Kubernetes · GitOps · Terraform · Observability · DevSecOps
Building secure, cloud-native systems and infrastructure workflows. Went full-time into DevOps in March 2025 — no job lined up, just a clear plan. Since then: four production-grade infra systems, an IIT Roorkee certification, and an Automation Hero recognition.
| Rev | Description | Date |
|---|---|---|
| 0 | BPO Operations, Concentrix | 2022 |
| 1 | DevOps transition — self-taught | Mar '25 |
| 2 | Open to work — current | 2026 |
Built in public. Every drawing below is a real operational decision made visible — architecture, security posture, and delivery workflow, not just code.
Production-grade AI analytics platform serving conversational queries over structured data — Next.js frontend, FastAPI query engine, PostgreSQL backend, fully containerised. Multi-stage Docker builds gated by Trivy scans in CI; Prometheus + Grafana + Loki wired in from deployment day one, not bolted on after. Pipeline debugged to green through build, image push, and health checks — zero unscanned artefacts ever reached production.
⌥ View on GitHub →Observability wired from deployment day one — not retrofitted. Trivy gates block vulnerable images before they touch a registry. FastAPI query engine decoupled from frontend for independent scaling.
Production-grade 3-tier AWS stack across 2 AZs via modular Terraform. 70% faster provisioning vs manual. Private subnets, ALB ingress, IAM least-privilege, RDS with automated backups. Zero-downtime failover validated under live load.
⌥ View on GitHub →6-stage shift-left CI/CD for a two-tier Flask app. 100% scan coverage per commit via GitHub Actions + Jenkins. Bandit, Trivy, Gitleaks, Hadolint, pip-audit consolidated into reusable templates — 40% less maintenance overhead. Vulnerable artefact promotion rate: zero.
⌥ View on GitHub →VPC, ALB, ASG, RDS, Security Groups, CloudWatch across 6 Terraform modules. Least-privilege SG chaining (ALB → EC2 → RDS). CPU-based auto scaling with CloudWatch alarms. Zero-downtime, production-grade infra.
⌥ View on GitHub →How I approach infrastructure decisions. Not preferences — principles arrived at by building systems that have to actually work.
Not tutorials. Real problems encountered while building, written down while they were still fresh.
Covers AWS, Kubernetes, Terraform, CI/CD pipelines, and DevSecOps workflows. Issued by IIT Roorkee's Technology Innovation Hub — an engineering program, not a vendor certificate.
Hands-on masterclass covering GitHub Actions CI/CD pipelines, Kubernetes orchestration, and GitOps delivery workflows — completed under real project constraints as part of the #90DaysOfDevOps cohort.
Looking for a DevOps or Infrastructure Engineer role where I can contribute from day one. Give me a take-home task. Startups, cloud-native teams, companies that take shift-left security seriously — that's exactly where I want to be.