Lothar Hinsche
Solution Manager for PoC investigation and replacement and refinement of an existing cloud and IoT power plant control system
Experience
Solution Manager for PoC investigation and replacement and refinement of an existing cloud and IoT power plant control system
Shell AG and NEXT Kraftwerke GmbH
- Investigated PoC and replaced and refined an existing cloud and IoT power plant control solution for certificate management of renewable energy power plants (solar, wind, biomass, etc.) for the largest European renewable energy power plant operator in this sector, including review of the field-deployed IoT devices and their integration and network connection to enable automated PKI key management.
- Messaging with Kubernetes for large API-connected enterprise applications
- Risk and Attack Vector Analysis, Software Quality & Bug Assessments
- Agile workload scheduling via Jira & Confluence
- Evaluation of message streams Pub/Sub for MQ and Kafka.
- Various tests with “best design approaches” regarding resilience patterns such as circuit breaker designs, throughput measurement and monitoring, bulkhead governors - for robust enterprise architecture design
- Integrated API management with IBM's API Connect into Kubernetes - for platform-agnostic microservices API management designs. Google Apigee
- Solution health check approaches for load burst situations and remedies
- Researched and evaluated potential subcontractors in the coordinative role as solution manager. CIS20 controls.
- DREAD and STRIDE security assessments.
Multi-cloud and hybrid cloud transformations of enterprise solutions
IBM
- Kubernetes routing and resilience PoC and tests of solutions for network stabilization and creating redundancy, DREAD and STRIDE security assessments, hybrid cloud hosting refinements, system hardening for clients, backend and datacenter.
- Routing system refinements within Kubernetes solutions using Tigera Calico and its network management policies and behavioral profile logs, as well as custom visualization tools for resilience refinement and redundancy of fallback automations.
- Clients in the context of energy providers, network operators, banks, insurance companies and automotive.
Lead Architect - coaching and consulting for IoT, backend system hardening and KRITIS transformation
Mercedes-Benz Financial Services
- Network resilience focused on transforming an automotive financing and leasing buy-back evaluation enterprise solution with architectural renewal and conversion to a cloud native / Kubernetes-based hybrid hosting design.
- Standardized existing code and the evaluation enterprise solution, and migrated the initially in-house-built initial coding solution into a viable, future-proof, scalable, resilient system and solution concept. PKI as a Service.
- Coordinated and coached the team of solution architects.
- Lead architect - coaching and consulting on microsegmentation, security, load balancing, intrusion detection, as well as on effective log scraping and real-time analysis of threat situations for extending and expanding software resilience.
- Created roadmap for implementation into the existing software architecture
- Risk assessments and Zero Trust-based architecture refinements of the existing solution
- Consumer API refinement via Zero Trust designs and microsegmentation approaches
- Technical analysis of the requirements and security context concerning granted access rights and their minimization (need-to-know and least privilege principles)
- Integration of API management with IBM's API Connect into Kubernetes - for platform-agnostic microservices API management designs
- Solution health check approaches for load burst situations and remedies
API management transformation and dev app migration
IBM EMEA + DB Systel
- Transformed API management and dev app migration between departments with associated IBM API Connect resource management, security and cyber risk attack vector assessments and refinements. OpenShift + Kubernetes + software resilience patterns
- Transformed partner API integrations, various optional parameters and KPIs – multi-cloud and hybrid refactoring with Kubernetes
- Technical analysis of the requirements and security context regarding granted access rights and their minimization
- Segmented various in-production consumer APIs, Zero Trust designs, microsegmentation of pod solutions in connection with hybrid cloud hosting.
- OAuth, single sign-on, authorization and authentication patterns
- Proof of concepts for robustness and load balancing
- Integrated API management with IBM's API Connect into Kubernetes - for platform-agnostic microservices API management designs
- Solution health check approaches for load burst situations and remedies
- Multi-cloud migration of a monolith solution to AWS and Microsoft Azure in a hybrid and multi-cloud context.
