Verfügbar ab sofort · Berlin & remoteAvailable now · Berlin & remote

Bakir Zanoun
baut Software, die sicher ausgeliefert wird.builds software that ships safely.

Computer Engineer (M.Eng., HTW Berlin) mit drei Jahren Praxis bei der AUCOTEAM GmbH. Ich verbinde CI/CD mit GitLab, Docker und Trivy, Softwareentwicklung mit .NET und C# und Embedded-Systeme vom Mikrocontroller bis zur Datenbank. Computer Engineer (M.Eng., HTW Berlin) with three years of hands-on work at AUCOTEAM GmbH. I combine CI/CD with GitLab, Docker and Trivy, software development with .NET and C# and embedded systems from the microcontroller to the database.

ZielrollenTarget roles DevOps / Platform EngineerEmbedded Software EngineerSoftware Engineer .NET
Porträt von Bakir Zanoun
M.Eng. · HTW Berlin
GitLab CI · Docker · Trivy
ESP32 · STM32 · Raspberry Pi
  • 3Jahre Praxis bei AUCOTEAMyears at AUCOTEAM
  • 2Abschlussarbeiten aus der Industrietheses written in industry
  • 3Arbeitssprachen: DE · EN · ARworking languages: DE · EN · AR
  • M.Eng.Computer Engineering, 2026Computer Engineering, 2026

Auf einen BlickAt a glance

Das Wichtigste in 30 SekundenThe essentials in 30 seconds

VerfügbarkeitAvailability
Ab sofort, VollzeitImmediately, full-time
StandortLocation
Berlin · vor Ort, hybrid oder remoteBerlin · on-site, hybrid or remote
ArbeitserlaubnisWork permit
Deutsche Staatsangehörigkeit, kein Visum nötigGerman citizen, no visa required
AbschlussDegree
M.Eng. Computer Engineering · HTW Berlin · 09/2026
PraxisExperience
3 Jahre AUCOTEAM GmbH: CI/CD, .NET, Embedded3 years at AUCOTEAM GmbH: CI/CD, .NET, embedded
SprachenLanguages
Deutsch, Englisch fließend · Arabisch MutterspracheGerman, English fluent · Arabic native

ArbeitsweiseHow I work

Wie ich an Aufgaben herangeheHow I approach a task

Vier Grundsätze, die sich durch meine Projekte ziehen, von der Sensorik bis zur Pipeline.Four principles that run through my projects, from sensor hardware to the delivery pipeline.

01 · AutomatisierenAutomate

Was sich wiederholt, macht die PipelineIf it repeats, the pipeline does it

Test, Build, Scan und Push laufen bei jedem Push automatisch. Jedes Image trägt ein Datums-Tag und ist nachvollziehbar. Das Deployment bleibt eine bewusste, manuelle Freigabe (Continuous Delivery).Test, build, scan and push run automatically on every push. Every image carries a date tag and stays traceable. Deployment remains a deliberate manual release (continuous delivery).

02 · SicherheitSecurity

Sicherheit ist ein Pipeline-Schritt, kein NachgedankeSecurity is a pipeline stage, not an afterthought

Jedes neue Image wird mit trivy gescannt: CRITICAL stoppt die Pipeline, HIGH landet im Report. Weil täglich neue CVEs erscheinen, scannt zusätzlich ein Cron-Job alle Images in der Registry neu. Das war der Kern meiner Masterarbeit.Every new image is scanned with trivy: CRITICAL stops the pipeline, HIGH goes into the report. Because new CVEs appear every day, a cron job also re-scans every image in the registry. That was the core of my master's thesis.

03 · System verstehenKnow the system

Vom Sensor bis zur RegistryFrom sensor to registry

Ich arbeite gern über Schichten hinweg: vom Sensor am I2C-Bus über Python bis zur Zeitreihendatenbank, vom Unit-Test bis zum Image in der Registry. Wer die ganze Kette kennt, findet Fehler schneller.I like working across layers: from a sensor on the I2C bus through Python to a time-series database, from a unit test to an image in the registry. Knowing the whole chain makes bugs easier to find.

04 · KommunikationCommunication

Entscheidungen begründen, Ergebnisse teilenJustify decisions, share results

Bevor ich ein Werkzeug wähle, vergleiche ich die Optionen, zum Beispiel drei Registry-Varianten oder drei Datenbanken. Pipeline-Ergebnisse landen automatisch in Microsoft Teams, damit das Team sie sofort sieht. Ich arbeite auf Deutsch, Englisch und Arabisch.Before choosing a tool, I compare the options, for example three registry types or three databases. Pipeline results are posted to Microsoft Teams automatically so the team sees them right away. I work in German, English and Arabic.

