Mathew Fleisch
Senior Infrastructure & DevOps Engineer from San Francisco
Infrastructure and DevOps engineer dedicated to building scalable abstractions, standardizing environments, and streamlining CI/CD pipelines at scale. I specialize in creating robust developer tooling and believe that solid testing and automation are the foundation for delivering secure, high-performance software.
View ResumeExperience
Senior Infrastructure Engineer @ Workday (PIE Team)
2023 - PresentBuilding scalable abstractions and standardized infrastructure for the Platform Infrastructure Engineering team, marking five years of total tenure at Workday across multiple specialized platform teams.
- Standardized Amazon EKS configurations using a custom Terraform and Cookiecutter abstraction layer.
- Engineered cloud-native CI/CD pipelines with Tekton and Argo Workflows for global infrastructure and application deployments.
- Built a GitHub webhook routing application with custom approval logic to automate production promotion pipelines.
- Standardized build automation for application stacks including Go, Python, Java, and Node.js.
- Developed SOC-compliant release processes and a custom MCP server for AI-driven infrastructure visibility.
- Participated in on-call rotation for mission-critical global platforms.
Senior Infrastructure Engineer @ Workday (Scylla Team)
2021 - 2023Maintained an automated platform for deploying the Workday stack on multi-cloud Kubernetes clusters.
- Led a large-scale migration of legacy infrastructure from AWS to GCP to enable multi-cloud capabilities.
- Developed automated build and deployment pipelines for Go, Python, Java, and Node.js across multi-cloud environments.
- Managed custom Kubernetes operators for automated provisioning of cloud storage and databases.
- Automated FedRAMP-compliant image updates and built cloud-agnostic end-to-end test suites.
- Participated in on-call rotation for high-availability production systems.
Senior Infrastructure Engineer @ Sysdig
2020 - 2021Focused on developer velocity and infrastructure automation for a multi-cloud monitoring platform.
- Migrated JFrog Artifactory to a Kubernetes/S3 architecture, handling 1TB of data with zero downtime.
- Built a GitOps pipeline using GitHub Actions to automate Kops cluster provisioning and full-stack deployments.
- Integrated BashBot for ChatOps, enabling on-demand environment management via Slack.
- Participated in on-call rotation for distributed systems across AWS and IBM Cloud.
-
Eaze — Senior Infrastructure Engineer 2018 - 2020
Transformed legacy, "snowflake" infrastructure into modern, repeatable environments using Terraform. Developed BashBot to enable developers to provision and destroy on-demand sandbox environments directly from Slack.
-
Apple — Full Stack Developer (Marketing) 2017 - 2018
Stabilized and secured a high-traffic web application while maintaining an internal content management system. Added robust logging and debugging features to facilitate a smooth transition to a new platform.
-
Hitachi America — JavaScript Developer 2017
Developed a NodeJS-based user interface for an IoT analytics platform, integrating internal tools with Node-RED to visualize sensor data and device status in real-time.
-
Apple — Full Stack Developer (Finance) 2015 - 2016
Built internal secure communication and document-sharing tools using the LAMP stack (CodeIgniter) and Drupal. Developed parallelized data recovery scripts to restore critical information for global finance teams.
-
UBM — Back-End Developer 2011 - 2015
Developed the "Schedule Builder" application for major conferences including Black Hat and the Game Developers Conference (GDC), enabling thousands of attendees to manage personalized session agendas.
-
Buck Institute for Research on Aging — Staff Programmer 2009 - 2012
Automated bioinformatics pipelines and developed web interfaces for molecular response quantification and genomic analysis, directly supporting peer-reviewed research on human aging.
During my tenure at the Buck Institute, I co-authored research papers on bioinformatics and aging:
Skills
I maintain a hybrid k3s home lab across ARM64 and x86_64 nodes, using it as a testing ground for infrastructure-as-code and GitOps. I leverage Ansible for cluster provisioning, ArgoCD for continuous delivery, and custom GitHub Action runners to automate the rendering and deployment of static sites through Nginx. The four node kubernetes cluster is comprised of two raspberry pis and two nucs that also hosts various Slack and Discord bots I have written (see the Open Source section below).
Platform & Infrastructure
Automation & CI/CD
Languages & Monitoring
Open Source
BashBot
An extensible Slack bot written in Go for executing bash commands via RTM. Used for ChatOps and triggering infrastructure workflows.
AGIMUS
Standardized a monolithic Python Discord bot into an extensible library. Features a MySQL backend, CI/CD via GitHub Actions and KinD tests.
asdf Plugins
Maintainer of numerous asdf-vm plugins (ArgoCD, AWS CLI, Tekton, etc.) ensuring ARM64 compatibility for local development on Raspberry Pi.
Advent of Code
Solutions for the annual Advent of Code programming challenges, primarily implemented in Bash to push the limits of shell scripting.
BashBunny Payloads
Penetration testing payloads for the Hak5 BashBunny. Includes GitBunnyGit for managing device payloads and TwoStageMac for scripted exfiltration.
Badge Tetris
A Python port of Tetris for a DEF CON 26 third-party electronic badge, utilizing its LED matrix and accelerometer via serial connection.
Creative Works
Where engineering meets art. These cinematic timelapses are captured from the CBS/Salesforce Tower webcams in San Francisco, sped up in iMovie, and paired with original tracks produced in Logic Pro.
View the full collection on my YouTube Channel.
Music on Spotify
Interactive: Column Sorting Game
See the Pen Column Sorting Game by Mathew Fleisch (@mathew-fleisch) on CodePen.