I have been building software for over 15 years, more than 12 of them freelance. In that time I have supported companies and public authorities in planning, developing and operating demanding software projects — both within existing teams and as independently delivered solutions.
My focus is on cloud-native services and running containers on Kubernetes — from concept and proof of concept through development into operation, including CI/CD, secret management, monitoring and test automation. As an iSAQB-certified software architect (CPSA-A) I bring structure and proven methods to design, architecture and documentation — most recently in the public sector and the automotive industry.
Awarded the DASMA Future Prize for a master's thesis in the field of cloud computing.
- Java
- Spring Boot
- Quarkus
- TypeScript
- Node.js
- Kubernetes
- Docker
- Kafka
- Cloud-native
- Microservices
- Event-Driven
- CI/CD
- GitOps
- Terraform
- Azure
- Google Cloud
- OAuth2/OIDC
- Domain-Driven Design
- iSAQB CPSA-A
Software architecture (iSAQB)
- CPSA – Advanced Level (CPSA-A)
- Module WEBSEC – Web Security
- Module AGILA – Agile Software Architecture
- Module ARCEVAL/AWERT – Architecture Evaluation
- Module FLEX – Flexible Architectures
- CPSA – Foundation Level (CPSA-F)
Operations & DevOps
- CKAD – Certified Kubernetes Application Developer
- Docker Administration and Operations
Ways of working
- Availability on request
- Remote, Germany-wide — project languages German and English
- Agile (Scrum/Kanban)
- Professional indemnity insurance in place
Fluxo — material & goods-flow control
Situation: A recycling operation with a complex separation process needed end-to-end control over production, warehousing and material flows — instead of manual lists.
My contribution: A custom solution, solely responsible from concept to operation: capturing production, warehouse and booking data, controlling the separation process and dashboards, run entirely in the Azure cloud. Currently migrating the WPF desktop client to a web interface.
Result: Replaces manual production and warehouse lists — material stocks and separation process traceable at any time. In production for over 10 years, with ongoing process optimisation.
- .NET
- SignalR
- WPF → Web
- SQL Server
- Azure
EESSI — migrating WebLogic to Kubernetes & Quarkus
Situation: A large public-authority project (German Federal Employment Agency): the existing EESSI infrastructure ran on WebLogic application servers and needed cloud-native modernisation.
My contribution: Moving the components to Quarkus services on a Kubernetes cluster (Rancher); a stateful migration service drives the data migration robustly and traceably, deployments run automatically via GitOps.
Result: A cloud-native target architecture instead of the WebLogic application server — a traceable data migration in production K8s operation.
- Quarkus
- Kubernetes (Rancher)
- Kustomize
- Flux/Tekton
- Vault
EESSI — new Quarkus components & AS4 integration
Situation: Connecting to the European EESSI network required standards-compliant, signature-secured components to be built anew.
My contribution: Built on Quarkus: an AS4 protocol adapter with certificate and signature verification safeguards message integrity; Apache Kafka and S3 drive and persist the document flow.
Result: Standards-compliant, signature-secured EESSI communication (AS4/EBMS) with a reliable document flow.
- Quarkus
- AS4/EBMS
- Kafka
- S3
- Oracle DB
Car-sharing platform
Situation: A mobility provider was building a new car-sharing platform and needed a scalable backend to orchestrate external services.
My contribution: In close collaboration with iOS and Android teams: serverless middleware across a multi-cloud landscape (GCP, GKE, Azure B2C), designed event- and domain-driven.
Result: Scalable, maintainable middleware as the backbone of the app landscape.
- GCP
- Kubernetes (GKE)
- Azure B2C
- Terraform
- Serverless
- DDD
Telematics/fleet-management migration
Situation: Existing telematics services ran on JEE/WebSphere and needed to move into a new cloud environment.
My contribution: Rebuilt as Spring Boot services on Kubernetes, defining the target architecture and automated deployments (Azure DevOps).
Result: A cloud-native target architecture instead of a WebSphere monolith, with automated deployments.
- Spring Boot
- Docker/Kubernetes
- Azure DevOps
- Azure ARM
- Pact
Identity & API services
Situation: Flexible, secure REST services with standardised authentication were needed around identity and user data.
My contribution: Highly dynamic REST services: providing and validating generic JSON objects and secure sign-in via single sign-on (OAuth2/OpenID Connect, PingFederate).
Result: Flexible, secure API services with standardised authentication.
- Spring
- OAuth2/OIDC
- PingFederate
- Docker
- REST