DevOps & IoT

Architekturen, die ich gebaut habeArchitectures I have built

Vereinfachte Darstellungen meiner Masterarbeit (CI/CD mit Sicherheitsscans) und meiner Bachelorarbeit (Multisensor-Prüfstand), beide umgesetzt bei der AUCOTEAM GmbH.Simplified views of my master's thesis (CI/CD with security scans) and my bachelor's thesis (multi-sensor test rig), both carried out at AUCOTEAM GmbH.

CI/CD · DevSecOps · MasterarbeitMaster's thesis GitLab-Pipeline mit dualer Trivy-Scan-StrategieGitLab pipeline with a dual Trivy scanning strategy Push-Scan für jedes neue Image, Scheduled-Scan für alle Images in der RegistryPush scan for every new image, scheduled scan for every image in the registry
GitLab CI/CD pipeline: test, build, Trivy scan, gate, push to private registry, Microsoft Teams notification, plus scheduled re-scan of registry images GitLab CI · Group Runner · Docker Executor Developer git push Test unit · DB Build :YYYY-MM-DD Scan trivy image Gate CRITICAL=0 Push OCI Registry Notify MS Teams pass fail Pipeline stopptPipeline stops HIGH → nur ReportHIGH → report only fix & push Scheduled Scan · cron alle Tags neu scannenre-scan every tag pull report
  1. Test → Build – Unit- und Datenbanktests laufen zuerst. Erst danach wird das Docker-Image gebaut und mit dem Datum getaggt, damit jede Version nachvollziehbar bleibt.– unit and database tests run first. Only then is the Docker image built and tagged with the date, so every version stays traceable.
  2. Scan & Gate – Trivy prüft das Image auf bekannte CVEs. CRITICAL stoppt die Pipeline, HIGH wird im Report ausgewiesen.– Trivy checks the image for known CVEs. CRITICAL stops the pipeline, HIGH is listed in the report.
  3. Push & Notify – geprüfte Images gehen mit Datums-Tag und :latest in eine private OCI-Registry. Das Ergebnis landet per Webhook in Microsoft Teams. Das Deployment bleibt eine manuelle Freigabe (Continuous Delivery).– approved images go to a private OCI registry with a date tag and :latest. The result is posted to Microsoft Teams via webhook. Deployment remains a manual release (continuous delivery).
  4. Scheduled Scan – ein Cron-Job scannt die Images in der Registry regelmäßig neu, weil täglich neue CVEs erscheinen. Über die Variable SCAN_TAGS lassen sich einzelne Versionen auswählen, ohne die Pipeline zu ändern.– a cron job re-scans the registry images regularly, because new CVEs appear every day. The SCAN_TAGS variable selects specific versions without changing the pipeline.
.gitlab-ci.yml · main
$ git push origin main
▸ test dotnet test (unit + db)
✓ all tests passed
▸ build docker build -t app:2026-05-27 .
▸ scan trivy image --severity HIGH,CRITICAL
✓ CRITICAL: 0 HIGH: 2 → report
▸ push registry :2026-05-27 :latest
▸ notify ✓ Teams: pipeline passed
# deploy: manual (continuous delivery)
Embedded · IoT · BachelorarbeitBachelor's thesis Multisensor-Prüfstand: vom Sensor bis zur ZeitreihendatenbankMulti-sensor test rig: from sensor to time-series database Teil eines geförderten F&E-Projekts zur Überwachung der TrinkwasserqualitätPart of a funded R&D project for monitoring drinking-water quality
01SensorenSensorsDruck · 2× MPU6050 · HTU21DPressure · 2× MPU6050 · HTU21D
02I2C-MultiplexerI2C multiplexerTCA9548A · 8 KanäleTCA9548A · 8 channels
03Raspberry Pi 4I2C-Master · PythonI2C master · Python
04AufbereitungProcessingconfig.json · CSV
05InfluxDBDocker · on-premiseDocker · on-premise
06AnalyseAnalysisFFT · Grenzwert-LEDFFT · limit LED

Embedded Hardware

Boards und Protokolle, mit denen ich arbeiteBoards and protocols I work with

Vom einfachen Prototyp bis zum Edge-Rechner mit GPU: Ich wähle die Plattform danach, was das System leisten muss.From a quick prototype to a GPU edge computer: I pick the platform by what the system has to do.

