Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Behailu Shanko

Silver Spring,Maryland

Summary

I have 5+ years of experience in IT, specializing in AWS and Azure Cloud, Systems Engineering, DevOps, Build/Release Management, Containerization, CI/CD, Deployment, and Linux Administration. I hold certifications such as HashiCorp Certified Terraform Associate, AWS Certified Solution Architect, AWS Certified Cloud Practitioner, and Python Institute Certified Developer.
My expertise includes infrastructure as code (IAC) using Terraform, CloudFormation, and ARM. I design and deploy hybrid and multi-cloud solutions, including a machine learning RedHat EC2 server for language translation. I automate the deployment of cloud resources like EC2 instances, Load balancers, Security groups, S3, VPC, subnet, and route tables.
I'm knowledgeable in containerization with Docker (ECS, ECR) and Kubernetes (EKS, AKS) and proficient in Python, Bash, and PowerShell scripting for multi-cloud solutions. In Azure, I manage Virtual machines, Vnet, Azure storage, Custom Image templates, Virtual Desktop, Access control, and Azure Insights.

I have expertise in Identity & Access Management (IAM) and successfully implemented containerization tools like AWS ECS and AWS ECR with EC2 and AWS App Runner. I manage source code using Git, GitLab, and Bitbucket, and I handle kubectl commands for Kubernetes. I deploy web applications with CI/CD tools like Git, AWS CodeCommit, CodeBuild, CodePipeline, CodeStar, and CodeDeploy.

My AWS skills cover EC2 instances, ECS, Beanstalk, Lambda, RDS, DynamoDB, CloudFront, CloudFormation, S3, Athena, SNS, SQS, X-ray, Elastic Load Balancing (ELB), and auto-scaling groups. I create user accounts, maintain servers, manage permissions, and implement custom IAM policies, including Multi-Factor Authentication (MFA

Overview

10
10
years of professional experience
1
1
Certificate

Work History

AWS Cloud Engineer

Eccalon LLC
08.2023 - Current


  • Worked on Azure Cloud to design Azure Virtual Desktop for Federal Institutions
  • Automated the installation of software through both Windows PowerShell and Linux Shell scripts.
  • Designed Python API implementing Flask framework to create Custom Windows image on Azure Cloud for Federal Institution.
  • Configured IAM, storage, network, security, and serverless solution on Azure cloud for Federal Institution.
  • Implemented IaC tool such as Terraform and CloudFormation to automate the deployment of EC2, security group, load balancer, S3 bucket, VPC, Subnet, route table, internet gateway, and DynamoDB.
  • Designed machine learning RedHat EC2 server to translate languages.
  • Minimized cost by implementing AWS lambda, and Amazon EventBrige to automate start and stop EC2 instance for more than 15 AWS accounts.
  • Troubleshoot issues relate to security, storage, network, and IAM roles to managed EC2 instance for our clients.
  • Performed advanced engineering in configuration, management and deployment of AWS cloud environments.
  • Performed first-level incident response and service resolution for cloud systems.
  • Participated in architectural discussions to build confidence and promote customer success when developing new and migrating existing applications, software and services on AWS platform.
  • Responded promptly to user requests for permission changes, new storage and expansion questions.
  • Monitored costs and optimized cloud deployment expenses against business needs.

AWS DevOps Engineer

AAR Corp
11.2020 - 07.2023

Responsibilities:

