Skip to main content
Tom Vendolsky

Tom Vendolsky

Platform Engineer

Platform engineer building reliable cloud platforms with Kubernetes, GitOps, and Azure.

I design and operate secure, scalable platform capabilities across Kubernetes and Azure, with a focus on practical automation and team enablement.

Experience
#

  1. DevOps Engineer

    Feb 2025 - Present

    Deutsche Telekom IT logo Deutsche Telekom IT

    Bamberg, Bavaria, Germany (Hybrid)

    I design and operate platform capabilities across Kubernetes and Azure, with a focus on secure automation, standardization, and resilience.

    • Led migration of GCP-hosted Kubernetes clusters from RKE1 to RKE2.
    • Implemented centralized secret management with CyberArk Conjur and GitOps bootstrapping with ArgoCD.
    • Onboarded several team members by rewriting docs and running hands-on workshops.
    • Contributed to Azure Landing Zone: subscription vending, cross-tenant monitoring, CI/CD standardization, and security hardening.
    • Planned and executed a business-critical ExpressRoute migration with zero downtime.
  2. Apprentice

    Sep 2022 - Feb 2025

    Deutsche Telekom AG logo Deutsche Telekom AG

    Greater Nuremberg Metropolitan Area (On-site)

    During my apprenticeship, I worked across platform engineering, automation, and internal tooling used at scale.

    • Contributed to a namespace-as-a-service platform and GitOps workflows.
    • Open-sourced the Sparrow infrastructure monitoring tool.
    • Helped maintain Azure Landing Zone components and raise engineering standards across teams.
    • Built and operated an internal GenAI + RAG application serving tens of thousands of internal users.
View my projects

Skills
#

Languages
Go Python Bash TypeScript
Cloud Platforms
Microsoft Azure Google Cloud Platform Amazon Web Services
Kubernetes Containers and Orchestration
Kubernetes Docker Helm Rancher RKE1 / RKE2 Azure Kubernetes Service (AKS) Azure Arc
Infrastructure as Code
Bicep Terraform
GitOps and CI/CD
ArgoCD Rancher Fleet GitLab CI/CD GitHub Actions Renovate Dependabot
PaaS and Serverless
Azure Container Apps Azure App Service Azure Functions
AI and LLMs
GitHub Copilot opencode Model Context Protocol (MCP) Azure AI Foundry Multi-agent systems Retrieval-Augmented Generation (RAG)
Version Control
Git GitLab GitHub
Collaboration and Tooling
GitLab Docusaurus Obsidian Jira Confluence Microsoft Teams
Networking and Connectivity
ExpressRoute VNet Peering vWAN Calico
Security
CyberArk Conjur Azure Key Vault External Secrets Operator Workload Identity Federation Privileged Identity Management (PIM) Microsoft Defender for Cloud
Observability
Grafana Prometheus OpenTelemetry Azure Monitor
Frontend and DX
templ Tailwind CSS HTMX React