Alexandru Gunescu-Head of Cloud Infrastructure
Check rate
Experience
Principal Cloud DevOps Architect
BP
In my role as Senior Cloud DevOps Architect for BP, an oil and gas company, I had the mission to migrate the Electric Vehicle Charging platform of the EV Division from on-premises and Azure to AWS cloud, resulting in a hybrid multi-cloud, multi-tenant SaaS solution.
Deployment with Kubernetes for the application layer meant provisioning Kubernetes clusters managed by EKS and AKS, with a focus on integrating them into a multi-tenant environment. This integration was achieved by using Kubernetes namespaces and access controls to ensure data isolation and privacy enforcement.
In the database layer, we chose an RDS instance with PostgreSQL to support the backend infrastructure of our applications. Tenants shared the same RDS instance, but each had a dedicated schema.
To ingest near real-time data from physical charge points (CPOs), as IoT devices, via the OCPI protocol, we ran into significant delays with batch processing. As a result, we built a real-time streaming data pipeline using Apache Kafka, while prioritizing an event-driven architecture.
Led collaboration across multiple internal teams, external vendors, cloud providers, and on-site partners to integrate over five systems into a unified solution.
Achievements:
- Successfully designed and implemented hybrid multi-cloud solutions, integrating multiple cloud platforms (AWS, Azure) with on-premises infrastructure, using Site-to-Site VPNs, Firewalls, and Load Balancing.
- Led the migration of on-premises infrastructure to multi-cloud, multi-tenant infrastructure, resulting in 30% faster processing times.
- Migrated workloads from VMware and Hyper-V environments to cloud-based VMs, leveraging cloud-native services to optimize performance, cost efficiency, and scalability.
- Designed a multi-tenant Kubernetes platform leveraging the Kubernetes ecosystem, using Karpenter for dynamic EC2 node provisioning, KEDA for event-driven pod autoscaling (e.g., Kafka message lag), and Rancher for centralized monitoring of multiple clusters (EKS, AKS, or on-prem K8s), replacing Microsoft-centric Azure Arc management service.
- Designed and implemented Python-based FastAPI microservices as part of the EV core-backend on AWS EKS application layer, powering data ingestion and customer analytics pipelines.
- Developed asynchronous, event-driven APIs (Python-FastAPI) for real-time integration with CPOs, supporting OCPI 2.3 and OICP protocols.
- Designed and implemented a secure, production-grade Azure Databricks platform using Terraform, ensuring scalability and cost efficiency.
- Migrated on-premises ERP to a hybrid Dynamics 365 architecture with ERP hosted locally and CRM running in Azure, integrated via Azure Arc.
- Automated CI/CD pipelines for Databricks notebooks and jobs using GitHub Actions & Databricks CLI, reducing deployment time. Reduced infrastructure provisioning time by 70% by automating cloud resource deployment with GitOps.
- Ensured compliance with internal audit and data governance standards (GDPR) through OAuth2/OIDC-based authentication and fine-grained role-based access controls.
- Developed a Zero Trust security model, enforcing least-privilege access and microsegmentation, enhancing security posture and compliance with GDPR and NIST.
- Built interactive analytics dashboards in Amazon QuickSight, integrating data from S3 and Redshift to deliver real-time business insights and visualizations with embedded access for multi-tenant users.
- Led cloud security assessments and full-lifecycle cybersecurity integration during M&A, covering AWS, Azure, IAM (Entra ID), and data protection, while aligning security posture with NIST, ISO 27001, and GDPR across hybrid and cloud-native environments.
- Reduced cloud costs by 64% for a client's dev environment by implementing automated start/stop schedules for EC2 and RDS instances via AWS CDK with EventBridge Scheduler or AWS Systems Manager.
Tech stack:
- Infrastructure as Code: Terraform, AWS CDK, Ansible.
- Containers: Kubernetes on EKS, AKS, Docker.
