Platform Engineer
System Design, IDP, Multi-Tenancy, GitOps und Interview-Case-Studies.
Mindset & Organisation
Platform as Product, Team Topologies
Was ist Platform Engineering?
Definition, IDP-Konzept, Platform-as-Product und Abgrenzung von reinem Infra-Betrieb.
Platform as a Product
Roadmaps, SLAs, Stakeholder-Management und wie du interne Plattformen wie ein Produkt führst.
Team Topologies und Organisationsdesign
Stream-Aligned, Platform, Enabling und Complicated-Subsystem Teams — und Conway's Law.
Platform Engineer vs. DevOps vs. SRE
Rollenabgrenzung, Schnittstellen und wie die Disziplinen zusammenwirken.
Golden Paths, Cognitive Load und Thin Platforms
Paved Roads designen, Escape Hatches, Abstraktionsgrenzen und TVP in der Praxis.
System Design
Architektur, ADRs, Trade-offs
System Design Framework für Platform Engineers
Strukturiertes Vorgehen für Plattform-Architektur: Requirements, Constraints, Trade-offs und Dokumentation.
Developer Journey Mapping und Anforderungsanalyse
Pain Points entlang der Developer Journey identifizieren und in Platform-Capabilities übersetzen.
Reference Architecture: Kubernetes-basierte IDP
Schichtenmodell, Komponenten und Integrationspunkte einer produktionsreifen K8s-IDP.
Landing Zones und Cloud Foundation Design
Account-Struktur, IAM, Netzwerk-Baseline und Guardrails als Fundament der Plattform.
Multi-Cluster und Multi-Region Architektur
Cluster-Federation, Traffic-Routing, Daten-Replikation und DR über Regionen hinweg.
Build vs. Buy vs. Adopt — Technologie-Entscheidungen
Entscheidungsframework für Portal, GitOps, Policy und weitere Plattform-Komponenten.
Architecture Decision Records für Plattform-Teams
ADRs schreiben, versionieren und als lebendige Plattform-Dokumentation nutzen.
Internal Developer Platforms
Portale, Golden Paths, DevEx
IDP-Komponenten: Portal, Catalog, Scaffolding
Die Bausteine einer Internal Developer Platform und wie sie zusammenspielen.
Backstage: Software Catalog und Templates
Backstage als IDP-Referenz: Catalog, Scaffolding, Plugins und Betrieb.
Golden Paths designen und versionieren
Paved Roads als versionierte Produkte: Lifecycle, Deprecation, Migration.
Self-Service Provisioning Patterns
Infrastructure-on-demand: GitOps, Crossplane, Terraform-Module und Approval-Flows.
Developer Experience Metriken
SPACE Framework, DX Core, Surveys und datengetriebene Platform-Roadmaps.
Platform API Design und Developer Contracts
APIs, CRDs und Contracts zwischen Platform- und Stream-Teams.
Multi-Tenancy
Isolation, FinOps, Environments
Tenancy-Modelle: Shared, Dedicated, Hybrid
Isolation vs. Kosten: Tenancy-Strategien für Enterprise-Plattformen.
Isolation: Namespace vs. Cluster vs. vCluster
Technische Isolationsebenen und wann welche sinnvoll ist.
Resource Governance, Quotas und FinOps
Fairness, Chargeback, Showback und Kostenallokation auf Plattform-Ebene.
Network-Segmentierung in Multi-Tenant Plattformen
Zero-Trust-Netzwerkdesign, Mesh und Tenant-Grenzen.
Environment-Strategien: Dev, Staging, Production
Environment-Sprawl vermeiden, Promotion-Pipelines und Daten-Isolation.
Capacity Planning und Skalierungs-Architektur
Forecasting, Headroom, Cluster-Sizing und Elasticity auf Plattform-Ebene.
Plattform-Automation
GitOps, IaC, Policy-as-Code
GitOps als Plattform-Betriebsmodell
Pull vs. Push, Repo-Struktur, App-of-Apps und Fleet-Management.
Platform Bootstrap und Day-2 Operations
Cluster-Lifecycle, Addons, Upgrades und operativer Betrieb der Plattform.
Terraform, Crossplane und IaC-Strategien
Wann Terraform, wann Crossplane — und wie Platform-Teams IaC kuratieren.
Policy-as-Code: OPA, Kyverno, Guardrails
Policies ohne Ticket-Factory: Validierung, Mutation, Audit.
CRDs, Operators und Platform Controllers
Custom Resources als Platform-API: Design, Lifecycle, Versionierung.
Package Layer: Helm, Kustomize, OCI Artifacts
Wiederverwendbare Plattform-Pakete und Artifact-Management.
Plattform-Services
Compute, Observability, CI/CD
Compute-Abstraktion: Environments statt Raw Cluster
Entwickler sehen Environments, nicht Kubernetes — Abstraktionsdesign.
Observability-as-a-Service für Tenants
Metriken, Logs, Traces als Self-Service-Capability der Plattform.
CI/CD Build Platform und Shared Infrastructure
Shared Runners, Caching, Artifact-Registry und Pipeline-Standards.
Identity, SSO und Secrets als Plattform-Service
Zentralisierte Identity, Vault, External Secrets und Workload Identity.
Daten- und Messaging-Capabilities als Service
DBaaS, Kafka-as-a-Service und Data-Platform-Patterns auf K8s.
Reliability & Betrieb
SLOs, Incidents, DR
SLIs, SLOs und Error Budgets für Plattform-Services
Reliability-Targets für interne Plattformen und Error-Budget-Politik.
Incident Management für Platform Teams
Severity, Kommunikation, Postmortems und Plattform-spezifische Incidents.
Upgrade-Strategien und Blast-Radius-Kontrolle
K8s-Upgrades, Canary-Cluster, Rollback und Change-Risiko.
Platform On-Call, Runbooks und Toil-Reduktion
Runbook-Design, Escalation, Toil-Messung und Automatisierung.
Disaster Recovery für Plattform-Infrastruktur
RTO/RPO, Backup-Strategien, Multi-Region-Failover für die Plattform.
Security & Compliance
Zero Trust, SOC2, Governance
Shared Responsibility auf Plattform-Ebene
Wer ist verantwortlich für was — Platform vs. Stream-Team vs. Security.
Zero Trust für Internal Developer Platforms
mTLS, Identity everywhere, least privilege auf Plattform-Ebene.
Compliance-by-Design: SOC2, ISO 27001, BSI
Regulatorische Anforderungen in Plattform-Architektur einbauen.
Supply Chain Security für Platform Teams
SBOM, Image-Signing, Admission Policies und Artifact-Trust.
Access Governance und Audit in Multi-Tenant Umgebungen
RBAC-Design, Break-Glass, Audit Trails und Access Reviews.
System Design & Interview
Case Studies, Mock Interviews
System Design Interview: Framework und Vorgehen
Strukturiertes Vorgehen für Platform-System-Design-Interviews.
Case Study: Multi-Tenant K8s-Plattform für 100 Teams
End-to-end System Design: Anforderungen, Architektur, Trade-offs.
Case Study: IDP für Enterprise mit 500+ Entwicklern
Skalierung, Organisation, Portal, Golden Paths — kompletter Walkthrough.
Case Study: Legacy-Migration zur Internal Platform
Strangler Pattern, Team-Adoption, Risiko-Management bei Migration.
Mock Interview: Typische Fragen und Antwortstrategien
Die häufigsten Platform-Engineer-Interview-Fragen mit Antwortmustern.