Results-driven AWS DevOps/DevSecOps engineer with over 4 years of experience architecting, automating, and securing cloud infrastructure.
Recognized for designing and implementing innovative solutions that optimize performance, enhance security, and reduce operational costs.
Proven track record in leading cross-functional teams, fostering a culture of collaboration and continuous improvement.
Strong expertise in AWS services, IaC, CI/CD pipelines, and comprehensive security practices.
Committed to staying at the forefront of cloud technology, ensuring organizations achieve maximum agility, resilience, and compliance in their AWS environments.
Possess a long track record of successfully directing and executing tactical operations plans including but not limited to supporting and collaborating with clients, technical teams and managers.
Overview
5
5
years of professional experience
Work History
AWS Devops Engineer/DevSecOps Engineer
SoluTECH Consultancy Maryland
08.2022 - Current
Developed and maintained automated security checks and compliance scans using AWS Config Rules, AWS Lambda, and AWS Security Hub.
Integrated security into the CI/CD pipeline by automating security scans for code repositories and container image.
Implemented real-time threat detection and incident response capabilities using AWS CloudWatch, AWS GuardDuty, and AWS WAF.
Led incident response efforts, minimizing the impact of security breaches and improving incident resolution times.
Designed and enforced IAM policies and roles to ensure the least privilege principle and secure access control for AWS resources.
Implemented multi-factor authentication (MFA) and federated identity solutions for enhanced security.
Implemented data encryption at rest and in transit using AWS Key Management Service (KMS) and SSL/TLS certificates.
Oversaw the secure handling and storage of sensitive data, ensuring compliance with data protection regulations.
Ensured AWS resources and environments met industry standards and regulatory requirements (e.g., HIPAA, GDPR, NIST).
Conducted regular security audits, vulnerability assessments, and penetration testing to identify and address security gaps.
Implemented container security best practices, including runtime protection and image scanning, for AWS EKS and ECS environments.
Secured secrets management for containers using AWS Secrets Manager or Parameter Store.
Championed a DevSecOps culture by collaborating with development and operations teams to embed security throughout the SDLC.
Conducted security training and workshops to raise awareness and skill levels across the organization.
Maintained detailed incident reports and post-mortems, documenting findings, root causes, and corrective actions.
Communicated security incidents and remediation efforts to stakeholders and leadership.
Regularly reviewed and updated security policies and procedures in response to evolving threats and vulnerabilities.
Evaluated and recommended security tools and technologies to enhance the security posture of AWS environments.
Implemented AWS best practices for secure architecture design, network segmentation, and logging.
Stayed current with AWS security updates, patches, and advisories, and applied them in a timely manner.
Collaborated with development, operations, and compliance teams to strike a balance between security and agility, enabling faster and safer deployments.
Worked closely with AWS support and account teams to resolve security-related issues and incidents.
Highlighted AWS security certifications (e.g., AWS Certified Security - Specialty) and ongoing training to demonstrate your commitment to staying at the forefront of AWS security.
AWS Devop Engineer
AfriZone, Western Cape
02.2020 - 04.2022
Developed and maintained Infrastructure as Code (IaC) scripts using tools like Terraform or CloudFormation to automate provisioning and managing infrastructure resources.
Implemented best practices for versioning, testing, and maintaining IaC scripts, ensuring reliable and scalable infrastructure.
Designed and optimized CI/CD pipelines using tools like Jenkins, Travis CI, or GitLab CI/CD to automate software delivery and deployment processes.
Reduced deployment times and improved reliability by implementing automated testing, code quality checks, and deployment strategies (e.g., blue-green deployments.
Managed Docker containers and orchestrated container clusters with Kubernetes to enhance scalability, portability, and maintainability of applications.
Implemented Kubernetes best practices, including resource allocation, scaling, and pod security policies.
Leveraged public cloud providers (e.g., AWS, Azure, GCP) to architect, deploy, and manage scalable and cost-efficient cloud infrastructure.
Reduced operational costs by optimizing cloud resource utilization and implementing auto-scaling policies.
Set up monitoring solutions (e.g., Prometheus, Grafana, ELK stack) to collect and visualize key performance metrics and logs.
Created proactive alerting systems to promptly identify and address issues, minimizing downtime.
Implemented security best practices, including role-based access control (RBAC), encryption, and vulnerability scanning, to secure infrastructure and applications.
Ensured compliance with industry standards (e.g., HIPAA, GDPR) and company policies through automated compliance checks.
Managed configuration files and orchestrated software configurations using tools like Ansible, Puppet, or Chef to maintain consistency across environments.
Automated server provisioning and configuration updates, reducing manual intervention.
Collaborated with cross-functional teams (developers, QA, operations) to streamline development and release processes.
Maintained comprehensive documentation of infrastructure, processes, and procedures for knowledge sharing and onboarding.
Developed and tested disaster recovery plans to ensure business continuity in case of infrastructure failures.
Set up automated backup and recovery processes for critical data and configurations.
Identified performance bottlenecks and optimized system performance through load testing, profiling, and tuning.
Implemented caching strategies, content delivery networks (CDNs), and database optimizations for improved application speed.
Monitored and optimized infrastructure costs by analyzing usage patterns and implementing cost-saving measures.
Implemented budgeting and cost allocation mechanisms for better financial control.
Promoted a DevOps culture within the organization, fostering collaboration, automation, and continuous improvement.
Mentored junior team members and conducted training sessions to enhance team skills.
AWS Solutions/Cloud Architect
Africawork, Yaounde
12.2018 - 01.2020
Spearheaded cloud cost optimization initiatives, achieving significant cost savings by analyzing resource usage, implementing cost-effective architectures, and utilizing AWS Cost Explorer and AWS Trusted Advisor recommendations.
