Sina Ebrahimi

DevOps Engineer
Tehran, Iran

About

DevOps Engineer with expertise in Linux administration, infrastructure automation, container orchestration (Kubernetes/Docker), and CI/CD pipelines.

With a security-focused background from 2.5 years in SOC operations.

Education

Bachelor of Computer Science
2018 – 2024
Amirkabir University of Technology (Tehran Polytechnic)

Experience

Arcaptcha
DevOps Engineer
Nov 2025 – Present
  • Migrated core infra services (like Databases, MinIO, Nexus, Metabase, n8n) from standalone servers to Kubernetes clusters
  • Automated the deployment of GitLab Runners and Docker security scanning tools using Ansible, accelerating CI/CD pipelines
  • Set up a Prometheus and Grafana stack for internal infrastructure monitoring
  • Created custom dashboards and alerting rules for system and traffic anomalies
  • Automated the deployment of Locust load-testing infra on Kubernetes using Ansible, enabling application performance testing
  • Implemented automated backup retention policies to manage disk space consumption and optimizing storage costs on cloud
  • Automated the deployment of PostgreSQL, Mongo, and Redis clusters across virtual machines using Ansible
  • Configured and provisioned Linux servers, handling system administration and user management
Central Securities Depository of Iran
Security Operations Analyst (on-site - via Saba System Sadra)
Apr 2023 – Oct 2025
  • Joined as a founding member of a newly formed SOC team and helped build its initial monitoring structure
  • Built 20+ production Splunk(SPL) searches and dashboards used daily by SOC analysts and IR teams, reducing the time required for initial incident triage flow and investigation
  • Organized monitoring across key sources like Windows/Linux systems, Sysmon, WAF, improving infra visibility
  • Deployed real-time dashboards on SOC wall displays for continuous event monitoring
  • Created a structured incident documentation process to improve investigation continuity and standardizing shift workflows
  • Worked with SIEM engineers to improve log onboarding and centralized logging
  • Onboarded and guided new SOC analysts on dashboards and monitoring workflows
Saba System Sadra
SOC Analyst Intern
Dec 2022 – Apr 2023
  • Assisted in monitoring security alerts and log analysis.
  • Studied SOC processes, incident handling, and SIEM concepts

Skills

Infra
Docker Docker Compose Kubernetes Helm Linux (Ubuntu)
CI/CD & Version Control
Git GitLab CI ArgoCD
IaC & Automation
Ansible
Scripting and Programming
Bash Python Go (basic)
Observability
Prometheus Grafana Splunk ES
Databases & Storage
PostgreSQL MongoDB Redis MinIO
Networking
DNS Nginx Traefik TLS
View Certificates

My Projects

HA-DB-Docker-Compose

High-availability Postgres, Mongo, and Redis clusters deployed on virtual machines using Docker Compose

repo-orchestrator

Ansible-based framework for discovering, scanning, and orchestrating changes across large Git repositories

gitlab-runner

GitLab Runner deployment and configuration automation using Ansible

prometheus-training

Prometheus monitoring stack deployment with Nginx and nginx_exporter on k3s

n8n

n8n workflow automation platform deployment on Kubernetes cluster

basic-TLS-connectivity-lab

TLS connectivity implementation using Cert-Manager for databases (Mongo, Redis, Postgres)

Dockerfile-check-Tools

Validate Dockerfile and container images using various security and best-practice tools

Basic-Dockerfile-check-sh

Shell script to check if Dockerfile includes USER directive and other security best practices

LPIC2-LAB

LPIC-2 lab machines and practice environments for Linux system administration

Active-Directory-Home-Lab

Setup a basic Active Directory environment on virtual home network for security testing

set-up-basic-Suricata

Set up Suricata as a Network Intrusion Detection System (NIDS) for security monitoring

SOC-Linux-Monitoring-Starter-Pack

Basic metrics and monitoring scripts for SOC environments and Linux security monitoring

View All Projects

Connect