← ciprianursu.com

Ciprian Ursu

Cloud Platform Architect

Iași, Romania · Remote / Worldwidecontact@ciprianursu.comciprianursu.comlinkedin.com/in/ciprian-ursu@ciprianursu_

Summary

Cloud Platform Architect with deep AWS expertise across cloud governance, platform operating models, networking, security, and cost optimization. Strong track record designing and scaling multi-account cloud foundations, automated account onboarding and customization frameworks, and secure repeatable platform patterns for engineering teams.

Core competencies

AWS & Governance

AWS Organizations · Control Tower · Account Factory for Terraform (AFT) · IAM Identity Center · AWS Config · CloudTrail · Multi-account architecture · Landing Zone · FinOps / cost optimization

Containers & Platforms

Kubernetes · Amazon EKS · Amazon ECS · Helm · GitOps (ArgoCD / Flux) · Platform engineering · Golden paths / paved roads

IaC & Automation

Terraform · CloudFormation · CI/CD pipelines · GitHub Actions · Jenkins · GitLab · AWS CodePipeline · Step Functions · Lambda · Automation workflows · Policy as code

Networking & Security

VPC / Transit Gateway · Direct Connect / VPN · AWS Network Firewall · Centralized ingress / egress · Identity-first / zero-trust access · Guardrails & SCPs · Secrets management

AI & Intelligence

Agentic AI infrastructure · MLOps POCs · SageMaker · Kubeflow · MLflow · Automation pipelines

Observability

Monitoring & alerting · Cost telemetry · Logging & tracing · Prometheus / Thanos · Grafana / Loki · ELK Stack · Datadog · SLOs / reliability

Experience

DevOps Consultant / Cloud Platform Architect

Jun 2022 – Present

Leading SaaS technology provider to the global capital markets industry

  • Progressed into staff-level platform architecture scope from June 2025, leading enterprise AWS foundations, governance, networking, security, and shared services.
  • Designed and evolved the operating model for a multi-account AWS environment spanning 60+ accounts.
  • Led account provisioning and readiness architecture from account creation through deployment-ready environments.
  • Designed event-driven post-provisioning automation triggered by AWS Control Tower events.
  • Built global and account-specific customization patterns driven by account purpose, ownership, metadata, and tags.
  • Owned governance across AWS Organizations, Control Tower, IAM, Config, CloudTrail, and policy-driven controls.
  • Led FinOps and cloud cost optimization initiatives, including Kubernetes cost attribution models.
  • Designed hub-and-spoke networking and centralized egress strategy, moving from distributed NAT gateways to a shared egress model.
  • Driving inspection VPC and AWS Network Firewall adoption for outbound traffic control and policy enforcement.

DevOps Consultant

Aug 2025 – Present

Education technology company

  • Own platform responsibilities across networking, security, CI/CD, and application delivery.
  • Manage and improve deployment workflows for containerized services running on Amazon ECS.
  • Support delivery pipelines across Jenkins, GitHub Actions, and CircleCI.
  • Contribute to platform reliability, environment consistency, and secure release practices for web and mobile product teams.

DevOps Consultant / Senior Cloud Engineer

Sep 2021 – Jun 2022

S&P Global Market Intelligence / Ness Digital Engineering

  • Optimized cloud and DevOps practices across AWS, Azure, and on-premise environments.
  • Designed and implemented CI/CD pipelines with Jenkins and Azure DevOps for services deployed on EKS and AKS.
  • Created reusable CloudFormation templates and Terraform modules for AWS and Azure infrastructure.
  • Maintained EKS clusters and supported data platforms including in-house products and Databricks.
  • Configured observability with Grafana, Prometheus, Datadog, and related tooling.
  • Provisioned and maintained infrastructure for data analytics teams, including Tableau Server, backup/restore plans, and Kubernetes migration blueprints.

Senior DevOps Engineer

May 2020 – Sep 2021

Esure / Endava

  • Migrated APIs from on-premises and Elastic Beanstalk to Kubernetes with Helm charts, repositories, and deployment pipelines.
  • Designed cloud infrastructure with solution architects and implemented it using Terraform.
  • Created and maintained Kubernetes clusters across bare metal and AWS EKS with autoscaling policies.
  • Built Jenkins shared libraries, drift detection pipelines, and recurrent AWS Lambda automation in Python.
  • Configured Grafana, Prometheus, Loki, and YACE dashboards for Kubernetes resources, Airflow pipelines, and AWS services.
  • Delivered MLOps POCs using Kubeflow, Jupyter notebooks on GPU nodes in EKS, MLflow, FastAPI, and SageMaker.

DevOps Engineer

Dec 2018 – May 2020

Esure / Endava

  • Designed and implemented scalable pre-production and production infrastructure.
  • Created and maintained development, QA, and POC environments.
  • Automated CI/CD pipelines using Jenkins, GitLab, Travis CI, Python, and Bash.
  • Installed, configured, and managed applications across production and QA environments.
  • Investigated and implemented improvements for application security and system performance.

DevOps Engineer

Aug 2017 – Dec 2018

Vezuvian SRL

  • Designed, created, and maintained AWS infrastructure for scalable application deployments.
  • Installed and configured APIs in cloud and on-premise environments.
  • Automated CI/CD processes using Bash, PowerShell, and Python.
  • Provided 24x7 tier-2/3 production support for APIs and databases.

Network Operation Center Engineer

Jan 2016 – Aug 2017

Vezuvian SRL

  • Monitored and supported production systems and applications for performance and availability.
  • Acted as primary responder to alerts and real-time events, minimizing service disruption.
  • Developed NOC process documentation and trained new team members.
  • Provided tier-1/2 support and coordinated root-cause analysis and remediation.

Education

  • Bachelor's degree in Economic Informatics, Faculty of Economics and Business Administration, Alexandru Ioan Cuza University of Iași — 2010–2013