Based in Lisbon · Available across Portugal/EU

I build platforms that let
engineers move with confidence.

Lead Platform Engineer with 20+ years in IT, turning complex cloud infrastructure into reliable Kubernetes platforms, paved roads, and developer self-service.

20+
Years in IT
10+
Years cloud-native
7
Engineers led
5/5
Kubernetes track
Illustrated portrait of Diego Luisi surrounded by Linux, GitOps, Kubernetes, and cloud-native technology
KubestronautCloud native, end to end
Current focusPlatform engineering

Building with

Career & capabilities

Deep infrastructure roots.
Modern platform thinking.

From Linux and networking to multi-cloud Kubernetes and internal developer platforms, I work across the whole platform stack.

Diego Fernando Luisi

Contact

Profile

Lead Platform Engineer with 20+ years in IT, including 10 years focused on cloud-native infrastructure, DevOps, and Site Reliability Engineering (SRE). I design and operate internal developer platforms (IDPs) and Kubernetes environments across AWS, GCP, Azure, and on-premises infrastructure. My work combines Infrastructure as Code (IaC), GitOps, CI/CD, developer self-service, observability, security, incident response, and platform reliability. I remain hands-on from Linux operating systems and networking through Kubernetes and developer platforms, while setting engineering standards, leading technical roadmaps, and mentoring teams. I hold the complete Kubernetes certification track (CKA, CKAD, CKS, KCNA, and KCSA) and have earned Kubestronaut status.

Core Skills

  • Linux systems engineering: 20+ years administering and troubleshooting production Linux environments, including server provisioning, shell automation, networking, access control, monitoring, virtualization, and operational support.
  • Kubernetes platforms: Architecture, provisioning, upgrades, scaling, security, and operations across Amazon EKS, Google GKE, Azure AKS, OpenShift, and self-managed Kubernetes; workload optimization with Karpenter and KEDA.
  • Platform engineering and developer experience: Internal developer platforms (IDPs), reusable platform blueprints, golden paths, platform-as-a-product practices, and developer self-service using Backstage, Crossplane, Helm, and Kubernetes operators.
  • GitOps, CI/CD, and infrastructure automation: Infrastructure as Code (IaC), Argo CD, Terraform, Terragrunt, Crossplane, Atlantis, Helm, Ansible, GitHub Actions, GitLab CI, and CircleCI.
  • Observability and reliability: OpenTelemetry, Prometheus, Grafana, Loki, Tempo, Mimir, Thanos, and Alertmanager for metrics, logs, distributed tracing, alerting, troubleshooting, incident response, and root-cause analysis.
  • Cloud-native security and networking: Istio, Cilium, Kyverno, Trivy, HashiCorp Vault, External Secrets, IAM, secrets management, policy enforcement, and secure service-to-service communication.
  • Technical leadership: Platform architecture, engineering standards, technical roadmaps, people management, mentoring, technical interviews, and cross-team collaboration.

Certifications and Badges

AWS Cloud Quest: Cloud Practitioner Amazon EKS Well-Architected Proficient AWS Cloud Quest: Cloud Practitioner - Training Badge HashiCorp Certified: Terraform Associate (003) HashiCorp Certified: Vault Associate (002) OPSWAT Introduction to Critical Infrastructure Protection (ICIP)
Fundamentals for Istio by Solo.io Fundamentals for Istio Ambient Mesh Intermediate for Istio Expert for Istio Fundamentals for eBPF Fundamentals for Cilium Discovery: Platform Engineer Discovery: Network Engineer Discovery: SecOps Engineer Cilium Getting Started Tetragon Getting Started Cilium Ingress Controller Cilium Gateway Api Cilium Egress Gateway Hubble Flow Visibility Cilium Advanced Gateway API Use Cases Golden Signals with Hubble and Grafana Isovalent Lab Champion (10 labs) Fundamentals for Kyverno Kubernetes Fundamentals Introduction to Continuous Delivery and GitOps using Argo CD GitOps Fundamentals GitOps at Scale GitOps Enterprise LFS169: Introduction to GitOps LFS162: Introduction to DevOps and Site Reliability Engineering LFS144: Introduction to Istio LFS158: Introduction to Kubernetes LFEL1014: Scaling Cloud Native Applications with KEDA LFS142: Introduction to Backstage - Developer Portals Made Easy LFS148: Getting Started with OpenTelemetry CGOA: Certified GitOps Associate CAPA: Certified Argo Project Associate CBA: Certified Backstage Associate CCA: Cilium Certified Associate KCA: Kyverno Certified Associate PCA: Prometheus Certified Associate OTCA: OpenTelemetry Certified Associate CKA: Certified Kubernetes Administrator CKAD: Certified Kubernetes Application Developer CKS: Certified Kubernetes Security Specialist KCNA: Kubernetes and Cloud Native Associate KCSA: Kubernetes and Cloud Native Security Associate Kubestronaut

Professional Experience

Hashgraph Group (Remote)

Role: Lead Platform Engineer
Period: Jun 2024 - Present
Industry: Web3 / Blockchain

  • Manage seven engineers while remaining the hands-on technical lead, providing technical direction, mentoring the team, and leading interviews for engineering hires.
  • Own the platform roadmap and engineering standards, aligning infrastructure priorities with product and operational needs.
  • Designed and implemented a hybrid, multi-environment platform spanning AWS and on-premises infrastructure, including Amazon EKS, EC2, VPC, Route 53, IAM, KMS, RDS, S3, ECR, CloudWatch, centralized governance, and secure VPN connectivity.
  • Standardized EKS and self-managed Kubernetes lifecycle management through reusable Terraform, Crossplane, Helm, and Argo CD blueprints, improving consistency and reducing manual operations.
  • Introduced developer self-service and automated delivery with Backstage, GitHub Actions, and Atlantis, supported by Vault and External Secrets.
  • Established centralized metrics, logs, and distributed tracing with OpenTelemetry, Grafana, Mimir, Loki, and Tempo, strengthening incident detection, root-cause analysis, and platform reliability.