  • Responsible for managing and maintaining staging and production environments.
  • Utilized various AWS services, including EC2, ELB, Auto-Scaling, S3, IAM, VPC, RDS, DynamoDB, CloudTrail, CloudWatch, Lambda, Elastic ache, SNS, SQS, CloudFormation, CloudFront, Beanstalk, EMR, and AWS Workspaces.
  • Proficient in working with version control tools like Git.
  • Worked with build tools like Maven to generate deployable artifacts from source code.
  • Configured CI/CD pipeline in AWS for automated deployment of Docker images to specific stages and utilized Nexus as apackage management repository.
  • Integrated AWS Code Commit with Jenkins for source code management in a Continuous Integration environment.
  • Managed Terraform state files and output. tf, var. tf files, and stored them in Git and S3 buckets.
  • Utilized HCI scripts to provision infrastructure in the AWS cloud.
  • Utilized an AWS CLI, AWS Cloud Shell, AWS SDK(Cloud9), and AWS Management Console to provision infrastructure in the AWS cloud
  • Worked with AWS backends, including S3, AWS Systems Manager, and Terraform Enterprise.
  • Designed and implemented Infrastructure-as-a-Service (IaaS) and Platform-as-a-Service (PaaS) solutions leveraging AWS cloud, storage, server, virtualization, and networking technologies.
  • Containerized applications using Docker and Kubernetes and migrated applications to PaaS environments.
  • Migrated on-premise MySQL environments to MySQL on Confidential EC2 and Confidential Aurora MySQL with ongoing database replication.
  • Deployed and managed Confidential Aurora MySQL environments using Terraform
  • Proficient in using Integrated Development Environments like PyCharm and IntelliJ.
  • Established database connections for Python by configuring packages like MySQL-python.
  • Participated in design and code reviews, and wrote unit tests in Python.
  • Promoted cloud-native application design and facilitated adoption of Containers and Cloud Foundry PaaS.
  • Designed document data models for DynamoDB and participated in capacity planning.
  • Installed, configured, and managed RDBMS databases like MySQL, and NoSQL databases like DynamoDB.
  • Monitored automated build and continuous software integration process to drive build/release failure resolution.
  • Worked with software development and testing team members to design and develop robust solutions to meet client requirements for functionality, scalability, and performance.
  • Wrote code and developed tools and integrations to meet cross-platform user needs.
  • Implemented best practices to protect data and assets.

AWS Cloud Engineer-IAM

Sirius Point
01.2018 - 10.2020
  • Implemented AWS infrastructure for web applications using CloudFormation, VPC, EC2, and S3.
  • Configured security policies using IAM and VPC to ensure compliance with regulatory requirements.
  • Part of the Identity & Access Management (IAM) team, leading the establishment of a multi-year framework to standardize SSH key and certificate lifecycle management and bridge existing gaps.
  • Coordinating with stakeholders to design and deploy security processes utilizing Venafi & HashiCorp Vault solutions.
  • Onboarding new applications and systems, ensuring seamless integration with SSH key and certificate management practices.
  • Defining, documenting, and enforcing policies and procedures for SSH key and certificate lifecycle management.
  • Creating and executing test cases to ensure cross-platform interoperability and security controls validation.
  • Created automation scripts using Python and Bash to streamline manual processes and reduce errors.
  • Designed and implemented highly available and scalable AWS applications using EC2, S3, Auto Scaling Group, ELB, Route 53, and Lambda.
  • Monitored costs and optimized cloud deployment expenses against business needs through Budget expenditure setup, Cost-explorer, CloudWatch alarm, and Amazon SNS services.
  • Implemented the AWS Well-Architecture Framework to design reliable, secure, cost-optimized, highly available applications for the client.
  • Developed and maintained CI/CD pipelines using Code Commit, Code Deploy, Code Build, Code Star, and Git to ensure smooth deployments.
  • Collaborated with development teams to design and implement scalable, fault-tolerant microservices using Kubernetes and Docker.
  • Created AWS applications using AWS CloudFormation, Elastic Beanstalk, and Terraform.
  • Designed secure, highly available, and resilient database using RDS, Aurora, and DynamoDB services.
  • Configured Amazon S3 to store unlimited objects or data for customers across different availability zones or regions.
  • Implemented AWS Shared-responsibility models to secure infrastructure.
  • Identified, analyzed, and resolved infrastructure vulnerabilities and application deployment issues.
  • Implemented disaster recovery strategies and backup solutions using AWS services such as AWS Backup, AWS Snapshot, and Cross-Region Replication.
  • Participated in architectural discussions to build confidence and promote customer success when developing new and migrating existing applications, software and services on AWS platform.
  • Responded promptly to user requests for permission changes, new storage and expansion questions.
  • Partnered with sales team to design solutions for customers and drive AWS adoption and revenue.
  • Performed advanced engineering in configuration, management and deployment of AWS cloud environments.

