Professional profile

Enterprise infrastructure and security operations.

Senior IT Engineer delivering reliable infrastructure, network services, and security operations. Focused on operational discipline, risk reduction, and measurable service quality.

Open to collaboration / consulting Reply in 24h
Operations & Reliability Networking Virtualization Cloud Security Operations
15+ years IT operations
Production-first Stability & incident handling
Standardization Less drift, fewer outages
Portrait of Berik Ashimov

Service highlights

99.99% uptime Payment services across dual DCs
99.9% availability Redundant LAN/WAN for critical apps
2h → 30m VM provisioning via templates
54+ branches Standardized network blueprint

Core competencies

Infrastructure Operations

  • Production operations, lifecycle management
  • Patch management, hardening, baseline compliance
  • Backup/restore and capacity planning

Network Engineering

  • Routing, segmentation, and multi-site connectivity
  • Policy design, troubleshooting, service stability
  • Operational monitoring and escalation readiness

Security Operations

  • Endpoint/XDR operations and alert tuning
  • SIEM signal quality and incident triage
  • Containment and remediation playbooks

Reliability Management

  • Change control and controlled rollouts
  • Root cause analysis and corrective actions
  • Service continuity and risk reduction

Automation & Standardization

  • Repeatable deployments and configuration management
  • Infrastructure-as-Code approach where applicable
  • Reduced manual workload and operational errors

Documentation & Governance

  • Runbooks, diagrams, operational procedures
  • Standards, inventories, and clean handovers
  • Audit-ready operational practices

Operational focus

Reliability Stable services, predictable change outcomes.
Efficiency Automation to reduce drift and manual work.
Security Defensive operations and incident readiness.

Security posture

Zero-trust access

  • MFA, least privilege, short-lived access
  • Network segmentation by trust zones

Monitoring first

  • Centralized logs and alerting
  • Actionable signals, lower noise

Resilience by design

  • Backup/DR with regular restore tests
  • Change control and secure baselines

Experience

Infrastructure delivery

  • Linux/Windows operations in production
  • Backup/restore, capacity, lifecycle
  • Operational documentation and standards

Networks & routing

  • Routing policies and segmentation
  • Incident troubleshooting and stability
  • Access control and observability

Security operations

  • XDR/SIEM operational workflows
  • Detection tuning and false-positive reduction
  • Remediation and playbooks

Toolbox (filterable)

Windows ServerOperations • patching • hardening
LinuxOperations • hardening • troubleshooting
BGP / OSPFRouting • policies • diagnosis
CiscoNetwork operations
JuniperNetwork operations
VyOSRouting • firewall • automation
MikrotikRouting • switching • access
HashiCorp ConsulService discovery • mesh
VMwarevSphere operations
Proxmox VEClusters • automation
MS SQLAdministration
PostgreSQLOperations • backups • tuning
MySQLAdministration
WazuhSIEM/XDR pipelines
Cortex XDREndpoint defense
Symantec EndpointEndpoint protection
HashiCorp VaultSecrets management • PKI
AWSCore services
Hetzner / DigitalOceanCloud hosting
ZabbixMonitoring • templates • alerts
GrafanaDashboards • SLO views • alerting
LokiLog aggregation • queries
VectorLog shipping • transforms
AlertmanagerAlert routing
TerraformInfrastructure as Code
AnsibleRepeatable deployments
HashiCorp NomadOrchestration • scheduling
No tools match your filters.

Certifications

IPv6 Security Expert

RIPE NCC

BGP Security Associate

RIPE NCC

Database Associate

RIPE NCC

MTCINE

Mikrotik

Projects & Code

Social media

Book a call Download CV