Solutions Architect | Devops & Cloud Security Engineer
Current• Integrated cloud monitoring tools like Prometheus and Grafana for system health visibility and alerting.• Hands-on experience designing a well-architected multi-account baseline using the AWS control tower to create a landing zone, SCP, and guardrails.• Designed and deployed secure cloud architectures using Terraform across AWS, Azure, and GCP, ensuring compliance with CIS benchmarks and organizational security standards.• Implemented Kubernetes security policies, including Kyverno, to enforce workload isolation, secure images, and restrict privileged access.• Developed custom scripts in Bash and Python to automate cloud operations and perform routine tasks efficiently.• Architected and deployed secure AWS cloud solutions using Palo Alto Networks VM-Series and Prisma Cloud, ensuring comprehensive protection against threats and vulnerabilities, • Experience in Amazon Cloud Services (AWS) creating features like EC2, VPC, IAM, VPC, EBS, AMI, APIs, Route 53, snapshots, Autoscaling, Cloud watch, CloudTrail, CloudFront, SSM, SQS, SNS, RDS, Cloud Watch, S3, API Gateways, Autoscaling, ALB, NLB, Lambda, Security groups using Terraform, CloudFormation and CLI• Managed and orchestrated Kubernetes clusters on Amazon EKS, allowing seamless containerization, scaling, and automation of microservices-based applications.• Implemented Single Sign-On (SSO) and Multi-Factor Authentication (MFA) mechanisms to fortify user authentication and ensure secure access.• Collaborated with cross-functional teams to monitor AWS resources, set up effective alerting mechanisms, and optimize cloud infrastructure for performance and cost efficiency.• Designed secure CI/CD pipelines with GitLab CI and Jenkins, embedding security scanning into the build process.• Wrote Ansible playbooks to implement policy as code, ensuring infrastructure complies with security best practices.• Managed IAM roles and policies across cloud environments to enforce least-privilege access.