Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Spandana R

Orlando

Summary

Cloud DevSecOps Engineer with 6+ years of experience in multi-cloud operations (AWS, GCP, Azure), automation, observability, CI/CD pipelines, and infrastructure-as-code. Skilled in managing production workloads for enterprise and healthcare environments with compliance to SOC 2, ISO 27001, ISO 13485, and 21 CFR Part 820. Adept at monitoring, incident response automation, performance optimization, and mentoring teams on cloud-native best practices.

Overview

5
5
years of professional experience
1
1
Certification

Work History

Cloud Systems and Security Engineer

Walt Disney World
10.2024 - Current
  • Built and maintained monitoring and alerting stacks (Prometheus, Grafana, CloudWatch, Stackdriver, Datadog), designed CI/CD pipelines and Infrastructure-as-Code using Terraform and CloudFormation, and implemented auto-remediation with Python, AWS Lambda, and Google Cloud Functions.
  • Skilled in root-cause analysis, incident response, performance tuning, and cost optimization. Ensured strict compliance with SOC 2 and ISO 27001 by building audit-ready logging, alerting, and backup controls.
  • Architected and implemented AWS provisioning for IAM, EC2, ELB, ECS, S3, Elastic Beanstalk, CloudFront, EFS, VPC, Route53, CloudWatch, CloudTrail, and CloudFormation; performed server infrastructure development using VPC, CloudFormation, CloudFront, EC2, RDS, S3, IAM, KMS, Route53, SNS, SQS, and CloudTrail.
  • Used Amazon Elastic Beanstalk for automated deployment and scaling, integrating SQS, SNS, and SWF for robust health monitoring. Created and versioned infrastructure as code in Terraform and CloudFormation with reusable modules for rapid deployment in both DCL and NVO AWS environments (latest, stage, load, prod).
  • Led cloud migrations and automation across Disney Cruise Line fleet (Adventure, Destiny ships); managed Rancher environments for day-to-day operations, access management, quarterly upgrades, and platform consistency. Deployed 200+ applications and clusters using Helm, with a focus on platform reliability and smooth operational continuity.
  • Integrated authentication solutions using Keystone and Keycloak to enable secure SSO across fleet clusters; onboarded clusters into ArgoCD for rapid, automated GitOps deployments and streamlined lifecycle management.
  • Implemented and managed Kubernetes clusters, covering scaling, load balancing, multi-namespace Docker container management, and custom YAML definitions for pods, replica sets, and ingress; optimized workloads with Containerd, Helm, and automated releases via GitOps (ArgoCD/FluxCD).
  • Automated environment builds and support with Ansible (playbooks, roles, inventory files), PowerShell, and Python scripts for AWS resources, including storage, security groups, VMs, and firewall configuration.
  • Monitored AWS services (EC2, RDS, Lambda) and Kubernetes clusters using Datadog, optimized alert thresholds to reduce false positives and provide actionable insights, tracked resource utilization, and managed SLAs with custom escalation protocols.
  • Configured and maintained Akamai Web Application Firewall (WAF), creating policies against SQL injection, XSS, and DDoS while managing real-time threat detection and mitigation.
  • Deployed and managed Istio mesh for secure, observable, and resilient traffic routing within Kubernetes clusters; performed Load Runner-based stress and performance testing to simulate large user loads and improve application scalability by 30%.
  • Built and maintained centralized logging and analytics platforms using ELK Stack, Splunk, and integrations with Datadog for incident correlation and rapid root-cause identification. Handled buffer and logging issues across multiple DCL application teams.
  • Implemented Grafana Stack (Prometheus, Loki, Tempo) and New Relic for real-time cloud observability, SLO/SLI tracking, and business-aligned alerting for service reliability.
  • Developed automation for Disney Cruise Line’s Voyage Planner, DVC-Apps, and other DCL team applications, responsible for migrations (such as Castaway datacenter), upgrades, issue resolution, and critical incident handling, serving as the main contact for fleet-wide urgent support.
  • Collaborated using Agile sprint cycles and Jira for SDLC management; partnered with dev, security, and platform teams to optimize delivery pipelines, platform security, and compliance standards. Mentored junior engineers and drove continuous improvement in platform reliability and secure application delivery across the fleet.
  • Optimized Kubernetes workloads by leveraging Containerd as the container runtime for improved performance and resource utilization.
  • Implemented Grafana Stack (Prometheus, Loki, Tempo) and New Relic for observability, real-time monitoring, and performance analysis of cloud applications.
  • Defined and configured escalation protocols based on the severity of Datadog alerts, ensuring the right teams were notified to address critical issues within SLAs.

