Ioseb Kuprashvili, Developer in Tbilisi, Georgia
Ioseb is available for hire
Hire Ioseb

Ioseb Kuprashvili

Verified Expert  in Engineering

Systems Architect and Developer

Location
Tbilisi, Georgia
Toptal Member Since
December 15, 2021

Ioseb is a systems architect with a proven track record of designing and delivering cost-effective, reliable, secure, and high-performance IT infrastructures to solve complex business problems. He is a CKA certified Kubernetes expert able to design, build, and maintain clusters on bare-metal infrastructure and cloud. Ioseb is also well-versed in planning, designing, implementing, and maintaining system applications in the AWS cloud.

Portfolio

Project Circle LTD
DevOps, Terraform, Google Cloud Platform (GCP), Docker, Kubernetes...
Leader-Bet
AWS IAM, Amazon EC2, Amazon S3 (AWS S3), AWS HA, AWS ALB...
Leader-Bet
Linux, IP Routing, Border Gateway Protocol (BGP)...

Experience

Availability

Full-time

Preferred Environment

Kubernetes, Linux, Amazon Web Services (AWS)

The most amazing...

...project I've worked on included architecting, planning, deploying, and maintaining a Kubernetes cluster on a bare-metal infrastructure with a DR cluster on AWS.

Work Experience

DevOps Engineer

2022 - 2022
Project Circle LTD
  • Optimized a genomics pipeline, reducing execution time by 50% and cost by 2x. Used Prometheus metrics to assess and optimize CPU/GPU instances for each step of the pipeline, resulting in significant improvements in efficiency and cost-effectiveness.
  • Migrated a Nextflow pipeline to AWS Genomics CLI, optimized computational tasks for performance, and provisioned infrastructure. Demonstrated proficiency in cloud computing and workflow management.
  • Improved the efficiency of genomics workflows by implementing a solution that externalizes the execution of predefined tasks. Created a framework that supports the required functionality, leading to optimized task execution.
  • Leveraged Terraform to automate infrastructure deployments. Created Terraform modules for AWS services, implemented IaC best practices, and integrated with CI/CD. This enabled faster and more reliable infrastructure changes.
Technologies: DevOps, Terraform, Google Cloud Platform (GCP), Docker, Kubernetes, Amazon Web Services (AWS), AWS Lambda, Data Analysis, Jira, CI/CD Pipelines, AWS Batch, AWS Step Functions, ECS, Amazon EKS

Systems Architect and DevOps

2019 - 2021
Leader-Bet
  • Owned the architectural design, development, and deployment of the company's systems as a systems architect. Defined system solutions based on the company's need, cost, and required integration with existing applications and systems.
  • Researched, identified, selected, and tested technology products required for solution delivery, and established, implemented, and documented the technology integration and migration strategies.
  • Built a Kubernetes cluster on bare metal with controllers and etcd on an HA configuration. Automated certificate generation and rotation on master and worker nodes and a node provisioning process.
  • Provisioned a complementary infrastructure for Kubernetes: local image registry for image storage, GlusterFS for distributed file storage, and Elastic Stack for centralized logging.
  • Planned, tested, and moved part of the company's DR site to AWS. Set up the networking infrastructure from the primary site to AWS DR with VPNs and BGP route propagation.
  • Delivered EKS on AWS and moved workloads running on the primary cluster to AWS Kubernetes.
  • Set up AWS IAM users, groups, and policies. Provisioned EC2 instances with and without autoscaling and load balancers. Delivered RDS databases,. ElastiCache, and other AWS products.
Technologies: AWS IAM, Amazon EC2, Amazon S3 (AWS S3), AWS HA, AWS ALB, Amazon Elastic Container Service (Amazon ECS), Amazon EKS, Amazon Elastic Container Registry (ECR), Amazon RDS, Amazon ElastiCache, AWS Elastic File System, Amazon Virtual Private Cloud (VPC), AWS Auto Scaling, Amazon Route 53, Amazon Simple Queue Service (SQS), Kubernetes, Linux, IP Routing, Campus Network, Amazon EBS, AWS ELB, AWS NLB, AWS CLI, Linux CentOS 7, Debian Linux, Ubuntu Linux, Prometheus, Grafana, ELK (Elastic Stack), Fluentd, Docker, Docker Compose, Containers, Container Orchestration, Containerization, Networking, AWS Fargate, Amazon CloudWatch, AWS CloudTrail, AWS Cloud Architecture, Terraform, Ansible, Git, Jenkins, Logging, VPN, Firewalls, Iptables, Nftables, Bash, Python, SQL, PostgreSQL, DevOps Engineer, System Architecture, Automation, Continuous Delivery (CD), Istio, Kube-router, Virtualization, KVM, DevOps, Amazon Web Services (AWS)

Systems and Network Engineer

2017 - 2019
Leader-Bet
  • Owned the evaluation of the company's infrastructure needs and then chose, tested, and implemented solutions as a system and network engineer. I also proactively ensured the highest levels of systems and infrastructure availability.
  • Planned disaster recovery site architecture and documented the process of building, testing, and migrating workloads from primary DC to DR in case of emergency.
  • Built a Zabbix cluster for monitoring and alerting. Added the majority of the infrastructure to Zabbix monitoring. Created custom scripts and dashboards where preconfigured templates were not enough.
  • Wrote and maintained custom scripts to increase system efficiency and lower the human intervention time on tasks.
  • Maintained security, backup, and redundancy strategies.
Technologies: Linux, IP Routing, Border Gateway Protocol (BGP), Open Shortest Path First (OSPF), Campus Network, Linux CentOS 7, Ubuntu Linux, Zabbix, ELK (Elastic Stack), Networking, Logging, VPN, Firewalls, Iptables, Bash, Python, PostgreSQL, System Architecture, Automation, Virtualization, VMware ESXi, KVM

