Martin 'golodhrim' Scholz
DevSecOps Engineer / Linux Administrator
I am a passionate DevSecOps Engineer with over 10 years of professional experience. I build DevSecOps pipelines with a wide variety of tools. I have scripting knowledge in Go, Python, and Bash. My preferred working environment is GitLab. I also work in the OpenSource field for Funtoo Linux, Gentoo Linux, ArchLinux, and FreeBSD.
Certifications
Linux Unhatched
Cisco
2025
AWS Educate Getting Started with Cloud Ops
Amazon Web Services
2025
AWS Educate Getting Started with Networking
Amazon Web Services
2025
AWS Educate Getting Started with Security
Amazon Web Services
2025
AWS Educate Getting Started with Serverless
Amazon Web Services
2025
AWS Educate Getting Started with Databases
Amazon Web Services
2025
AWS Educate Getting Started with Compute
Amazon Web Services
2025
AWS Educate Introduction to Cloud 101
Amazon Web Services
2025
AWS Educate Getting Started with Storage
Amazon Web Services
2025
AWS Certified DevOps Engineer - Professional
Amazon Web Services
2025
Certified in Cybersecurity (CC)
ISC2
2024
AWS Knowledge: Storage Technologist
Amazon Web Services
2023
AWS Knowledge: Data Protection & Disaster Recovery
Amazon Web Services
2023
AWS Knowledge: Data Migration
Amazon Web Services
2023
AWS Knowledge: Storage Core
Amazon Web Services
2023
AWS Knowledge: File Storage
Amazon Web Services
2023
AWS Learning: Object Storage
Amazon Web Services
2024
AWS Learning: Block Storage
Amazon Web Services
2024
AWS Certified SysOps Administrator - Associate
Amazon Web Services
2024
CompTIA Cloud+ ce Certification
CompTIA
2024
AWS Certified Solutions Architect - Professional
Amazon Web Services
2024
AWS Certified Solutions Architect - Associate
Amazon Web Services
2024
AWS Certified Cloud Practitioner
Amazon Web Services
2024
Microsoft Certified Azure Administrator Associate
Microsoft
2024
Microsoft Certified Azure Fundamentals
Microsoft
2024
GIAC Certified UNIX Security Administrator (GCUX)
GIAC
2024
GIAC Certified Enterprise Defender (GCED)
GIAC
2024
GIAC Security Essentials Certification (GSEC)
GIAC
2024
Soft Skills
Languages
Language proficiency scores are based on Duolingo progress (0-160 scale) and mapped to CEFR levels:
- 0–9:
- Very early A1 (use simple phrases for everyday needs)
- 10–19:
- Early A1 (ask and answer simple questions)
- 20–29:
- High A1 (chat a little if someone is patient and helpful)
- 30–59:
- A2 (handle simple conversations about daily topics)
- 60–79:
- Early B1 (confidently handle most situations while travelling)
- 80–99:
- High B1 (manage daily situations and explain your ideas)
- 100–114:
- Early B2 (discuss topics of interest in depth)
- 115–129:
- High B2 (express yourself with ease; use the language for work, study, and more)
- 130–139:
- Early C1 (communicate fluently in most situations; use the language effectively for social and professional purposes)
- 140–149:
- High C1 (communicate with ease and spontaneity; use the language flexibly for complex academic and professional purposes)
- 150–160:
- C2 (master-level proficiency; understand virtually everything and express yourself with complete precision and nuance)
Technical Skills
Operating Systems
FreeBSD
Advanced knowledge in FreeBSD system administration, including package management with pkg, ports system configuration, and security hardening. Experience with ZFS filesystem management, jails virtualization, and network configuration.
advancedDebian
Deep knowledge in system administration and also build of individual packages.
expertDevuan
Deep knowledge in system administration.
expertArch Linux
Deep knowledge in system administration and also build of individual packages.
expertGentoo Linux
Deep knowledge in system administration and also build of individual packages. Maintainance of private code repositories and setup of buildservers for binary installs.
expertFuntoo Linux Technologies
Member of the Core Development Team. Deep knowledge of the OS and support for it.
