Experience in architecting, implementing, and managing cloud solutions on Amazon Web Services (AWS), ensuring robust, scalable, and secure infrastructure.
Strong background in containerization technologies such as Docker and Kubernetes, with proven success in deploying and orchestrating containerized applications.
Experienced in conducting cost optimization and management strategies on AWS, achieving significant reductions in operational expenses.
Proven capability to lead cross-functional teams in agile environments, fostering collaboration and accelerating project delivery.
Overview
7
7
years of professional experience
2
2
years of post-secondary education
2
2
Certifications
2
2
Languages
Work History
AWS Cloud Engineer
Nagarro
07.2022 - Current
Collaborating on the design of AWS infrastructure, encompassing EC2 instances, IAM configurations, VPC setup, Subnet arrangements, Internet Gateway establishment, NAT Gateway/Instance implementation, VPC Peering, S3 integration, EBS provisioning, Snapshots management, Autoscaling setup, and ELB deployment, alongside Route53 configuration.
Managing and securing AWS environments by identifying potential threats using IAM Access Analyzer and establishing cross-account access roles via AWS IAM. This involves creating trust between multiple accounts and tailoring policies, including S3 permissions, alongside admin, power user, and read-only access roles, to maximize operational security and efficiency.
Implementing automated resource and cost tagging with predefined tags as part of the account pre-release process, ensuring all new resources inherit these tags upon creation to facilitate efficient management and cost tracking.
Implemented AWS EKS Ingress Controller installed via Helm, created policies, service account, and attached IAM roles. Configured access control in Ingress resource definition file, ensuring the provision of a private subnet load balancer with appropriate scheme, inbound CIDR, and security groups.
Managed traffic routing post-load balancer through target type, target node labels, and load balancer name. Ensured efficient traffic distribution and load management.
Provisioned a single load balancer for multiple Ingress resources across namespaces by granting cluster-scoped permissions to the load balancer controller, enhancing resource utilization and operational efficiency.
Deploying Cert-manager tool and AWS Certificate Management (ACM) on EKS clusters and automating SSL/TLS certificate creation with Let's Encrypt, integrating with Route 53 for secure application certification.
Understanding DNS within Kubernetes, utilizing CoreDNS for service discovery, and enhancing service and pod networking to optimize communication and reliability across distributed applications.
Implementing comprehensive authentication and authorization mechanisms within Kubernetes, including the utilization of cluster roles and cluster-role bindings, and the enforcement of role-based access control (RBAC).
Managing EKS clusters with kubectl, orchestrating pods, and leveraging Replica Sets and Replication Controllers for optimal deployment strategies.
Utilizing Kubernetes objects such as Config Maps, Secrets, labels, and selectors to ensure precise resource allocation and security, and proficient in advanced Kubernetes features including taints and tolerations, resource limits, static pods, DaemonSets, NodeSelectors, and node affinity, understanding of service types like ClusterIP and NodePort for efficient service exposure and load balancing.
Exposing to AWS Landing Zone Control Tower, AWS Organization, Service Catalog, and System Manager (SSM), prioritizing security with GuardDuty, and encryption, and enforcing compliance via IAM policies.
Utilizing Terraform for infrastructure as code (IaC), specializing in the development and management of AWS infrastructure through comprehensive Terraform scripts includes designing, coding, and deploying scalable, secure, and efficient cloud environments, leveraging Terraform to automate the provisioning and management of AWS resources effectively.
Secure Dockerfile Development, created and updated Dockerfiles from scratch, implementing security best practices, addressing vulnerabilities in base images, and ensuring the use of updated, secure components.
Cultivated expertise in Azure DevOps for optimizing Java application releases, encompassing tasks such as image building and pushing to Amazon ECR, thereby enhancing cross-platform deployment capabilities and facilitating seamless integration with AWS services.
Authored comprehensive technical documentation on Confluence, ensuring clear and accessible reference materials for team members and stakeholders, facilitating knowledge sharing and collaboration.
Cultivated familiarity with monitoring tools like DataDog, enabling proactive monitoring and efficient troubleshooting of infrastructure and application performance issues, thereby ensuring optimal operational efficiency and system reliability.
DevOps Engineer
Ciena Corporation
09.2019 - 10.2021
Successfully configured Docker as a Cloud Agent, establishing global and stage-scoped agents within Jenkins to execute diverse containers tailored for each stage, thereby optimizing resource allocation and enhancing pipeline efficiency.
Developed and managed pipelines proficiently, integrating Docker plugins to facilitate Dockerfile image creation and seamless deployment to AWS Elastic Container Repository (ECR), ensuring smooth progression throughout the development lifecycle.
Orchestrated multi-stage declarative pipelines, leveraging Docker plugins to automate the build process and streamline image deployment to AWS ECS Fargate and EC2 clusters, thereby enabling swift and reliable deployment within containerized environments using ECS agent templates.
Expanded Jenkins' capacity by setting up and configuring Linux slave nodes via SSH and harnessing the AWS EC2 plugin for dynamic scaling in cloud-based environments, enhancing resource utilization and scalability.
Developed Python automation scripts for cloud and log analysis tasks, including AWS S3 backup uploads using boto3 and shutil, and log comparison tools using regex and prettytable to parse .log files, detect deltas, and present changes in tabular format.
Engineer
Hughes Systique Corporation
04.2018 - 08.2019
Orchestrated Jenkins freestyle jobs and integrated GitHub webhooks with Jenkins, enabling automated build upon code changes.
Monitored Jenkins pipelines, promptly troubleshooting issues upon failure, and collaborated closely with developers to rectify PR concerns, ensuring seamless builds and continuous integration.
Leveraged GIT expertise to masterfully handle branching, merging, conflict resolution, and version control best practices, fostering enhanced collaboration and streamlined code management in software development initiatives.
Spearheaded the activation of GitHub Pages for repository documentation, harnessing the potential of README files to offer comprehensive project insights.