cloud infrastructure / engineering

Sanjay
Parmar.

Cloud / DevOps Engineer · SRE

Designing resilient cloud platforms, automating delivery, and making complex infrastructure feel simple.

India · open to remote|Full-time · contract · consulting

profile

Cloud / DevOps Engineer and SRE focused on building secure, observable, and scalable platforms across AWS, Google Cloud, and Azure.

From infrastructure as code to container orchestration and automated delivery, I connect engineering rigor with practical operations — including PCI-DSS and SOC 2 programs for FinTech and InsurTech platforms. The goal is always the same: systems that are easier to ship, understand, and trust.

career

Professional experience

Roles spanning cloud architecture, SRE, DevSecOps, and platform engineering across FinTech, InsurTech, and digital media.

Lead DevOps Engineer

2023 – Present

  • Lead end-to-end DevOps strategy for an InsurTech platform spanning cloud infrastructure, CI/CD, and production support.
  • Architected serverless AWS workflows with Lambda, Step Functions, and API Gateway to speed delivery and cut operational overhead.
  • Achieved SOC 2 Type II compliance through IAM/RBAC hardening and continuous audit-readiness.
  • Reduced cloud spend by ~10% via rightsizing, Reserved Instances, and idle-resource cleanup.
  • Cut mean time to detect incidents by 40%+ with Prometheus, Grafana, and CloudWatch alerting.

DevOps / SRE / Cloud Architect

2018 – 2022

  • Designed enterprise AWS infrastructure for FinTech platforms supporting 100k+ concurrent connections.
  • Built DevOps and SRE practices from scratch while delivering PCI-DSS and SOC 2 compliance.
  • Ran highly available EKS clusters with HPA and cluster autoscaling; established GitOps with GitHub Actions and Argo CD.
  • Provisioned infrastructure with Terraform and Terragrunt; automated patching and config with Ansible.
  • Migrated on-prem workloads to AWS and stood up Prometheus/Grafana observability across services.

DevSecOps Engineer

2018

  • Implemented centralized authentication with FreeIPA / Red Hat IDM integrated into Git and Jenkins.
  • Delivered CIS benchmark hardening and SIEM coverage on AWS.
  • Automated provisioning with Terraform and Ansible; managed Docker environments for production and staging.

Cloud / Linux / DevOps

2013 – 2017

  • Managed ELK logging, MySQL high availability, and AWS/GCP networking with Ansible-driven automation.
  • Operated high-traffic digital media platforms with Redis/MySQL clusters and Terraform on AWS/GCP.
  • Administered Linux servers, LAMP/LNMP stacks, DNS, mail systems, and L2 production support.

capabilities

Technical skills

A practical toolkit for designing, shipping, and reliably operating cloud-native systems.

Cloud Platforms

AWSGoogle CloudMicrosoft AzureCloud ArchitectureLanding Zones

Containers & Orchestration

KubernetesDockerHelmEKSGKEAKS

CI/CD & GitOps

JenkinsGitHub ActionsGitLab CIArgo CDRelease AutomationGitOps

Infrastructure as Code

TerraformAnsibleCloudFormationPackerTerragruntConfiguration Management

SRE & Reliability

SLIs / SLOs / SLAsError BudgetsIncident ResponseRoot Cause AnalysisCapacity PlanningDisaster Recovery

Monitoring & Observability

PrometheusGrafanaDatadogLokiELK StackOpenTelemetryCloudWatchAlerting

Data & Storage

PostgreSQLMySQLMongoDBRedisS3Backup Strategy

Security & Compliance

IAMVaultDevSecOpsNetwork SecuritySecrets ManagementPCI-DSSSOC 2

Operating Systems

LinuxRed Hat Enterprise LinuxBashPythonNetworkingSystem Hardening

selected work

Projects that move systems forward

Practical initiatives across trust, efficiency, and infrastructure automation — with outcomes pulled from real delivery.

case study

Secure infrastructure & compliance

Hardened cloud foundations for FinTech and InsurTech workloads with identity guardrails, evidence collection, and continuous compliance visibility.

  • SOC 2 Type II and PCI-DSS readiness
  • IAM / RBAC enforcement at scale
  • Continuous control monitoring
ComplianceDevSecOpsSecurity
case study

Cloud Migration & Modernization

Migrated legacy and on-premises workloads onto AWS with automated provisioning, resilient networking, and observable landing zones.

  • On-prem to AWS migration runbooks
  • Terraform / Terragrunt landing zones
  • HA multi-AZ application hosting
Cloud MigrationAWSArchitecture
case study

Cloud cost optimization

Introduced usage visibility, rightsizing, and Reserved Instance planning without slowing delivery for production platforms.

  • ~10% cloud spend reduction
  • Idle resource elimination
  • Budget and anomaly alerts
FinOpsAWSAutomation
case study

GitOps and CI/CD Pipeline

Built self-service CI/CD and GitOps paths from commit to Kubernetes with clear promotion and rollback.

  • GitHub Actions + Argo CD pipelines
  • Faster deployment cycles
  • Improved developer autonomy
GitHub ActionsGitLab CIArgo CD
case study

Temporary access management

Implemented time-bound access workflows that reduce standing privilege while keeping operational access auditable.

  • Just-in-time permissions
  • Approval and expiry controls
  • Complete access audit trail
IAMVaultZero Trust
case study

Microservices platform on Kubernetes

Operated EKS platforms for containerized services with standardized packaging, autoscaling, and release patterns for 100k+ concurrent connections.

  • HA EKS with HPA / autoscaling
  • Reusable Helm charts
  • Consistent release patterns
KubernetesHelmMicroservices
case study

SRE observability & incident response

Unified metrics, logs, and alerting across production services with Prometheus, Grafana, CloudWatch, and the ELK stack.

  • 40%+ faster incident detection
  • Service dashboards and SLOs
  • Actionable alerts and runbooks
GrafanaPrometheusCloudWatchELK
case study

Infrastructure automation platform

Turned approved changes into consistent environments across AWS and Kubernetes with reusable modules and policy-driven delivery.

  • Reusable Terraform modules
  • Ansible patching automation
  • Policy-driven delivery
TerraformKubernetesGitOps

credentials

Certifications

Validated foundations across cloud architecture, containers, infrastructure, and security.

cloud & devops

AWS Solutions Architect – Professional
AWS Solutions Architect – Associate
AWS SysOps Administrator – Associate
Certified Kubernetes Administrator
Certified Kubernetes Application Developer
HashiCorp Certified: Terraform Associate

infrastructure & security

HashiCorp Certified: Vault Associate
Docker Certified Associate
Red Hat Certified Engineer
Red Hat Security Specialist

foundation

Education & beyond

education

Master of Computer Applications

communication

English · Hindi

working style

Curious · analytical · collaborative