Francis – AWS, Kubernetes, Docker, experts in Lemon.io

Francis

From United States (UTC-5)flag

DevOps|Strong senior
Site Reliability Engineer|Strong senior

Francis – AWS, Kubernetes, Docker

Francis is a strong senior DevOps and SRE engineer with deep expertise in Kubernetes, Docker, AWS, Terraform, CI/CD, and Python automation. He has demonstrated ownership of complex platform migrations, production reliability, and security-conscious infrastructure in both cybersecurity and financial domains. Feedback highlights his structured troubleshooting, stakeholder alignment, and clear technical communication. He is well-suited for senior DevOps, SRE, or platform engineering roles in Kubernetes-heavy and automation-driven environments.

10 years of commercial experience in
AI
Consulting services
Cybersecurity
Information services
Main technologies
AWS
6 years
Kubernetes
6 years
Docker
2.5 years
Terraform
1 year
Python
8 years
Additional skills
Datadog
Vault
Cassandra
Kafka
Redis
Helm
GCP
CI/CD
DevOps
Infrastructure provisioning
OpenTelemetry
Kubeflow
Bash
Azure DevOps
SQL
Linux
Direct hire
Possible
Ready to get matched with vetted developers fast?
Let’s get started today!

Experience Highlights

Senior Developer
May 2025 - Ongoing1 year 3 months
Project Overview

A free web platform providing users with access to open-source book content. The project focused on building an accessible and user-friendly solution for browsing and reading publicly available books online.

Responsibilities:
  • Built and maintained the web platform for accessing open-source book content;
  • Developed and maintained the search functionality;
  • Cleaned and prepared data for integration into the platform;
  • Designed and refined the UI/UX to improve usability and accessibility;
  • Developed and integrated new features based on evolving project requirements.
Project Tech stack:
Typescript
SQLite
React
Kubernetes
PySpark
Kaldi
Senior DevSecOps Engineer
Dec 2023 - Ongoing2 years 8 months
Project Overview

An AI-driven cybersecurity platform designed to ingest and analyze billions of security events across endpoints, cloud workloads, and user identities. The solution supports large-scale security monitoring and threat detection across diverse IT environments.

Responsibilities:
  • Standardized ACLs and managed broker upgrades on Strimzi-managed Kafka clusters running on EKS and GKE as part of the Certified Components program;
  • Managed the ZooKeeper-to-KRaft migration by provisioning parallel clusters with MirrorMaker 2 synchronization and gradually repointing clients with offset validation;
  • Developed a pre-check script to validate replication lag, client connection counts, and memory pressure before Redis maintenance windows;
  • Collaborated with the Kubernetes team to fix anti-affinity rules and ensure Redis primaries and replicas were not scheduled on the same node;
  • Built CI/CD gates in GitHub Actions for Docker images and Helm releases, including Terraform plan and policy checks, canary validation, automatic rollback, and post-deployment smoke tests;
  • Configured the Vault database secrets engine for Kafka and ClickHouse connections in GovCloud clusters, replacing static credentials with short-lived, rotating tokens;
  • Rebuilt monitoring and alerting for shared Redis and Kafka clusters using composite monitors in Datadog, along with existing Prometheus and Grafana signals;
  • Strengthened Cassandra access controls with namespace-level network policies and Kyverno rules;
  • Investigated a Kafka rebalance issue during rolling broker upgrades and added an upgrade pre-flight check to validate consumer group stability.
Project Tech stack:
AWS
GCP
Kubernetes
Terraform
Helm
Docker
GitHub Actions
Cassandra
ClickHouse
Datadog
Grafana
Kafka
Prometheus
Redis
Vault
.NET
Apache Kafka
Claude Code
AWS CloudFormation
Amazon CloudFront
Cloudflare
Tech Lead
Apr 2025 - Aug 20261 year 4 months
Project Overview

An AI-powered regulatory platform that automates FDA 510(k) submission research and preparation. The solution analyzed device descriptions to determine regulatory pathways, identify predicate devices, assess equivalence, hazards, cybersecurity, labeling, and evidence requirements, and generate cited regulatory dossiers and submission forms. The platform included a PostgreSQL rule engine, FastAPI backend, machine-learning services for product-code classification and predicate matching, and a Next.js frontend.

Responsibilities:
  • Designed and built the PostgreSQL rule engine encoding FDA regulatory logic for pathway, predicate, equivalence, hazard, labeling, and evidence assessment;
  • Developed the FastAPI backend and integrated ML services for product-code classification and predicate-device matching;
  • Built the natural-language Q&A layer, providing evidence-backed answers with regulatory sources;
  • Developed the Next.js frontend, including device intake, dossier records, predicate comparisons, and citation-linked views;
  • Built an LLM-assisted data extraction pipeline with source verification for high-stakes regulatory information;
  • Diagnosed production issues, implemented regression tests, and validated fixes against real user queries;
  • Conducted structured reviews using real regulatory cases to identify and improve product accuracy and usability.
Project Tech stack:
.NET
Python
Splunk
Machine learning
Algorithms and Data Structures
React
GraphQL
MVP
Senior Security Engineer
Dec 2019 - Nov 20233 years 10 months
Project Overview

A financial services platform for an insurance and financial services brokerage, providing solutions to support insurance management, financial planning, and related client services.

Responsibilities:
  • Built the GRC program in Archer by assigning owners and evidence due dates to control records and organizing them by product line;
  • Deployed Okta SSO with Duo MFA for the agent-facing CRM and mapped Active Directory groups to role-based access tiers;
  • Wrote a PowerShell script to synchronize broker additions and removals from Active Directory into Okta automatically;
  • Led vulnerability management migration from Nessus to Qualys VMDR and tuned scan policies for production-safe coverage;
  • Wrote a Python wrapper that enriched findings with business impact and asset owner data and opened ServiceNow tickets automatically;
  • Coordinated post-patch validation scans with Kali and Metasploit to support quarterly penetration testing requirements;
  • Wrote SPL correlation searches in Splunk ES to detect unusual payout spikes grouped by broker number;
  • Exported a feed into Microsoft Sentinel for cloud-side alerting;
  • Managed the SOC 2 Type II evidence lifecycle in SecureFrame and mapped artifacts to the Trust Services Criteria;
  • Ran recurring secure coding sessions using Burp Suite to walk developers through live OWASP Top Ten flaws on the enrollment portal.
Project Tech stack:
Active Directory
Microsoft Azure
Datadog
Okta
PowerShell
Python
Splunk

Languages

French
Intermediate
English
Advanced

Hire Francis or someone with similar qualifications in days
All developers are ready for interview and are are just waiting for your requestdream dev illustration
Copyright © 2026 lemon.io. All rights reserved.