Summary
Overview
Work History
Education
Skills
Timeline
Generic

Ehsan Qamar

New York,,NY

Summary

Experienced and dynamic DevOps and Cloud Engineer with over 8 years of expertise in architecting, automating, and managing scalable infrastructures across AWS, Azure, and GCP. Skilled in modernizing legacy systems, migrating on-prem workloads to the cloud, and implementing Infrastructure as Code (IaC) using tools like Terraform and CloudFormation. Proficient in streamlining CI/CD pipelines with GitHub Actions and automating workflows to enhance deployment reliability. Experienced with Kubernetes (EKS, ECS), containerization, and cloud technologies to drive innovation and operational efficiency. Proven track record in cost optimization strategies, multi-cloud governance, and collaborating with developers, data, and external partners to deliver business-aligned solutions.

Overview

9
9
years of professional experience

Work History

DevSecOps Engineer Consultant

U.S. Environmental Protection Agency | US EPA
07.2022 - 03.2025
  • Designed and deployed an EKS Fargate environment for Nuxeo, ensuring seamless scalability and reducing resource overhead by integrating auto-scaling policies.
  • Implemented SSO authentication with SAML/OIDC protocols, enabling unified access across EPA applications while enhancing security compliance.
  • Built and managed data pipelines integrating Nuxeo, MongoDB Atlas, ElasticSearch/OpenSearch, and Kafka, streamlining real-time data ingestion and analytics.
  • Configured and deployed Grafana and Prometheus dashboards to monitor system health, providing actionable insights for infrastructure optimization.
  • Automated containerized application deployments with Helm charts and Docker, standardizing environments for development and production workflows.
  • Streamlined CI/CD workflows with GitHub Actions, integrating Terraform and Ansible for infrastructure automation and continuous delivery.
  • Conducted cloud migration projects leveraging AWS Migration Hub and Azure Migrate, ensuring seamless transitions from legacy systems to cloud environments.
  • Enhanced infrastructure security by integrating AWS KMS encryption and implementing centralized logging with OpenSearch for compliance monitoring.
  • Designed and maintained CloudTrail and EventBridge rules to monitor and remediate security incidents, improving operational readiness.

Senior Devops | Cloud Engineer

Cigna (Healthcare)
Bloomfield, CT
01.2019 - 07.2022
  • Led migration initiatives to transition on-prem VMware and Nutanix workloads to AWS and Azure, using tools like ModelizeIT to analyze traffic patterns and create seamless migration plans.
  • Collaborated with developers, data engineers, and database teams to ensure successful migrations and deployments of mission-critical applications in multi-cloud environments.
  • Designed and implemented GitHub Actions pipelines for developers, integrating Terraform, Ansible, and CI/CD best practices to accelerate infrastructure provisioning and application deployments.
  • Onboarded and managed Terraform Cloud Enterprise, integrating it with the GitHub organization to ensure a unified and secure infrastructure-as-code (IaC) workflow.
  • Standardized and automated IAM policies across all AWS accounts, leveraging Terraform to enforce least-privilege access controls and improve security posture.
  • Migrated existing manual infrastructure configurations to Terraform, centralizing code repositories in GitHub to enable version control and collaboration.
  • Developed and managed pipelines in Jenkins and GitHub Actions to support infrastructure deployments and automated testing.
  • Partnered with external technology vendors, including CrowdStrike and Wiz, to integrate security solutions across AWS, Azure, and GCP environments.
  • Led onboarding efforts for new cloud technologies and accounts, ensuring compliance with organizational policies and establishing best practices for secure, scalable cloud adoption.
  • Designed and implemented cost-saving strategies for AWS S3, EC2, and other services, including lifecycle rules for S3, Glacier storage for archival data, and spot instance policies for EC2 to optimize resource utilization and reduce operational expenses.
  • Deployed centralized logging and monitoring solutions using CloudWatch, Grafana, and Prometheus, improving system visibility and enabling proactive issue resolution.
  • Implemented SSO authentication for cloud environments using SAML/OIDC, ensuring seamless and secure access for users across platforms.
  • Streamlined infrastructure provisioning by creating Terraform modules for EMR, S3, IAM, VPC, and EC2 configurations, enabling rapid and consistent deployment across environments.
  • Worked with external partners and internal stakeholders to onboard and integrate tools like Terraform Cloud Enterprise, improving team efficiency and workflow automation.
  • Managed and optimized AWS services, including EMR, RDS, S3, EC2, and IAM, to support data and database teams' needs while aligning with cost-saving objectives.
  • Collaborated with developers to create self-service infrastructure pipelines, empowering teams to deploy resources independently while adhering to organizational standards.
  • Established cross-team workflows with external tech providers to onboard and integrate cloud-native technologies, ensuring smooth adoption across multiple accounts.

Systems Engineer/Administrator

Cigna (Healthcare)
Bloomfield, CT
01.2016 - 01.2019
  • Administered Linux systems (RHEL, CentOS, Ubuntu) to support enterprise-grade applications, ensuring consistent performance and reliability.
  • Automated routine tasks with bash scripts, Ansible, and CRON jobs, reducing manual interventions and improving operational efficiency.
  • Migrated on-premise VMware workloads to cloud environments using Azure Migrate and VMware vSphere tools, ensuring seamless transitions.
  • Designed and deployed scalable storage solutions using RAID configurations and Logical Volume Management (LVM) to meet high-demand workloads.
  • Deployed and configured Nagios, Prometheus, and Grafana for monitoring applications and infrastructure, enabling real-time visibility into resource utilization.
  • Hardened infrastructure security by implementing SELinux policies, managing firewall configurations, and regularly applying security patches.
  • Supported hybrid infrastructures by provisioning VMware ESXi hosts, managing VM migrations with VMotion, and troubleshooting issues using iDRAC and ILO consoles.
  • Troubleshot and resolved issues in Apache, Tomcat, FTP, DNS, and DHCP services to maintain operational stability.

Education

Bachelor of Arts - Chemistry

City University of New York: Brooklyn College
Brooklyn, NY

Skills

  • Cloud Platforms:
    AWS (EKS, ECS, EC2, S3, RDS, IAM, VPC, Lambda, Route 53, CloudFront, Cognito, CloudFormation, CloudWatch, KMS, SSM), Azure (VMs, Storage, Networking, Azure AD, Azure Migrate), GCP
  • DevOps Tools: Terraform, Ansible, Docker, Kubernetes, Helm, Jenkins, GitHub Actions, HashiCorp Vault
  • CI/CD and Automation:
    Jenkins, GitHub Actions, Terraform Modules, CloudFormation Templates, Bash Scripting, Python Automation
  • Networking:
    VPC Design, NAT Gateways, Internet Gateways, Load Balancers (ALB/NLB), DNS Management with Route 53, VPC Peering, Security Groups, NACLs

Timeline

DevSecOps Engineer Consultant

U.S. Environmental Protection Agency | US EPA
07.2022 - 03.2025

Senior Devops | Cloud Engineer

Cigna (Healthcare)
01.2019 - 07.2022

Systems Engineer/Administrator

Cigna (Healthcare)
01.2016 - 01.2019

Bachelor of Arts - Chemistry

City University of New York: Brooklyn College
Ehsan Qamar