Platform engineering profile

Shamil Sattarov

Platform Engineer, DevOps Engineer

Summary

Platform engineer building cloud-native systems that stay declarative — infrastructure as code, GitOps delivery, stateful services on operators, with observability and recovery shipped alongside.

Experience

January 2020 — present

Funnelflux

Platform Engineer

Hong Kong · Remote · funnelflux.com

  • Build and maintain CI/CD delivery pipelines for application deployments.
  • Coach team members in DevOps practices, including IaC, IaaS, and Gitflow.
  • Ensure application resilience and configure cloud services such as GCP, GKE, GCLB, CloudFlare, and SingleStore.
  • Design and deploy supporting services and databases for Kubernetes-based applications, including External DNS, CertManager, Prometheus Operator, Jaeger, Elasticsearch, ClickHouse, Redis, and Postgres Operator.
  • Help developers prepare traditional web applications for cloud operations by adding Prometheus metrics, Google Cloud Logging, and OpenTracing / Jaeger tracing.

Highlights

  • Migrated a ~300 RPS platform from a hand-configured server to an Ansible-provisioned Docker Swarm cluster, then to GKE managed by Terraform, with no downtime at any cutover.
  • Introduced GitOps with Argo CD across 20+ services and internal tools, cutting deployment from over three minutes to under one and reducing rollback to a single Git revert.
  • Migrated infrastructure as code from Terraform to Crossplane, eliminating configuration drift through continuous reconciliation against Git.
  • Moved deployments from Helm to Argo CD and then to the rendered manifests pattern, making every diff reviewable as plain YAML and freeing Argo CD from template rendering.
  • Moved secrets management to the External Secrets Operator, bringing secrets into the same GitOps flow and keeping every reference auditable.
  • Moved stateful services onto Kubernetes operators — Postgres, ClickHouse, Redis, and Elasticsearch — and brought Kafka in-house from a managed provider onto Strimzi.
  • Replaced self-hosted Nginx static delivery, a recurring source of outages, with Google Cloud Storage behind a CDN.

April 2018 — January 2020

Rossko

Senior DevOps Engineer

Novosibirsk, Russia · Remote · www.rossko.ru

  • Supported development of the distribution portal and its CI/CD workflows.
  • Migrated traditional web applications to a microservice architecture.
  • Containerized infrastructure services and ran the Docker Swarm orchestrator.
  • Moved the server and network administration team onto infrastructure as code and Git-based change workflows.

Highlights

  • Brought a 20+ host vSphere estate and around 100 virtual machines under Ansible, AWX and Terraform, replacing hand-built servers with reproducible provisioning.
  • Standardized continuous delivery across the 15+ microservices of the main application, giving eight developers one path to production instead of per-service scripts.
  • Built observability for the microservices on EFK, Prometheus and Grafana, bringing logs and metrics into one place and shortening failure detection and diagnosis.
  • Moved web service assets to MinIO object storage, taking file state off the application servers.

January 2017 — April 2018

Plussell

DevOps Engineer

Yekaterinburg, Russia · Remote

  • Maintained the Java build and release process for Liferay and OSGi applications, including versions and dependencies.
  • Deployed servers with OpenStack Heat / CloudFormation, Ansible, and shell / Python.
  • Operated Docker and Kubernetes-based container infrastructure.
  • Designed and maintained LDAP and PKI infrastructure with FreeIPA, and deployed SDN with OpenStack Neutron and Flannel.

Highlights

  • Replaced manual builds with a Jenkins and Nexus pipeline and moved dependency management to Gradle, cutting build time from hours to minutes.
  • Migrated the platform from two hand-configured bare-metal servers to Mail.ru Cloud, then running on plain OpenStack, with infrastructure provisioned from Heat and Ansible.
  • Built a Kubernetes cluster on OpenStack that provisions itself end to end, and moved the supporting systems — Elasticsearch and Jenkins — onto it.
  • Moved the Liferay portal from Tomcat to WildFly.