Linux SBC

Raspberry Pi 4

I2C-Master im Multisensor-Prüfstand, Python-Datenerfassung und InfluxDB-Anbindung.I2C master in the multi-sensor test rig, Python data capture and InfluxDB integration.

PythonI2CUbuntu
Wi-Fi · BLE

ESP32

Vernetzte Sensorknoten, die Messwerte direkt per WLAN oder MQTT senden.Connected sensor nodes that send readings straight over Wi-Fi or MQTT.

C/C++MQTTSPI
ARM Cortex-M

STM32

Hardwarenahe Programmierung für zeitkritische Steuerungs- und Messaufgaben.Low-level programming for time-critical control and measurement tasks.

CUARTSPI
Prototyping

Arduino

Schnelle Prototypen, um Sensoren und Aktoren zu testen, bevor sie ins System kommen.Fast prototypes to test sensors and actuators before they go into the system.

C++I2CUART
Edge AI · GPU

NVIDIA Jetson Nano

Edge-Computing mit GPU, zusammen mit ROS für robotiknahe Anwendungen.GPU edge computing, combined with ROS for robotics-related applications.

ROSUbuntuPython
ProtokolleProtocols I2CSPIUARTMQTTLoRaWANROSTCP/IP

ProjekteProjects

Ausgewählte ArbeitenSelected work

Was die Aufgabe war, wie ich sie umgesetzt habe und welche Entscheidungen ich dabei getroffen habe.What the task was, how I built it and which decisions I made along the way.

Masterarbeit · 2026Master's thesis · 2026
GitLab CI/CDGitLab RunnerDocker ComposeTrivyOCI RegistryCronMS Teams.NET

Designing and Implementing a CI/CD Pipeline Architecture with Continuous Automated Security Scans for Containerized Applications

Verfasst auf Englisch · HTW Berlin · umgesetzt bei der AUCOTEAM GmbHWritten in English · HTW Berlin · carried out at AUCOTEAM GmbH

AufgabeTask
Sicherheitsprüfungen fest in die Auslieferung von Container-Anwendungen einbauen. Hintergrund ist der EU Cyber Resilience Act, der verlangt, Schwachstellen über den gesamten Lebenszyklus zu erkennen und zu beheben.Build security checks into the delivery of containerized applications. The background is the EU Cyber Resilience Act, which requires vulnerabilities to be found and fixed across the whole lifecycle.
UmsetzungBuild
Testumgebung mit GitLab-Server, GitLab Runner und privater Registry in Docker Compose. Pipeline mit den Stufen Test, Build, Trivy-Scan, Push und Teams-Benachrichtigung, dazu ein zeitgesteuerter Scan aller Registry-Images mit Report der CRITICAL- und HIGH-Funde als Pipeline-Artefakt.Test environment with a GitLab server, GitLab Runner and a private registry in Docker Compose. Pipeline with test, build, Trivy scan, push and Teams notification stages, plus a scheduled scan of every registry image with a report of CRITICAL and HIGH findings as a pipeline artifact.
EntscheidungenDecisions
Registry: Quay.io, GitLab Registry und private OCI-Registry verglichen. Gewählt wurde die private Registry: volle Datenhoheit und weiter verfügbar, auch wenn der GitLab-Server ausfällt. Runner: Project-, Group- und Shared-Runner verglichen. Gewählt wurde der Group Runner mit Docker Executor, damit alle Projekte eines Teams isoliert, aber mit gemeinsamer Konfiguration laufen.Registry: compared Quay.io, GitLab Registry and a private OCI registry. Chose the private registry: full data sovereignty, and it stays available even if the GitLab server is down. Runner: compared project, group and shared runners. Chose a group runner with the Docker executor, so all of a team's projects run isolated but share one configuration.
ErgebnisResult
Validiert an zwei produktiven .NET-Services: einem kleineren Service mit Unit-Tests und einer größeren API mit datenbankabhängigen Integrationstests in Test-Containern. Pakete kommen aus einer privaten NuGet-Quelle. Beide Pipelines liefen stabil über alle Stufen.Validated on two production .NET services: a smaller service with unit tests and a larger API with database-dependent integration tests in test containers. Packages come from a private NuGet source. Both pipelines ran reliably through every stage.
Bachelorarbeit · 2024Bachelor's thesis · 2024
Raspberry Pi 4PythonI2CTCA9548AMPU6050HTU21DInfluxDBDockerFFT

