Cloud Engineer
Varo Bank
San Francisco, CA
11.2021 - Current
- Successfully built multi-tier private-cloud infrastructure, including upgrading, maintaining, and troubleshooting to ensure optimal system performance, resulting in a 17% reduction in incidents related to infrastructure issues
- Designed for high availability and business continuity using self-healing-based architectures, fail-over routing policies, multi-AZ deployment of EC2 instances, ELB health checks, Auto Scaling, and other disaster recovery models
- Competently utilized IaC tools in automating the creation of resources in Production and Test environments on AWS cloud thereby reducing deployment time by 90%
- Developed Ansible Playbooks for efficient configuration management of infrastructures, ensuring consistency and reliability
- Led the build and deployment of Docker containers for microservices, enhancing application scalability and resource utilization
- Established fully automated CI/CD pipelines using Jenkins, securing and ensuring resilience throughout the development lifecycle
- Fully automated the deployment of applications on various AWS components, including S3 Buckets, ECS, EKS, Elastic Beanstalk, Lambda, and RDS
- Automated the creation of RDS databases with subnet groups, parameter groups, and integration with EC2 instances and AWS lambda, streamlining database management
- Demonstrated expertise in managing AWS cloud services, including but not limited to EC2 instances, S3, ALB, ASG, NACLs, VPC, Route 53, WAF, security groups, GuardDuty, VPC flow logs, SNS/SQS, Systems Manager and Cost Explorer
- Proficient in coding languages like Python and scripting languages (YAML, Bash) for automation and troubleshooting
- Established and configured monitoring tools with alerting systems to meticulously track operational metrics, such as performance, availability, capacity utilization, redundancy, and cost considerations
- Implemented and maintained security best practices with AWS organization, focusing on robust IAM, RBAC, encryption protocols, SCPs and permission boundaries to ensure strict adherence to least privilege principles thereby contributing to a 20% reduction in security-related incidents
- Integrated AWS Identity Center with federated tools such as OKTA for efficient access management.
