
Kiran B
Cloud DevOps Engineer
Habilidades

Conheça meus serviços

Portfólio
Experiência profissional
Infosys
3 yrs 4 mos
Senior systems engineer
Nov 2024 - Oct 2025 • 11 mos
Architected and owned HashiCorp Vault deployment end-to-end — dynamic secrets injection, policy-based access control, credential rotation, and automated revocation — eliminating hardcoded credentials across production environments. Built a self-service Vault UI (Node.js + Angular) that gave engineering teams direct, auditable access to secrets without raising support tickets — cutting secrets-related manual effort by 50%. Integrated Vault into Kubernetes via the Vault Secrets Operator, enabling zero-touch secret injection into microservices without application-level code changes. Developed an AI-powered incident knowledge base using Amazon Bedrock — surfacing past incident summaries and recommended remediation steps during RCA, reducing incident resolution time by 40–50%. Embedded secrets lifecycle automation into Jenkins and GitHub Actions CI/ CD pipelines, ensuring every deployment handled credential provisioning and rotation without manual intervention. Mentored system engineers on Vault architecture, DevSecOps practices, and IaC workflows — reducing team dependency on senior engineers for routine infrastructure tasks.
System Engineer
May 2022 - Oct 2024 • 2 yrs 5 mos
Designed and delivered CI/CD pipelines using Jenkins and GitHub Actions across multiple application teams — cutting deployment time by 70% and eliminating manual release handoffs. Containerised microservices with Docker and orchestrated deployments on AWS EKS using Helm — enabling version-controlled rollouts and instant rollback on failure. Provisioned and managed AWS infrastructure — EC2, VPC, IAM, S3, ELB, EKS — using Terraform, standardising environment setup across dev, staging, and production and cutting provisioning time from days to under 30 minutes. Integrated SonarQube quality gates into CI pipelines to block vulnerable code from reaching production; added Trivy image scanning at build time to catch container-level CVEs before deployment. Configured Prometheus and Grafana monitoring with SLO-based alerting for CPU, memory, and pod health — reducing alert noise and improving MTTR for production incidents. Wrote Python and Bash automation scripts to eliminate recurring manual operations — freeing engineering bandwidth for higher-priority work.