Accomplished DevOps Engineer at Hisan Labs Pvt. Ltd. with expertise in AWS and CI/CD pipelines. Spearheaded cloud infrastructure automation using Terraform, enhancing deployment efficiency and reliability. Fostered collaboration across teams, driving continuous improvement and mentoring peers. Proficient in Docker and Kubernetes, ensuring scalable and secure application environments.
Ranked in Top 10% of class
73%
AWS Academy Graduate - AWS Academy Cloud Foundations
AWS Academy Graduate - AWS Academy Cloud Architecting
AWS Educate Introduction to Cloud 101
3 Tier Architecture in AWS
github.com/arihant178/3-Tier-Application-Deployment • March 2025 - March 2025
• Built a production-grade 3-tier architecture on AWS, deploying Nginx (frontend), Apache Tomcat (application), and RDS MySQL (database) in isolated subnets.
• Provisioned custom VPC, with public and private subnets, route tables, Internet Gateway, and NAT Gateway, ensuring secure and scalable networking.
• Configured Nginx reverse proxy to securely route traffic from the presentation layer to the backend application layer.
• Secured backend and database tiers using private subnets and security groups, reducing attack surface and enabling least-privilege access.
Demonstrated infrastructure design aligned with real-world cloud security and high-availability standards, replicable solutions
Secure Software Development Life Cycle (SSDLC)
github.com/arihant178/SSDLC • April 2024 - June 2024
• Designed and implemented a complete SSDLC framework with integrated security testing tools to detect vulnerabilities early in the development lifecycle.
• Automated security scans using SAST and DAST tools within a Jenkins-based CI/CD pipeline, improving vulnerability detection coverage by 80%.
• Enforced OWASP Top 10 coding standards and implemented dependency scanning, eliminating critical CVEs from production.
• Containerized application environments using Docker, ensuring reproducibility and secure deployment across stages.
• Configured alerting and compliance reporting to notify developers of failed security checks, fostering a proactive security culture.
• Advanced DevSecOps adoption by enabling security, cutting down post-deployment security fixes by 60%.