DevOps Tech Lead • DevSecOps • Platform Engineering • GitOps • CI/CD Security • Observability
The core repos are now connected as one production-like narrative:
secure-gitops-platform
GitOps governance, policy-as-code, SBOM/scan/sign/attest supply chain, and Argo Rollouts canary gates.java-api-with-otlp-sdk
Instrumented Java workload (OTel + Prometheus metrics) deployed by GitOps with progressive rollout analysis.postgres-ha-chaos-lab
HA Postgres backend (Patroni/etcd/HAProxy + chaos scenarios) consumed by the Java workload.
Flow: code -> secure CI/release -> signed digest deploy -> canary analysis/rollback -> HA database evidence.
- 🔭 DevOps Tech Lead (Public Sector | Ceará, BR) — Platform Engineering, GitOps, and CI/CD Security (SAST/SCA/DAST/IAST).
- 🔐 Hands-on DevSecOps — quality gates, supply chain security (SBOM + signing), secrets management, and hardening.
- 🚀 Release engineering — blue/green, canary, and fast rollback (Kubernetes / Docker / Swarm).
- 📈 Observability — OpenTelemetry + metrics/logs/traces with actionable dashboards and alerts.
- ⚙️ IaC & automation — Terraform/OpenTofu, Ansible, and Bash for reproducible and secure infrastructure.
- 💬 Let's talk about DevOps/DevSecOps/GitOps/Full Cycle.
- ✍️ I write on Medium about technology, DevSecOps, and security.