Shield Financial Compliance (Lisbon, Portugal)

Role: DevOps Engineer (Independent Contractor)
Period: Apr 2023 - Jun 2024
Industry: Financial Compliance

  • Automated infrastructure and developer workflows across AWS, Azure, and on-premises environments using Terraform, Terragrunt, Argo CD, Helm, and Vault, including Azure AKS, Microsoft Entra ID (Azure AD), Azure Monitor, and Key Vault.
  • Implemented Kubernetes platform patterns across cloud and on-premises environments using Istio, KEDA, and Karpenter to support traffic resilience, workload efficiency, capacity scaling, and service availability.
  • Improved monitoring, alerting, incident response, and root-cause analysis with Prometheus, Grafana, Loki, OpenTelemetry, and Azure Monitor while strengthening CI/CD reliability.

Evolution Gaming (Lisbon, Portugal)

Role: SRE Tech Lead
Period: Apr 2022 - Apr 2023
Industry: Gaming

  • Led technical direction for SRE practices across GCP environments using Google Kubernetes Engine (GKE), Cloud IAM, VPC, Cloud SQL, and Cloud Monitoring, improving platform reliability and scalability.
  • Automated cluster and environment bootstrap with Crossplane, Argo CD, and Helm, creating a repeatable approach to provisioning and lifecycle management.
  • Defined metrics, logging, alerting, and incident-investigation patterns with Cloud Monitoring, Thanos, Prometheus, Grafana, and Loki, and supported Backstage adoption to standardize developer workflows.

Dafiti Group (GFG Group) II (São Paulo, Brazil)

Role: SRE / Platform Engineer (Part-Time Contractor)
Period: Sep 2020 - Jul 2023
Industry: E-commerce

  • Served as technical lead for the DevXP initiative, guiding platform standards and cloud-native practices across product teams.
  • Standardized EKS infrastructure and GitOps delivery using Terraform, Helm, Argo CD, GitHub, and CircleCI.
  • Expanded shared metrics, logging, and alerting with Prometheus, Grafana, Loki, and Alertmanager to strengthen incident detection and troubleshooting while mentoring engineers in Kubernetes and platform practices.

C&A Modas do Brasil II (Barueri, Brazil)

Role: DevOps Specialist (Tech Lead)
Period: Aug 2019 - Sep 2020
Industry: Retail

  • Modernized legacy environments toward containerized microservices with Docker, OpenShift, and Kubernetes.
  • Automated delivery with GitLab CI, Puppet, Terraform, and Vagrant, reducing manual effort and improving consistency.
  • Improved centralized logging and operational visibility with Elasticsearch, Logstash, and Kibana.

Dafiti Group (GFG Group) I (São Paulo, Brazil)

Role: Senior / Specialist DevOps Engineer (Tech Lead)
Period: Oct 2017 - Aug 2019
Industry: E-commerce / Retail

  • Improved the stability and scalability of Kubernetes environments across product teams.
  • Automated infrastructure and operations with Terraform, Puppet, and Rundeck to reduce manual work.
  • Enhanced incident detection and operational visibility with ELK, CloudWatch, Grafana, and Zabbix.

C&A Modas do Brasil I (Barueri, Brazil)

Role: Senior SysAdmin / DevOps Engineer
Period: Aug 2014 - Oct 2017
Industry: Retail

  • Managed, troubleshot, and automated operations for approximately 900 servers across AIX, Linux (SUSE), and VMware.
  • Introduced Puppet, Rundeck, Jenkins, GitLab CI, and Salt for configuration and deployment automation.
  • Improved infrastructure governance and consistency with Device42, Centrify, and SUSE Manager.

Earlier Experience

  • e-Deploy Integrated Technology and Solutions — Senior SysAdmin / Monitoring Specialist (Contractor), 2013-2014: Monitored AIX, Linux, and VMware environments with Zabbix, Nagios, and Grafana.
  • Grupo Logos — Senior SysAdmin, 2012-2013: Managed and automated Linux infrastructure with Puppet, MCollective, Zabbix, VMware, and MySQL.
  • FETAESP — SysAdmin, 2010-2011: Maintained Windows Server, Active Directory, Hyper-V, proxy, and network infrastructure.
  • Santa Alice Group — SysAdmin (Contractor), 2006-2008: Maintained Linux and Microsoft servers, firewalls, Active Directory, and proxy services.
  • e-Future Informatic — Owner, 2002-2008: Delivered Linux and Windows server administration, network design, installation, support, and maintenance services.

Additional Skills

  • Cloud: AWS (advanced); Azure and GCP (intermediate)
  • Linux and automation: 20+ years of Linux systems administration; advanced Bash; working knowledge of Python and Go
  • Virtualization: Hyper-V, IBM PowerVM, KVM, Proxmox, and VMware
  • Languages: English (advanced); Spanish (intermediate)

Education

  • Nove de Julho University (Uninove): Technology in Computer Networks, completed 2017
  • University of West Paulista (Unoeste): Information Systems, 2004-2007 (incomplete)