Why APe?

APe je náš rodinný maskot a průvodce na cestách pětičlenné rodiny (Adriana, Petr, Mikuláš, Štěpán a Rozárka) z Brandýsa nad Labem - Staré Boleslavi. Volný čas nejraději naplňujeme společným sportem, rodinnými expedicemi, dobrým jídlem a kávou. V roce 2009 jsme procestovali Nový Zéland, Austrálii, Samou a Cookovy ostrovy a spíše než chlebem a solí Vás doma uvítáme sklenkou dobrého vína.

Naším nejnovějším rodinným dobrodružstvím je Stezka Českem — v roce 2026 máme úspěšně v nohách etapy ET15 a ET16 (Novohradské hory), což znamenalo parádní túru dlouhou kolem 200 km.

profiles:
Adriana Petr (epcim) Mikuláš Štěpán Rozárka

Petr Michalec (epcim)

Sr Mgr, Software Development Engineering (SDC) · Site Reliability Engineering / Infrastructure Operations (SRE) at F5 Prague, Czech Republic · GitHub · Twitter

Seasoned leader with extensive experience architecting and operating global cloud-native SaaS platforms and distributed infrastructures. Expert skills and experience on enterprise environments across many domains: SRE, Platform Security, DevSecOps, and ML/AI. Proven track record directing complex system deployments across multi-cloud (AWS, GCP, AKS), physical POPs, and bare-metal networks. Highly adept at designing secure, scalable software development life cycles (SDLC) and currently focused on pioneering robust internal AI infrastructures and continuous delivery systems for microservice-heavy architectures.

Since 2012 I pivoted early private cloud infrastructures for leading global vendors (DHL, AT&T, Audi). Later Jio/Reliance, SAP, SoftBank, Verizon. In 2024/25 I was key contributor and lead on F5 FedRAMP Distributed Cloud.

Proven track record leading SRE and platform engineering teams with deep, hands-on technical expertise. Dedicated to fostering a strong engineering culture focused on automation, shift-left security, and scalable systems. Adept at bridging the gap between high-level business strategy and technical implementation.

Experienced in orchestrating large-scale bare-metal and cloud infrastructures (+1,000 nodes), with a history of dramatically compressing deployment cycles (from months to single weeks). Skilled at navigating strict security compliance frameworks (FedRAMP, PCI-DSS) and leading cross-functional, multi-regional engineering teams to deliver robust platforms at scale.

Mentor, Open-source contributor.


🛠️ Key Domain Skills

Instead of detailing granular tools, these are the global tech areas and domains I cover:

  • Complex Infrastructures: Designing and running bare-metal PoPs, hybrid-cloud networking, physical POP deployments, and storage backends.
  • Cloud & Kubernetes Platforms: Multi-cloud designs across AWS, GCP, AKS, OpenStack, and Kubernetes.
  • Continuous Delivery: Comprehensive CI/CD platforms designed for shift-left security, speed, and massive scale.
  • AI workloads & MLOps: Operating AI/ML pipelines and platforms for micro-service heavy topologies.
  • SaaS Platform & Security: Specialized in IAM, platform hardening, FedRAMP, and PCI-DSS compliance audits.
  • Management & Leadership: Strong experience leading multi-disciplinary, cross-regional teams, mentoring, and delivering to complex SDLC requirements.

💼 Career History

  • F5 / F5 Czech Republic s.r.o (Security & Distributed Cloud - SDC)
    Sr Mgr, Software Development EngineeringSecurity & Distributed Cloud (SDC), Site Reliability Engineering (SRE), Infrastructure Operations
    2025 - Present

    • Directing and coordinating global SRE teams across US, EMEA, and APAC regions.
    • Leading SRE initiatives for F5 FedRAMP Distributed Cloud authorization (2024/2025).
    • Driving high-velocity infrastructure automation, declarative configuration, and shift-left security.
  • F5 (Site Reliability Engineering - SRE)
    2023 - 2025

    • Sr. SRE - Development and operations of XC Distributed cloud infrastructure (20+ POPs + AWS, GCP, Azure infrastructure)
    • Sr. SRE - Leading private XC deployments, Production operations, Implementation of internal services. Security audit.
  • Volterra Inc. (Acquired by F5) · Infrastructure Architect / Team Lead · 2018 - 2023
    Designed and operated globally distributed edge/cloud platforms (bare-metal at POPs, all cloud platforms, IAM).

