Summary
Overview
Work History
Education
Skills
Accomplishments
Certification
Timeline
Generic

Md Shafin Rahman Patwary

Ashburn,VA

Summary

Senior DevOps Engineer | AWS | Kubernetes | Terraform | CI/CD Automation

Certified AWS DevOps Professional with 10+ years of experience architecting and automating secure, scalable, and resilient cloud infrastructure across AWS and Azure platforms. Expert in Kubernetes (EKS, AKS), Infrastructure as Code (Terraform, CloudFormation), GitLab CI/CD, and containerization using Docker. Adept at leading DevOps initiatives, migrating legacy systems to cloud-native solutions, implementing DevSecOps practices, and optimizing performance through observability and automation.

Overview

11
11
years of professional experience
1
1
Certification

Work History

Senior DevOps Engineer

ViewSoft Inc
12.2021 - Current
  • Architected and provisioned cloud infrastructure using Terraform and CloudFormation, automating EKS cluster deployments with built-in logging, monitoring, IAM policies, and service mesh integrations (Istio, Linkerd).
  • Developed modular Terraform components to provision AWS VPCs, subnets, NAT Gateways, and security groups, standardizing secure multi-account networking architecture.
  • Built and managed Jenkins-based CI/CD pipelines to automate container builds, tests, security scans, and blue/green deployments into EKS and ECS clusters, significantly reducing release cycle times.
  • Integrated GitLab for version control, repository management, and Merge Request workflows, enabling efficient code collaboration across teams.
  • Implemented Veracode integration within Jenkins pipelines to automate static application security testing (SAST) and dynamic application security testing (DAST) during build and deployment stages, enforcing secure software delivery practices.
  • Automated PostgreSQL and MySQL schema migrations through GitLab-integrated Jenkins pipelines, maintaining database version control aligned with infrastructure releases.
  • Developed GitOps pipelines using ArgoCD to declaratively manage Kubernetes manifests, supporting automated sync, rollback, and environment parity across dev, staging, and prod clusters.
  • Managed Terraform remote state securely using S3 and DynamoDB with locking to support collaborative infrastructure deployments without configuration drift.
  • Integrated security-as-code by enforcing least-privilege IAM policies, KMS encryption, and Service Control Policies (SCPs) using reusable Terraform modules.
  • Designed hybrid network architecture leveraging multi-region VPC Peering, Transit Gateway, VPN tunnels, and Direct Connect, enabling secure cross-region and hybrid data flow.
  • Automated disaster recovery strategies via RDS snapshots, EBS backups, S3 replication, and Route 53 DNS failover, improving platform resilience and availability.
  • Hardened Linux-based EC2 instances with automated SSH hardening, firewall rule enforcement (iptables/nftables), and system-level auditing in alignment with SOC2 and NIST compliance.
  • Built multi-layered observability stacks with Prometheus, Grafana, CloudWatch, Fluent Bit, and ELK, reducing incident detection and Mean Time to Recovery (MTTR) by 30%.
  • Led migration of on-premises PostgreSQL databases to AWS RDS using pg_dump and AWS Database Migration Service (DMS), achieving near-zero downtime cutovers.
  • Improved reporting performance by 40% through SQL query optimization and database tuning.
  • Deployed and maintained Kong API Gateway with EKS workloads, enabling JWT authentication, rate limiting, and centralized API traffic observability.
  • Hardened perimeter security by configuring AWS WAF, CloudFront protections, and refining security groups, NACLs, and IAM conditions.
  • Championed DevOps culture adoption through pipeline-as-code methodologies, dynamic environment support, progressive delivery strategies, and mentoring junior engineers on Kubernetes, Terraform, and GitOps best practices.
  • Authored onboarding guides, conducted infrastructure audits, and facilitated incident response exercises to improve platform resilience, security, and operational maturity.

DevOps Engineer

CSRA Technology
10.2018 - 12.2021
  • Developed and maintained Azure DevOps pipelines to deliver end-to-end CI/CD automation, enabling reliable application deployments, infrastructure provisioning, and continuous testing across multiple environments.
  • Integrated SonarQube into Azure DevOps workflows to enforce code quality analysis during builds and releases, ensuring secure, maintainable, and production-ready applications.
  • Automated infrastructure provisioning using Terraform for Azure SQL, Cosmos DB, and related services, standardizing reproducible deployments across development, staging, and production environments.
  • Engineered seamless deployment pipelines for Service Fabric applications, integrating sfctl commands into Azure DevOps for orchestrated microservices rollouts.
  • Led the migration of on-premises VMs and network resources to Azure using Kubernetes CRDs and custom controllers, fully automating infrastructure provisioning and environment setup.
  • Streamlined containerized microservices deployments to Azure Kubernetes Service (AKS), enhancing operational scalability and optimizing release cycles.
  • Automated the deployment and version control of Azure Functions, enabling event-driven architectures and improving microservice communication.
  • Managed Docker-based environments, implementing persistent volumes and Docker Compose for modular microservices orchestration.
  • Architected Ansible automation solutions to manage Linux-based Azure VMs and infrastructure:
    Developed Ansible playbooks (YAML) and dynamic inventories (JSON) to automate system patching, log rotation, OS hardening, and application deployment tasks.
    Integrated Ansible with AWS APIs for hybrid cloud resource provisioning and maintenance.
    Implemented OpenSCAP security automation through Ansible to perform vulnerability scans and enforce CIS compliance standards across environments.
  • Hardened pipeline security by integrating Azure Key Vault for secret management, enforcing artifact retention policies, and ensuring secure DevOps workflows.
  • Automated identity governance via Terraform, implementing RBAC, Conditional Access, and MFA enforcement across Azure Active Directory tenants.
  • Designed secure networking architectures using Azure Firewall, Application Gateway, and Network Security Groups (NSGs) for microsegmented workload protection.
  • Deployed and enforced Azure Blueprints for regulatory compliance (NIST, ISO 27001), conducting policy audits and automating drift remediation.
  • Built unified monitoring and observability across platforms via Azure Monitor, Log Analytics, Application Insights, and Azure Sentinel, reducing mean time to detect (MTTD) incidents.
  • Created Kusto Query Language (KQL) dashboards to proactively identify anomalies and performance degradation across applications and infrastructure.
  • Automated database operations for Azure SQL and MongoDB, including geo-redundancy setup, point-in-time recovery configuration, and version-controlled schema deployments using Terraform and Azure DevOps pipelines.
  • Tuned database performance by optimizing SQL queries through Azure Query Insights and Activity Monitor, improving transactional throughput during peak loads.
  • Designed a secure Active Directory–Okta hybrid integration to enable SSO and MFA for Angular-based SPA applications across internal and external identity layers.
  • Diagnosed and resolved complex infrastructure issues across application, network, and OS tiers, enhancing platform reliability and reducing incident rates through proactive troubleshooting.

