Build or change business-critical systems without losing control.

I design and deliver infrastructure, platforms, and production AI, from target architecture to stable operations. Most engagements start in one of four situations:

  1. A new platform is moving from design into delivery.
  2. Cost, control, or regulation is changing where systems run.
  3. Platform changes have become slow or risky.
  4. AI has to move from prototype to production.

Robin Winkelewski · Berlin · Previously SAP and SysEleven

10+ years in production · 1,200 teams served · BSI IT-Grundschutz projects

30-minute working session. No pitch, no commitment.

What I build.

One architecture, across three connected layers.

Infrastructure

Workloads run where cost, control, and regulation make sense for the business, with the trade-off written down.

  • Workload placement across bare metal, hyperscaler, or sovereign cloud
  • Compute, GPU, network, and storage delivered as code
  • Portable foundations with explicit exit paths

Platform

Changes ship faster without making the platform harder to operate after go-live.

  • Kubernetes delivered as code across environments
  • GitOps and CI/CD, with auditable changes and reversible deployments
  • SLOs, alerting, and runbooks agreed before handover

Production AI

AI workloads reach production under your data rules, on infrastructure you control.

  • LLM inference at production scale, on-premises or in private cloud
  • Retrieval and agent systems designed for evaluation, cost, and operations
  • OpenAI-compatible endpoints that reduce coupling to one model provider

Selected work.

Three systems, and my role in each.

Cloud architect and platform engineer at SAP · 5 years

Enterprise platform and migrations

teams served
1,200
data moved
1.5 PB
cutover window
1 h

Three on-premises-to-cloud migrations at SAP. The largest covered more than 100 million artifacts and 1.5 PB; final cutover completed inside one hour. The migrations had no unplanned downtime, and platform validation fell from 40 minutes to 90 seconds.

Cloud security architect at SysEleven · secunet group

Security architecture for classified workloads

IT-Grundschutz
BSI
OpenShift
Air-gapped
data exchange
Cross-domain

Security architectures for classified government workloads: zone models, protection-requirement analysis, and controlled exchange across security boundaries. Compliance was a design input, not a pre-launch retrofit.

Built and operated by me

RootVector reference AI platform

inference
Multi-GPU
delivery
Declarative
placement
Bare metal + cloud

A production reference platform spanning Kubernetes, distributed storage, GitOps, and multi-GPU inference. Placement follows data, risk, control, and cost requirements; the system stays reproducible and under operator control.

More on the background behind this work

How the work stays yours.

You work directly with me. Decisions stay explicit, and the result stays operable without me.

Independent judgment

No vendor commissions, partner quotas, or product to place. The recommendation is the one I would be willing to operate myself.

Evidence before decisions

Every engagement starts with a documented target architecture. Delivery translates decisions made in the open, against measurements rather than assumptions.

No dependency by design

Access, source, diagrams, and runbooks stay with you. The work is finished when your team can operate the result without me.