  • Mirantis · Cloud Architect / Services Team Lead · 2016 - 2018
    Delivered OpenStack & Kubernetes private clouds for major telecom and automotive enterprises.

  • tcp cloud (Acquired by Mirantis) · Infrastructure Architect · 2016

  • IBM Czech Republic · Infrastructure Architect / IT Specialist · 2004 - 2016
    Consulted on enterprise integration, virtualization, and private cloud implementations.

  • Contactel s.r.o · SysOps · 2003

  • Český Telecom a.s. · SysOps · 2000 - 2003


📖 Publications & Talks

  • IBM RedBook: Implementation Services for Private Clouds: Implementation Guide for Practitioners and Architects (ITSO, 2013 | ISBN: 0738438359)
  • Prague Kubernetes Conference — Designing AKS scale clusters.
  • Docker Meetup Swarm Talk — High-performance Swarm architecture.
  • DevOps Kung-Fu — Shifting-left in configuration management.

🚀 Interests & Passions

A look into my technical playgrounds, from mechanical tinkering to system configurations:

  • 🕹️ FPV — Occasional RC/QUAD pilot, building custom quadcopters — we live in goggles.
  • 🔌 Electronics & Homelabs — Custom hardware integration, microcontrollers (ESP32), smart home automation. When there is time to play.
  • ⚙️ Configuration Management — Orchestrating systems using declarative configuration files and infrastructure-as-code (IaC) — my true nature.

💻 Open Source Repositories (My Own)

Note: These projects are public, but many more closed-source projects exist ;P

  • 🗡️ git-cross A high-productivity "git knife" utility. Custom Git workflows designed to simplify multi-repository coordination and automate standard commit patterns.
  • 📊 any-chart & fake-chart Flexible and universal Helm charts for Kubernetes deployments. Deploy virtually any application topology without rewriting custom boilerplate templates.
  • 📦 dotfiles Chezmoi deployment of critical system .config files. A structured, modular layout to manage and deploy my cross-platform terminal configurations. (Upcoming public release)
  • 🐳 docker-stacks & synology-containersReady-to-run container deployments designed for Synology NAS. Pre-configured, robust Docker compose stacks built to run self-hosted utilities. (Currently private)

🔧 Core Tools & Ecosystems I Support & like.

These are key third-party platforms and tools I actively run, champion, and use to manage complex platforms:

  • Kluctl Declarative Kubernetes Deployments. A highly advanced, multi-target deployment engine bridging raw manifests and Helm.
  • 🦅 NetBird Zero-Trust Peer-to-Peer Mesh Networks. Secure WireGuard® peer-to-peer overlay mesh tunnels.
  • 🔑 gopass The Standard Team Password Manager. CLI-based secret manager designed for DevOps environments.
  • 🌐 git-workspace Multi-Repo Sync & Workspace Orchestrator. Command-line utility to synchronize multiple Git repositories.
  • 🔐 AGE Simple, Secure File Encryption. Lightweight, secure, and modern encryption alternative to legacy GPG.
  • 🏠 Chezmoi Cross-Platform Dotfiles Manager. Git-backed dotfiles manager for cross-platform workstations.
  • 🏃 Justfile (Just) Modern High-Speed Command Runner. A clean, productive task executor replacing complex Makefiles.
  • 🌌 AstroNvim & NeovimExtensible Terminal-Based IDE. Aesthetic, highly pre-configured IDE layer for Neovim.