I will create a cloud architecture specializing in AWS security and engineeiing

Pakistan

I speak Urdu, English, Arabic, Turkish

Cloud Engineer

I am a Cloud Engineer with expertise in DevSecOps and AWS Security. I specialize in designing secure cloud architectures and implementing identity and access management to protect critical assets.
About this Gig

Live E-Commerce Platform on AWS. Built and deployed a fully operational e-commerce website on AWS from scratch.

Infrastructure includes VPC, Subnets, Internet Gateway (IGW), NAT Gateway, Route Tables, Security Groups, and NACLs.

Compute layer built using EC2, Nginx reverse proxy, Node.js backend, pm2.

High availability setup using Application Load Balancer, Target Groups, HTTPS, Auto Scaling Group, Launch Templates, AMI baking (CI/CD).

Database architecture includes RDS MySQL, KMS (CMK encryption), Secrets Manager, Read Replica.

Storage configured using S3 (versioning, lifecycle, encryption, policies).

Monitoring using CloudWatch dashboards, alarms, custom metrics, VPC Flow Logs.

Logging via CloudTrail (KMS encrypted, CloudWatch Logs, 5 security alarms).

Security stack includes GuardDuty, Security Hub, AWS Config, IAM (least privilege, MFA, OIDC), Secrets Manager.

Infrastructure as Code using Terraform (9 files, S3 remote state).

CI/CD pipeline using GitHub Actions, SSM, AMI baking, Launch Template updates.

Serverless integrations using Lambda + API Gateway.

CDN and security layer includes CloudFront + WAF.

Performed Red Team and Blue Team attack testing to validate security postur

Cloud provider:

Amazon Web Services

Expertise:

Installation

Migration

Debugging

Development

Cloud computing resource:

ELB

Route53

VPC

Security Groups

DNS

My Portfolio