Petrescu Razvan-Ioan

I'm

About

Experienced Infrastructure Architect and Security Engineer with 15+ years in Linux, DevOps, and cybersecurity. I specialize in designing resilient infrastructure, automation at scale, and implementing SIEM/SOAR solutions across critical environments.

Petrescu Razvan-Ioan - Infrastructure Architect and Security Engineer profile photo

Infrastructure Architect, Security Engineer & DevOps

  • Birthday: 12 Jan 1990
  • Website: www.openthreat.ro
  • Phone: +34 632 301 374
  • City: Alicante, Spain
  • Age: 34
  • Degree: Master
  • Email: neata@petrescurazvan.ro
  • Availability: Open to new opportunities

Experienced Infrastructure Architect and Security Engineer with 15+ years in Linux, DevOps, and cybersecurity. I am specialized in designing resilient infrastructure, automation at scale, and implementing SIEM/SOAR solutions across critical environments. I am passionate about building secure, scalable systems and helping organizations achieve their technical and security goals.

Facts

Over the years, I have taken part in many national and international projects across various fields of activity, including the stock exchange, banking, cybersecurity companies, industrial robotics, and more.

Happy Clients

Projects

Hours Of Support

Certifications

Skills

Few of my skills are highlited bellow.

Linux / Unix 100%
Red Hat Ansible 95%
Kubernetes 85%
SIEM (Wazuh, Elastic) 90%
Scripting (Bash, Python) 80%
Infrastructure as Code (Terraform, Ansible) 90%
Virtualization (Proxmox, VMware) 80%
Monitoring (Grafana, Prometheus) 85%
Security Hardening 85%
Incident Response & SOC 80%

Resume

Infrastructure & Security Architect with extensive experience in Linux systems, automation, Kubernetes, and cybersecurity. Proven record in designing scalable, secure, and resilient infrastructures for critical industries (banking, stock exchanges, national infrastructure, etc.).

Education

Master’s in Advanced programming and databases

2012 - 2014

"1 December 1918" University of Alba Iulia

Bachelor in Computer Science

2009 - 2012

"1 December 1918" University of Alba Iulia

Projects

Senior technical consultant

2024 - present

Bank from Republic of Moldova

Technologies: Oracle Linux, RedHat, Bitbucket, Ansible, Detica

AWS INFRASTRUCTURE AND DEVOPS Architect

2022 - present

Fintech company from UK

Technologies: AWS, Ansible, Gitlab, Docker, Kubernetes, Grafana, Wazuh, S3, Lambda, CloudFormation, IAM, VPC, EC2, RDS, WAF, CloudWatch, SNS, SQS

Team Leader - L3 Team • Technical

2023 - 2025

Italian's Bank - Romania HQ

Technologies: Ansible, Gitlab, Docker, Kubernetes, Grafana, Prometheus, Detica, CRIF, EDR, Nessus, Samba, SSSD, RedHat, Ubuntu, Debian, Broadcom API Gateway

Security consultant

2023 - 2024

European agency

Technologies: Nessus PRO, Wazuh, EDR, WAF

Presales technical consultant

2022 - 2023

HPC Data center from Romania

Technologies: vCloud, vCenter, ESXi, NSX-T, vSAN, vSphere, VMware

Senior Infrastructure and DevOps consultant

2021 - 2022

Data archive company from Romania

Technologies: Ansible, Gitlab, Docker, Kubernetes, Grafana, Prometheus, Splunk, CI/CD, Debian, Ubuntu, Nessus PRO, VMware, vSAN, vCenter, Nagios

AWS INFRASTRUCTURE AND DEVOPS Architect

2020 - 2022

Health software company

Technologies: AWS, Ansible, Gitlab, Docker, Kubernetes, Grafana, Prometheus, S3

Professional Experience

Senior Infrastructure Engineer

06/2021 – 01/2025

Bitdefender, Bucharest

  • Architected and implemented AWS to GCP migration for business-critical workloads, enabling cost optimization, high availability, and scalability.
  • Managed AWS EC2, RDS, Lambda, and GCP resources, driving cloud-native automation and infrastructure modernization.
  • Developed advanced File Integrity Monitoring (FIM) solutions for compliance and threat observability.
  • Designed and deployed HA Kubernetes clusters on-prem, integrating security and CI/CD best practices.
  • Implemented cloud WAF and DNS subdomain takeover prevention, improving security posture across multiple environments.
  • Centralized monitoring and capacity planning using Zabbix, Grafana, and custom scripts (Bash, Python, Ruby).
  • Technologies: AWS, GCP, Linux, Splunk, Kubernetes, Ansible, Terraform, Zabbix, Grafana, Bash, Python, Ruby, Wazuh, Elastic, GitLab.

Senior Advisor, Network Systems Management

01/2021 – 06/2021

Secureworks, Bucharest

  • Managed distributed SIEM environments (Splunk, agent-heavy forwarder architecture), delivering actionable security use cases.
  • Developed and implemented custom detection for slow bruteforce and impossible travel attacks.
  • Integrated Splunk with diverse security and IT service vendors, ensuring continuous compliance and operational visibility.
  • Upgraded Splunk plugins and automated Python version transitions for large-scale deployments.
  • Technologies: Splunk, Python, Linux, Windows, Security Automation.