Designed and executed multi-cloud strategies, integrating AWS services with other cloud providers to create resilient and cost-efficient solutions that maximize redundancy and minimize vendor lock-in.
Led the integration of on-premises data centers with AWS using AWS Direct Connect, VPNs, and hybrid cloud solutions like AWS Outposts and AWS Snowball Edge, ensuring seamless hybrid cloud operations.
Introduced serverless architecture patterns and technologies (AWS Lambda, API Gateway, Step Functions) to optimize resource utilization, reduce operational overhead, and improve scalability for applications.
Designed and implemented AI and machine learning solutions using AWS SageMaker, integrating predictive analytics and deep learning capabilities into applications to drive data-driven decision-making.
Architected IoT solutions on AWS IoT Core, enabling real-time data processing, device management, and integration with serverless and analytics services for industries such as manufacturing and smart cities.
Designed microservices architectures using AWS Elastic Kubernetes Service (EKS) and Amazon ECS, optimizing container orchestration and scaling for modern cloud-native applications.
Designed HPC solutions on AWS, leveraging services like AWS ParallelCluster and AWS Batch to accelerate scientific simulations, engineering workloads, and financial modeling.
Engineered advanced security architectures using AWS Identity and Access Management (IAM), AWS WAF, AWS Inspector, and AWS Security Hub to protect against advanced threats and vulnerabilities.
Architected global, highly available solutions across AWS Regions and Availability Zones, using AWS Global Accelerator and Route 53 to ensure low-latency access for users worldwide.
Designed and implemented innovative disaster recovery solutions with minimal RTO and RPO, utilizing AWS services like AWS Backup, AWS CloudEndure, and AWS Site-to-Site VPN.
Developed governance frameworks and policies to ensure compliance with security, compliance, and cost management standards across multiple AWS accounts and organizations.
Designed and implemented intricate data processing and analytics pipelines using AWS Glue, AWS Kinesis, and AWS Redshift, enabling real-time and batch data insights.
Collaborated closely with customers to understand their unique requirements and business objectives, tailoring AWS solutions to meet their specific needs and exceed expectations.
Acted as a thought leader in the AWS community, contributing to blogs, speaking at conferences, and conducting internal training sessions to disseminate knowledge and best practices.
Education
Bachelor of Science - Information Technology
University of Buea, CMR
12.2019
Bachelor of Science - Nursing Science
University of Buea, CMR
12.2016
Associate of Science - Nursing Science
Training School For Health Personel Limbe, CMR
11.2012
Skills
Technical Skills:
In-depth knowledge of a wide range of AWS services, including but not limited to EC2, S3, RDS, Lambda, CloudFormation, VPC, IAM, and more
Proficiency in IaC tools like Terraform, AWS CloudFormation, AWS CDK, or Ansible for automating and managing infrastructure
Design and implementation of robust Continuous Integration and Continuous Deployment (CI/CD) pipelines using Jenkins, GitLab CI/CD, Travis CI, or AWS CodePipeline
Expertise in Docker for containerization and Kubernetes for container orchestration, including managing AWS EKS or ECS clusters
Strong scripting skills in languages such as Python, Bash, or PowerShell for automating tasks, infrastructure provisioning, and configuration management
Proficiency in implementing security best practices, access controls, and compliance checks using AWS security tools and services like AWS IAM, Security Groups, AWS WAF, and AWS GuardDuty
Experience with monitoring tools like AWS CloudWatch, Prometheus, Grafana, and log management solutions such as the ELK stack for tracking system performance and security
Knowledge of networking concepts and the ability to configure AWS VPCs, subnets, security groups, and NACLs to secure AWS environments
Skills in managing and optimizing databases, including AWS RDS, Amazon Aurora, DynamoDB, MySQL,PostgreSQL,and other database services
Proficiency in implementing real-time threat detection and response using AWS services like AWS GuardDuty, AWS Security Hub, and AWS Inspector
Expertise in designing and managing IAM roles, policies, and federated identity solutions to ensure secure access control
Understanding of industry-specific compliance standards (eg, HIPAA, PCI DSS, GDPR) and experience conducting security audits and vulnerability assessments
Familiarity with Agile, Scrum, or other DevOps methodologies to facilitate collaboration and streamline development and deployment processes
Tools and Technologies:
Git, GitLab, GitHub, or Bitbucket for version control and collaborative development
Docker for containerization and container registries like Amazon ECR or Docker Hub
Kubernetes for container orchestration and management of containerized applications
Jenkins, GitLab CI/CD, Travis CI, AWS CodePipeline, or CircleCI for building and automating CI/CD pipelines
Terraform, AWS CloudFormation, AWS CDK, or Ansible for defining infrastructure as code
AWS Lambda, AWS Step Functions, and custom scripts for automating tasks and workflows
AWS CloudWatch, Prometheus, Grafana, ELK stack (Elasticsearch, Logstash, Kibana), or Splunk for monitoring and logging
AWS Security Hub, AWS GuardDuty, AWS Inspector, and third-party security solutions for threat detection and vulnerability management
Communication and collaboration tools like Slack, Microsoft Teams, or Atlassian products (JIRA, Confluence) for team coordination and knowledge sharing
Integration of security-focused tools such as OWASP ZAP, Nessus, and Checkmarx into the CI/CD pipeline for security scanning and testing
AWS Backup, AWS CloudEndure, and other backup and disaster recovery solutions for data protection and business continuity
Ansible, Puppet, Chef for configuration management and ensuring infrastructure consistency