Skip to content
View jmutai's full-sized avatar
💯
💯
  • Nairobi, KE

Block or report jmutai

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
jmutai/README.md

👋 Hi, I'm Josphat Mutai

☁️ Senior DevOps Engineer • Cloud-Native Platform Engineering • Founder @ CloudSpinx


💫 About Me

Senior Platform Engineer and infrastructure architect with a track record of designing scalable, secure cloud-native platforms across GCP, AWS, Azure, and bare-metal, bridging the gap between platform engineering, security, and developer experience for high-growth teams.

Founder of CloudSpinx - a DevOps & cloud-native consultancy helping organizations design and operate modern infrastructure; whether on-prem, hybrid, or fully cloud-native, across platform engineering, network automation, container orchestration, GitOps, and zero-trust security.

🔹 Expert in GCP, AWS, Azure, Hetzner, and on-prem (Proxmox, OpenStack, KVM, VMware) - designing and operating multi-cluster platforms from scratch to production across public cloud, private cloud, and bare-metal.
🔹 Hands-on with GKE, EKS, AKS, OpenShift, Rancher, and vanilla Kubernetes - from cluster bootstrapping to day-2 operations.
🔹 GitOps advocate - delivering infrastructure and apps through ArgoCD and FluxCD with full audit trails and zero manual drift.
🔹 IaC at scale with Terraform, Terragrunt, and Crossplane - reusable, declarative, and environment-agnostic.
🔹 Secrets and identity done right - HashiCorp Vault, External Secrets Operator, Workload Identity, and Zitadel SSO.
🔹 Full-stack observability - Prometheus, Grafana, Loki, Mimir, Alloy, and ELK — from metrics to logs to traces.
🔹 Infrastructure automation beyond cloud - Ansible, Puppet, Salt, NixOS, and Packer for configuration management and immutable OS builds.
🔹 Zero-trust networking - Tailscale, NetBird, and Cloudflare ZT for secure, identity-aware access across hybrid environments.
🔹 Developer experience champion - Backstage IDP for unified service catalogs, scaffolding, and golden paths that abstract platform complexity from engineering teams.


🧭 My DevOps & Platform Engineering Stack

🛠️ IaC & Automation 🌐 Kubernetes & GitOps 🔐 Security & Access
☁️ Cloud Platforms 📊 Observability 🔄 CI/CD
🌐 Networking & Access 💾 Data & Storage 💻 Languages & Tooling

📊 GitHub Insights


🤝 Connect With Me

LinkedIn Website Email


✨ Infrastructure as Code • GitOps • Cloud-Native ✨

"Automate everything. Trust nothing unmonitored."

Pinned Loading

  1. k8s-pre-bootstrap k8s-pre-bootstrap Public

    Ansible role to setup Kubernetes Requirements before kubeadm init

    Jinja 61 60

  2. tomcat-ansible tomcat-ansible Public

    Ansible Role to install tomcat o Debian, Ubuntu, Fedora and CentOS Linux

    Jinja 31 232

  3. cloudspinx/terraform-openstack cloudspinx/terraform-openstack Public

    Collection of OpenStack Terraform modules (WIP)

    HCL 11

  4. cloudspinx/terraform-libvirt-kvm-modules cloudspinx/terraform-libvirt-kvm-modules Public

    Repository containing KVM terraform modules

    HCL

  5. ocp4_ansible ocp4_ansible Public

    Jinja 12 37

  6. nixos-configs-mac nixos-configs-mac Public

    Personal Nix Configurations for macOS

    Nix