Solution Manager + Integration Coach
EnBW Karlsruhe
- Company-wide introduction of a software asset management (SAM) system for group-wide and company-wide license monitoring of hybrid-hosted, cloud-based and on-premise installed solution packages (SAP, Oracle, IBM, Office 365, Adobe, etc.).
- A cloud-based software asset management is pre-tested as a PoC for the entire group, security-checked and then rolled out to 12,000 end users and all data centers.
- Coordinated the overall project as solution manager and then the rollout with service providers, system integrators and all affected stakeholders in data center operations, security teams, networking and smart client delivery, coordinating and managing. Also optimized the Microsoft Azure cloud components of the overall solution.
- Company-wide solution transformation together with cloud big data analytics providers for license optimization, working with client teams and commercial and technical departments and stakeholders from all group divisions such as power generation, transportation, administration and billing, on software asset management.
- SAM visualization and optimization
- Consulting with management and specialist departments
- Architecture and concept creation – cloud 12 factor app style – concept pitch rounds / agile cycles / discussions / refinements
- Context: elasticity, resilience, composability, separation of stateless, ephemeral transient components from stateful persistent resilient aspects of the application, serverless lambda components, overlay networks, fallback and backup solutions, tunneling and SD-WAN integrations, dynamic path selection, load sharing.
- Hybrid mix: AWS, SoftLayer, Google Cloud, Azure, private cloud components + internal datacenter
Investigation and creation of an SDN PoC and pilot for a cloud-native messaging application
Westpac AU / NZ
- Investigation and creation of an SDN PoC and pilot for a cloud-native messaging application with software-defined networking and load balancing (using Kubernetes, among others) running in various data centers and geolocations worldwide.
- Including geo-awareness and load balancing region auto-routing, serverless components, and high resilience.
- The system is part of a strategic application – migrated from a former middleware monolith solution – built on relevant container orchestration frameworks in the context of SDN & load-balancing services and container and VM arrangement management systems.
- The 'classic' solution approaches via Docker and Docker Swarm were transformed into Kubernetes for its extended performance capabilities, and Kafka was evaluated and used as the messaging and streaming service.
- Refinement and modification of the enterprise application in terms of latency, timing, and decoupling.
- Creation of the roadmap to achieve optimized ESB usage, more efficient Kubernetes designs, datastore sync optimizations, and the use of resilience checks.
- Integration of API lifecycle management solutions from Akana, Red Hat, and IBM (API analytics, API gateway, API management, developer portal, lifecycle manager, IBM API Connect).
- Focus on monitoring, SLAs, and monetization.
Solution Architect for IBM Business Monitor PoC with integration, scaling, and rollout
BMW Bank – BMW Global Financial Services
- Proof of concept and integration of IBM’s BAM IIB toolset to monitor real-time workloads, visualize throughput and real-time performance in detail, and display the throughput of the BMW Group Financial Services modules of various national banks, along with achieved KPIs, SLAs, and the overall health status of the operational solution.
- Successful PoC execution for BAM, proving the feasibility of the target objectives based on the selected frameworks. Preinstallation of several pilots on different VMs with appropriate load tests.
- Creation of an integration roadmap for implementing BAM for the given networking and messaging services (IBM Integration Bus v9 and v10) and for the related workload process monitoring of the cross-country 'Global Connected Financial Services Modules'.
- Coaching of developer teams on BAM coordination regarding the affected module integration (blackbox monitoring / whitebox monitoring).
- In-depth investigation of IBM Business Monitor’s capabilities in connection with IBM Integration Bus, MQ, and SOAP integrations.
- Creation of an implementation roadmap after the successful PoC in coordination with all project partners to implement 24/7 real-time service monitoring and move into rollout.
- Coaching and steering of the necessary organizational and architectural change process.
Project and team coach and lead, change manager, enterprise architect - T-Onsite - Cloud Integration Center
Telekom - T-Systems
- International recruitment to build a cloud architects group.
