Tạ Minh Trí

Tạ Minh Trí

DevSecOps & Site Reliability Engineer

10+ years of progressive experience in enterprise infrastructure and DevOps engineering, specializing in financial services, securities trading systems, and cloud-native technologies. Expert in building resilient, secure, and scalable solutions for mission-critical applications.

About Me

I am a seasoned Lead DevSecOps Engineer with over a decade of experience in enterprise infrastructure and financial services. Currently serving as Lead DevSecOps at VFS Securities, where I architect and implement secure, scalable infrastructure solutions. Previously at SHS, I successfully re-architected product development processes and implemented cutting-edge cloud-native solutions.

My expertise encompasses AWS cloud platforms, Kubernetes orchestration, CI/CD automation, and financial technology solutions. I specialize in high-frequency trading systems, real-time processing, and enterprise-grade infrastructure supporting millions of transactions daily.

I am a Golang engineer specializing in GraphQL with gqlgen, gRPC, REST APIs, and event-driven systems. I deliver security-first, resilient cloud-native platforms (containers, Kubernetes) using Infrastructure as Code and SRE practices (observability, reliability, incident response, automation). Certifications: CEH, CCNP, CCNA. Bilingual collaboration across technical and business stakeholders.

Tạ Minh Trí

Industry Expertise

Financial Services

Securities trading systems, digital banking platforms, and fintech solutions supporting millions of transactions daily.

High-Frequency Trading

Real-time processing, low-latency systems, and market data handling for 10M+ daily transactions.

Enterprise Architecture

Microservices, event-driven architecture, and API-first design for large-scale distributed systems.

Cloud Migration

Multi-cloud strategies across AWS and CMC Cloud, lift-and-shift, and cloud-native transformation initiatives.

DevSecOps

Security integration, compliance automation (SOC2, PCI DSS, ISO 27001), and vulnerability management throughout the SDLC.

Site Reliability Engineering

SLA/SLO management, incident response, capacity planning, and full-stack observability with Prometheus, Grafana, and ELK.

Professional Journey

Jul 2025 - Present

Lead DevSecOps

VFS Securities

Leadership FinTech
  • Lead multi-environment development process implementation
  • Architect AWS cloud infrastructure for lending projects
  • Implement high-availability PostgreSQL with Patroni
  • Deploy enterprise middleware infrastructure solutions
  • Build CI/CD pipelines with Jenkins for financial services

Feb 2024 - May 2025

Lead DevSecOps

Saigon - Hanoi Securities (SHS)

Architecture Securities
  • Re-architected product development processes
  • Built enterprise messaging system with Kafka & mTLS
  • Deployed on-premise Kubernetes clusters with Istio
  • Implemented configuration management with Vault

Jan 2022 - Feb 2024

Infra, DevOps, SRE

TPBank

Banking SRE
  • Operated ~100 microservices for E-Banking platform
  • Built and managed API Gateway infrastructure
  • Optimized Oracle database performance for high-load
  • Built OKD and OCP OpenShift container platforms

Jan 2016 - Dec 2021

Engineer, SA, Developer, Operator

Hanoi University of Science & Technology

Engineering Architecture
  • Designed enterprise virtualization infrastructure
  • Implemented secure DMZ network architecture
  • Developed and operated enterprise systems

Technical Arsenal

Cloud & Infrastructure

Kubernetes (Expert)
AWS (EKS, ECS, EC2, S3, RDS)
CMC Cloud

Programming & APIs

Golang + GraphQL/gRPC
Shell Scripting
Python / Java

DevOps & Automation

CI/CD (Jenkins, ArgoCD, GitLab)
IaC (Terraform, Ansible)
Docker / Podman

Database & Storage

PostgreSQL / MySQL / Oracle
Redis / MongoDB / ES
MinIO / Ceph / GlusterFS

Monitoring & Observability

Prometheus / Grafana
ELK Stack / Loki / Fluentd
Jaeger / Zipkin / Sentry

Security & Compliance

Vault / SOPS / Trivy
Network Security / Zero Trust
SOC2 / PCI DSS / ISO 27001

Technology Stack

Kubernetes Docker Golang + GraphQL AWS Kafka Redis Jenkins ArgoCD Prometheus Grafana Istio Vault OpenShift Terraform PostgreSQL ELK Stack HAProxy Financial Services CMC Cloud Ansible GitLab CI GitHub Actions RabbitMQ NATS Kong Apisix MongoDB gRPC Patroni Debezium Loki SonarQube Trivy

Notable Projects

Enterprise DevSecOps Transformation

VFS 2025

Complete infrastructure modernization on CMC Cloud & AWS with 3-tier environments (SIT/UAT/PROD). Jenkins CI/CD for 50+ microservices at 99.9% success rate. GraphQL migration from REST achieving 45% performance improvement.

Golang Kubernetes Jenkins Terraform AWS EKS

Oracle → PostgreSQL Data Pipeline

VFS 2025

Built Oracle-PostgreSQL pipeline combining Kafka CDC (raw) and custom Golang aggregation services, ensuring data consistency for 1 million records daily.

Golang Kafka CDC Debezium PostgreSQL

Real-time Trading Infrastructure

SHS

High-performance Kubernetes clusters handling 10M+ daily transactions. Comprehensive observability with Prometheus/Grafana and full ELK stack. Istio service mesh with mTLS.

Kubernetes Istio Prometheus ELK Stack

Go Image Cleanup

Open-source automated container image cleanup utility for Kubernetes clusters with CRI-O runtime. Reduced disk usage by 35% across all environments.

Golang Kubernetes CRI-O Open Source

Digital Banking Platform

TPBank

Operated ~100 microservices for E-Banking platform. Built OpenShift OKD/OCP container clusters, optimized Oracle database performance, and established API Gateway infrastructure for high-load financial transactions.

OpenShift Oracle Kafka Jenkins

HA Middleware Stack

VFS 2025

Deployed high-availability middleware for financial services: Redis Sentinel, Kafka Kraft mode, NATS messaging, and PostgreSQL with Patroni for automatic failover.

Redis Sentinel Kafka Kraft NATS Patroni

Education & Certifications

Education

Master's Degree

Computer Network and Data Communication

Hanoi University of Science and Technology

2018 - 2020

Engineer's Degree

Computer Engineering

Hanoi University of Science and Technology

2010 - 2015

Certifications

CEH

Certified Ethical Hacker

2015

CCNP

Cisco Certified Network Professional

2013

CCNA

Cisco Certified Network Associate

2012

Let's Build Something Amazing

I'm always excited to discuss new projects, innovative ideas, or opportunities to create exceptional infrastructure solutions.