DoneRight · Infrastructure & DevSecOps

Infrastructure, done right.

Resilient, automated, secure platforms at scale. We engineer cloud-native infrastructure and wire security into every layer — so your teams ship faster with less risk.

12+ Years experience
60% Infra cost reduced
10+ Platforms built
Kubernetes Terraform Vault Observability CI/CD

Expertise

What we work with

A full-stack infrastructure toolkit, built from 12+ years running high-load, cloud-native platforms.

Cloud & Network

AWS EKS/ECS RDS / Aurora ElastiCache Redshift VPC

IaC & Config

Terraform Terragrunt Ansible

Orchestration

Kubernetes Docker Helm Werf Argo

CI/CD

GitHub Actions GitLab CI Jenkins TeamCity

Observability

Prometheus Grafana Loki Thanos VictoriaMetrics

Security

HashiCorp Vault Network policy DevSecOps

AI & Automation

AI workflows LLM integration Agentic tooling Toil elimination

DevSecOps

Security, engineered in — not bolted on.

Reliability, security and scalability are designed intentionally, from the first commit to production runtime. Security runs through the whole delivery lifecycle:

01

Secrets & identity

HashiCorp Vault, least-privilege IAM and short-lived credentials — no long-lived secrets in code or pipelines.

02

Supply-chain & images

Scanned and signed container images, dependency and SBOM hygiene, reproducible builds you can trust.

03

Runtime & network policy

Kubernetes network policies, segmentation and policy-as-code that contain blast radius by default.

04

Secure CI/CD

Security gates, secret scanning and least-privilege deploy roles wired directly into delivery.

05

Observability as security

Metrics, logs and traces feeding detection, SLOs and faster, calmer incident response.

06

Compliance readiness

Auditable, automated controls — so audits become a report, not a fire drill.

Services

How we work with you

Senior infrastructure and DevSecOps capability, available the way you need it.

Fractional infra leadership

A part-time Head of Infrastructure and DevSecOps lead for startups and scale-ups — senior ownership without a full-time hire.

  • Roadmap, hiring and standards for your infra function
  • Hands-on architecture decisions and reviews
  • Security and reliability owned end to end

Cloud & infra architecture

Cloud-native design, migrations and Infrastructure as Code that scale with your product instead of fighting it.

  • Terraform / Terragrunt IaC from the ground up
  • Kubernetes platforms (EKS/ECS), Helm, Argo
  • Migrations off legacy or bare metal to automated cloud

DevSecOps implementation

Security engineered into the delivery pipeline and runtime — not bolted on after an audit.

  • Secrets management with HashiCorp Vault and least-privilege IAM
  • Security gates, secret scanning and signed images in CI/CD
  • Kubernetes network policy and runtime segmentation

Cost & reliability optimization

Right-sizing, observability and SLOs that cut spend and incidents at the same time.

  • Infrastructure cost reductions (up to 60% on past engagements)
  • Observability with Prometheus, Grafana, Loki, Thanos
  • SLOs, alerting and incident readiness

Products

Products are on the way.

DoneRight is building its own infrastructure products — the same automation and DevSecOps thinking we bring to clients, packaged as software. The first one is in the works.

Get notified

About

Led by Aleksandr Remniov

DoneRight is the practice of Aleksandr Remniov — an automation-driven engineering manager with 12+ years across infrastructure, DevOps and security. The work spans cloud-native architecture, Infrastructure as Code, Kubernetes ecosystems and observability — plus AI-based workflows that eliminate toil and accelerate delivery.

  1. Infrastructure Head / Engineering Manager · Hubstaff
    2023 — Present

    Company-wide infrastructure refactoring and automation; founded and scaled the Data Analytics team; led a full marketing-frontend transformation.

  2. Head of Infrastructure · Cere Network
    2020 — 2022

    Refactored legacy infrastructure into fully automated cloud-native architecture on AWS (EKS, Lambda, Terraform).

  3. Lead Infrastructure Engineer · Lion Studios
    2022

    Built infrastructure for newly launched products from day one; cut infrastructure costs by over 60% through right-sizing and scaling.

  4. Infrastructure Tech Lead · BrainQ
    2019 — 2023

    Owned the full infrastructure landscape across web, mobile and data platforms on bare metal and AWS.

  5. Head of Infrastructure · iMlab
    2019 — Present

    Designed the entire infrastructure from the ground up for mission-critical financial web and mobile applications.

Certifications
AWS Cloud PractitionerGoogle Professional Cloud ArchitectICAgile Certified Professional

Let's build something resilient.

Open to consulting, fractional leadership and interesting infrastructure problems.