- Consulting JEE customers on enterprise application 'cloudifications' and new architecture approaches to convert existing JEE applications to hybrid cloud capabilities.
- Sourcing, screening, interviewing, and coaching suitable consultants and staff, including creating hiring and business cases.
- Setting up the OpenShift and WSO2 training paths for a team of 24 employees.
- Coaching of Kubernetes PoCs.
- Technologies used: Kubernetes, OpenShift, VMware, OpenStack, load balancers, SDN, K8s network + CNI plugins, HAProxy, health checks, Contiv, Open vSwitch, T-Systems cloud artifacts.
Lead Consultant for the creation of a Cloud Competence EA Review Center
Logica / CGI Deutschland
- Creation of a Cloud Competence EA Review Center for transforming enterprise applications.
- Consulting JEE customers on new architecture approaches and converting existing JEE applications to hybrid cloud capabilities.
Solution Manager and Transformation Coach for microservice solutions with Docker and Kubernetes
Flight-Centre Travel Group AU
- Microservice solutions with Docker and Kubernetes and various API management integrations as solution manager and transformation coach.
- AWS transformation of existing JEE system modules for auto-deployment in various global AWS data center regions (mainly Ireland and Australia).
- Latency session optimizations – loosely coupled optimizations, SDN, auto-deployment and load balancing, geo-location awareness, Layer 7 strategies and optimizations for local IPs, API lifecycle management, and monetization.
- Kubernetes and KubeFed cluster federation / region auto-routing, serverless components, and CI/CD pipeline integrations (Jenkins, Argo).
- Business logic extraction, BPM, and enterprise architecture review of existing solutions.
- Project management and change management. Middleware health checks (jboss), application architecture, and infrastructure review – tuning and refinement of SOA.
- Team coaching for cloud-native architecture transformation of the EA, testing and diagnosing the existing web solution, fine-tuning infrastructure and servers.
- Refinement and modification of the enterprise application in terms of latency, timing, and decoupling.
- Creation of the roadmap to achieve optimized ESB usage, more efficient Kubernetes designs, datastore sync optimizations, and the use of resilience checks.
BPM + Cloud Consultant – JEE Enterprise Middleware Audit + Architectural Review
2Degrees Mobile
- EA Review and Restructuring for Mobile Phone Provider.
- Architectural Review and Business Logic Extraction BPM – SOA for existing payment solution as well as Change Management for the introduction of new services.
- BPM Reviews & Optimizations.
- Middleware Health Check jBoss, Application Architecture and Infrastructure Review, Tuning and Refinement of the ESB.
- Strategic Advice and Coaching for introducing BPM above the existing SOA as well as related Source Code Transformations.
- Technologies: IBM BPM, BPMN 2.0, Process Designer, Integration Designer, WebSphere Process Server, WID, WS Portal, Business Modeller + Monitor, Rational Software Architect + Application Developer, Version Control, Eclipse, IntelliJ, Kubernetes Dev Environments, CI/CD, SDN, Resilience System Hardening, Network Analysers.
- Advising Management and Business Units.
Auditor + Consultant for Enterprise Architecture and Solution Design Review
AEC - Australian Electoral Commission
- Review of the JEE core application for software stabilization and software resilience patterns.
- Middleware Health Check jBoss, Application Architecture and Infrastructure Tuning Improvements for SOA Components and BPM.
- Testing of the Existing Java Enrollment Solution and Tuning Recommendations for Infrastructure and Server Clusters.
- Transformation of the Enterprise Application regarding BPM Design, Timing and Decoupling, BPM Logic Extraction.
Research Fellow – Decision Services Lab
University of Wollongong - Australia
- Research Fellow at UoW Australia / DSL Lab since 2009 under Prof. Aditya Ghose.
- BPM and ODM Transformations for EA with Software Resilience Patterns.
