Evangelos Tsakoudis avatar

Evangelos Tsakoudis

Cloud & DevSecOps Engineer

Cloud & DevSecOps Engineer with AWS certification and hands-on experience automating infrastructure, secure delivery pipelines, and resilient backend workloads. I bridge infrastructure-as-code (Terraform), cloud architecture, and test automation (Terratest / CI) to ship reliable, observable systems—while continuously levelling up in scalability, security, and cost-aware design.

Projects

View all
AWS Grocery App Infrastructure v2

AWS Grocery App Infrastructure v2

Implemented a modular, production‐style multi-AZ AWS environment using Terraform: custom VPC (multiple AZs), EC2 Auto Scaling Group behind an Application Load Balancer, PostgreSQL RDS primary + optional read replica in private subnets, S3 for application assets and DB dumps, IAM roles with least privilege, and CloudWatch alarms + metrics wired to SNS for alerting. Also includes CI/CD integration via GitHub Actions, Frontend & Backend Docker Images build at pipeline, EventBridge + Step Functions + Lambda for DB Population & Backup and Restore, and Docker container orchestration on EC2 via user data Template.

AWSTerraformVPCAuto ScalingEC2ALBRDSRead ReplicaS3IAMCloudWatchSNSCI/CDGitHub ActionsEventBridgeStep FunctionsLambdaDockerInfrastructure as Code
Movieland – Movie Collection Platform

Movieland – Movie Collection Platform

Flask + SQLAlchemy web app for managing personal movie collections with user authentication, OMDb API integration (dynamic fetch), likes, profile images, and intelligent cleanup of orphaned data. Includes Terraform IaC modules and deployment scripts plus a live instance for demonstration.

PythonFlaskSQLAlchemyJinja2OMDb APIAuthSQLitePostgreSQLAWSEC2ALBRDSS3IAMTerraformInfrastructure as CodeDocker
AWS Grocery App Infrastructure MVP

AWS Grocery App Infrastructure MVP

Provisioned a multi‑AZ AWS environment with Terraform: custom VPC (3 AZs), EC2 Auto Scaling Group behind an ALB, PostgreSQL RDS + read replica in private subnets, S3 for asset storage, IAM roles for least‑privilege access, and CloudWatch alarms wired to SNS for proactive alerting.

AWSTerraformVPCAuto ScalingALBRDSS3CloudWatchSNSInfrastructure as Code

Experience

View full CV

DevSecOps Team Lead

Jan 2026 – Present

Webeet · Berlin, Germany (Remote)

  • Responsible for the design, automation, and reliability of Webeet’s AWS cloud platform, supporting fast and stable software delivery while keeping infrastructure costs under control.
  • Design and operate cloud infrastructure using Terraform and CloudFormation, applying infrastructure-as-code practices to ensure consistency and traceability across environments.
  • Develop and maintain CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins) that automate build, test, and deployment workflows and reduce release friction.
  • Drive the adoption of Docker and Kubernetes (EKS) to support scalable services, rolling deployments, and efficient resource usage.
  • Monitor and optimize cloud spending through continuous cost analysis, right-sizing, and capacity planning using AWS-native tooling.
  • Integrate security into delivery processes with automated vulnerability scanning, secrets management, and access controls to reduce operational risk.
  • Lead and mentor DevSecOps engineers while working closely with development, QA, data, and security teams to improve platform stability and delivery speed.
MentorshipLeadershipAWSTerraformCI/CDGitHub ActionsSecurityDevOpsKubernetesDockerSecurityCost Optimization

DevSecOps Engineer - Project Coordinator

Sep 2025 – Dec 2025

Webeet · Berlin, Germany (Remote)

  • Led & mentored multiple DevSecOps intern squads (12-15 People) providing architectural direction & prioritization without hands‑on coding.
  • Ran structured office hours (2×/week) + ad‑hoc coaching to unblock Terraform / AWS / CI/CD and build autonomous problem solving.
  • Built onboarding playbooks, review rubric & runbooks: cut first‑PR turnaround from ~3 days to <1.5 and reduced revision cycles via structured PR reviews.
  • Standardized secure patterns (network segmentation, least‑privilege IAM, pipeline security) & enforced quality gates (plan, lint, security scan) in GitHub Actions.
  • Introduced decision & escalation logs + lightweight retros → fewer repeat questions & stronger knowledge retention.
  • Fostered psychological safety & continuous improvement through weekly knowledge shares and daily Stand-ups.
MentorshipLeadershipAWSTerraformCI/CDGitHub ActionsSecurityDevOps

DevSecOps Engineer

Aug 2025 – Sep 2025

Webeet · Berlin, Germany (Remote)

  • Led and mentored two teams of interns, guiding Terraform, AWS, and DevSecOps practices
  • Collaborated on secure AWS infrastructure design across networking, compute, storage, and monitoring layers
  • Authored Terraform modules with accompanying Terratest (Go) cases to enforce infrastructure correctness
  • Implemented secure private connectivity (WireGuard VPN) with Caddy reverse proxy and iptables NAT (MASQUERADE)
  • Managed internal Docker registry to streamline container distribution and versioned deployments
  • Automated infrastructure + validation workflows via GitHub Actions, reducing manual steps and drift risk
AWSTerraformTerratestWireGuardCaddyGitHub ActionsDockerSecurity

Operations & Team Leadership (Multiple Roles)

Feb 2019 – Nov 2023

Various (White Backshop, Lieferando, Tsakoudis Lebensmittel GmbH, Kita Sonnenbogen) · Berlin, Germany

  • Led and coordinated daily operations under high-pressure, deadline-driven environments
  • Optimized workflows and shift handovers to maintain reliability and service quality
  • Developed transferable soft skills in communication, ownership, and structured problem solving
LeadershipOperationsCommunicationProcess Improvement