"From Intern to Lead Cloud Engineer in 10 months β not by luck, but by building production systems that actually work."
I'm a Lead Cloud & Platform Engineer and Site Reliability Engineer at Technum Opus Pvt. Ltd., Gurugram. I specialize in building scalable, secure, and cost-efficient cloud infrastructure β with a bias for automation, GitOps, and shift-left security.
Name : Aditya Anand
Role : Lead Cloud & DevOps Engineer | Platform Engineer | SRE
Company : Technum Opus Pvt. Ltd., Gurugram
Education : B.Tech CSE β Lovely Professional University (2025)
Certifications :
- AWS Certified Solutions Architect β Associate (SAA-C03)
- GCP Associate Cloud Engineer (ACE)
- Azure Administrator Associate (AZ-104)
Languages : Hindi (Native) | English (Professional)
Contact : myself.adityaanand@gmail.com | +91-6205950894
Resume : https://drive.google.com/file/d/1Sy3iWBFekxZUJM4SILtLrHSwrTOxf3pM/view?usp=sharingMulti-Tenant Shared Deployment Platform β Onified (Technum Opus Pvt. Ltd. | Mar 2026 β Present)
Building a production-grade, compliance-first Kubernetes platform serving multiple tenants from a single shared cluster. Key focus areas right now:
- π Hardening supply chain security with Cosign image signing + Kyverno admission policies
- π Scaling the 17-stage GitLab CI/CD pipeline to support additional microservices
- π Expanding Prometheus/Grafana SLO dashboards for reliability reviews
- π‘οΈ Maintaining CERT-In 2022 runtime compliance via Falco eBPF anomaly detection
| π Metric | π Result |
|---|---|
| Release Cycle Reduction | Hours β Under 15 Minutes (94% faster) |
| Cloud Cost Savings | 30% monthly reduction via FinOps |
| MTTR Improvement | 65% faster incident resolution |
| Deployment Incidents | ~40% reduction via GitOps / ArgoCD |
| Onboarding Time | ~3 weeks faster for junior engineers |
| Infra Cost (Multi-tenant K8s) | ~40% reduction vs per-tenant clusters |
| Secret Exposure Window | 90 days β Under 1 Hour (Zero-Trust Vault) |
| CI Compliance Gate | 100% non-compliant builds blocked |
View Details
- ποΈ Own end-to-end cloud architecture decisions across AWS and GCP production environments
- π Introduced GitOps with ArgoCD across 3 environments β eliminated manual
kubectldeployments, reduced deployment incidents by ~40%, sub-5-min rollbacks - π° Spearheaded FinOps initiative via EC2 right-sizing, Reserved Instance planning, and Infracost in CI pipelines β 30% monthly cloud cost reduction
- π Established SRE foundations: SLO/SLI definitions, error budgets, on-call runbooks with automated CloudWatch + Slack escalation β 65% MTTR improvement
- π¨βπ« Mentored 2 junior cloud engineers; cut onboarding time by ~3 weeks; introduced mandatory PR-based infra reviews with 100% automated policy compliance
View Details
- β‘ Automated infra provisioning on AWS using GitLab CI/CD + Terraform β release cycle cut from hours to under 15 minutes (94% reduction)
- π¨ Built a production Incident Response Dashboard (Lambda + DynamoDB + CloudWatch + Slack) with SOC 2-aligned audit trails
- βΈοΈ Deployed a Microservices Hub on Amazon EKS with Helm, OPA policy enforcement, Prometheus/Grafana, and blue/green rollouts
- π Enforced ISO 27001 & SOC 2 compliance via IAM policies, encryption at rest, RBAC, automated tagging
- π‘οΈ Integrated Trivy + SonarQube as mandatory CI gates β 100% of non-compliant images blocked from production
View Details
- π Provisioned AWS EC2, VPCs, subnets, Route 53, and Security Groups for multi-environment deployments
- π¦ Built reusable Terraform modules for EC2, S3, and IAM β reduced environment setup time across dev and staging
- π Configured CloudWatch + Grafana dashboards for dev environment observability
All projects below were delivered professionally at Technum Opus Pvt. Ltd. as part of building the Onified product platform.