expertCentOS
Deep knowledge in system administration and also build of individual packages.
expertXenServer
Private Project for testing and virtualisation.
advancedProxmox
Advanced experience with Proxmox VE virtualization platform, including KVM and LXC container management, cluster configuration, and high-availability setups. Proficient in backup strategies, storage management with ZFS, and network configuration for virtual environments.
advancedAlmaLinux
Testing architecture in comparision to CentOS.
advancedRocky Linux
Testing architecture in comparision to CentOS.
advancedDevOps & Automation
Ansible
Automation of home environment.
expertSaltStack
Experienced with it to automate the configuration of complex server architectures.
expertDocker
Small projects for own builds on GitLab
advancedKubernetes
Production experience with 12+ month Kubernetes migration project. Setup and administration of production K8s cluster including Authentik, MariaDB Operator, Velero Backups, PostgreSQL Cluster, FluxCD GitOps, and GitLab Runner integration.
advancedGitLab
My main hoster for repositories, also able to setup on-prem for more complex tasks.
expertgit
Experienced with git-based development. Mostly, use GitLab. Also, have experience in working with Github.
expertDatabases
PostgreSQL
My prefered DB system, as it is in my eyes the cleanest of all the SQL-structures.
expertMariaDB
Used it at work, also able to do a galera cluster setup.
expertTypesetting
TeX
Basic knowledge.
basicConTeXt
One of my main typesetting systems. Specialicest for Books as more freedom in typesetting.
expertLaTeX
Second of my main typesetting systems. Use it for more standard tasks, where no special work needs to be done.
expertProgramming Languages
Go
Using as the main language for professional development. Capable of writing scalable, testable, and maintainable program.
expertPython
My first programming language. Still use it, also I nowadays prefer Go.
expertDjango
Did some small projects with it.
advancedC++
Know basic C/C++ programming. Used for contest programming and problem solving.
basicStatic Site Generators
Zine SSG
Zig-based static site generator with advanced templating capabilities. Experienced in SuperHTML templates, SuperMarkdown content, custom layouts, and asset management. Successfully migrated from Hugo to Zine, implementing complex CV layouts with dynamic data structures and responsive design.
advancedHugo
Hugo is a static site generator, which I also used to build this page. I am able to use it and modify predefined themes.
expertSphinx
Also a static site generator. I use it for some documentation features. I am able to run, modify and extend the functionality.
advancedOther Tools
Microsoft and Tools
Basic knowledge. Haven't used it now for over 20 years.
basicExperience
DevSecOps Engineer / Linux Administrator
Mediatis AG
Aug 2021 - Present
Frankfurt/Main
Mediatis AG is a webhosting company. It offers their customers a wide range of products, including Typo3, Drupal, and comprehensive support for cloud services.
Key Achievements:
- Cloud Infrastructure: Management and administration of Entra ID, Azure, and AWS for enterprise and customers
- AWS Consulting: Cross-Account Roles, Security Best Practices, and Cost Optimization
- Infrastructure as Code: Salt/Terraform/GitLab CI/CD administration, Terraform restructuring with Trivy integration and modularization
- Kubernetes Migration: 12+ month long-term project (Oct 2024 - Nov 2025) - complete migration from legacy infrastructure to production K8s cluster
- Kubernetes Setup: Authentik, MariaDB Operator, Velero Backups, PostgreSQL Cluster, FluxCD GitOps, GitLab Runner - production operations established
- Security Management: Vanta, Greenbone, Firewall Management, Vulnerability and Patch Management, Security Incident Response (Nov 2025)
- Compliance: ISO 27001:2022 and NIS-2 documentation, Stage 1 Audit successful (Nov 2025), internal and external audits
- AWS Certifications: SAP-C02 (Nov 2024) and DOP-C02 (Jan 2025) Professional-level within 3 months, ~120h preparation time
