A Principal Cloud Engineer with 9+ years of experience in managing Azure and AWS cloud platforms. Driven large, multiple complex business solutions for targeted/assigned customers.
Providing in-depth solutions architecture capability based on specific customer's business needs. Has a bigger picture of the program to maximize the benefits delivered by the program and meet the strategic objectives of the organization, process re-engineering experience with a track record of continuously optimizing systems and process to meet changing conditions. I am seeking for a challenging and varied position in a dynamic environment and progress further in my career.
Overview
10
10
years of professional experience
1
1
Certification
Work History
Senior Cloud Engineer
Department For Work And Pensions (DWP) – SC Cleared
01.2021 - 03.2024
Set-up a continuous build process in Visual Studio Team Services to automatically build on new check-in of code then deploy that new build to the Azure Web application
Set-up, and install Hosted Exchange and Office 365 Suite
Automation of code build, deployments and sanity/smoke testing using Bash and PowerShell scripting
Designed and developed standalone data migration applications to retrieve and populate data from Azure Table BLOB storage to on premise SQL Server instances and Used Python API for uploading all the agent logs into Azure blob storage, Managed internal deployments of monitoring and alarm services
Enabling users to better manage agile software development, deployments and infrastructure with tools such GitHub/BitBucket
Created Azure services using ARM templates and ensured no changes in the present infrastructure while doing incremental deployment
Create automated DevOps solutions using a combination of ARM templates, configuration management utilities, Azure CLI, and the Cloud Shell
Deliver web and application development, maintenance of Azure AD services like single sign on (SSO) and multifactor authentication (MFA) and troubleshoot issues related to API web applications
Mainly focused on Azure MFA and Ping federate and Ping access
Execute with programming languages PowerShell scripting to pull data and force sync with Azure AD
Designed and created a PowerShell code to deploy Windows 10 VM for Engineering device
Designed and Implemented Endpoint Manager to be rolled out to Cloud First
Designed and Implemented Device Configuration Profiles, which includes Device restriction, Device Personalization Profile, Identity Protection Profile, Administrative Templates for MsEdge and OneDrive for Business Policies, Windows Health Monitoring Profiles etc
Liaised with external parties which includes Microsoft FastTrack Center to discuss service entitlements and how they can assist in achieving its desired goals
Created and deployed applications which via Microsoft Intune
Created a training document for BAU to support the new platform
Designed and Implemented Windows Autopilot Deployment Profile
Designed and created windows 10 autopilot VM which was hosted on a windows 10 cloud device
Create Windows 10 Service Validation Rings
Ensuring all the service request is dealt with in a timely manner in line with SLA.
Project Consultant and Senior Cloud Infrastructure Engineer
Department For Work And Pensions (DWP)
Created Docker containers and building Docker Images and pushed those images to ECR and Docker registry
Used Kubernetes for cluster management that runs Docker containerized application in a cluster of EC2 instance of Linux
Automate build, configuration and deployment of EKS managed Kubernetes, setup multi nodes cluster and deployed containerized application
Built and deployed Docker images on AWS ECS and implemented monitoring & alerting using CloudWatch and integrated Kafka using CI/CD pipeline
Used Kubernetes to deploy scale, load balance and managed Docker containers
Created Kubernetes manifest, helm charts for deployment of microservices into k8s clusters
Design implemented AWS WorkSpace infrastructure and services within a managed service environment for L&D (Learning & Development) department within DWP
Using Terraform code to build custom sized VPC, Subnets, Internet gateway, NAT, Route table to ensure successful deployment VPC infrastructure for AWS WorkSpace solution
VPC peering within the region (Ireland eu-west-1) allowing AWS WorkSpace access to AWS services such as AWS WorkDocs and AWS WorkMail
Design and build AWS WorkDocs and AWS WorkMail according to the project requirements
Configured Inbound and Outbound policies for AWS WorkMail as per the requirements
Configured AWS WorkDocs policies for users as an WorkDocs Admin as per the requirements
AWS WorkSpace infrastructure setup using Terragrunt and implemented the process and quality improvements through automation task CI/C
Institute infrastructure as code and routine maintenance tasks using Terragrunt
Created a lambda function to initiate S3 event actions for AD/AWS WorkSpace user creation
Used DynamoDB to store WorkSpace user's details that are created as part of WorkSpace onboard and offboard request to ensure highest quality of AWS WorkSpace within the system
Developed WorkSpace onboard and offboard request process using AWS SES (Simple Email Service) to ensure highest quality of delivering AWS WorkSpace to the end users
This has been integrated with S3, DynamoDB and python script (Boto3), Lambda
Expertise is creating AWS IAM Role/Policy based access control of services for users and groups
Writing UNIX shell scripts to automate the jobs and scheduling cron jobs for job automation using commands with Crontab
Performed building multi account strategy by extending organizational structure using AWS Control Tower to govern AWS environment using SCPs and implementing IAM Identity Center (SSO)
Developed and created SCPs Service Control Policies and attached them to approved OUs and AWS accounts
Deployed GaurdDuty across AWS organization with the Audit account being the delegate administrator.
Principal Cloud Engineer
Sainsbury's JS
07.2014 - 01.2021
Design, implement and maintain AWS infrastructure and services within a managed JS shared services environment
Created secured cost optimized highly available and fault tolerant architecture in AWS
Created scripts in Python which integrated to control shutdown and start instance operations
Created Amazon Route53 to manage DNS zones and assign public DNS names to elastic load balancer IP's
Automate build and configuration of micro services (container) such as EKS, ECS, Fargate and ECR within cloud Infrastructures and integrated with the Kafka
Creating a dataset using Amazon Athena data and integrate with Amazon QuickSight for producing Trusted Advisor security report from each AWS account within the AWS organization
Providing solution and assisting security team with the implementation of Guard Duty within AWS organization
Implemented detective guardrails using Cloud Custodian policies and AWS config
Leveraged EC2 Lifecycle Manager to create snapshots of EBS volumes on scheduled intervals for backup and define a retention period as a cost saving measure
Built S3 buckets and managed policies for S3 buckets and used S3 bucket for storage and backup on AWS
Implement process and quality improvements through task automation
Institute infrastructure as code, security automation and routine maintenance tasks
Perform data migration from on premises environments into AWS
Created automated pipelines in AWS CodePipeline to deploy shared services platform using CloudFormation, CodeBuild , CodeDeploy
Amazon IAM service enabled to grant permissions and resources to users
Managed roles and permissions of users with the help of AWS IAM
Initiating alarms in CloudWatch service for monitoring the server's performance, CPU Utilization disk usage etc
To take recommended actions for better performance
Implementation of patch baseline through AWS systems manager/patch manager for Windows and Linux operating systems using CloudFormation integrated with terraform
Worked on AWS Lambda, Amazon Simple Queue Service (Amazon SQS), Amazon Simple Notification Service (Amazon SNS), and Amazon Simple Workflow Service (Amazon SWF)
Worked on lift and shift process model clearly defining the individual steps of the lift and shift process using Cloud Endure
Worked on VMware workflows used for catering VMs in cloud
Created VMware workflows to build Windows Server 2012
Running build jobs and integration tests on Jenkins Master/Slave configuration.
Education
Bachelor of Engineering in Computer Science -
Karnataka University
India
2000
Skills
Azure
AWS (CloudFormation, Terraform, Lambda, CodeBuild and CodePipeline etc
Administrative Officer (Fixed Term Contract) at Department for Work and Pensions (DWP)Administrative Officer (Fixed Term Contract) at Department for Work and Pensions (DWP)