Network Engineer

2015 - 2017
Leader-Bet
  • Assessed the needs of a company's networking infrastructure and recommended, tested, and implemented solutions from Cisco, Juniper, MikroTik, VMware, and open-source alternatives as a network engineer.
  • Performed daily network monitoring, maintenance, and technical support for internal and external networks.
  • Redesigned a portion of the company's networking infrastructure using a top-down design approach, resulting in improved performance and customer satisfaction.
  • Designed and implemented a DDoS mitigation solution utilizing open-source solutions, resulting in significant savings for the organization.
Technologies: IP Routing, Border Gateway Protocol (BGP), Open Shortest Path First (OSPF), Campus Network, Zabbix, Networking, Logging, VPN, Firewalls, Iptables, Automation, Virtualization, VMware ESXi

Kubernetes on Bare Metal

I architected, planned, and built a Kubernetes cluster on a bare-metal infrastructure with controllers and etcd high availability. I set up server hardware, networking, and virtualization components. I provisioned CNI plugins and L3 load balancing with BGP and MetalLB, and NGINX Ingress for the application load balancing. I also developed an Elasticsearch cluster for centralized logging, Fluentd for log collecting, and Kibana for visualization. Furthermore, I automated certificate rotation, node provisioning, and controller replacement.

Automation of Infrastructure Provisioning

An automated process for provisioning test and production infrastructure. Depending on the project's complexity, setting up testing infrastructure took two and seven days.

I automated the entire process, from virtual machine deployment to configuring essential packages and parameters based on the preset architecture.

The new approach reduced the provisioning time to 30 minutes.

DR Move to Cloud

I planned and executed the migration of the DR site from on-premise infrastructure to the AWS cloud. I configured AWS organizational hierarchy and role-based access restrictions for existing users, transferred a virtual machine to EC2 instances, provisioned databases in RDS, moved static data to S3, and migrated existing images running on on-premises Kubernetes to an EKS cluster.

Paradigms

Automation, DevOps, Continuous Delivery (CD)

Platforms

Kubernetes, Linux, Amazon EC2, AWS ALB, AWS NLB, Linux CentOS 7, Debian Linux, Ubuntu Linux, Docker, KVM, Amazon Web Services (AWS), AWS Lambda, Google Cloud Platform (GCP), AWS Elastic Beanstalk, Cloud Native

Other

Networking, Iptables, System Architecture, AWS Auto Scaling, Amazon Route 53, IP Routing, Border Gateway Protocol (BGP), Open Shortest Path First (OSPF), Campus Network, Prometheus, Containers, Container Orchestration, Containerization, AWS Cloud Architecture, Firewalls, Nftables, DevOps Engineer, Kube-router, Virtualization, VMware ESXi, Data Analysis, ECS, Amazon RDS, AWS CodePipeline, Argo CD, CI/CD Pipelines, Applications, ConfigMap, Orchestration, Software Development, AWS Secrets Manager, Deployment, Pipelines, AWS Config, Cross-region Replication (CRR), Multi-AZ deployments, Failover Solutions, Immutable Infrastructure, Infrastructure, Cloud Engineering, Infrastructure as Code (IaC), Amazon S3 CRR, Cisco Certified Design Professional (CCDP)

Languages

Bash, Python, SQL

Frameworks

AWS HA

Tools

AWS IAM, Amazon Elastic Container Service (Amazon ECS), Amazon EKS, Amazon Elastic Container Registry (ECR), Amazon Virtual Private Cloud (VPC), Amazon EBS, AWS ELB, Zabbix, ELK (Elastic Stack), Fluentd, Terraform, Logging, VPN, AWS Batch, Amazon ElastiCache, Amazon Simple Queue Service (SQS), AWS CLI, Grafana, Docker Compose, Docker Swarm, AWS Fargate, Amazon CloudWatch, AWS CloudTrail, Ansible, Git, GitHub, AWS CodeCommit, AWS CodeBuild, AWS CodeDeploy, Jenkins, Istio, Jira, AWS Step Functions, AWS CloudFormation, AWS Systems Manager

Storage

Amazon S3 (AWS S3), AWS Elastic File System, MySQL, PostgreSQL

OCTOBER 2023 - PRESENT

HashiCorp Certified: Terraform Associate (003)

HashiCorp

OCTOBER 2023 - PRESENT

Certified Kubernetes Application Developer (CKAD)

Cloud Native Computing Foundation

SEPTEMBER 2023 - PRESENT

AWS Certified DevOps Engineer - Professional

Amazon Web Services

OCTOBER 2020 - PRESENT

AWS Certified Solutions Architect – Associate

Amazon Web Services

DECEMBER 2019 - PRESENT

Certified Kubernetes Administrator (CKA)

Cloud Native Computing Foundation

MARCH 2017 - MAY 2023

Cisco Certified Design Professional (CCDP)

Cisco

MARCH 2014 - MAY 2023

Cisco Certified Networking Professional (CCNP)

Cisco

Collaboration That Works

How to Work with Toptal

Toptal matches you directly with global industry experts from our network in hours—not weeks or months.

1

Share your needs

Discuss your requirements and refine your scope in a call with a Toptal domain expert.
2

Choose your talent

Get a short list of expertly matched talent within 24 hours to review, interview, and choose from.
3

Start your risk-free talent trial

Work with your chosen talent on a trial basis for up to two weeks. Pay only if you decide to hire them.

Top talent is in high demand.

Start hiring