ββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
β moovendhan@cloud:~$ cat about.json β
ββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ€
β { β
β "role" : "AWS Cloud & Security Engineer", β
β "focus" : ["Cloud Security", "DevOps", "Backend"], β
β "location" : "Puducherry, India", β
β "passion" : "Automating everything that can be automated", β
β "status" : "π’ Open to opportunities", β
β "website" : "https://agricreations.com" β
β } β
ββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββπ I build secure, scalable cloud infrastructure on AWS β with an obsession for hardened pipelines, least-privilege IAM policies, and zero-downtime deployments. If it can be automated, it will be automated.
|
π AWS Security
|
βοΈ Cloud Infrastructure
|
|
βοΈ DevOps & Automation
|
π§ Backend Engineering
|
βββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
β SECURITY-FIRST ARCHITECTURE PRINCIPLES β
βββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ€
β β
Least privilege IAM β Zero standing access β
β β
Encrypt at rest β KMS for all sensitive data β
β β
Encrypt in transit β TLS 1.2+ enforced everywhere β
β β
Audit everything β CloudTrail + CloudWatch Logs β
β β
Shift left security β SAST/DAST in CI/CD pipelines β
β β
Immutable infra β No SSH, use SSM Session Manager β
β β
Secrets rotation β Automated via Secrets Manager β
βββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
| Project | Stack | Status |
|---|---|---|
| π Secure multi-account AWS landing zone | Terraform + AWS Control Tower | In Progress |
| π‘οΈ Automated security compliance checker | Python + AWS Config Rules | In Progress |
| βοΈ Zero-downtime deployment pipeline | GitHub Actions + ECS Blue/Green | Active |
| π¦ Microservices with service mesh | Node.js + Docker + ALB | Active |