April 2015 — January 2017

State Unitary Enterprise "Center for Information and Communication Technologies of the Republic of Bashkortostan"

System Administrator, Leading Expert

Ufa, Russia · ciktrb.ru

  • Deployed and operated KVM and VMware virtualization clusters.
  • Developed and tested disaster recovery scenarios for server systems.
  • Performed information security audits, vulnerability remediation, and load testing.

Highlights

  • Integrated FreeIPA, Foreman, isc-dhcp, and Zabbix into a single provisioning and monitoring chain.
  • Automated deployment of test environments for incident-response drills.

April 2014 — April 2015

Freelance

System and Network Engineer

Ufa, Russia · Remote

  • Designed and deployed network and server infrastructure for small businesses.

Highlights

  • Delivered turnkey office infrastructure — structured cabling, servers, and monitoring.

March 2012 — April 2014

Bashkir National Library named after Akhmet-Zaki Validi

Network Engineer, Software Engineer

Ufa, Russia · bashnl.ru

  • Designed and implemented network infrastructure, including structured cabling and active equipment from Cisco, MikroTik, and Juniper.
  • Administered Windows and GNU/Linux servers.
  • Deployed and maintained Nagios monitoring.

Highlights

  • Built a secure multiservice network linking the central office and remote branches, with OpenVPN access for remote staff.
  • Modernized the LAN end to end — cabling design, equipment selection, specifications, and vendor coordination.

November 2010 — March 2012

State Budgetary Institution "Center for Information and Communication Technologies under the Government of the Republic of Bashkortostan"

Network Engineer, Leading Expert

Ufa, Russia · www.ciktrb.ru

  • Designed and implemented network solutions for government institutions.
  • Prepared project documentation and technical specifications.

Highlights

  • Led the creation of the republic's largest fault-tolerant network.

January 2009 — October 2010

Chelyabtyazhproekt

System Administrator, Information Security Administrator

Chelyabinsk, Russia

  • Administered AD, Squid, and a FreeBSD gateway.
  • Ran information security for the office network.

Highlights

  • Built the office LAN from scratch — equipment, structured cabling, AD domain — and established a dedicated channel to the parent company.
  • Automated hardware inventory with OCS Inventory.

August 2008 — January 2009

RON-Telecom LLC

System Administrator

Chelyabinsk, Russia

  • Administered AD, Sendmail, Squid, a VoIP gateway, and a Nortel BCM 2000 PBX.

Highlights

  • Connected the Chelyabinsk office and the Tryokhgorny plant networks.
  • Migrated Windows Server 2003 R2 to 2008 without interrupting services.

January 2008 — June 2008

Heineken Logistic-C LLC

System Administrator

Chelyabinsk, Russia

  • Administered AD, Lotus Domino, 1C:Enterprise on MS SQL, Squid on ALT GNU/Linux, and Bacula backups.

Highlights

  • Moved the logistics office to a new site with no break in warehouse operations.

December 2006 — December 2007

Unimilk LLC

System Administrator, IT Specialist

Chelyabinsk, Russia · danone.ru

  • Administered AD, Exchange, and 1C:Enterprise, and maintained Panasonic PBX systems.

Highlights

  • Relocated the office together with its telephony without interrupting the working day.

August 2006 — December 2006

Soyuz-Region LLC

Senior System Administrator

Chelyabinsk, Russia · www.soyuz.ru

  • Administered the internet café network and the FreeBSD gateway.

Highlights

  • Prepared a new retail point for launch — cabling, workstations, and staff training.

January 2006 — August 2006

Profsistemy LLC

PC Service Technician

Uchaly, Russia

  • Assembled, configured, and repaired PCs, and deployed operating systems.

Highlights

  • Built a preconfigured Windows XP deployment image with drivers and software bundled in, cutting installation on a new machine from about 90 minutes to roughly 10.

Education

2018 · Higher education

VEGU Academy

Applied Computer Science

2008 · Higher education

South Ural State University (National Research University)

Information and Measurement Technology