Contact

DevOps Engineer with over 8 years of experience, passionate about cybersecurity, automation, optimizing workflows, implementing CI/CD pipelines, and ensuring systems reliability.
Always eager to explore new technologies and improve existing processes for scalability and performance.
Actively involved in security research, vulnerability assessment, and secure software delivery.
I believe in continuous learning, knowledge sharing, and fostering a DevSecOps culture.

DevOps

  • Administration and maintenance of Linux/Unix systems
  • Performing system software updates and upgrades while ensuring the integrity and stability of the environment
  • Experience in cloud infrastructure management and deployment on AWS, including EC2, S3, and other core services
  • Setup, support, and maintenance of web and application servers, including SAP Commerce (hybris), Tomcat, Apache HTTP Server, Nginx etc.
  • System and log monitoring using Prometheus, Grafana and Elastic Stack, with expertise in troubleshooting system and application issues
  • Designing and implementing CI/CD solutions using Jenkins and AWS CodePipeline
  • Automating processes through scripting in Bash, Python and PowerShell
  • Experience with Terraform for infrastructure as code (IaC) and cloud resource provisioning
  • Management of MySQL databases
  • Containerization with Docker
  • Administration of data backup and restoration processes
  • Configuring and managing VPN solutions, including OpenVPN and WireGuard

Certifications

  • The Linux Foundation - Certified Kubernetes Administrator (2021) - Credly
  • CloudBees - Certified Jenkins Engineer (2018) - CloudBees

Security

Reported critical security vulnerabilities on web applications to over 70 organizations, including companies listed in Forbes 100 and government institutions, through responsible disclosure and bug bounty programs

Certifications

  • Hack The Box - Certified Bug Bounty Hunter (2025) - Credly
Certified Bug Bounty Hunter (CBBH) - Ionut Gavrilut


Platforms

HackerOne: @igavri
Intigriti: @igavri
Bugcrowd: @igavri
YesWeHack: @igavri

Halls of Fame & Acknowledgements

A selection of public acknowledgments I've received from companies for identifying and reporting security vulnerabilities as part of responsible disclosure programs

Philips (2025)

https://www.philips.com/../hall-of-honors.html

Bosch Websites (2025)

https://psirt.bosch.com/hall-of-fame/websites-hall-of-fame.html

SAP (March 2025)

https://support.sap.com/../credits-for-security-researchers.html

PostNL (2025)

https://www.postnl.nl/en/responsible-disclosure/#halloffame

Honeywell (2025)

https://www.honeywell.com/../product-security#acknowledgments

Ericsson (2025)

https://www.ericsson.com/../acknowledgements

A.S. Watson Group (2024, "Your Data is My Data" achievement | Username: @igavri)

https://hackerone.com/watson_group

+ Walmart, Coca-Cola, Red Bull, Nestlé, Pfizer, Sony, John Deere, Henkel, and others

Bug Bounty Rewards

A collection of branded rewards and swag received from various companies as part of bug bounty and responsible disclosure programs