ICT System Engineer & Infrastructure Pentester

03/2019 – 12/2020

Zipper Services, Bucharest

  • Designed and deployed on-prem CI/CD/CS pipelines (GitLab, Ansible Tower, custom observability tools).
  • Implemented Alienvault SIEM and developed custom security tools (Dell EMC ECS auditing, Kibana/Elastic integration).
  • Led automated and manual penetration tests with Nessus Pro for internal web apps and core infrastructure.
  • Designed self-healing monitoring and backup solutions for VMs and multi-vendor network devices.
  • Technologies: GitLab, Ansible Tower, Alienvault, Splunk, Nessus Pro, Elastic, Kibana, VMware, Bash, Python.

System Engineer

03/2016 – 03/2019

Smart-X Net App, Bucharest

  • Maintained and configured secure, high-availability Linux and Windows environments for enterprise clients.
  • Automated deployments and backup workflows using Ansible, Git, and Veeam for VM environments.
  • Proactively monitored infrastructure, troubleshooting issues to minimize downtime and impact.
  • Technologies: Linux, Ansible, Kubernetes, Salt Stack, CheckMK, Git, ONE, iptables, Java, Nginx, MySQL, Wowza.

System and Network Engineer

03/2014 – 01/2015

Sibex Sibiu-Stock Exchange, Sibiu

  • Configured, maintained, and secured Linux servers for core stock exchange applications.
  • Implemented database replication, firewall rules, and advanced network segmentation.
  • Oversaw system upgrades and security controls for critical financial environments.
  • Technologies: Linux, MySQL, Firewall, Networking.

System and Network Administrator

04/2013 – 02/2014

Apulum Technologies, Alba Iulia

  • Planned, deployed, and managed mini-datacenter infrastructure for cloud-based services (AWS, VMware).
  • Implemented Active Directory, DNS, VPNs, firewalling, and backup solutions for SMEs and academic clients.
  • Oversaw migration projects and network architecture for building-wide coverage.
  • Technologies: AWS, VMware, Linux, Active Directory, DNS, VPN, Firewalls.

System and Network Administrator

12/2011 – 04/2013

University of Alba Iulia

  • Designed, configured, and maintained campus-wide IT infrastructure (servers, networking, conferencing systems).
  • Produced comprehensive network diagrams, improved inter-building connectivity and security.
  • Supported a hybrid Linux/Windows ecosystem and delivered automation for routine operations.
  • Technologies: Linux, Windows, Networking, Automation.

Portfolio

Projects and solutions delivered for critical industries: banking, national stock exchanges, cybersecurity, industrial automation and more.

  • All
  • Infrastructure
  • DevOps
  • Security
Wazuh SIEM SOAR Implementation Dashboard Screenshot

Wazuh SIEM/SOAR Implementation

Design and deployment of centralized security monitoring platform for SOC.

Details
Proxmox VE Virtualization Platform Migration from VMware

VMware to Proxmox Migration

Enterprise migration for banking infrastructure.

Details
Network Devices Automatic Backup Solution Architecture

Custom Automatic Backup Solution

Designing a Custom Automatic Backup Solution for Multi-Vendor Network Devices.

Details
Dell EMC ECS S3 Security Auditing Tool with Elasticsearch and Kibana

Dell EMC ECS S3 Security Audit

Custom tool for collecting and visualizing S3 bucket activity, using Elasticsearch and Kibana.

Details
Automated Multi-OS Patch Management System for Air-gapped Environments

Automated Multi-OS Patch Management (Air-gapped)

Workflow for centralized patch management across RHEL, Ubuntu, Debian, AIX in environments without internet.

Details
CI/CD Pipeline with GitLab and Nessus Pro Security Integration

CI/CD & Continuous Security with GitLab and Nessus Pro

Full DevSecOps pipeline, automated deployment and security auditing for each release.

Details
DNS Subdomain Takeover Prevention Security Solution

DNS Subdomain Takeover Prevention

Provider-agnostic solution for detecting and preventing DNS subdomain takeover in cloud and CI/CD environments.

Details
AWS to Google Cloud Platform Migration Architecture

AWS to GCP Cloud Migration

Planning and executing the migration of production infrastructure from AWS to Google Cloud Platform.

Details
Ascertia TSA Digital Timestamping Authority eIDAS Compliance Implementation

Ascertia TSA: eIDAS-Compliant Digital Signature Integrity

Deployment of a high-availability Ascertia Timestamping Authority (TSA) cluster to guarantee digital signature integrity and eIDAS compliance for critical documents. Integrated with internal CA, HSM, and secure OCSP/CRL validation.

Details

Services

I deliver tailored solutions for secure, scalable, and automated IT infrastructure.

.

S3, Cloud & Network Security Auditing

Custom tools and workflows for auditing access and activity in S3, cloud, and network environments. Seamless integration with SIEM and advanced reporting.

Automated Patch Management (Multi-OS, Air-gapped)

Centralized automation of security updates and patching for RHEL, Ubuntu, Debian, AIX, and more — including closed networks without internet access.

CI/CD & Continuous Security (DevSecOps)

Implementation of CI/CD/CS pipelines with GitLab and Nessus Pro, enabling automated deployment and security scans for every release.

AWS to GCP Migration & Cloud Optimization

Planning and executing cloud migrations, cost optimization, and disaster recovery between AWS, GCP, and hybrid platforms.

DNS Subdomain Takeover Prevention

Custom, provider-agnostic solutions for detecting and preventing DNS subdomain takeovers in cloud and CI/CD environments.

Automated Backup for Network & Systems

Centralized and versioned automated backup for multi-vendor network devices and critical systems. Fast restore and full auditability.

Open Source & Public Projects

Explore some of my public repositories and tools released for the community.

Contact

Location:

Alicante, Spain

Call:

+34 632 301 374