Mar 2026 β Present | Technum Opus / Onified | Kubernetes, ArgoCD, GitLab CI, Kyverno, Falco, Cosign, SonarQube, Helm, Prometheus, Grafana, OWASP ZAP, Trivy
View Details
- Architected a single shared K8s cluster serving multiple tenants via namespace-based isolation β ~40% infra cost reduction vs per-tenant approach
- Built a 17-stage GitLab CI/CD pipeline (SAST, Trivy, SBOM, OWASP, DAST, k6 load testing, Cosign image signing) β 100% non-compliant builds blocked
- Implemented supply chain security via Cosign, Kyverno policies, and Falco eBPF DaemonSet (CERT-In 2022 compliant)
- Enforced ISO 27001 Annex A.12 change management: every production deploy gated behind a mandatory JIRA ticket with full audit trail
- Designed Spring Cloud Gateway routing layer for 10+ services under
gate.onified.ai; automated registry cleanup reducing stale image storage by ~90%
Feb 2026 β Mar 2026 | Technum Opus / Onified | ArgoCD, Flux, EKS, Terraform, Helm, Kustomize, Backstage
View Details
- Built a self-service Internal Developer Platform (IDP) using Backstage + ArgoCD β developers provision environments via Git PRs
- Implemented GitOps delivery across dev, staging, and production with ArgoCD ApplicationSets; sub-5-min rollbacks
- Provisioned multi-environment EKS clusters via modular Terraform + remote state + Kustomize overlays
- Integrated automated drift detection with ArgoCD self-heal β 100% GitOps compliance across all managed namespaces
Nov 2025 β Jan 2026 | Technum Opus / Onified | HashiCorp Vault, Trivy, SonarQube, OPA Conftest, GitLab CI, AWS KMS
View Details
- Deployed HashiCorp Vault on K8s with AWS KMS auto-unseal + Vault Agent Sidecar injection β eliminated all hardcoded credentials
- Built DevSecOps pipeline with SAST (SonarQube), Trivy, OWASP Dependency Check, and OPA Conftest as mandatory CI gates
- Automated credential rotation for PostgreSQL + AWS IAM via Vault dynamic secrets β secret exposure reduced from 90 days β under 1 hour
- Configured Vault RBAC mapped to K8s service accounts: zero-trust access across 12 microservices
Sep 2025 β Nov 2025 | Technum Opus / Onified | AWS Cost Explorer, Infracost, Terraform, Python, Grafana, Lambda
View Details
- Integrated Infracost into GitLab CI β per-PR cost estimates surfaced before merge
- Built serverless cost anomaly detection (Lambda + Cost Explorer + SNS) with automated spend alerts
- Developed Grafana dashboards visualising cloud spend by service, team, and environment
- Delivered measurable month-on-month savings by decommissioning idle EBS, EC2, and over-provisioned RDS via Python automation
Aug 2025 β Oct 2025 | Technum Opus / Onified | Prometheus, Grafana, OpenTelemetry, ELK Stack, PagerDuty, CloudWatch
View Details
- Deployed full observability stack (metrics + logs + traces) across 15+ microservices
- Defined SLOs, SLIs, and error budgets for 5 critical services with Grafana dashboards reviewed in weekly reliability meetings
- Implemented alerting-as-code via Prometheus Alertmanager + PagerDuty with tiered on-call escalation and embedded runbook links
- Reduced MTTR by 65% via structured post-mortem templates and automated incident timeline reconstruction from distributed traces
B.Tech, Computer Science and Engineering
ποΈ Lovely Professional University | Aug 2021 β Jun 2025 | CGPA: 7.54
Relevant: Cloud Computing, OS, Computer Networks, Distributed Systems, DBMS, DSA, Cybersecurity Fundamentals
π Secured all three major cloud certifications (AWS + GCP + Azure) prior to graduation
| Channel | Link |
|---|---|
| πΌ LinkedIn | linkedin.com/in/sqladitya |
| π Resume | Download CV |
| π§ Email | myself.adityaanand@gmail.com |
| π Phone | +91-6205950894 |
| π¦ Twitter | @sqladitya |
| π£οΈ Languages | Hindi (Native) Β· English (Professional) |

