Martin Bausewein
IT Architect
Experience
IT Architect
NDA (defense industry)
- assessment of a modernization concept for IT infrastructures including client workstations
- development of an alternative concept focusing on data sovereignty and reducing provider dependencies
- selection of suitable alternative open-source products and solutions
- designing a proof of concept approach for step-by-step evaluation of the options
IT Architect
Daimler Truck AG
- building an application stack in a VPC (IBM Cloud) for full separation from Mercedes-Benz infrastructures
- setting up and switching VPN connections, including network and firewall configuration
- rebuilding RHEL8 VMs with departmental application (including nginx, Traefik proxy for OIDC) and Oracle database (multi-stage)
- optimizing and hardening components: hardening all components; monitoring stack with notifications (Telegraf, InfluxDB, Grafana); IDS/IPS stacks (firewall, fail2ban, ClamAV, Lynis); COS backup
Transition Manager
Bilfinger SE
- interim reinforcement of the project team for WAN/LAN outsourcing worldwide for around 700 sites
- responsible for vendor management in WAN/LAN discovery and for planning transition and migration in WAN, LAN, service management, and NOC
Project Manager
Planta GmbH
- consulting, analysis, and design to adapt standard planning systems to individual customer requirements
- successful implementation of multi-project and portfolio management systems in both traditional and agile environments
- leading the rollout of a hybrid planning system for the Baden-Württemberg police
- overseeing a proof of concept (PoC) to evaluate planning systems for the Baden-Württemberg Ministry of the Interior
Transition Manager
cunova GmbH
- lead architect for non-SAP applications and security in a carve-out
- analysis of on-premise IT & OT systems, design of the future hybrid IT landscape, and planning migration and managing the service provider for building the hybrid solution
- assessment and consulting on implementing findings from a security audit of the parent company and developing an IT security concept
- selection and management of IT service providers, establishing an ITSM framework, and technical lead of the migration
- support and consulting during the transition to operations
IT Architect
Daimler AG / Daimler Truck AG
- Built a multi-stage VPC environment as part of the business unit separation
- Managed the cloud risk process and implemented security requirements
- Planned and led the VPC setup, including migration, testing, and data cleanup
- Implemented an OSS monitoring and notification stack integrating application and operations services; backup and disaster recovery concepts; hardening and monitoring; VPN connectivity; VPC network architecture including zones, policies, and DNS; and OIDC integration for the application
- Operated under the Application Management Service (AMS)
IT Architect
NDA Versicherung
- Designed an archive system for searching customer and insurance data after SAP decommissioning
- Defined PoC reports for the search
- Created the data model including roles and permissions concept for the archive system
- Developed an operating model and implemented a container-based PoC (Docker Compose stack) with PostgreSQL database; admin container for data import; Tomcat application server with automatic certificate generation; BIRT engine with defined MVP reports
IT Architect
NDA Automobilzulieferer
- Consulted on and carried out a feasibility study for a data crawler to consolidate data from various internal and external systems
IT Architect
Mercedes Benz / Daimler Truck / Daimler AG
- Developed a migration concept for a system landscape (Windows, RHEL, Kubernetes) from IBM Cloud to AWS
- Developed modernization strategies for legacy applications for Kubernetes deployment, improving security and cloud maturity by introducing a service mesh
- Built a VPC with BYOK in IBM Cloud for rehosting legacy applications, including base configuration, system hardening, monitoring concept, and managing the installation team
- Implemented comprehensive monitoring with Prometheus & Grafana for all components across VPC stages (Kubernetes tenant, Windows and Linux VMs), including dedicated security audits, certificate and backup checks; and a centralized log stack with the Elastic Stack (Elasticsearch, Kibana, Logstash)
- Performed hardening measures for Linux systems (RHEL, SuSE, Ubuntu) and specified changes for custom developments
- Conceptualized and executed migrations from on-premises, private, and off-premises clouds to IBM Cloud VPC
- Conducted PoC projects to evaluate modernization options for application architecture from legacy to container-based operation
- Supported security audits, information classification, and cloud risk processes, and derived technical requirements and solutions
- Led the project for changing the provider of a media archive and prepared to eliminate supplier dependency: process analysis and redesign; interface redesign; concept for decoupling systems and migrating data; management of vendors and internal project team
- Responsible for AMS operation of distributed applications on Linux and Windows servers
- Created concepts for on-premises system and data migrations with minimal downtime
- Managed requirements, releases, and testing for the system landscape in the aftersales area
Root server operations
Bausewein IT GmbH
- Operated and administered Linux servers (Debian, Ubuntu, RHEL) focusing on security, performance, and stability
- Deployed and managed various server services: mail service (Postfix, Dovecot, SpamAssassin, rspamd, ClamAV); databases (PostgreSQL, MariaDB/MySQL, Redis, InfluxDB); ticketing (Mantis BT); IoT stack (InfluxDB, MQTT, Grafana); monitoring (Telegraf, InfluxDB, Grafana); security (Lynis, rkhunter, ClamAV, Fail2Ban, UFW, CrowdSec); virtualization (Proxmox, KVM, QEMU, Docker, Kubernetes)
- Continuously evaluated system hardening and security concepts
Summary
With over 30 years of broad IT experience — including more than 15 years in the enterprise environment — I offer companies strategic and operational excellence in designing, securing, and transforming complex IT landscapes.
I combine deep architecture and technology know-how with project experience in international corporations and medium-sized businesses. My focus is on IT strategy, cloud/legacy architecture, IT security, and transition management, especially in migrations, carve-outs, and infrastructure modernization. I stand for analytical thinking, goal-driven approach, pragmatic work style, and audience-appropriate communication.
Skills
- It Strategy & Enterprise Architecture (Ibm Cloud, Aws, Hybrid Clouds, Vpc, Byok)
- It Architecture & Infrastructure Modernization
- Transition & Migration Management, Carve-outs
- Planning & Managing Complex Migrations (Cloud / Hybrid / Legacy)
- It Security, Hardening, Audit Support (Infrastructure & Processes)
- Open Source Stack (Monitoring, Mail, Security, Databases)
- Provider Management & Itsm Frameworks
- International Project Experience In Corporate Structures
- Project Management & Technical Consulting
Languages
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Martin based?
What languages does Martin speak?
How many years of experience does Martin have?
What roles would Martin be best suited for?
What is Martin's latest experience?
What companies has Martin worked for in recent years?
Which industries is Martin most experienced in?
Which business areas is Martin most experienced in?
Which industries has Martin worked in recently?
Which business areas has Martin worked in recently?
What is the availability of Martin?
What is the rate of Martin?
How to hire Martin?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a IT Architect
Nearby freelancers
Professionals working in or nearby Schwetzingen, Germany