- Network Security: VPN migration OpenVPN to WireGuard (Feb 2025), DNSSEC implementation for all domains, comprehensive firewall reviews
- IT Support: Mac/Windows support, MDM management (Mosyle), Hardware onboarding (MacBooks, iPhones), VPN administration
- Customer Projects: Minerva Image Viewer deployments (Alzheimer Dataset, SpectraPlex, multiple Stories), Kubernetes clusters, Enterprise hosting solutions (Betasystems, Stonebranch, Huck Seiltechnik)
- Monitoring: Grafana/Prometheus/Loki administration, Incident Management, On-Call support for critical issues
- Backup & Recovery: Backup strategies, Recovery tests (Nov 2024), AWS Cross-Account-Role-Assume setup (Dec 2024)
- Optimization Projects: SharePoint cleanup (Jul 2024 & Jul 2025), Docker infrastructure migrations to docker-compose, Jira/Confluence Data Residency move (Sep & Dec 2024)
- Standardization: Created Storyblok hosting template and documentation as company standard
- Professional Development: Participated in AWS Community Day DACH (Oct 2025), continuous knowledge transfer and mentoring
Career Transition
Appointment-phase with further Education
Feb 2020 - July 2021
Key Achievements:
- Conducted comprehensive industry research and market analysis
- Developed strategic career planning and professional development strategies
- Collaborated with career services to optimize job search effectiveness
Professional Sabbatical
Personal Development
Oct 2019 - Jan 2020
Focused period of personal and professional development
Key Achievements:
- Strategic career planning and skill development
- Family time and work-life balance prioritization
- Professional networking and industry research
DevSecOps Engineer
DENIC eG
Jan 2015 - Sep 2019
Frankfurt/Main
Registry for the ccTLD 'de'.
Key Achievements:
- VMware (Operation and Upgrade) [5 years]
- Postfix (Change from Exim) [3 years]
- Exim (old system, changed to postfix, maintainance) [3 years]
- Jira (Scrumtool for all DevOps and DevSecOps Teams. Setup, Operations, Upgrade, Automation) [5 years]
- Confluence (Documentation tool for the whole company, Setup, Operations, Upgrade, Automation) [5 years]
- OTRS (Ticketsystem for one special department. Setup, Operations, Upgrade, Automation) [5 years]
- Saltstack (Configuration Management for Automation) [3 years]
- Cfengine (Configuration Management for Automation, replaced with saltstack) [3 years]
- Jenkins (Build-Tool, Pipeline-Tool with Groovy-Scripts) [5 years]
- RPM-builds for Atlassian-products (Automated build of RPMs for Jira and Confluence with semi-automated Upgrade) [5 years]
- Zabbix (Monitoring of all services and important parameters) [5 years]
Trainee
DENIC eG
Aug 2013 - Jan 2015
Frankfurt/Main
Registry for the ccTLD 'de'.
Key Achievements:
- Education/Trainee as Information Technology Specialist Systemintegration
- Finished with 1.2
- directly taken after Trainee finished.
Production Helper
Viessmann Werke Deutschland
Aug 2012 - Mar 2013
Allendorf/Eder
One of the worlds largest companies for Oil/Gas Water Boilers
Key Achievements:
- Building Gas-Water-Boilers.
Core Development Team Member
Funtoo Linux Technologies
Feb 2012 - Present
Worldwide
OpenSource Linux distribution, Source based.
Key Achievements:
- High level user community support for installing and maintaining Funtoo Linux. Improvements and bug fixes to the core of Funtoo Linux and all its packages. Maintaining Flora as the core developer. It is a non-payed, just for fun work, where you add as much time as you can on a voluntary base.
Tutor at Students home
ABACUS Nachhilfeinstitut
June 2006 - May 2011
Frankenberg/Eder
Homeschooling tutoring company.
Key Achievements:
- Homeschooling/Tutoring in math and chemistry with personalized one-on-one lessons.
CEO
doriath
Jan 2004 - Present
Vöhl
IT Service Freelancer
Key Achievements:
- Building of home and business level computer, telecommunications systems and user level support. Only used if friends ask for help.
Service Personal
Aral Servicestation Eucker
Jan 1999 - May 2005
Frankenberg/Eder
Store and Gas Station
Key Achievements:
- facilitating day-to-day operations and maintenance.