- Streaming Data Processing: Kafka to Confluent Cloud, after AWS MSK.
- Frontend: TypeScript, React, NextJS, Hooks, Styled Components.
- Backend: Python with FastAPI, also Node.js with NestJS.
- Database: Aurora on PostgreSQL with TypeORM, RDS on SQL Server, Azure Databricks full setup and administration, ETL Pipelines.
- CI/CD and GitOps: GitHub Actions, Azure DevOps, ArgoCD.
- Monitoring and Observability: Prometheus and Grafana.
- Virtualization: Hyper-V, VMware Cloud on AWS, Azure Migrate.
- ERP Systems: Odoo, Microsoft Dynamics 365 Business Central on Azure, integrated with Azure Arc.
- Networking: Site-to-Site VPNs, AWS Direct Connect, Azure ExpressRoute, Firewalls (AWS Network Firewall, Azure Firewall).
- Security: IAM, NIST Framework, Zero Trust Security, AWS WAF, AWS Shield, GuardDuty.
Cloud Solutions Architect
YARA International ASA
- Led the digital transformation of the Atfarm web app by designing and implementing a highly available, serverless commerce architecture on AWS
- Rebuilt and refactored the Atfarm client application with a new tech stack and cloud architecture
- Coordinated project sub-projects including cloud infrastructure setup and client app refactoring
- Tech stack: TypeScript, React, React Context, Styled Components, Mapbox, Urql GraphQL, NestJS, Docker, Kubernetes, AWS ECS/Fargate, ECR, AWS Lambda, AWS SNS, Terraform, CircleCI, MongoDB Atlas
Senior Cloud DevOps Architect
LEGO
As Lead Cloud Solution Architect for Brand Retail Execution at LEGO, I led application engineering teams responsible for the design, build, and operation of the Assortment Management platform on LEGO.com, the LEGO Group's flagship direct-to-consumer e-commerce platform.
I focused on leading, coaching, and mentoring engineers while driving innovation and a strong engineering culture across teams. Working closely with solution architects, engineers, and senior stakeholders, I defined the technical direction and ensured delivery of a world-class shopper experience.
I was accountable for end-to-end software engineering, composable cloud architecture, and operational excellence of highly available, low-latency distributed systems and global payment services running on AWS.
Responsibilities:
- Lead, coach, and mentor a team of application engineers, fostering a culture of innovation, continuous learning, and strong engineering practices.
- Define and oversee the composable solution architecture for the Assortment Management platform on LEGO.com, ensuring scalability and performance for a world-class shopper experience.
- Led the design and operation of Kubernetes platforms on AWS EKS, supporting highly available, low-latency microservices workloads.
- Manage the operational excellence and performance of the global online payment services platform and other e-commerce systems, ensuring stability and security.
- Designed and implemented Python-based FastAPI microservices.
- Ensured compliance with internal audit and data governance standards (GDPR, PCI DSS) through OAuth2/OIDC-based authentication and fine-grained role-based access controls.
- Develop and execute LEGO's cloud strategy, optimizing platform performance, scalability, and cost efficiency by leveraging AWS cloud services.
- Implement best practices for continuous monitoring, incident response, and system reliability to support global e-commerce operations.
Tech stack:
- IaC - AWS CDK, CloudFormation.
- Frontend: TypeScript, React, Context API, Hooks, Styled Components.
- Backend: Node.js, Python with FastAPI, GraphQL API layer on AppSync
- Databases: Aurora Serverless on PostgreSQL, DynamoDB.
- Containerization: AWS ECS/Fargate & AWS Lambda, Step Functions. Docker, Microservices architecture, Kubernetes on EKS, AKS.
- Distributed systems and event-driven Amazon SNS, SQS, EventBridge.
- Cloud services: AWS EC2, S3, RDS, Lambda, VPC, API Gateway, etc.
- CI/CD and GitOps: GitHub Actions, Azure DevOps, ArgoCD.
