About
Experienced Infrastructure Architect and Security Engineer with 15+ years in Linux, DevOps, and cybersecurity. I specialize in designing resilient infrastructure, automation at scale, and implementing SIEM/SOAR solutions across critical environments.

Infrastructure Architect, Security Engineer & DevOps
- Birthday: 12 Jan 1990
- Website: www.openthreat.ro
- Phone: +34 632 301 374
- City: Alicante, Spain
- Age: 34
- Degree: Master
- Email: neata@petrescurazvan.ro
- Availability: Open to new opportunities
Experienced Infrastructure Architect and Security Engineer with 15+ years in Linux, DevOps, and cybersecurity. I am specialized in designing resilient infrastructure, automation at scale, and implementing SIEM/SOAR solutions across critical environments. I am passionate about building secure, scalable systems and helping organizations achieve their technical and security goals.
Facts
Over the years, I have taken part in many national and international projects across various fields of activity, including the stock exchange, banking, cybersecurity companies, industrial robotics, and more.
Happy Clients
Projects
Hours Of Support
Certifications
Skills
Few of my skills are highlited bellow.
Resume
Infrastructure & Security Architect with extensive experience in Linux systems, automation, Kubernetes, and cybersecurity. Proven record in designing scalable, secure, and resilient infrastructures for critical industries (banking, stock exchanges, national infrastructure, etc.).
Education
Master’s in Advanced programming and databases
2012 - 2014
"1 December 1918" University of Alba Iulia
Bachelor in Computer Science
2009 - 2012
"1 December 1918" University of Alba Iulia
Projects
Senior technical consultant
2024 - present
Bank from Republic of Moldova
Technologies: Oracle Linux, RedHat, Bitbucket, Ansible, DeticaAWS INFRASTRUCTURE AND DEVOPS Architect
2022 - present
Fintech company from UK
Technologies: AWS, Ansible, Gitlab, Docker, Kubernetes, Grafana, Wazuh, S3, Lambda, CloudFormation, IAM, VPC, EC2, RDS, WAF, CloudWatch, SNS, SQSTeam Leader - L3 Team • Technical
2023 - 2025
Italian's Bank - Romania HQ
Technologies: Ansible, Gitlab, Docker, Kubernetes, Grafana, Prometheus, Detica, CRIF, EDR, Nessus, Samba, SSSD, RedHat, Ubuntu, Debian, Broadcom API GatewaySecurity consultant
2023 - 2024
European agency
Technologies: Nessus PRO, Wazuh, EDR, WAFPresales technical consultant
2022 - 2023
HPC Data center from Romania
Technologies: vCloud, vCenter, ESXi, NSX-T, vSAN, vSphere, VMwareSenior Infrastructure and DevOps consultant
2021 - 2022
Data archive company from Romania
Technologies: Ansible, Gitlab, Docker, Kubernetes, Grafana, Prometheus, Splunk, CI/CD, Debian, Ubuntu, Nessus PRO, VMware, vSAN, vCenter, NagiosAWS INFRASTRUCTURE AND DEVOPS Architect
2020 - 2022
Health software company
Technologies: AWS, Ansible, Gitlab, Docker, Kubernetes, Grafana, Prometheus, S3Professional Experience
Senior Infrastructure Engineer
06/2021 – 01/2025
Bitdefender, Bucharest
- Architected and implemented AWS to GCP migration for business-critical workloads, enabling cost optimization, high availability, and scalability.
- Managed AWS EC2, RDS, Lambda, and GCP resources, driving cloud-native automation and infrastructure modernization.
- Developed advanced File Integrity Monitoring (FIM) solutions for compliance and threat observability.
- Designed and deployed HA Kubernetes clusters on-prem, integrating security and CI/CD best practices.
- Implemented cloud WAF and DNS subdomain takeover prevention, improving security posture across multiple environments.
- Centralized monitoring and capacity planning using Zabbix, Grafana, and custom scripts (Bash, Python, Ruby).
- Technologies: AWS, GCP, Linux, Splunk, Kubernetes, Ansible, Terraform, Zabbix, Grafana, Bash, Python, Ruby, Wazuh, Elastic, GitLab.
Senior Advisor, Network Systems Management
01/2021 – 06/2021
Secureworks, Bucharest
- Managed distributed SIEM environments (Splunk, agent-heavy forwarder architecture), delivering actionable security use cases.
- Developed and implemented custom detection for slow bruteforce and impossible travel attacks.
- Integrated Splunk with diverse security and IT service vendors, ensuring continuous compliance and operational visibility.
- Upgraded Splunk plugins and automated Python version transitions for large-scale deployments.
- Technologies: Splunk, Python, Linux, Windows, Security Automation.
ICT System Engineer & Infrastructure Pentester
03/2019 – 12/2020
Zipper Services, Bucharest
- Designed and deployed on-prem CI/CD/CS pipelines (GitLab, Ansible Tower, custom observability tools).
- Implemented Alienvault SIEM and developed custom security tools (Dell EMC ECS auditing, Kibana/Elastic integration).
- Led automated and manual penetration tests with Nessus Pro for internal web apps and core infrastructure.
- Designed self-healing monitoring and backup solutions for VMs and multi-vendor network devices.
- Technologies: GitLab, Ansible Tower, Alienvault, Splunk, Nessus Pro, Elastic, Kibana, VMware, Bash, Python.
System Engineer
03/2016 – 03/2019
Smart-X Net App, Bucharest
- Maintained and configured secure, high-availability Linux and Windows environments for enterprise clients.
- Automated deployments and backup workflows using Ansible, Git, and Veeam for VM environments.
- Proactively monitored infrastructure, troubleshooting issues to minimize downtime and impact.
- Technologies: Linux, Ansible, Kubernetes, Salt Stack, CheckMK, Git, ONE, iptables, Java, Nginx, MySQL, Wowza.
System and Network Engineer
03/2014 – 01/2015
Sibex Sibiu-Stock Exchange, Sibiu
- Configured, maintained, and secured Linux servers for core stock exchange applications.
- Implemented database replication, firewall rules, and advanced network segmentation.
- Oversaw system upgrades and security controls for critical financial environments.
- Technologies: Linux, MySQL, Firewall, Networking.
System and Network Administrator
04/2013 – 02/2014
Apulum Technologies, Alba Iulia
- Planned, deployed, and managed mini-datacenter infrastructure for cloud-based services (AWS, VMware).
- Implemented Active Directory, DNS, VPNs, firewalling, and backup solutions for SMEs and academic clients.
- Oversaw migration projects and network architecture for building-wide coverage.
- Technologies: AWS, VMware, Linux, Active Directory, DNS, VPN, Firewalls.
System and Network Administrator
12/2011 – 04/2013
University of Alba Iulia
- Designed, configured, and maintained campus-wide IT infrastructure (servers, networking, conferencing systems).
- Produced comprehensive network diagrams, improved inter-building connectivity and security.
- Supported a hybrid Linux/Windows ecosystem and delivered automation for routine operations.
- Technologies: Linux, Windows, Networking, Automation.
Portfolio
Projects and solutions delivered for critical industries: banking, national stock exchanges, cybersecurity, industrial automation and more.
- All
- Infrastructure
- DevOps
- Security