Devsecops Engineer

Accenture
06.2022 - 10.2024


  • Architected and implemented multi-cloud environments in AWS, GCP, and Azure, leveraging services such as EC2, ECS, EKS, S3, CloudFront, CloudWatch, CloudTrail, IAM, RDS, Route53, Compute Engine, Cloud SQL, Stackdriver, AKS, and Azure AD.
  • Designed and deployed observability and monitoring platforms using Prometheus, Grafana, CloudWatch, Stackdriver, and Datadog, enabling end-to-end visibility and actionable insights across production workloads.
  • Automated incident response and operational workflows using Python, PowerShell, Bash, Lambda, Cloud Functions, Ansible, and Chef, reducing MTTR and ensuring system reliability.
  • Built and managed CI/CD pipelines using Jenkins, GitOps, Terraform, CloudFormation, Pulumi, and ARM templates, supporting automated deployments across cloud platforms.
  • Ensured regulatory compliance and audit readiness for healthcare and enterprise systems, adhering to SOC 2, ISO 27001, ISO 13485, and 21 CFR Part 820, including logging, access controls, vulnerability management, and disaster recovery processes.
  • Developed microservices and RESTful APIs in Go and ASP.NET Core for high-performance applications, ensuring scalability, maintainability, and secure handling of sensitive health data.
  • Containerized applications using Docker, orchestrated with Kubernetes (EKS/AKS), creating pods, deployments, replica sets, services, ingress, and health checks for scalable, fault-tolerant architectures.
  • Managed network infrastructure including LAN/WAN, Cisco/Arista devices, firewalls, VPNs, routing (OSPF/BGP), and automated network tasks using Python scripting.
  • Configured Akamai WAF and cloud-native security controls to protect applications against web attacks (SQL injection, XSS, DDoS) and ensure compliance in regulated environments.
  • Performed load and performance testing using LoadRunner and Datadog APM, optimizing application throughput and system reliability.
  • Participated in on-call rotations, blameless postmortems, and continuous improvement initiatives, mentoring junior engineers on cloud-native best practices, observability, and compliance processes.

