Portfolio summary
I work across a range of industries, including industrial, maritime, automotive, fintech, telecom and the public sector, delivering cloud and backend solutions at varying scales - from single-service proofs of concept to platforms comprising 20+ applications. My focus is on pragmatic, maintainable architectures that balance technical quality with real-world constraints and can evolve alongside organisations and teams.
Adapting to domain and scale
My approach is based on domain-agnostic architectural principles such as clear separation of concerns, modular services and well-defined APIs. This enables solutions to be adapted across domains without excessive customisation. Engagements typically begin with focused prototypes to validate assumptions quickly, followed by a structured transition to production through infrastructure as code, CI/CD pipelines and observability. I place strong emphasis on team enablement through mentoring and architecture reviews, while incorporating cost and performance considerations early to support sustainable operations.
Outcomes you can expect
Clients can expect rapid validation through proofs of concept, controlled and reliable production rollouts, repeatable infrastructure and deployment patterns, improved observability and effective knowledge transfer that enables teams to maintain and evolve solutions independently.
Products
Runless - AWS ECS Cost Optimisation SaaS
Runless is a SaaS product built and operated by CloudSoft that automatically manages AWS ECS clusters to reduce cloud costs by up to 70%. It targets teams and companies that run ECS workloads continuously but only need them during business hours or specific time windows.
Key capabilities:
- Smart Scheduling - define custom on/off schedules per cluster or per service, including business-hours automation and weekend handling
- Manual Control - instant ON/OFF toggle from a mobile-friendly dashboard with bulk operations support
- Cost Analytics - real-time savings tracking, usage reports and cost forecasting
- Zero Downtime Setup - 15-minute installation via a CloudFormation template; no code changes required and easy uninstall
- Security & Compliance - IAM role-based access, WAF protection, CloudTrail integration and complete audit logs
- Low Cost Architecture - fully serverless; pay only for what you use with no dedicated servers to maintain
Technology stack: React/Vite frontend, AWS CDK infrastructure, Node.js Lambda backend, AWS Amplify (Cognito auth + AppSync GraphQL API), deployed on your AWS account.
Runless is available as a self-service product starting at $25/deployment/month. Enterprise plans with custom integrations and priority support are available on request.
➜ Visit runless.cloud to get started or learn more.
CRA Desk - Cyber Resilience Act Readiness SaaS
CRA Desk is a SaaS product built and operated by CloudSoft that helps small EU software vendors meet the Cyber Resilience Act (Regulation (EU) 2024/2847). It targets software houses and ISVs of 10-50 people that ship products into the EU market and have no dedicated application-security function. Two dates drive it: the reporting obligation applies from 11 September 2026, the rest of the regulation from 11 December 2027.
Key capabilities:
- Scope Classifier - determines whether a product is in scope and which class applies, covering all 26 Annex III and Annex IV categories with citations to the article behind every verdict; runs in the browser with nothing uploaded
- SBOM Ingest from CI - a free scanner for GitHub Actions and GitLab CI/CD turns a CycloneDX or SPDX SBOM into a readiness report in the job summary; optional upload into the panel with a per-tenant token
- Continuous Vulnerability Watch - stored SBOM components matched against the OSV corpus and CISA KEV, with e-mail alerts; matching is deterministic and explainable, never a black-box score
- Article 14 Reporting Workflow - 24h / 72h / final-report timers with pre-filled report drafts per stage. Nothing is ever submitted automatically - a human reviews the draft and files it with ENISA
- Document Generators - coordinated vulnerability disclosure policy,
security.txt(RFC 9116) and an Annex VII technical-documentation skeleton, versioned per regulation revision - Regulation as Data - classification rules, deadline schedules and templates are versioned content with article citations, so a change in the acts produces a new version rather than rewriting artefacts already issued to customers
Technology stack: React/Vite frontend, AWS CDK infrastructure, Node.js Lambda backend, AppSync GraphQL API with Cognito authentication, DynamoDB single-table storage encrypted with a dedicated KMS key, S3 and CloudFront. Operated by CloudSoft as a multi-tenant service; the CI scanner is Apache-2.0 and runs on the customer's own runner.
CRA Desk is self-service: a Free plan covers one product with the document generators, Starter is 29 EUR/month and Team 99 EUR/month (net) for more products, multiple users, SBOM diff and the Annex VII skeleton. Enterprise terms are available on request.
➜ Visit cradesk.eu to check your scope, or run the free scanner in your pipeline.
CRA Desk is a compliance aid, not legal advice, and never files anything with ENISA or a CSIRT on a customer's behalf.
Ready to discuss your project?
Interested in working together? Visit the Contact page or email contact@cloudsoft.com.pl to get started.