Wazuh SIEM/SOAR Implementation
Design and deployment of centralized security monitoring platform for SOC.
Details

Custom Automatic Backup Solution
Designing a Custom Automatic Backup Solution for Multi-Vendor Network Devices.
Details
Dell EMC ECS S3 Security Audit
Custom tool for collecting and visualizing S3 bucket activity, using Elasticsearch and Kibana.
Details
Automated Multi-OS Patch Management (Air-gapped)
Workflow for centralized patch management across RHEL, Ubuntu, Debian, AIX in environments without internet.
Details
CI/CD & Continuous Security with GitLab and Nessus Pro
Full DevSecOps pipeline, automated deployment and security auditing for each release.
Details
DNS Subdomain Takeover Prevention
Provider-agnostic solution for detecting and preventing DNS subdomain takeover in cloud and CI/CD environments.
Details
AWS to GCP Cloud Migration
Planning and executing the migration of production infrastructure from AWS to Google Cloud Platform.
Details
Ascertia TSA: eIDAS-Compliant Digital Signature Integrity
Deployment of a high-availability Ascertia Timestamping Authority (TSA) cluster to guarantee digital signature integrity and eIDAS compliance for critical documents. Integrated with internal CA, HSM, and secure OCSP/CRL validation.
DetailsServices
I deliver tailored solutions for secure, scalable, and automated IT infrastructure.
.S3, Cloud & Network Security Auditing
Custom tools and workflows for auditing access and activity in S3, cloud, and network environments. Seamless integration with SIEM and advanced reporting.
Automated Patch Management (Multi-OS, Air-gapped)
Centralized automation of security updates and patching for RHEL, Ubuntu, Debian, AIX, and more — including closed networks without internet access.
CI/CD & Continuous Security (DevSecOps)
Implementation of CI/CD/CS pipelines with GitLab and Nessus Pro, enabling automated deployment and security scans for every release.
AWS to GCP Migration & Cloud Optimization
Planning and executing cloud migrations, cost optimization, and disaster recovery between AWS, GCP, and hybrid platforms.
DNS Subdomain Takeover Prevention
Custom, provider-agnostic solutions for detecting and preventing DNS subdomain takeovers in cloud and CI/CD environments.
Automated Backup for Network & Systems
Centralized and versioned automated backup for multi-vendor network devices and critical systems. Fast restore and full auditability.
Open Source & Public Projects
Explore some of my public repositories and tools released for the community.
Technical Blog
Read technical deep-dives, security insights, and infrastructure tutorials published on my blog.
Contact
Location:
Alicante, Spain
Email:
neata@petrescurazvan.ro
Call:
+34 632 301 374