DevOps Engineer

Aricent Technologies
07.2020 - 05.2022


  • Designed, provisioned, and maintained AWS EC2 instances and virtual networks, including Direct Connect to on-premises environments, supporting healthcare applications and medical device telemetry data.
  • Developed Terraform templates for AWS and Azure infrastructure, integrating with Jenkins, Ansible, and CI/CD pipelines to automate deployments across multi-cloud healthcare environments.
  • Managed CI/CD pipelines in Jenkins, using Groovy scripts, shell automation, and GitOps to ensure repeatable deployments of healthcare applications and medical device backend services.
  • Architected and deployed VMware SD-WAN (VeloCloud) across branch offices and medical device facilities, ensuring high-performance connectivity for remote monitoring systems and cloud-hosted applications.
  • Configured SD-WAN security features, including next-generation firewalls, VPN encryption, and threat intelligence, to protect sensitive patient data and meet regulatory requirements.
  • Implemented monitoring and observability for healthcare applications using Prometheus, Grafana, Datadog, CloudWatch, and Stackdriver, including metrics for device telemetry, service latency, and resource utilization.
  • Built and managed Docker environments and Kubernetes clusters (EKS/AKS) for medical device microservices, handling pods, deployments, replica sets, services, ingress, ConfigMaps, and auto-scaling.
  • Deployed .NET and Java applications for healthcare platforms, ensuring secure handling of Protected Health Information (PHI) and compliance with HIPAA, ISO 13485, and 21 CFR Part 820 standards.
  • Configured Datadog APM, Network Performance Monitoring, and distributed tracing to monitor medical device services, detect anomalies, and streamline root cause analysis.
  • Migrated healthcare workloads from AWS to Azure using Azure Migrate, assessing cloud infrastructure to ensure secure, high-availability architecture for regulated applications.
  • Provisioned Azure resources (VMs, SQL Databases, Web Apps, AKS, Storage, Redis Cache) via ARM templates, Terraform, and PowerShell for healthcare applications with compliance enforcement.
  • Implemented Infrastructure as Code (IaC) solutions for healthcare workloads, creating reusable modules for compute, storage, networking, and database components.
  • Administered source control with Git, integrating with Jenkins for automated deployment of healthcare application code and microservices.
  • Secured healthcare applications using Akamai WAF and cloud-native security controls, tuning rules to prevent SQL injection, XSS, DDoS attacks, and ensure PHI protection.
  • Managed Ansible and Ansible Tower for automated configuration management, deployment, and server provisioning for regulated healthcare workloads.
  • Implemented Dynatrace monitoring for healthcare applications, integrating with AD, email servers, and event management for performance monitoring and alerting.
  • Deployed and managed Splunk infrastructure for logging, security monitoring, and operational intelligence of medical device and healthcare applications.
  • Configured and maintained OpenShift clusters for containerized healthcare applications, integrating with CI/CD pipelines for automated deployment, scaling, and orchestration.
  • Automated repetitive healthcare cloud tasks using Python, Bash, and PowerShell scripts, including infrastructure provisioning, application deployment, and telemetry data collection.
  • Participated in Agile, Scrum, and Waterfall methodologies, contributing to sprint planning, process improvement, QC training, and weekly status reporting.
  • Ensured regulatory compliance for healthcare and medical devices, maintaining secure logging, access control, vulnerability management, incident response, and disaster recovery in line with SOC 2, ISO 27001, ISO 13485, 21 CFR Part 820, and HIPAA.
  • Monitored medical device telemetry data, ensuring high availability, scalability, and secure handling across cloud-based microservices and backend infrastructure.
  • Led performance tuning and load testing for healthcare applications and medical device backends, ensuring reliable, low-latency operation under regulatory constraints.

Education

Master of Science - Cyber Security

Webster University
Orlando
12-2023

Bachelors in Technology - Computer Science

Pondicherry University
India
04-2018

Skills

  • Cloud Platforms: AWS (EC2, EKS, S3, CloudWatch, CloudTrail, IAM, RDS, Route53), GCP (Compute Engine, Cloud Storage, Cloud SQL, Stackdriver, Cloud CDN), Azure (VMs, AKS, Storage, SQL Database, Azure AD)
  • Infrastructure & Automation: Terraform, CloudFormation, ARM Templates, Ansible, Ansible Tower, Chef, Python, Bash, PowerShell, Shell Scripting
  • CI/CD & Containerization: Jenkins (Pipelines, Groovy Scripts), Git/GitOps, Docker (Images, Containers, Volumes), Kubernetes (EKS/AKS), Helm, OpenShift, Rancher
  • Monitoring & Observability: Prometheus, Grafana, Datadog (APM, Distributed Tracing, Network Monitoring), Dynatrace, CloudWatch, Stackdriver, Splunk
  • Networking & Security: VMware SD-WAN (VeloCloud), Firewalls, VPNs, Akamai WAF, OSPF/BGP, HSRP, Spanning Tree, F5, AVI, Infoblox, Threat Intelligence Integration
  • Messaging & Queues: Kafka, QueueIT
  • Application Development: Go (Microservices, REST APIs), ASPNET Core (MVC, Entity Framework), Java, SQL Server / Azure SQL, Microservices Design & Development
  • Healthcare & Compliance: ISO 13485, 21 CFR Part 820, HIPAA, SOC 2, ISO 27001, PHI Handling, Medical Device Telemetry, Regulated Cloud Workloads
  • Other Skills: Agile/Scrum, Performance & Load Testing (LoadRunner, Datadog APM), Cloud Migration (AWS ↔ Azure ↔ On-Premises), Cron Jobs/Linux Automation

Certification

  • AWS Cloud Practitioner
  • AWS Cloud Developer
  • AWS Cloud Developer
  • AWS Certified SysOps Administrator
  • Azure Administrator Associate



Timeline

Cloud Systems and Security Engineer

Walt Disney World
10.2024 - Current

Devsecops Engineer

Accenture
06.2022 - 10.2024

DevOps Engineer

Aricent Technologies
07.2020 - 05.2022

Master of Science - Cyber Security

Webster University

Bachelors in Technology - Computer Science

Pondicherry University