- Monitoring: Prometheus and Grafana for infrastructure monitoring.
- Payments: Stripe / PayPal for global payment processing.
Cloud Solutions Architect
Porsche Digital
Porsche Digital is a wholly owned subsidiary of Porsche AG and serves as its digital center. Worked with cross-functional teams to not only develop customer solutions but also help define and co-design the main concepts for an end-to-end architecture. Being part of the Carsale Finance team, inside the main Porsche Car Finder project.
I was responsible for the end-to-end software engineering, composable solution architecture, and operational excellence of the high availability, low latency, distributed systems and services that form the finder.porsche.com technology platform and the global online payment services platform for the Porsche Group, all running in the public cloud with AWS.
Projects: finder.porsche.com
Responsibilities:
- Led the end-to-end software engineering process, ensuring the design, development, and operation of high availability and low latency systems on AWS for the finder.porsche.com platform.
- Defined and implemented composable solution architecture to support Porsche's digital platform, ensuring scalability and performance.
- Led the design and operation of Kubernetes platforms on AWS EKS, supporting highly available, low-latency microservices and global e-commerce and payment workloads.
- Managed the operational excellence and performance of the global online payment services platform for the Porsche Group, ensuring security and compliance with industry standards.
- Ensured the seamless integration of distributed systems and services, supporting the Porsche Car Finder project and enabling an optimal customer experience.
- Worked closely with teams to innovate and drive architecture best practices for cloud-native development and deployment in AWS.
Tech stack:
- Frontend: TypeScript, React, Redux, Styled Components, Jest, yarn, SASS, LESS, CSS3, HTML5.
- Backend: Node.js, GraphQL API layer with Docker, Kubernetes. Microservices architecture, AWS SNS.
- Database: Aurora on PostgreSQL, and MongoDB Atlas.
- CI/CD Pipelines: GitHub Actions/Jenkins
- Containerization: Kubernetes on EKS, AKS.
- IaC - Terraform.
- AWS components: VPCs, Subnetting, NAT Gateway, Peering, AWS Step Functions.
Tech Lead - Full Stack
E.ON
As a Tech Lead, I was asked to help rebuild and refactor the front-end infrastructure of the E.ON platform in Munich. Until then, they had built their front ends with some frameworks and tools without any particular focus on consistency, resulting in a bloated and inconsistent codebase. That's why they asked me to lead the refactoring of their payment integration service, AEM author panel, and corporate website.
The project was split into several sub-projects and started with refactoring the client integration service (payment dialogs) in December 2016, followed by the user backend in January / February 2017 and the corporate website in March and April 2017. In 2017, the payment dialogs and user dashboards were completely redesigned and refactored with React, using Reflux as the architecture and a consistent, clear design.
We decided to use CSS modules instead of the previously used PureCSS framework to follow a lean codebase approach. This saved hundreds of kilobytes in total per project.
Projects: eon.de, mein.eon.de
Tech stack:
- Frontend: TypeScript, React, ReactNative, Redux, Styled Components,
- Mapping libraries: HighCharts, Leaflet, Jest.
- Backend: REST APIs, Node.js, GraphQL
- Apollo with Microservices architecture.
- Database: MongoDB Atlas.
- CI/CD: GitLab/Jenkins.
- IaC & Cloud Stack - Lambda, S3, CloudFront, Terraform,
- Docker, Kubernetes.
Senior Full Stack Engineer
Aera Technology
Worldwide market leader in supply chain analytics. Working in the Engineering Dep. as a Sr Full Stack developer with expert knowledge in React, ExtJS, HTML5, CSS3 (SASS), using Java on backend and advanced native JavaScript in a multidisciplinary development team using the latest technologies and projects under Agile Methodology (Scrum). Developed the Supply Chain Analytics App (aeratechnology.com).
Tech Stack:
- React, ExtJS, Redux, ES6,
- Nodejs, Express.js.
