DevOps & Platform Engineer
Talha
Multi-Cloud Infrastructure • KubernetesProduction Reliability
DevOps & Platform Engineer operating across multi-account AWS, Kubernetes (EKS), Terraform, and GitOps for high-scale distributed systems worldwide.
A selection of production-tested cloud platforms, GitOps architectures, and open-source systems.
End-to-end automated CI/CD platform using GitHub Actions to automate builds, container testing, and multi-environment deployments.
Features automated linting, containerized testing (Postgres + Redis), Trivy vulnerability scanning, ECR push, and staging-to-production manual approval gates supporting 100+ monthly builds.
Centralized production telemetry pipeline unifying logs, metrics, distributed traces, and continuous profiling for cloud-native workloads.
Combines Grafana, Loki, Mimir, Tempo, Alloy collector, and Prometheus to correlate telemetry across microservices from a single observability pane of glass.
Production multi-account cloud platform supporting distributed enterprise workloads with hub-and-spoke networking topology.
Configured with AWS Transit Gateway, VPC PrivateLink endpoints, IAM least-privilege, and KMS Separation of Duties controls provisioned via modular Terraform and Terragrunt.
Policy-as-code admission control enforcing Pod Security Standards Restricted profile and default-deny NetworkPolicies across clusters.
Enforces non-root execution, drops Linux capabilities, isolates sensitive namespaces, and restricts egress traffic via Istio REGISTRY_ONLY configuration.
Designing resilient, automated cloud infrastructure and engineering zero-trust platforms that scale quietly.
Multi-Cloud & AWS Architecture
Scalable multi-account landing zones across 37+ accounts with Amazon EKS, VPC, Transit Gateway, PrivateLink, and RDS Aurora.
Kubernetes Platforms & DevSecOps
Production EKS engineering with Kyverno policy enforcement, Pod Security Standards (PSS Restricted profile), and default-deny NetworkPolicies.
Istio & Egress Network Security
Controlling service mesh traffic, migrating unrestricted ALLOW_ANY outbound traffic to REGISTRY_ONLY allow-lists via ServiceEntries and VPC endpoints.
GitOps & CI/CD Delivery Acceleration
Automated release pipelines cutting deployment runtime from 20m to 4m (80% faster) using GitHub Actions, ArgoCD, Jenkins, and Spacelift.
Full Grafana LGTM Observability
Centralized telemetry reducing MTTR by ~50% across microservices through unified logs, metrics, distributed traces, and continuous profiling.
Infrastructure as Code & Governance
Modular, version-controlled IaC using Terraform, OpenTofu, and Terragrunt with state locking, reviewable pull requests, and automated validation.
I build reliable, automated, and self-healing cloud platforms. My work sits at the foundation: designing resilient multi-cloud architectures, eliminating operational toil, and leaving systems resilient against failure.
Remote · Working Worldwide
Distributed cloud collaboration
AWS Solutions Architect & DevOps
BS Software Engineering (UMT)
Multi-Cloud, AWS & Amazon EKS
Zero-Trust Security & GitOps Delivery
Understand existing environments, design practical solutions, automate via IaC, and validate in staging before production.
Separation of Duties, IAM least-privilege, Kyverno admission policies, and default-deny network controls.
Correlated telemetry across logs, metrics, and traces with automated GitOps rollback workflows.
Have infrastructure worth automating or scaling?
Send architectural requirements, platform challenges, or current codebases. I collaborate with engineering teams worldwide and respond with practical next steps.
talha@devistio.comRemote · Working Worldwide · +92 315 6569204