Education
Information Technologie Specialist System Integration
Werner von Siemens Schule
Aug 2013 - Jan 2015
GPA: 3.8/4.0
Vocational training and certification in system integration.
Educational Science
Philipps-University Marburg
Aug 2003 - July 2012
GPA:
University studies in educational science.
Abitur, allg. Hochschulreife
Edertalschule
Aug 1999 - July 2003
GPA:
General university entrance qualification.
Mittlere Reife, Realschulabschluss
Burgwaldschule
Aug 1993 - July 1999
GPA:
Secondary school leaving certificate.
Grundschulabschluss
Mittelpunktschule Herzhausen, today renamed to Ederseeschule
Aug 1989 - July 1993
GPA:
Primary school completion.
Accomplishments
AWS Learning: Object Storage
Earners of this badge have developed the technical skills and knowledge of AWS storage services with a focus on Amazon Simple Storage Service (S3).
View CertificateAWS Learning: Block Storage
Earners of this badge have developed the technical skills and knowledge of AWS storage services with a focus on Amazon Elastic Block Store (EBS).
View CertificateAWS Certified SysOps Administrator - Associate
Earners of this certification have a comprehensive understanding on how to deploy, manage, and operate IT systems on the AWS Cloud. They demonstrated the ability to migrate on-premises workloads to AWS and monitor, scale, and secure systems on the AWS platform. Badge owners are able to provide guidance on implementing best practices for cloud operations.
View CertificateCompTIA Cloud+ ce Certification
CompTIA Cloud+ validates the skills needed to deploy and automate secure cloud environments that support the high availability of business systems and data.
View CertificateAWS Certified Solutions Architect - Professional
Earners of this certification have an extensive understanding of designing technical strategies to accomplish specific business goals. They demonstrated the ability to balance best practices and trade-offs based on business context. Badge owners are able to design solutions across multiple platforms and providers.
View CertificateAWS Certified Solutions Architect - Associate
Earners of this certification have a comprehensive understanding of AWS services and technologies. They demonstrated the ability to build secure and robust solutions using architectural design principles based on customer requirements. Badge owners are able to strategically design well-architected distributed systems that are scalable, resilient, efficient, and fault-tolerant.
View CertificateAWS Certified Cloud Practitioner
Earners of this certification have a fundamental understanding of IT services and their uses in the AWS Cloud. They demonstrated cloud fluency and foundational AWS knowledge. Badge owners are able to identify essential AWS services necessary to set up AWS-focused projects.
View CertificateMicrosoft Certified Azure Administrator Associate
Earning Azure Administrator Associate certification validates the skills and knowledge to implement, manage, and monitor an organization's Microsoft Azure environment. Candidates have a deep understanding of each implementing, managing, and monitoring identity, governance, storage, compute, and virtual networks in a cloud environment, plus provision, size, monitor, and adjust resources, when needed. Transcript ID: 1334847. Access Code: 1123581321.
View CertificateMicrosoft Certified Azure Fundamentals
Earners of the Azure Fundamentals certification have demonstrated foundational level knowledge of cloud services and how those services are provided with Microsoft Azure. Transcript ID: 1334847. Access Code: 1123581321.
View CertificateGIAC Certified UNIX Security Administrator (GCUX)
GCUX holders have demonstrated their ability to install, configure, monitor, and secure UNIX and Linux systems.
View CertificateGIAC Certified Enterprise Defender (GCED)
The GIAC Certified Enterprise Defender (GCED) certification builds on the security skills measured by the GIAC Security Essentials certification. It assesses more advanced, technical skills that are needed to defend the enterprise environment and protect an organization as a whole. GCED certification holders have validated knowledge and abilities in the areas of defensive network infrastructure, packet analysis, penetration testing, incident handling and malware removal.
View CertificateGIAC Security Essentials Certification (GSEC)
The GIAC Security Essentials (GSEC) certification validates a practitioner's knowledge of information security beyond simple terminology and concepts. GSEC certification holders are demonstrating that they are qualified for hands-on IT systems roles with respect to security tasks.
View Certificate