Federico Baldan
I run production cloud infrastructure, mainly on AWS. Earlier roles covered GCP, Azure, and Oracle Cloud. Day to day, I work with Terraform, Kubernetes, CI/CD, and the LGTM stack: Grafana, Loki, Tempo, and Mimir.
Cloud Engineering
- AGE
- 23 years old
- TECH
- IaC · Kubernetes · Observability
- EQF 5
- Cloud & Data Security SpecialistITS Angelo Rizzoli
About me.
I'm a Cloud Engineer based in Merate, Italy, currently working at Satispay 🦄.
At Satispay, I work on the infrastructure behind the payments platform, where every change needs clear reviews, observability, and a rollback path.
Before that, at NEEN, I worked on client cloud environments across several providers, keeping provisioning, workloads, and monitoring consistent from project to project.
I like infrastructure that is fully defined in code, easy to review, and simple to rebuild when a team needs a clean start.
Observability"You can't buy observability. You have to build it."
Where I've worked
in production.
Cloud and platform roles where the work touched infrastructure, releases, monitoring, and the checks around each change.
Cloud Engineer Fintech
- Platform team: Work with the team behind a high-volume Italian payments platform, focusing on AWS infrastructure and internal tooling.
- AWS infra: Keep production running across AWS, hands on with ECS, Kubernetes, Lambda, RDS, SQS, and SNS, shipping changes through established deployment patterns.
- Terraform: Ship production IaC through plan review, approvals, and controlled applies.
Cloud Engineer & Monitoring Team Lead Consulting
- Multi-cloud: Built reusable modules for client projects across AWS, GCP, Azure, and OCI.
- Puppet: Maintained Puppet code on the central master. New servers enrolled automatically and converged to the right baseline.
- LGTM: Operated the LGTM platform with dedicated client tenants managed through IaC. Logs, metrics, and traces in one place.
- GitLab CI/CD: Added security and quality gates ahead of each reviewed infrastructure apply.
- Kubernetes: Supported client workloads, cluster configuration, scaling policies, and rolling deployments.
Cloud Engineer Consulting
- Terraform (GCP): Provisioned and maintained dev, test, and prod environments as code: modules, remote state, and per-environment variable configuration.
- GCP services: Compute Engine, Cloud Storage, Cloud SQL, and VPC. Reviewed service configuration and cost impact for each architecture change.
- Cloud Build: Built automated pipelines from source to each environment, replacing manual release steps with a reviewable process.
- GKE: Managed cluster configuration and delivered Kustomize overlay-based rollouts per environment through the CI pipeline.
- Delivery: Owned infrastructure and release changes end-to-end, from scoping through production cutover.
Projects I've built.
Self-hosted
homelab
Grafana monitoring
automation platform
My daily
stack.
Tools I use for real infrastructure work: provisioning, deployment, observability, configuration, and day-two operations.
Cloud credentials.
Current certifications across OCI, AWS, Azure, and GitHub, with the cloud fundamentals covered on the main providers.
- Certified Multicloud Architect ProfessionalOct 2025
- Certified Architect AssociateOct 2025
- Certified Foundations AssociateSep 2025
- Azure Administrator Associate (AZ-104)Jul 2023
- Azure Data Fundamentals (DP-900)Jun 2023
- Security, Compliance & Identity (SC-900)Jun 2023
- Azure Fundamentals (AZ-900)May 2023
- Certified Cloud PractitionerNov 2024
- GitHub FoundationsNov 2024
Outside work
hours.
Away from work, I'm usually on the R3, running local routes, reading and taking notes, or changing something in the home rack.
Every great journey starts
with a small choice