DevSecOps • SRE • Cloud

Shailendra Yadav

Senior DevSecOps Engineer with 8+ years building resilient, secure, and observable platforms on AWS. I bridge code and cloud—shipping automation, IaC, and runbooks that keep production calm and compliant.

Based in UK (GMT) Phone: (+44) 7503117315

Years in Prod

8+

Cloud

AWS First

Focus

DevSecOps · SRE

Terraform • CDK • Serverless • Kubernetes • Observability

Profile

About Me

I operate production workloads across AWS with a developer-first mindset. My background spans full-stack engineering (React, Node.js, Python) and deep platform work (Terraform, CDK, Kubernetes, GitHub Actions). I build observability, automate toil, and design secure-by-default systems aligned to DevSecOps and SRE practices.

Recent focus: hardening IAM and network boundaries, tuning CI/CD for speed and safety, and codifying incident response with metrics, tracing, and actionable alerts. I value fast feedback loops, clear runbooks, and collaborative postmortems that drive measurable MTTR/availability gains.

Career

Experience

Jun 2023 – Present

Lead DevSecOps Engineer · Safedent

Hemel Hempstead, UK

AWS • Terraform • GitHub Actions
  • Operate ECS/Fargate and Lambda workloads with tight IAM, VPC controls, latency-aware routing, and zero public blast radius.
  • Built end-to-end observability with CloudWatch logs/metrics/alarms/dashboards, X-Ray tracing, and SNS/Lambda alert handlers that cut noise and MTTR.
  • Author Terraform modules and Serverless patterns; enforce reusable blueprints and PR reviews for consistent multi-env delivery.
  • Maintain CI/CD with automated builds, tests, and container security scans (SonarQube, Trivy, Clair) deploying to ECS/EKS via GitOps.
  • Lead incident response, root-cause investigations (OOM, limits, API bottlenecks), and long-term fixes that stabilized SLAs.
  • Automate housekeeping with Lambda+boto3 for cost savings and health checks; design alerts for cluster/VPC capacity to pre-empt outages.

Apr 2020 – May 2023

Senior Site Reliability Engineer · CloudFactory

Reading, UK

ECS · API Gateway · New Relic
  • Implemented mTLS on ALB → ECS/Private API Gateway with org-signed certs and cross-account PrivateLink exposure.
  • Locked down private services with VPC endpoints, SSM session access, and audit-ready CloudWatch/KMS logging.
  • Versioned API Gateway + Lambda with staged aliases; emitted metrics via log filters and alarms/dashboards.
  • Automated AMI builds for legacy Rails on EC2; reduced vuln surface and improved patch cadence.
  • Built New Relic dashboards/alerts via Terraform; drove observability migration from CloudWatch to NR for app+infra telemetry.
  • Lambda+EventBridge automation to scale ECS clusters for business hours vs. off-hours cost control, saving double-digit % monthly.

Apr 2018 – Mar 2020

DevOps Engineer · Bottle Technologies

Kathmandu, Nepal

AWS Org • Jenkins • Kafka
  • Built reusable auth/RBAC on AWS Cognito; enforced GitOps for infra, security, and access control.
  • Led cost optimization with autoscaling, right-sizing, and billing alerts across legacy services.
  • Managed multi-account AWS with Control Tower, GuardRails, SCPs; automated DNS with Route53.
  • Created Jenkins pipelines (DSL, JCasC) with SonarQube scans, tests, Docker builds, and JFrog publishing.
  • Deployed Prometheus+Grafana+Loki stacks; tuned PromQL for custom service metrics.
  • Developed Kafka producers/consumers and optimized throughput, latency, and capacity.

Aug 2014 – Apr 2018

Frontend Developer · BlackSpade Financial Services

Kakinada, India

React · GraphQL · AWS
  • Shipped multilingual chat and IoT dashboards using React, GraphQL, and AWS IoT Core.
  • Built admin portals with Cognito auth; integrated DynamoDB, S3, MongoDB, and Postgres (TypeORM).
  • Documented APIs with Swagger/Postman; unit tests with Jest; collaborated via Jira and Confluence.

Stack

Skills & Tools

AWS (ECS, EKS, Lambda, API Gateway, VPC, CloudFront, S3)
Terraform · CDK · CloudFormation · Serverless Framework/Compose · IaC governance
CI/CD: GitHub Actions, GitLab, Jenkins, GitOps
Containers: Docker, distroless images, ECS, EKS, Kubernetes, ArgoCD
Observability: CloudWatch, X-Ray, ADOT/OTEL, Prometheus, Grafana, Loki, Jaeger, New Relic
Security: IAM least privilege, mTLS, PrivateLink, WAF, Security Hub, secrets mgmt, compliance logging
Datastores: RDS, DynamoDB, S3, MSK/Kafka, Redis
Scripting & Langs: Python, TypeScript/Node.js, Bash
Messaging/Events: EventBridge, SQS, SNS, Kinesis
Monitoring & Incident Response, RCAs, capacity planning, performance tuning

Impact

Selected Projects

Featured: Multi-Tenant Content Delivery & AI Healthcare Platform

CloudFront OAC • Lambda • Bedrock

Built a secure, multi-tenant delivery layer with CloudFront OAC and signed URLs backed by API Gateway + Lambda (TypeScript), plus AI workflows for transcription and translation.

ServerlessAI integrationObservability

Writing

Blog & Notes

Loading my latest notes on incident response, IaC patterns, and observability recipes…

Let’s Talk

Contact Me

Open to full-time DevOps/SRE roles in cloud-first teams. Prefer AWS-heavy environments with strong engineering culture.

Certifications AWS DevOps Engineer – Professional · B.Tech Computer Science (JNTUK)