Vitaly Bicov
DevOps Lead, Head of Infrastructure
I have been working in infrastructure for over 15 years. Since 2023 I lead the DevOps team at Neon Labs, running AWS and GCP infrastructure for a blockchain product. Before that I spent six years at AUTODOC, where I built Helm charts, Terraform modules and GitOps delivery across GCP and on-prem, and grew the DevOps team from 2 to 18 engineers.
This site is mostly a technical blog: Kubernetes, Terraform, CI/CD, Linux and cloud costs.
Recent posts
Running Liquibase Migrations in Docker and CI
How to structure Liquibase changelogs, run them with the Liquibase Docker image, and wire them into a CI pipeline with review, rollback and drift checks.
Improving CDN Caching with Cloudflare Workers
Where Workers sit relative to the Cloudflare cache, and practical patterns for edge caching, custom cache keys, A/B variants and geo routing in current module syntax.
Predictive Autoscaling for Stateful Applications on Kubernetes
How to scale databases, queues and caches ahead of demand with schedules and forecasts, and why scale-down needs to stay careful.
Automating Compliance Scans with Chef InSpec
How to write InSpec profiles, reuse community baselines, handle exceptions with waivers and run the scans in CI and on a schedule.
Mastering Redis Clusters: Sharding & Monitoring
This article provides a comprehensive guide to deploying a production-grade Redis cluster with automated sharding and robust monitoring. Learn how to configure nodes, distribute data efficiently, and ensure high availability and performance through effective monitoring and operational strategies. Ideal for engineers aiming to scale Redis deployments with confidence.
Mastering GitOps Infrastructure with Flux
This article guides engineers through implementing GitOps for infrastructure management using Flux, focusing on multi-cluster orchestration, security, and compliance. Learn how to design reliable, declarative systems, manage secrets and RBAC, and ensure smooth operations across complex Kubernetes environments. Achieve effective infrastructure automation, visibility, and resilience at scale.
Securing Kubernetes Pods with OPA Gatekeeper
A practical guide to enforcing pod security rules with OPA Gatekeeper on top of Pod Security Admission, from the first constraint to testing and rollout.
How To Build Immutable Amis With Packer And Integrate Automated Security Scanning In Your Ci/cd Pipeline
Forget the old way of manually baking AMIs that end up outdated and vulnerable—learn how to create fully automated, immutable AMI pipelines with Packer and real-time security scans, turning your infrastructure into a fortress rather than a house of cards.