- MongoDB, FusionCharts, D3.js, Leaflet.
Responsibilities:
- Worked on migrating current applications from ExtJS framework to React with Redux.
- Created rich user interfaces for FusionOps platform, using tools like React, ExtJs, ES6, Babel, Webpack and npm.
- Worked with an agile team, as well as a group of fellow front end and back end developers.
- Developed custom React and ExtJS components/widgets.
- Produced dynamic, interactive data visualizations of all kinds using the power of HTML5, SVG, CSS3, FusionCharts, D3.js and Leaflet.
- Responsible for porting and maintaining the mobile versions.
- Brought to life user interfaces created by design teams using latest web standards.
- Collaborated with back end developers to create a fast and seamless information architecture.
Senior Full Stack Engineer
Ixia
- Extended and customized ExtJS components, integrated grids with REST services, and addressed cross-browser issues
- Designed and implemented JavaScript solutions using ExtJS framework
- Created web widgets for large data volumes and improved UX with AJAX and web services
- Integrated multiple data sources and managed data migration, transformation, and scripting
- Deployed and managed Splunk for monitoring and analytics
- Mentored junior developers and liaised with clients to gather requirements
Frontend Engineer
Ipsos Interactive Services
- Developed online survey projects using JavaScript, jQuery, Bootstrap, HTML, and CSS
- Created responsive web interfaces with drag & drop, copy & paste, context menus, and sorting
- Built RESTful Web API services and maintained web applications
- Verified projects using SPSS and contributed to large-scale e-commerce platform transformations
Industry experience
See where this freelancer has spent most of their professional time.
Experienced in Information Technology, Energy, Professional Services, Retail, Utilities, and Automotive.
Business area experience
See which departments and functions this freelancer has contributed to most.
Experienced in Information Technology, Product Development, Research and Development, Operations, and Project Management.
Summary
Highly accomplished Head of Cloud Infrastructure with a proven ability to develop and execute effective infrastructure and IT support strategies. Extensive experience in effectively engaging and managing C-Level stakeholders, coupled with a strong background in Enterprise Solution Architecture. Skilled in using leadership abilities to recruit, train, mentor, and empower high-performance teams. Successfully led teams of architects and developers in leading automotive companies and spearheaded digital transformation initiatives for renowned institutions worldwide.
Skills
- Multi-Cloud Platforms: Expertise In Aws, Azure, Hybrid Multi-Cloud, Private Cloud, And Cloud-Native Solutions That Use Microservices Architecture, Containerized Or Serverless Computing.
- Infrastructure As Code (Iac): Proficiency In Terraform, Ansible, And Aws Cdk For Efficient Provisioning And Management Of Cloud Infrastructure.
- Container Orchestration: In-Depth Expertise In Kubernetes (Aws Eks, Azure Aks, Openshift), Containerization Technologies (Docker), And Supporting Tools Such As Helm, Karpenter, Rancher, Or Keda.
- Event-Driven Architecture: Knowledge Of Stream Processing Frameworks Such As Apache Kafka, With Expertise In Designing Scalable, High-Throughput Event-Driven Systems For Real-Time Data Ingestion And Processing.
- Virtualization: Extensive Experience With Vmware (Vsphere), Hyper-V For Virtualization And Hybrid Cloud Integration, And Expertise In Migrating Workloads To Aws And Azure Using Vmware Cloud.
- Multi-Cloud Hybrid Networking: Strong Knowledge Of Site-To-Site Vpns, Lan/Wan, Firewalls (Aws Network Firewall, Azure Firewall), Load Balancing (Alb, Nlb, Route 53) For Secure Hybrid And Multi-Cloud Networking.
- Databases And Storage: Understanding Of Database Services Such As Rds (E.G., Postgresql, Sql Server, Mysql), Aurora. Aws Storage Gateway For Hybrid Cloud Storage Integration, Redis For In-Memory Caching. Azure Databricks Full Setup And Administration, Etl Pipelines. Visualize And Analyze Data With Aws Redshift Or Quicksight.
