Results-driven AWS Cloud Engineer adept at optimizing IAM policies and enhancing cloud security. Achieved a 30% reduction in policy misconfigurations through automation and audits. Proficient in AWS services and CI/CD tools, with strong problem-solving skills and a focus on compliance and access management.
Overview
3
3
years of professional experience
1
1
Certification
Work History
AWS Cloud Engineer
Tata Consultancy Services (TCS)
Chennai
04.2022 - Current
Managed and configured IAM roles and policies in AWS to ensure the security of cloud resources and restrict access based on the principle of least privilege.
Reduced IAM policy misconfigurations by 30% through regular audits and automation.
Created and optimized IAM policies (JSON) to define precise user permissions.
Developed and maintained cross-account access policies to securely allow shared access to resources across different AWS accounts.
Conducted regular IAM audits to review user access patterns and identify any unnecessary or excessive permissions, ensuring compliance with security policies.
Assisted with automating IAM user provisioning and de-provisioning workflows using Lambda and CloudWatch to ensure that access is granted and revoked based on business needs and employee lifecycle events.
Created and maintained custom IAM roles for different teams, departments, or job functions, ensuring appropriate access segregation and minimizing security risks.
Managed access to other AWS services like Amazon S3, EC2, Lambda, RDS, and VPC by defining specific IAM roles for secure resource access within different environments (production, staging, development).
Configured IAM roles for EC2 instances to securely grant access to other AWS services without embedding sensitive access keys directly in the application code.
Worked with security teams to investigate IAM-related security incidents and took appropriate action to remediate any unauthorized access or policy violations.
Supported Jenkins CI/CD pipelines for automated deployments, integrating AWS IAM roles for security during deployments.
Assisted with the basic management of Kubernetes clusters for containerized applications in AWS EKS.
Education
B.E. - Electronics & Communication Engineering
IFET College of Engineering
04-2021
Skills
Cloud Technologies: AWS, GCP
Continuous Integration Tool: Jenkins
Containerization Technologies: Kubernetes, Docker
Scripting: Python, PowerShell
Version Control Tools: Git, GitHub
Infra Build Tool: Terraform
AWS: EC2, S3, VPC, IAM, Lambda, API Gateway, Cognito
Business Analyst at Diligenta (TCS- UK Subsidiary), TATA CONSULTANCY SERVICES(TCS) PVT.LTDBusiness Analyst at Diligenta (TCS- UK Subsidiary), TATA CONSULTANCY SERVICES(TCS) PVT.LTD