I will setup secure gitops pipelines using argocd and AWS eks
DevOps Engineer
About this Gig
Looking for a secure, high-availability deployment strategy for Kubernetes? Stop using insecure SSH keys or pushing code directly from standard, vulnerable CI runners.
Welcome to modern DevOps. I am a certified DevOps Engineer specializing in production-grade GitOps workflows using AWS EKS and ArgoCD. By implementing a pull-based GitOps model, your Git repository becomes your absolute "Source of Truth," eliminating configuration drift and human error entirely.
What I Will Do for You:
- Setup & configure ArgoCD inside your AWS EKS cluster
- Separate Application Code from K8s Manifests using GitOps best practices
- Configure automated State Synchronization & Drift Detection Deploy Argo Rollouts for zero-downtime Canary Deployments (Standard/Premium)
- Architect Multi-Region Cluster Sync for absolute Disaster Recovery (Premium)
- Implement secure Secrets Management (Sealed Secrets/AWS Secret Manager)
Why Choose Me?
- Production-tested, enterprise-grade cloud architectures
- Clean, comprehensive documentation provided with every hand-off
- Focus on zero-downtime, security, and high availability
*PLEASE CONTACT ME BEFORE PLACING AN ORDER to discuss your current AWS stack!*
Tools:
Kubernetes
•
Docker
•
Amazon EKS
Frameworks:
Npm
•
Terraform
•
Ansible
Programming language:
Bash
•
JavaScript
•
Python
Expertise:
Installation
•
Debugging
•
Configuration
Other DevOps Engineering Services I Offer
FAQ
What do I need to provide to get started?
You will need to provide secure, restricted IAM access to your AWS account (or existing EKS cluster) and access to your code repositories (GitHub/Bitbucket/GitLab). We can jump on a brief requirement alignment call if needed
Why is a pull-based GitOps pipeline better than standard CI/CD?
Traditional CI/CD "pushes" code by storing powerful AWS admin keys inside your CI runners (like GitHub). GitOps uses ArgoCD inside your cluster to safely "pull" changes. This means your cluster credentials never leave AWS, making your infrastructure incredibly secure.
What is a Canary Deployment with Argo Rollouts?
Instead of replacing your entire application at once, a Canary Deployment routes a tiny fraction of live traffic (e.g., 5%) to the new version first. If your error rates stay at zero, it progressively scales up to 100%. If bugs are detected, it automatically rolls back instantly with zero downtime.
Can you work with cloud providers other than AWS?
While this gig specifically targets AWS EKS because of its complex enterprise networking and IAM configurations, I am experienced in setting up ArgoCD pipelines for other cloud platforms as well. Please message me to discuss your specific multi-cloud requirements!
What is the difference between your Standard and Premium deployment strategies?
Standard deploys a Canary strategy in 1 AWS region. Premium adds Multi-Region EKS sync and Automated Canary Analysis, meaning ArgoCD monitors live metrics and automatically rolls back if errors spike.
Do I need a separate Git repository for my manifests?
Yes. Best practices dictate separating application source code from Kubernetes YAML manifests. I will help you structure a dedicated Manifest Repo that ArgoCD monitors as the source of truth.
How do you handle sensitive database passwords and API keys?
We never store plain text secrets in Git. I integrate tools like AWS Secrets Manager, External Secrets Operator, Kubernetes Secrets or Sealed Secrets to ensure variables are encrypted before hitting repository code.
Do you write the Terraform code to build the EKS cluster?
Yes, absolutely! While this gig's pricing covers the GitOps and ArgoCD pipeline layer, I can easily provision your underlying AWS VPC, EKS clusters, and IAM roles using modular Terraform code. Just message me before ordering, and I will send you a custom all-in-one package!

