About
I'm a Senior Cloud / DevOps Engineer with 15+ years building, automating, and securing distributed platforms for regulated enterprises. These days I move on-prem Hadoop and Spark workloads onto serverless AWS, run production Kubernetes with zero-downtime deploys, and manage it all as Terraform code shipped through GitHub Actions. It rests on deep operational roots — scaling 120-node Hadoop clusters, hardening Kafka and ClickHouse — the same least-privilege discipline I now bring to cloud IAM and Kubernetes RBAC.
Products & Open Source
CPS 234 / CPS 230 conformance pack for AWS Config — 46 managed rules mapped paragraph-by-paragraph, replacing AWS's ~4-year-stale pack — plus Cloud Custodian + Prowler policy-as-code and a Bedrock "compliance narrator" turning findings into audit-ready reports.
Kafka security & compliance scanner that audits cluster configs against ~55 controls.
ClickHouse monitoring & observability SaaS, built end-to-end.
Experience
- 2022 — nowSenior Cloud / DevOps EngineerTelstra (client) · MelbourneRe-platformed Hadoop/Spark ETL onto AWS EMR & EMR Serverless (S3 lake, Athena/Glue/QuickSight); built production EKS with IRSA + dual IAM/RBAC and zero-downtime rollouts; Terraform + GitHub Actions IaC; hardened Kafka & ClickHouse.
- 2017 — 2022Senior Engineer, Cloud & OpsClairvoyant · PuneLed big-data admin across Cloudera & Hortonworks (~300 nodes); AKS via Terraform; CIS benchmarking; Prometheus/Grafana observability.
- 2014 — 2017Module Lead, DevOps / HadoopPersistent Systems · PuneTLS/SSL + LDAP for Hadoop services; greenfield provisioning through CDH upgrades; NiFi.
- 2010 — 2014Programmer AnalystCognizant · PuneMulti-node Hadoop cluster install, config, and operational support across distributions.