Full Stack Developer

Unisys
09.2014 - 10.2018
  • Designed and developed scalable full stack web applications using React.js (front-end) and Python (Flask, Django) (back-end), reducing application response times by 25% and improving user experience.
  • Built dynamic, responsive front-end interfaces using JavaScript, React.js, and Redux, integrating with RESTful APIs for seamless client-server interactions.
  • Developed and maintained high-performance RESTful APIs using Flask and Django, supporting scalable microservices architectures.
  • Migrated legacy monolithic applications to microservices using Docker containers orchestrated on AWS infrastructure, enabling modular scalability and faster independent deployments.
  • Automated unit and integration testing using Pytest and Unittest, achieving 95% code coverage and improving production readiness.
  • Refactored legacy codebases, improving maintainability by 25%, reducing technical debt, and enhancing system reliability.
  • Developed ETL pipelines with Pandas and NumPy for structured/unstructured data transformations, reducing processing times by 30%.
  • Designed ingestion pipelines for batch data processing from PostgreSQL and MongoDB, optimizing database performance for large-scale applications.
  • Implemented backend security enhancements, including JWT token-based authentication, data encryption, and secure API gateways, ensuring compliance with data protection standards.
  • Integrated third-party APIs into backend services to enhance real-time data accessibility and enrich application capabilities.
  • Deployed and secured MongoDB-backed services within Docker environments, managing persistent volumes and enabling container-level authentication and isolation.
  • Collaborated with DevOps engineers to build and maintain CI/CD pipelines using Jenkins and GitLab, automating application builds, tests, and deployments to AWS environments.
  • Worked cross-functionally with data engineers, frontend developers, and DevOps teams to ensure seamless data flow, consistent application deployment, and reliable system integration.
  • Deployed serverless backend applications on AWS Lambda, integrating with API Gateway, S3, and DynamoDB to create scalable, cost-effective serverless services.
  • Conducted database query optimization (SQL and NoSQL), improving execution performance by 40% for analytics and high-throughput applications.
  • Built interactive dashboards for data visualization using Matplotlib and Seaborn, enabling data-driven business decisions.
  • Authored and maintained detailed technical documentation, streamlining developer onboarding and improving system maintainability.
  • Actively participated in peer code reviews, delivering actionable feedback to enforce engineering best practices across the team.

Education

Bachelor of Science - Information Technology

Strayer University
Washington, DC

Skills

  • Cloud Platforms: AWS (EC2, EKS, Lambda, S3, RDS, Security Hub), Azure (AKS, Azure Functions, Monitor)
  • Infrastructure as Code: Terraform, CloudFormation, Ansible, Azure ARM
  • CI/CD & DevOps Tools: GitLab, Jenkins, Azure DevOps, Helm, ArgoCD, GitOps
  • Containerization & Orchestration: Docker, Kubernetes, Istio, Linkerd, NGINX, Traefik
  • Programming: Python (Flask, Django, REST APIs), Bash, YAML
  • Security & Compliance: DevSecOps, AWS Security Hub, AquaSec, Sysdig Falco, NIST, SOC2, HIPAA
  • Monitoring & Logging: Prometheus, Grafana, ELK Stack, CloudWatch, Azure Monitor
  • Databases: PostgreSQL, MySQL, DynamoDB, MongoDB, CosmosDB

Accomplishments

  • AWS DevOps Excellence: Designed and automated EKS cluster provisioning via Terraform, reducing deployment time by 40% and enabling GitOps workflows with ArgoCD.
  • Azure Cloud Modernization: Migrated 15+ legacy VMs and services to AKS and Azure Functions, cutting infrastructure costs by 30% and improving deployment cycles by 50%.
  • CI/CD Automation: Built and managed GitLab and Jenkins pipelines automating application deployments, database migrations, and compliance checks, improving release frequency by 35%.
  • DevSecOps Leadership: Integrated security scans (AquaSec, Falco) into CI/CD workflows, reducing vulnerability exposure windows by 45%.
  • Python Full Stack Development: Developed and deployed RESTful APIs using Flask and Django on AWS Lambda, improving backend response time by 25% for enterprise applications.

Certification

AWS Certified DevOps Engineer - Professional

Microsoft Certified: Azure Fundamentals

Timeline

Senior DevOps Engineer

ViewSoft Inc
12.2021 - Current

DevOps Engineer

CSRA Technology
10.2018 - 12.2021

Full Stack Developer

Unisys
09.2014 - 10.2018

Bachelor of Science - Information Technology

Strayer University
Md Shafin Rahman Patwary