System Administrator

INSASA
01.2014 - 03.2017
  • Installed important security and functionality patches to maintain optimal protection against intrusion and system reliability.
  • Worked with users to determine areas of technology in need of improved usability.
  • Established network specifications and analyzed workflow, access, information, and security requirements.
  • Implemented corrective plans of action for network availability, utilization, and latency.
  • Provided comprehensive training for over 200 internal and off-site users to optimize systems maintenance and resolve recurring issues.
  • Performed software installations and upgrades to UNIX or Windows operating systems for about 50 users
  • Orchestrated integration and communication of software upgrades
  • Implemented Windows group policy to enable strong and complex password policy
  • Implemented users and group roles to limit unauthorized access to different system-level pieces of information
  • Backed up data to prevent disaster
  • Adopted cost-effective, useful solutions to implement into current systems.
  • Managed onboarding and offboarding of employees.
  • Worked with users to determine areas of technology in need of improved usability.
  • Installed important security and functionality patches to maintain optimal protections against intrusion and system reliability.
  • Provisioned new software and hardware for use, following established security policies.
  • Managed onboarding and offboarding of employees.

Education

Master of Science - Cloud Computing Management

George Washington University, The
Washington, DC
12.2025

Bachelor of Science - Software Development And Security

University of Maryland - University College
Adelphi, MD
12.2022

Associate of Science - Cybersecurity

Montgomery College
Rockville, MD
12.2020

Bachelor of Science - Information Technology

Paradise Valley University College
Ethiopia
01.2014

Skills

  • Cloud Platforms: AWS, Azure
  • Infrastructure as Code (IAC): Terraform, AWS CloudFormation, ARM(Azure Resource manager)
  • Containers: Docker, Kubernetes
  • Scripting: Python, Bash, PowerShell
  • CI/CD Tools: Jenkins, GitLab CI, Azure DevOps, AWS CI/CD
  • Databases: Amazon RDS, Azure SQL, AWs DynamoDB
  • Networking: VPC, VPN, Direct Connect, Azure VNet
  • Security: IAM, Security Groups, Azure Security Center
  • Monitoring & Logging: CloudWatch, Azure Monitor
  • Operating Systems: Windows, Linux(RedHat, Kali, Ubuntu, Amazon Linux V2)
  • AWS Cloud Computing Skills: EC2, AWS Lambda, AWS IaC (CloudFormation and Terraform),
  • AWS Code Commit, GitHub/Git, AWS Code Pipeline,
  • AWS Code Deploy, AWS Code Star, AWS Code Guru,
  • Amazon Elastic Beanstalk, Elastic Load Balancer,
  • Auto Scaling Group, Amazon Cloud9, Containerization
  • Docker and Kubernetes(Amazon ECS, ECR, Faregate, and EKS)
  • Networking and Security Skills: Amazon Route 53, Security Group, MFA, Network ACL, Azure Vnet, Azure Network Security Groups, NACLs, Amazon VPC, Wireshark, Packet Tracer, Gateway, Internet gateway, Wireless networking, troubleshooting network Configuration, SSH, SSL, OSI Model, TCP/UDP model,, Defense-in-depth approach, LAN
  • Programming Language: Python, Java, Bash Scripting
  • Database Skills: Microsoft SQL Server, Amazon RDS, Amazon DynamoDB, MYSQL, Oracle 12c, MS Access, Amazon Aurora
  • Storage Skills: Amazon S3, Amazon EFS, Amazon EBS, Azure storage account(container, and blob)
  • Web Servers: Web logic 8 & 10, Web Sphere, Apache Tomcat, IIS, and httpd, WordPress, Nginx
  • Other Tools/Applications: Office 365, Docker, Kubernetes

Certification

  • HashiCorp Certified: Terraform Associate (003)-2023-2026
  • AWS Certified Solution Architect Associate, AWS - 2022-2025
  • PCEP – Certified Entry-Level Python Programmer
  • Certified AWS CP, AWS - 2021-2024
  • AWS Certified Cloud Practitioner Practice
  • Udemy Python Programming Completion Certificate
  • Montgomery College Python Programming Boot camp Completion Certificate

Timeline

AWS Cloud Engineer

Eccalon LLC
08.2023 - Current

AWS DevOps Engineer

AAR Corp
11.2020 - 07.2023

AWS Cloud Engineer-IAM

Sirius Point
01.2018 - 10.2020

System Administrator

INSASA
01.2014 - 03.2017

Master of Science - Cloud Computing Management

George Washington University, The

Bachelor of Science - Software Development And Security

University of Maryland - University College

Associate of Science - Cybersecurity

Montgomery College

Bachelor of Science - Information Technology

Paradise Valley University College
Behailu Shanko