
Tom Vendolsky
Platform Engineer
Platform engineer building reliable cloud platforms with Kubernetes,
GitOps, and Azure.
I design and operate secure, scalable platform capabilities across Kubernetes and Azure, with a focus on practical automation and team enablement.
Experience#
DevOps Engineer
Feb 2025 - Present
Deutsche Telekom ITBamberg, Bavaria, Germany (Hybrid)
I design and operate platform capabilities across Kubernetes and Azure, with a focus on secure automation, standardization, and resilience.
- Led migration of GCP-hosted Kubernetes clusters from RKE1 to RKE2.
- Implemented centralized secret management with CyberArk Conjur and GitOps bootstrapping with ArgoCD.
- Onboarded several team members by rewriting docs and running hands-on workshops.
- Contributed to Azure Landing Zone: subscription vending, cross-tenant monitoring, CI/CD standardization, and security hardening.
- Planned and executed a business-critical ExpressRoute migration with zero downtime.
Apprentice
Sep 2022 - Feb 2025
Deutsche Telekom AGGreater Nuremberg Metropolitan Area (On-site)
During my apprenticeship, I worked across platform engineering, automation, and internal tooling used at scale.
- Contributed to a namespace-as-a-service platform and GitOps workflows.
- Open-sourced the Sparrow infrastructure monitoring tool.
- Helped maintain Azure Landing Zone components and raise engineering standards across teams.
- Built and operated an internal GenAI + RAG application serving tens of thousands of internal users.
Skills#
Languages
Go
Python
Bash
TypeScript
Cloud Platforms
Microsoft Azure
Google Cloud Platform
Amazon Web Services
Containers and Orchestration
Kubernetes
Docker
Helm
Rancher
RKE1 / RKE2
Azure Kubernetes Service (AKS)
Azure Arc
Infrastructure as Code
Bicep
Terraform
GitOps and CI/CD
ArgoCD
Rancher Fleet
GitLab CI/CD
GitHub Actions
Renovate
Dependabot
PaaS and Serverless
Azure Container Apps
Azure App Service
Azure Functions
AI and LLMs
GitHub Copilot
opencode
Model Context Protocol (MCP)
Azure AI Foundry
Multi-agent systems
Retrieval-Augmented Generation (RAG)
Version Control
Git
GitLab
GitHub
Collaboration and Tooling
GitLab
Docusaurus
Obsidian
Jira
Confluence
Microsoft Teams
Networking and Connectivity
ExpressRoute
VNet Peering
vWAN
Calico
Security
CyberArk Conjur
Azure Key Vault
External Secrets Operator
Workload Identity Federation
Privileged Identity Management (PIM)
Microsoft Defender for Cloud
Observability
Grafana
Prometheus
OpenTelemetry
Azure Monitor
Frontend and DX
templ
Tailwind CSS
HTMX
React