Digital Strategist, Principal Consultant, CEO, Business Consultant, Dipl. Ing., Solution and Change Manager and Coach for BPM,
MCS I.T. Services
- Team Leadership + Coaching
- Technology Transformations
- System Integration
- Change Management
- Hybrid Multi-Cloud Kubernetes Enterprise Solutions
- Software Resilience Patterns
- Cyber Compliance Frameworks – CMMC, NIST, DORA, BSI, NIS-2, Swiss Federal, KRITIS
- Object Storage (AWS S3 <-> Google GCS), K8s Platforms (AWS EKS <-> Google GKE), Legacy Apps (AWS EC2 <-> Google GCE), Relational DB (AWS RDS <-> Google Cloud SQL)
- Clients e.g. IBM, Red Hat, Flight Centre, BMW, Daimler, Mercedes Benz, Deutsche Bahn, Westpac, Vodafone, 2Degrees Mobile, UoW, T-Systems, EnBW, NEXT Kraftwerke, Shell, BNZ, ASB, Allianz etc.
Trainer, Consultant, eBusiness Architect, Enterprise Application Reviews, BPM + Cloud Native Consultant
IBM
- Training and Consulting Partner with IBM for IBM Germany as well as IBM EMEA, IBM Australia and IBM New Zealand.
- Training and Consulting around BPM, BPMN, ESB, SOA, WS Lombardi, WSRR, ILOG Rules, ODM, Communications Products, Cloud Native, Tigera Calico, Kubernetes.
- Advising Management and Business Units.
- Strategic Advisor for Enterprise Architecture and Solution Design Reviews.
Summary
Telecommunications / Electrical Engineering, Dipl. Eng., Digital Strategist, System Architect, Change Manager for Cloud Native BPM and digital transformation, resilient infrastructures, EA and BPM coach, compliance frameworks and software resilience patterns.
Skills
Team Leadership And Coaching
Technology Transformations
System Integration
Change Management
Hybrid Multi-cloud Kubernetes Enterprise Solutions
Software Resilience Patterns
Cyber Compliance Frameworks – Cmmc, Nist, Dora, Bsi, Nis-2, Swiss Confederation, Kritis
Industries: Across Automotive, Manufacturing, Energy, Insurance, Banking, Finance, Telecom, Government, Travel And More.
12 Factor Applications, Cloud Native Designs
Enterprise Application Transformations
Agile Methods, Scrum, Waterfall, Safe
Declarative Concepts
Software Resilience Patterns
Kubernetes Enterprise Solutions, Resilience And Cyber Hardening
Certification Frameworks
Multi- And Hybrid-cloud Hosting, Migrations And Solution Transformations
Lift & Shift Projects And Architecture Refactoring When Moving To A New Solution
Dread And Stride Security Assessments
Cloud Native Solution Designs And Kubernetes Security
Microsegmentation, Zero Trust Strategies
Ibm Bpm And Odm, Esb And Messaging Solutions, Integration Bus, Websphere And Soa As Well As Related Communication Products And Solutions
Kubernetes, Calico, Argo, Helm, Docker, Kafka
Platform-agnostic Cloud Solution Designs, Sdn, Load Balancing
Bpmn, Uml, Bpel, Wsdl, Xml, C, Jee
Intellij, Eclipse, Soap, Yaml, Html, Maven, Git, Spring Boot, Rest
Tigera Calico, Wireshark, Iptables, Linux Tc – Traffic Control, Gremlin, Firewalld
Nginx, Ingress, L7 Balancer, Bulkhead, Governor, Circuit Breaker
Queue Size & Timing Automation
Argo, Jenkins, Helm, Grafana, Prometheus
Various Log Scrapers, Kubernetes Monitoring Via Calico And Datadog Etc.
Languages
Education
Dipl. Eng. · Telecommunications / Electrical Engineering · Ulm, Germany
Similar Freelancers
Discover other experts with similar qualifications and experience