- Cloud Security: Expertise In Aws And Azure Security Best Practices, Including Waf, Shield, Guardduty, Azure Security Center, And Aws Security Hub For Threat Detection And Ddos Protection. Enabled Encryption At Rest With Aws Kms And Managed Iam Strategies Across Entra Id And Aws Iam.
- Zero Trust & Security: Applied Zero Trust Principles With Identity, Least Privilege, And Segmentation. Experience With Aws Control Tower, Azure Policy, And Cloud Governance Frameworks For Compliance.
- Cost Optimization: Experience Implementing Cost-Efficient Architectures And Finops Strategies, Using Reserved Instances, Spot Instances, Auto-Scaling, And Leveraging Cost Analysis Tools Like Aws Cost Explorer.
- Frontend: Expert Level Javascript, Typescript, Frameworks Like React, React Native, And Redux For Building User Interfaces. Familiarity With Popular Frontend Libraries And Tools Such As Apollo Client And Urql For Graphql Integration.
- Backend: Expertise In Node.Js And Python For Backend Development, Including Rest Apis, And Frameworks Like Nestjs, Express Or Fastapi, And Graphql Apis.
- Databases: Solid Understanding Of Sql Dbs (E.G., Postgresql, Sql Server, Mysql) And Nosql Dbs (E.G., Redis, Dynamodb, Mongodb), With Experience Using Typeorm, Sequelize, And Mongoose For Database Connectivity And Orm Management.
- Ci/Cd Pipelines & Automation: Experience With Build Automation Tools Like Gitlab Ci, Azure Devops, Github Actions With Self-Hosted Runner. Argocd For Gitops On Kubernetes.
- Monitoring & Observability: Proficiency In Monitoring Application Performance, Logs, And Metrics To Identify Issues And Optimize System Performance Using Datadog, Prometheus, Grafana, Or The Elk Stack.
- Scripting: Strong Scripting Skills In Python, Bash, Or Shell.
Languages
Education
Polytechnic University of Bucharest
Bachelor of Automatic Control and Computer Science · Computer Engineering · Bucharest, Romania
Statistics
Experience
Global experience
Expertise
Qualifications
Profile
Frequently asked questions
Have questions? Find more information here.
Alexandru is based in Munich, Germany and can operate in on-site, hybrid, and remote work models.
Alexandru speaks the following languages: Romanian (Native), German (Advanced), English (Advanced).
Alexandru has at least 20 years of experience. During this time, Alexandru has worked in at least 6 different roles and for 8 different companies. The average length of individual experience is 3 years and 6 months. Note that Alexandru may not have shared all experience and actually has more experience.
Based on recent experience, Alexandru would be well-suited for roles such as: Principal Cloud DevOps Architect, Cloud Solutions Architect, Senior Cloud DevOps Architect.
Alexandru's most recent position is Principal Cloud DevOps Architect at BP.
In recent years, Alexandru has worked for BP and LEGO.
Alexandru is most experienced in industries like Information Technology, Energy, and Professional Services. Alexandru also has some experience in Retail, Utilities, and Automotive.
Alexandru is most experienced in business areas like Information Technology, Product Development, and Research and Development. Alexandru also has some experience in Operations and Project Management.
Alexandru has recently worked in industries like Energy, Information Technology, and Retail.
Alexandru has recently worked in business areas like Information Technology and Operations.
Alexandru holds a Bachelor in Computer Engineering from Polytechnic University of Bucharest.
Alexandru is immediately available full-time for suitable projects.
Daily rate distribution
The rates shown represent the typical market range for freelancers in this position based on recent contracts on our platform.
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 7 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
Similar freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Principal Cloud DevOps Architect
Nearby freelancers
Professionals working in or nearby Munich, Germany
