A to Z. Landing Zone setup, Terraform/Bicep modules, CI/CD pipelines, governance policies—all with full documentation and knowledge transfer. Fixed scope, delivered turnkey.

FIXED PRICE

GAP Analýza

Deep-dive review of your Azure infrastructure, Landing Zone architecture, CI/CD pipelines, and governance policies. I identify security gaps, scalability bottlenecks, and compliance risks—then deliver an actionable remediation roadmap.

14-DAY ENGAGEMENT

PoC Design

Need to evaluate AKS, multi-region DR, or a new Azure service? I design a complete Proof of Concept with architecture diagrams, Terraform/Bicep code samples, and implementation guide. Your team executes independently.

ADVISORY + BLUEPRINT

Azure DevOps & Infrastructure Training

Accelerate your team's cloud maturity with hands-on workshops covering Azure Landing Zones, Terraform modules, GitHub Actions CI/CD, and Azure Governance. My goal is to create genuine "AHA!" moments — when everything clicks.

Code-Centric Best Practices

Focus on modular Terraform design, advanced CI/CD patterns (GitHub Actions), and GitOps principles directly applicable to your repository standards.

Contextual Workshops

Training based on your specific Azure environment and challenges, not generic examples. Ensures maximum relevance and immediate adoption by the team.

The "AHA!" Moment Philosophy

I don't just teach how to write Terraform modules or configure pipelines. I focus on the "why" — the moment when a trainee truly understands the reasoning behind a pattern or practice.

Real understanding comes when someone can independently decide "this is the right approach for this situation" — not because they memorized a template, but because they grasp the underlying principles. That's when learning becomes permanent and transferable. My workshops are designed to trigger these breakthrough moments through real-world scenarios, guided discovery, and connecting abstract concepts to tangible business outcomes.

What Azure Clients Say

"He transformed our chaotic Azure infrastructure into a predictable, MLOps-ready platform. The 14-day architecture audit alone justified the entire investment. His strategic guidance on Landing Zones and governance is unmatched."

J. Kovář

CTO, Leading E-commerce Company

"His Terraform and Azure DevOps standards became the foundation for our entire engineering team. He's not just an architect; he's a highly organized force multiplier who instantly became a predictable member of our Scrum team. Our CI/CD pipelines are now fully automated and self-service."

M. Richter

Senior DevOps Manager, Global Finance

Azure DevOps Engineering Standards

Enterprise-grade delivery: scalable, secure, and fully documented solutions designed for long-term maintainability and team independence.

State-of-the-Art Code & MLOps

Strict modularity, readability, and clean code principles. I design IaC ready to handle complex AI/ML training and serving pipelines (MLOps).

Versioned Documentation

I deliver complete Runbooks and architectural diagrams (C4 Model) alongside the code, guaranteeing zero vendor lock-in and immediate team takeover.

Mandatory Security

Security is automated and enforced via IaC Scans and Azure Policy. Every Pull Request must pass checks before deployment (Security Shift Left).

Leadership & Process Rigor

I drive team maturity through mentoring, and integrate seamlessly into Agile/Scrum workflows, ensuring structured delivery and predictable project velocity.

AI-Augmented Engineering with Local LLM

I stay ahead of the curve by leveraging a self-hosted, fine-tuned LLM running entirely on my local infrastructure. This AI assistant accelerates my workflow — from code generation to documentation — while ensuring zero data leakage.

Your proprietary code, architecture details, and business logic never leave my secure environment. This approach combines cutting-edge AI productivity with enterprise-grade confidentiality — no cloud AI APIs, no third-party data exposure.

Azure Engineering Case Studies

Enterprise-scale solutions: Azure Landing Zones, multi-region deployments, and DevOps transformations for Fortune 500 clients across finance, pharma, and logistics.

Custom FinOps Intelligence

FinOpsAzurePython

Developing a proprietary cost-analysis tool that outperformed Azure Advisor and saved 25% of cloud spend.

Read Case Study

Governance as Code

GitHubTypeScriptSecurity

Automating security policies across 500+ repositories ensuring 100% compliance without manual intervention.

Read Case Study

Unified CI/CD Migration

GitHub ActionsJenkinsTerraform

Migrating complex pipelines from Jenkins/ADO to GitHub Actions with zero downtime and full Terraform adoption.

Read Case Study

Environment Config as Code

GitHub VariablesAzure DevOpsTerraform

Eliminated manual variable management chaos in GitHub/ADO by automating environment configuration with full auditability and naming standards.

Read Case Study

Developer Self-Service CI/CD

GitHub ActionsCI/CDDevEx

Built a library of modular, versioned GitHub Actions enabling developers to build complete CI/CD pipelines without DevOps bottlenecks.

Read Case Study

Automated ServiceNow RFCs

ServiceNow APIGitHub ActionsITSM

Integrated ServiceNow FastRFC workflow into GitHub Actions for automated, traceable deployments without manual intervention.

Read Case Study

Zero-Touch Secret Rotation

Key VaultService PrincipalsSecurity

Automated lifecycle management for Service Principal secrets and Storage Account keys with expiration monitoring and auto-rotation to Key Vault.

Read Case Study

Enterprise Integration Platform

Service BusLogic AppsTerraform+Bicep

Architected IaC-based integration platform using Azure Service Bus, Logic Apps, APIM, and SharePoint with Terraform + Bicep deployment.

Read Case Study

VM Configuration Framework

PowerShellAzure VMsAutomation

Developed sophisticated PowerShell modules for automated post-deployment configuration of Azure VMs with centralized management and version control.

Read Case Study

Azure Certifications & Technical Expertise

Azure Solutions Architect Expert
DevOps Engineer Expert
HashiCorp Certified: Terraform
ITIL V3/V4 Operational Framework

Key Tooling & Secondary Stack

Docker

Kubernetes

Prometheus/G

Git/Version C.

Networking/VPN

Security/Audit

Languages

English

Fluent

Czech

Native

Russian

Fluent

German

Intermediate

Recruiter & Agency Notice — Azure DevOps Consultant

Thank you for reviewing my profile. To ensure efficiency, please note my professional requirements.

Engagement & Status

Strictly B2B Contract / Freelance.

Operating through my own company established in 2005, guaranteeing long-term stability and compliance.

Tech & Seniority Focus

Minimum 5+ years experience required in Azure & Terraform IaC.

Please only submit high-value roles matching this specific stack. Not considering permanent (FTE) roles.

Location & Travel

Primarily remote engagement (EU timezones).

Willing to travel for high-impact on-site meetings (kick-offs, workshops) with teams across Europe and the USA.

Contact Preference

Please reach out via email, WhatsApp, or LinkedIn message.

Written messages allow me to respond thoughtfully without interrupting deep technical work or client commitments.

Equipment Flexibility

Happy to use corporate-managed devices.

While I have my own secure workstation, I fully comply with corporate security policies and can work on company-provided laptops with enterprise MDM.

Full IP Ownership

All deliverables become 100% your property.

Code, documentation, and all work created during engagement—including licenses and rights. Explicitly defined in contract. No strings attached.

Response Priority:

To respect both our time: messages that include a budget range receive a guaranteed response within 24 hours. Without budget context, I may not be able to prioritize a reply—this helps us both avoid mismatched expectations early.