Cloud Engineer at LTIMINDTREE Pvt Ltd. (2022-06 – 2025-11)
We support Fasttrack Migration by deploying and configuring the infrastructure in azure for migrators to migrate the data from on premises to microsoft365.
- Designed and deployed Azure Virtual Machines (VMs) to support diverse workload requirements, ensuring scalability and performance.
- Managed VM configurations, including OS installations, disk storage, networking, and security settings.
- Implemented automated provisioning and deployment of Azure VMs using Azure Resource Manager (ARM) templates and PowerShell scripts.
- Optimized VM performance and cost-efficiency through rightsizing, load balancing, and utilization monitoring.
- Built and managed Infrastructure as Code using Terraform and ARM Templates for Azure resource provisioning.
- Developed and maintained CI/CD pipelines to automate infrastructure deployments and application releases.
- Creating, administrating and Maintaining RDG server User accounts.
- Managing backups of virtual machines on daily basis and performing patching activities on monthly basis through Azure Update Manager.
- Setting up group policies, firewall rules and DNS records for the VMs.
- Creating users & Groups, dynamic groups on azure AD roles, role-based access controls (RBAC) and locking resources. Creating Network Security Groups (NSGs) to control inbound and outbound access to network interfaces (NICs), VMs and subnets. Manage identity and access management, encryption, and secure network configurations.
- Maintaining security and hygiene of all the machines (Windows).
- Configuring VMs in a secure way to pass the security check.
- Setting up security tools (PAVC, AzSecPack & Geneva) on Windows machines.
- Performed R&D on Linux VMs MDSD (Geneva), successfully implemented it and created the document for the team.
- Set up monitoring and logging solutions using Azure Monitor, Log Analytics, or other relevant tools to proactively identify and resolve issues.
- Collaborated with stakeholders to plan and execute the seamless transfer of virtual machines and their associated resources between Azure tenants.
- Validating Activity Logs, Azure Antimalware & Azure Matrices.
- Managed Kubernetes clusters using kubectl commands for deploying, scaling, and maintaining containerized applications.
- Performed troubleshooting and debugging of Kubernetes resources and applications using kubectl and Kubernetes Dashboard.
- Improved application availability by implementing automated rolling updates of AKS pods using planned maintenance scheduler.
- Managed and updated container images within Azure Kubernetes Service (AKS)
- Designed and implemented Azure Firewall and integrated it with Azure Virtual Networks (VNets) and azure services to control and monitor inbound and outbound network traffic.
- Managed Azure Key Vault to securely store and access secrets, keys, and certificates used in cloud applications.
- Implemented access policies and permissions in Azure Key Vault to ensure compliance with security best practices and regulatory requirements.
- Integrated Azure Key Vault with Azure services and applications, enabling secure configuration and management of sensitive information.
- Managed Azure Storage Accounts for efficient storage and retrieval of data in various azure services and applications.
- Implemented and optimized Azure Blob Storage for storing unstructured data, ensuring scalability and cost-efficiency.
- Implemented disk encryption solutions for Azure Virtual Machines (VMs) using Azure Key Vault integration.
- Designed and deployed Azure Front Door to improve global application performance and availability by configured routing rules, load balancing, and caching policies in it to optimize application delivery.
- Installing, configuring SQL Server instances, and implementing and managing database security (authentication, authorization, encryption).
- Having good working knowledge of Virtual Machine Scale Sets Manual and Auto scaling Profile concepts.
- Creating Storage account backup using- AZ Copy, Snapshot options.
- Utilising Infrastructure as Code (IaC) tools such as Terraform or Azure Resource Manager (ARM) templates to define and manage cloud infrastructure resources.
- Installing the SPMT Manager and SPMT Tool in customer environments to help them in migrating content from on-premises SharePoint sites to Microsoft 365 over 48 customers.
- Implemented and configured Microsoft Defender for Cloud to monitor and protect Azure Active Directory (AAD) environments against advanced threats.
- Conducted security assessments and audits using Microsoft Defender for Cloud, identifying and mitigating security vulnerabilities and risks
- Utilized Azure Sentinel to monitor, detect, and respond to security incidents across Azure and hybrid environments.
- Developed and customized security analytics rules and queries in Azure Sentinel to detect suspicious activities and potential threats.
- Investigated security alerts and incidents, providing timely and effective response actions to mitigate risks and prevent further incidents.
- Creation of Azure alerts using KQL query to monitor specific conditions or thresholds with the data.
- Successfully promoted a VM to a Domain Controller, enhancing network security and improving authentication services
- Implemented Azure Policy initiatives to enforce organizational standards and regulatory compliance across multiple Azure environments.
- Performed domain join operations for Windows servers and client machines, ensuring seamless integration into the corporate Active Directory environment.
- Creation of PowerShell scripts to automate cloud and server-based operations.
- Fixing security issues as soon as they are detected.
- Maintaining technical documents.
DevOps Engineer at Gapbridge Software Service Pvt Ltd. (2021-07 – 2022-05)
AFTP is a versatile learning platform for client employee reskilling, supporting both inter and intra-client needs. It integrates with YouTube, Skillsoft, Accenture Academy, Google, Cognition, and SuccessFactors. Curators manage content curation for a seamless learning experience. The platform guides users, ensures content completion, offers rewards, and provides offline workshops for group learning.
- Proficient in AWS services: CodeCommit, CodeBuild, CodePipeline, S3, IAM, CloudWatch, VPC, CloudFormation.
- Created pipelines for non-prod and prod environments, managing QA, Stage, and Prod deployments.
- Actively participated in daily Scrum meetings, updating Jira tasks.
- Troubleshot build issues using build and CloudWatch logs, managed IAM permissions for developers with Azure.
- Cloned, modified, and pushed code in CodeCommit, executing scripts and setting up pipelines.
- Implemented Lambda triggers for automated deployments, handling backend and frontend processes.
- Resolved environment issues, ensured readiness for development and testing.
- Addressed internal and cloud-native vulnerabilities, customized IAM policies for S3 access.
- Facilitated Accenture client onboarding for new tenants.
DevOps Engineer at ITOrizon India PVT Limited (2020-04 – 2020-08)
Our client is an online retailer which is located in USA and it has applications which are both internal and external. Many internal applications are being managed with Kubernetes clusters and currently we have 20+ clusters in our infrastructure.
- Involved in Deployments and automation gitlab deployment setup.
- Worked in implementing & automating CI/CD Pipelines using Jenkins.
- Monitoring the Cluster components using NewRelic and taking necessary actions when a POD or Node is reporting issues.
- Creating Docker files for the new applications and pushing it to the private Dockerhub.
- Worked on Gitlab CI/CD with pipelines.
Senior Associate at Wipro Ltd (2018-02 – 2020-03)
- Involved in setting up and creating automated builds using Continuous Integration tool Jenkins for different applications and environments.
- Responsible for installing Jenkins's master and slave nodes on AWS EC2 Servers.
- Implemented Software release management strategies for various applications according to agile process.
- Involved in walk through calls for release activities and took ownership of it.