# Industrialize and secure a private-cloud KaaS platform

Adrien Murillo — Murillo Consulting

Kubernetes-as-a-Service and IaaS/CaaS services in a defense environment.

## Role
DevSecOps engineering and cloud foundation security.

## Challenge
Align deployment automation with technical, functional and SSI requirements without reducing the operability of the platform foundation.

## Actions
Secured Kubernetes, Rancher and Podman foundations and automated delivery with Terraform, Ansible, GitLab CI/CD, Argo CD and Flux. Integrated Trivy, Grype, SBOM, Nexus and CVE tracking.

## Outcome
A more reliable delivery chain, with SSI gaps and remediation made traceable for MCS and accreditation.

- IaC and GitOps
- Trivy / Grype scans
- SBOM and Nexus artifacts
- CVE tracking
- MCS evidence

Reworded professional experience. Sensitive architecture and operational details are not published. No organizational endorsement is implied.



## Navigation
- [Independent engineer and trainer.](/en/profil)
- [Engineering services.](/en/services)
- [Selected work.](/en/realisations)
- [Open-source projects.](/en/projets)
- [Guides to put into practice.](/en/ressources)
- [Let’s discuss your project.](/en/contact)
- [From scope to handover.](/en/approche)
- [Real contexts. Real constraints.](/en/secteurs)
- [Learn by making decisions.](/en/lab)
- [Legal notice](/en/mentions-legales)
- [Privacy](/en/confidentialite)
- [Train your teams. Through practice.](/en/formation)

[Contact](mailto:contact@adrien-murillo.com)