Multisensor-Prüfstand für die TrinkwasserüberwachungMulti-sensor test rig for drinking-water monitoring

„Entwicklung und Implementierung einer Multisensorphalanx für schnelle Integrationen diverser Sensoren in einem Testaufbau“ · verfasst auf Deutschwritten in German

KontextContext
Gefördertes F&E-Projekt: Druck und Temperatur im Trinkwassernetz dauerhaft messen, um mikrobiologische Verunreinigungen früh zu erkennen.Funded R&D project: measure pressure and temperature in the drinking-water network continuously to detect microbiological contamination early.
AufgabeTask
Eine Topologie und Testumgebung entwickeln, in die sich unterschiedliche Sensoren schnell einbinden und gemeinsam auswerten lassen.Design a topology and test environment into which different sensors can be integrated quickly and evaluated together.
UmsetzungBuild
Drucksensor, zwei MPU6050 (Beschleunigung und Gyroskop) und HTU21D (Temperatur und Feuchte) über einen TCA9548A-I2C-Multiplexer an einem Raspberry Pi 4. Ein Python-Modul pro Sensor, Konfiguration über config.json, Speicherung als CSV und in InfluxDB. Die Datenbank wurde nach einem Vergleich mit PostgreSQL und KairosDB gewählt und läuft on-premise in Docker. Eine LED signalisiert, wenn ein Messwert die Grenzen verlässt.Pressure sensor, two MPU6050s (acceleration and gyroscope) and an HTU21D (temperature and humidity) on a TCA9548A I2C multiplexer connected to a Raspberry Pi 4. One Python module per sensor, configuration via config.json, storage as CSV and in InfluxDB. The database was chosen after comparing it with PostgreSQL and KairosDB, and runs on-premise in Docker. An LED signals when a reading leaves its limits.
TestTesting
Sensoren erst einzeln, dann im Verbund geprüft. 72-Stunden-Dauertest ohne Fehler auf dem Bus. FFT-Analyse der Beschleunigungsdaten, denn die Rohrvibration hängt mit der Durchflussrate zusammen.Sensors tested individually, then together. 72-hour continuous test without bus errors. FFT analysis of the acceleration data, since pipe vibration correlates with the flow rate.
Software · AUCOTEAM
C#ASP.NETREST APIKIAI

KI-Chatbot und API-SchichtAI chatbot and API layer

AufgabeTask
Einen Chatbot trainieren und sauber an die Benutzeroberfläche anbinden.Train a chatbot and connect it cleanly to the user interface.
UmsetzungBuild
Training der Chatbot-Modelle und Entwicklung der API zwischen Frontend und Backend mit .NET und ASP.NET.Trained the chatbot models and built the API between frontend and backend with .NET and ASP.NET.
Weiterer Code auf GitHubMore code on GitHubEigene Projekte in C#, Java, Python und der Quellcode dieser WebsitePersonal projects in C#, Java, Python and the source code of this website

WerdegangExperience

Beruf und AusbildungWork and education

Der vollständige Lebenslauf steht als PDF zum Download bereit.The full CV is available as a PDF download. Lebenslauf herunterladenDownload CV

  1. 07/2023 – 09/2026Berlin3 Jahre3 years

    Werkstudent SoftwareentwicklungWorking Student, Software Development

    AUCOTEAM GmbH

    • Konzeption und Umsetzung einer GitLab-CI/CD-Pipeline (DevSecOps) für Container: Test, Build, Trivy-Scan, Push in eine private OCI-Registry, Benachrichtigung in Microsoft TeamsDesigned and built a GitLab CI/CD pipeline (DevSecOps) for containers: test, build, Trivy scan, push to a private OCI registry, Microsoft Teams notification
    • Zeitgesteuerte Re-Scans aller Registry-Images auf neue CVEs, eingeführt für zwei produktive .NET-ServicesScheduled re-scans of all registry images for new CVEs, rolled out for two production .NET services
    • Multisensor-Prüfstand für ein gefördertes Trinkwasser-Projekt: Raspberry Pi 4, I2C-Multiplexer, Python, InfluxDB in DockerMulti-sensor test rig for a funded drinking-water project: Raspberry Pi 4, I2C multiplexer, Python, InfluxDB in Docker
    • F&E-Projekte zu Embedded Systems und IoT-Lösungen auf Basis von LoRaWAN und MQTTR&D projects on embedded systems and IoT solutions based on LoRaWAN and MQTT
    • Entwicklung von Softwareanwendungen mit .NET, C# und ASP.NETSoftware development with .NET, C# and ASP.NET
    • Training von KI-Chatbot-Modellen und Entwicklung der API zwischen Frontend und BackendTrained AI chatbot models and developed the API between frontend and backend
  2. 10/2024 – 09/2026BerlinAbschluss 22.09.2026Graduated 22 Sep 2026

