Deployments are done by hand
Releases run on manual steps, uploads or a script that only one person on the team truly understands.
For development teams, agencies & product teams · DevSecOps practice
I reinforce existing development teams where the code leaves the repository: build pipelines, containers, secrets, servers and release processes – as an external, clearly scoped development service.
When it fits
Not every team needs its own platform department. Often what is missing is one person taking care of exactly this part for a few weeks.
Releases run on manual steps, uploads or a script that only one person on the team truly understands.
Builds take too long, fail in ways nobody can reproduce, or end up testing something other than the artifact that actually ships.
Headers, secrets, dependencies and access rights are known gaps – nobody just has the head space for them.
Differences between the development and production environment produce failures that only become visible after the deployment.
Scope
Everything between commit and production – built so your team can keep running it without me afterwards.
GitHub Actions with separate build and deploy jobs, YAML workflows, self-hosted runners and a rollback that is one button rather than one night shift.
Multi-stage builds, reproducible images and isolated services, so the development and production environments stop drifting apart.
Environment variables, Docker secrets and a clean separation of development and production data – none of it in the repository.
Ubuntu and VPS setups, reverse proxy, TLS configuration and production-ready routing instead of individually grown exceptions.
Content Security Policy, HSTS and Permissions-Policy set so they protect the application without silently dismantling it in the production build.
Shell scripts, maintenance routines and documented procedures – so the path to production does not live in one person's head.
A short technical conversation about pipeline, environment and release answers that faster than any list of services.
Collaboration
External, project-based development work – clearly scoped, documented and traceable at any time.
I work inside your existing infrastructure and your repository, on defined tasks and with the access those tasks require – no more than that.
Process
First understand what happens today when you deploy. Then decide what is worth doing.
I look at the repository, the pipeline and the target environment and describe what actually happens on a deployment – without changing anything.
The findings turn into a short, ordered list: what has immediate effect, what can wait, and what you are better off keeping in-house.
Scoped work packages, every change traceable in the repository, no rebuilding of running systems without agreement.
What I built is documented and operable without me. That is the goal of the collaboration, not its farewell.
Limits
Five points that are better settled now than in invoice number three.
Because a DevSecOps engagement goes wrong exactly here: the expectation is not the same as the assignment. If you need one of these, I say so in the first conversation – and say where it is better placed.
Project Examples
Selected projects as technical reference – from creator platforms to property management systems to real-time applications.
Proves — booking platforms & PMS

Property Management System
A complete property management system for holiday rentals, guest houses and small hotels — an owner dashboard for properties, units and bookings, plus a public booking flow for guests.
2026
Creator discovery platform
Headless platform for Thailand travel YouTubers with an SEO-optimised content engine and nightly data sync.
Angular 21 · Django 5 · Celery · YouTube Data API
2025
Video streaming
Streaming platform with server-side video processing and segmented delivery.
Angular 18 · Django REST · FFmpeg · Redis
2026
Freelancer marketplace
Marketplace with offer management, a rating system and separate profiles for providers and clients.
Angular · Django REST · JWT · PostgreSQL
2025
Team chat
Real-time chat with structured channel logic and direct messages.
Angular · TypeScript · Firebase
2025
Kanban board
Project management tool with drag-and-drop, subtasks and contact management.
Vanilla JS · Django REST · PostgreSQL
These systems run on the same pipelines, containers and servers we would be talking about.
Four state-recognised (AZAV) certificates – each verifiable as a PDF. For you that means: your project is delivered by someone who has formally proven security, data protection and modern development skills – complementing real project work, not replacing it.
Certification
DevSecOps foundational certificate · part of the DevSecOps program
Competencies
View certificate (PDF) (Certified Data Protection Officer, opens in a new tab) Certificate in detail : Certified Data Protection Officer
Verified Qualification
Web applications focus · IT security & cloud
Competencies
Technologies
View certificate (PDF) (Software Developer · DevSecOps Development, opens in a new tab) Certificate in detail : Software Developer · DevSecOps Development
Verified Qualification
Web applications focus · Backend Development
Competencies
Technologies
View certificate (PDF) (Software Developer · Backend Development, opens in a new tab) Certificate in detail : Software Developer · Backend Development
Verified Qualification
Web applications focus · Frontend Development
Competencies
Technologies
View certificate (PDF) (Software Developer · Frontend Development, opens in a new tab) Certificate in detail : Software Developer · Frontend Development

Free initial consultation. Honest assessment. Clear next steps.