Cloud Infrastructure | DevOps Engineering | Cloud Security

Ondřej Domský

Cloud & DevOps Engineer — Azure Infrastructure & Security

Navrhuji a provozuji bezpečné, škálovatelné a automatizované cloud platformy v Microsoft Azure se zaměřením na compliance prostředí.

Professional Focus

  • Azure Architecture
  • Cloud Security & PCI DSS
  • DevOps & CI/CD Automation
  • Scalable Infrastructure Design

What I Do

Cloud Infrastructure

Design a provoz škálovatelných Azure environments se správným governance a cost management.

DevOps & Automation

CI/CD pipelines, release automation a Infrastructure as Code (Bicep/Terraform) pro rychlé a spolehlivé delivery.

Cloud Security

Identity management, PIM, Defender for Cloud a návrh bezpečných compliance environments (včetně PCI DSS).

Operations

Monitoring, incident troubleshooting a optimalizace production operations i cost.

Skills & Technologies

Cloud & Azure

  • Azure architecture design
  • Azure networking (VNet, Private Endpoints, Hub-Spoke)
  • Azure Container Apps, App Services
  • Azure SQL, Storage, Key Vault
  • Azure Monitor & Log Analytics

DevOps & Infrastructure

  • CI/CD pipelines
  • Azure DevOps, YAML pipelines
  • Infrastructure as Code (Bicep / Terraform)
  • Git workflows
  • Build & release automation

Security & Compliance

  • Cloud security architecture
  • PCI DSS environment design
  • Microsoft Defender for Cloud
  • Entra ID, RBAC, PIM, Just-in-Time access
  • Security monitoring & alerting

Containers & Operations

  • Docker
  • Containerized applications
  • Container deployment in Azure
  • Incident troubleshooting
  • Cost optimization

Tools & Scripting

  • PowerShell / Azure CLI
  • SonarCloud, Snyk
  • Git (Azure Repos, GitHub)
  • Visual Studio / VS Code

Development

  • .NET / C#
  • API design
  • Docker-based deployments
  • Cloud architecture patterns

Certifications

  • Microsoft Certified: Azure Fundamentals (AZ-900)
  • Microsoft Certified: Azure Administrator Associate (AZ-104)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500) — in progress, plánovaný termín Q2 2026

About

Cloud engineer se 3 lety zkušeností v komerčním prostředí, zaměřený na Microsoft Azure. Podílel jsem se na upgradu infrastruktury na PCI DSS compliant prostředí, automatizoval infrastructure deployment přes Bicep/Terraform a nastavoval security baseline pomocí Defender for Cloud a Entra ID. Pracuji na průsečíku infrastruktury, bezpečnosti a DevOps. Vlastní projekty a experimenty sdílím na GitHubu.

3 roky v oboru
2 certifikace
AZ-500 in progress

Contact

Máš zájem o spolupráci nebo konzultaci? Ozvi se.