01 / Work
Selected work
- 01
Modular, multi-state Terraform for Azure
One configuration and one state for every environment means every change carries production risk, and engineers block each other.
- 02
Secure-by-default delivery pipelines
Scanners that only produce reports get ignored, and vulnerabilities reach production anyway.
- 03
Scaling AKS networking with CNI Overlay and Cilium
Classic Azure CNI gives every pod an address from the VNet, so growing clusters exhaust their subnets.
- 04
API publishing with Azure API Management
APIs updated manually in the portal drift away from the code behind them.
02 / About
About

I started in DevOps in 2018, building Azure infrastructure and CI/CD for client projects, and I've moved steadily closer to the platform itself.
Today I work across the full lifecycle of production Azure platforms: AKS clusters, reusable Terraform modules, pipelines with enforced security gates, API Management and monitoring.
Two things matter to me more than any single tool: making the secure path the easy path, and leaving systems simpler than I found them.
03 / Play
Side projects and experiments
This site
A static Next.js site on Azure Static Web Apps, provisioned with Terraform and gated in CI: accessibility, Lighthouse, bundle budgets and link checks run on every change.
04 / Services
What I do
- 01
Azure Cloud & API Management
Landing zones, networking and identity across subscriptions, with API Management in front of microservices.
- 02
Kubernetes Platforms
AKS clusters designed, upgraded, scaled and hardened for production, with workloads shipped through Helm.
- 03
Infrastructure as Code
Reusable Terraform modules and multi-state layouts that make infrastructure changes safe and reviewable.
- 04
CI/CD Engineering
Pipelines that build, test, scan and release across environments, built from shared templates.
- 05
DevSecOps
Security built into delivery: scanning as a gate, hardened images, secrets out of code, least-privilege access.
- 06
Observability & Cost
Dashboards and alerts that surface issues early, and cloud spend that stays under control.
05 / Stack
Tech stack
Grouped by area and ordered by depth.
Cloud
- Microsoft Azure
- AKS
- App Services
- Virtual Machines
- Function Apps
- Storage Accounts
- Azure Container Registry
- API Management
- Service Bus
- Key Vault
- Entra ID
- PostgreSQL
- Redis
- Azure OpenAI
Containers
- Kubernetes
- Docker
- Helm
- Dapr
Infrastructure as Code
- Terraform
- Azure Verified Modules
- ARM templates
CI/CD
- Azure DevOps
- GitLab CI
- Jenkins
- Git
Networking
- VNets
- VNet peering
- Private Endpoints
- Private and public DNS
- NSGs
- Azure CNI Overlay
- Cilium
Security
- SonarCloud
- Trivy
- JFrog Xray
- Orca Security
- ArmorCode
- Distroless images
- RBAC
- Managed Identity
Observability
- Azure Monitor
- Application Insights
- Log Analytics
- Prometheus
- Grafana
- Datadog
- ELK
Languages
- Python
- Bash
- Azure CLI
- YAML
06 / Experience
Experience
Since 2018
Building on Azure
3
Certifications
2014 – 2018
Don Bosco Institute of Technology, Bengaluru
B.E., Electronics & Communication
Feb 2018 – Sep 2019
Cubespace Technologies
DevOps Engineer
- Managed Azure virtual machines, networking and storage for client and internal projects.
- Introduced CI/CD automation and containerised legacy applications.
Jan 2020 – Oct 2022
Unified Softech
DevOps Engineer
- Built and ran Kubernetes platforms on Azure for production client workloads.
- Moved legacy deployments onto containers and Terraform-managed infrastructure.
- Delivered CI/CD pipelines and monitoring with Prometheus, Grafana and ELK.
Feb 2023 – Present
CNH Industrial
- Software Engineer II, DevOps & Platform EngineeringMay 2025 – Present
- Software Engineer I, DevOps EngineeringFeb 2023 – Apr 2025
- Build and operate production AKS clusters: provisioning, upgrades, node pools, autoscaling, isolation and hardening.
- Develop reusable Terraform modules for Azure using Azure Verified Modules (AVM), with a multi-state layout that separates networking, clusters and shared services.
- Design CI/CD pipelines in Azure DevOps and GitLab CI with reusable templates and enforced security gates for code, dependency and container image scanning.
- Manage Azure API Management (APIM): policies, backends, API lifecycle and automated OpenAPI publishing through pipelines.
- Implement private networking with VNets, peering, private endpoints and private DNS for platform services.
- Run observability with Azure Monitor, Prometheus, Grafana and Datadog.
07 / Certifications
Certifications
- 01
Microsoft Certified: Azure Administrator Associate (AZ-104)Verify Microsoft Certified: Azure Administrator Associate (AZ-104), opens in a new tab
- 02
HashiCorp Certified: Terraform Associate (003)Verify HashiCorp Certified: Terraform Associate (003), opens in a new tab - 03
Microsoft Certified: Azure Fundamentals (AZ-900)Verify Microsoft Certified: Azure Fundamentals (AZ-900), opens in a new tab
- In progressCertified Kubernetes Administrator (CKA)
08 / Contact
Let's talk
Hiring for a platform, DevOps or SRE role, or want to talk Azure, Kubernetes or Terraform? Send me a note. I usually reply within two working days.