    Master of Engineering (M.Eng.) in Computer Engineering

    HTW Berlin – Hochschule für Technik und Wirtschaft

  3. 10/2021 – 03/2024Berlin

    Bachelor of Engineering (B.Eng.) in Computer Engineering

    HTW Berlin – Hochschule für Technik und Wirtschaft

  4. 03/2022 – 12/2022Berlin

    Helfer in der FlüchtlingshilfeRefugee Aid Volunteer

    Johanniter-Unfall-Hilfe · Ukraine-Ankunftszentrum TegelUkraine arrival centre, Tegel

  5. 09/2019 – 02/2020Berlin

    Call-Center-Agent (Identitätsprüfung)Identity Verification Agent

    hello.de fürfor IDnow

    • Video-Ident: Echtheitsprüfung von Ausweisdokumenten aus aller WeltVideo identification: verified ID documents from around the world
    • Erkennung von Betrugsversuchen und Social-Engineering-AngriffenDetected fraud attempts and social-engineering attacks
  6. 09/2018 – 08/2021Berlin

    Informationstechnischer Assistent + FachabiturIT Technician Diploma + Advanced Technical College Certificate

    Staatlich geprüft · AUCOTEAM Berufsfachschule, Berlin-PankowState-certified · AUCOTEAM vocational school, Berlin-Pankow

  7. 10/2017 – 02/2018Erfurt

    Aushilfskraft LagerlogistikWarehouse Logistics Assistant

    Zalando GmbH

KenntnisseSkills

Technologien, mit denen ich arbeiteTechnology I work with

Jeweils mit dem Ort, an dem ich sie eingesetzt habe.Each listed with where I have used it.

CI/CD & DevSecOps

GitLab CI/CDGitLab RunnerTrivyCron-SchedulesTeams-Webhooks

Pipeline mit Push- und Scheduled-Scan in der Masterarbeit.Pipeline with push and scheduled scans in my master's thesis.

Container & InfrastrukturContainers & infrastructure

DockerDocker ComposeOCI RegistryLinux / UbuntuNetzwerkeNetworkingGit

GitLab, Runner, Registry und InfluxDB selbst in Containern betrieben.Ran GitLab, runner, registry and InfluxDB in containers myself.

ProgrammiersprachenProgramming languages

C#PythonCC++Bash

C# für .NET-Services, Python für Sensorik, Bash in CI-Jobs.C# for .NET services, Python for sensors, Bash in CI jobs.

Frameworks & Web

.NETASP.NETREST APINuGetHTML · CSS · JS

Anwendungen und Chatbot-API bei AUCOTEAM, dazu Webseiten wie diese.Applications and the chatbot API at AUCOTEAM, plus websites like this one.

Embedded & IoT

Raspberry PiESP32STM32ArduinoJetson NanoROSI2C · SPI · UARTMQTTLoRaWAN

Multisensor-Prüfstand, F&E-Projekte und eigene Prototypen.Multi-sensor test rig, R&D projects and my own prototypes.

Daten & AnalyseData & analysis

InfluxDBZeitreihenTime seriesCSVFFT-AnalyseFFT analysis

Sensordaten speichern und Schwingungen auswerten.Storing sensor data and analysing vibration.

Weitere KenntnisseFurther skills

JiraAutomatisierungstechnikAutomation engineeringKI / ChatbotsAI / chatbotsAutoCAD

ZertifikateCertificates

Einführung EU-DSGVOIntroduction to EU GDPRBasic Privacy TrainingFührerschein BDriving licence B

IITR Datenschutz GmbH · 10/2019

ArabischArabicMutterspracheNative
DeutschGermanFließendFluent
EnglischEnglishFließendFluent
FranzösischFrenchGrundkenntnisseBasic

Lassen Sie uns sprechen.Let's talk.

Ich suche eine Festanstellung in Softwareentwicklung, DevOps oder Embedded/IoT – in Berlin oder remote. Ich freue mich über Ihre Nachricht.I am looking for a full-time role in software development, DevOps or embedded/IoT, in Berlin or remote. I look forward to hearing from you.