Seven years in platform engineering
Experience
Platform engineering lead with seven years of experience, now leading an eight-person team that owns the compliance path for cloud compute across 500+ AWS and 100+ GCP accounts. The thread running through all of it: build infrastructure where compliance is inherited rather than chased.
Core competencies
Cloud & Kubernetes
- AWS
- Google Cloud
- Kubernetes
- Helm
- Docker
Infrastructure as Code
- Terraform
- Terragrunt
- CloudFormation
- Packer
- Ansible
CI/CD
- GitLab CI
- GitHub Actions
- GitOps
- Buildah
- Artifactory
Security & Compliance
- IAM
- OIDC
- permission boundaries
- SCPs/RCPs
- CIS
- SBOM
Languages & AI
- Python
- Amazon Bedrock
- MCP
Timeline
Where I've worked
Roche Information Solutions India
Acting Platform Lead | DevOps Engineer · Pune
Own architecture, roadmap and technology direction for the internal developer platform serving three enterprise stakeholder groups.
Platform development
-
Self-service multi-cloud IAM
Replaced ticket queues with on-demand role vending. On GCP, Workload Identity Federation for keyless CI/CD authentication; on AWS, OIDC federation issuing temporary credentials constrained by permission boundaries.
-
Patching platform — service owner
A serverless, self-service system letting engineers patch EC2 instances with automated status reporting. Built on AWS Systems Manager, promoting validated patches from dev to prod with concurrency control. Patches 1,000+ instances monthly, cut the cycle from a week to one day, used by 10+ teams across 100 AWS accounts. The GCP version is in progress on VM Manager and Cloud Functions.
-
Pipeline generator
A Python and Jinja engine that renders complete GitLab CI and GitHub Actions pipelines from declarative YAML models.
-
Multi-cloud Kubernetes fleet
A dynamic build fleet on EKS and GKE processing 1,000+ jobs weekly. Provisioned with Terragrunt, isolating 10 tenants via network policies and resource quotas. GKE autoscaling and Karpenter on EKS, with Buildah for rootless container builds.
-
OS image factory
Co-architected a hybrid image pipeline delivering 5 OS families and 20+ compute variants across AWS and GCP, including GPU images validated by automated test-pod deployment on GPU-enabled clusters.
-
Day-2 operations
Directed the automated release pipeline for monthly OS updates under QMS workflows with SBOM and CIS enforcement. Drove $10K in quarterly storage savings through automated image lifecycle and retirement analytics.
-
Secure account provisioning
Automated rollout of AWS SCPs and RCPs and GCP Organization Policies through a Terraform, Python and Jinja pipeline. Removed public internet build dependencies by introducing Artifactory as a package proxy and compliance-artifact store.
-
GenAI developer tooling
An Amazon Bedrock-backed log analyser with a Python pipeline that cleans and deduplicates input to control token spend, and an autonomous code-review agent that flags anomalies in merge requests for human reviewers.
Leadership
-
Team leadership
Lead an eight-person team, owning backlog, release management and stakeholder communication. Hired six engineers against an in-house technical bar.
-
Technical strategy
Directed the GitHub Actions versus ArgoCD evaluation that selected the team's CI orchestrator.
-
Developer advocacy
Established documentation standards — product guides, FAQs and technical wikis — and delivered architecture briefings to 200+ cross-functional stakeholders.
-
Migration execution
Leading the GitLab to GitHub migration and pipeline re-architecture with a three-person team. Represented the platform at international PI planning in Roche Switzerland (2025).
Amazon Development Centre India
DevOps Engineer | Primary On-Call SPOC · Hyderabad
Resolved critical platform limits for TB-scale data pipelines and led incident management as primary on-call, driving root cause analyses and authoring the runbooks the rotation still uses.
Highlights
-
High-throughput serverless pipeline
Resolved execution limits on a TB-scale ingestion pipeline by re-architecting it as distributed serverless workloads, orchestrating independent read, write and process stages with SQS and Step Functions plus custom file indexing.
-
Serverless backends
Internal data-aggregation tools on a fully serverless AWS stack, defined with AWS CDK and using Boto3 for cross-account API calls.
-
Incident management
Primary on-call lead for high-severity production incidents. Drove root cause analyses, implemented preventative mitigations, and authored the SOPs and runbooks the rotation still uses.
Tata Consultancy Services
AWS DevOps Engineer · Nagpur
Automated disaster recovery, owned Jenkins CI/CD pipelines for microservices, and provisioned AWS infrastructure with Terraform and CloudFormation for a hybrid cloud migration.
Highlights
-
Automated disaster recovery
A Jenkins job triggered by SQS on instance-termination events restores instances and databases with no manual step.
-
Jenkins CI/CD ownership
Shared libraries and multibranch pipelines for microservices and micro frontends, plus Kubernetes deployment and pod troubleshooting support.
-
Infrastructure as Code
Provisioned AWS with Terraform and CloudFormation using remote state and reusable modules, delivering a hybrid cloud migration with Packer-built AMIs.
Education
B.E. Electronics & Telecommunication
G.H. Raisoni College of Engineering, Nagpur