Cloud Security & DevOps Engineer
Hi, I'm Saurabh Bhargav.
I design, secure, and automate AWS & Azure cloud environments.
I help teams ship on AWS & Azure without trading away security or budget — least-privilege IAM, SOC 2 alignment, CI/CD automation, and real cost optimization.
Secure, scalable cloud — by design
DevOps & Cloud Engineer with hands-on experience designing, securing, and managing AWS and Azure cloud environments. Strong focus on cloud architecture, CI/CD automation, containerization, and cloud security — including SOC 2 compliance and incident response. I work directly with clients to deliver secure, scalable, and cost-effective cloud solutions while improving reliability through monitoring and automation. I have architected end-to-end cloud infrastructure across multiple client environments — from network and identity design through deployment, security, and observability.
🔐 Security & Compliance
Least-privilege IAM, WAF, GuardDuty, KMS, Secrets Manager, and SOC 2 / ISO 27001 alignment — plus incident investigation and remediation.
⚙️ Automation & IaC
CI/CD with GitHub Actions, Azure DevOps & CodePipeline. Terraform and Ansible to make infrastructure repeatable and reviewable.
📈 Reliability & Cost
Observability with Grafana, Prometheus, CloudWatch & Loki — and rightsizing that cut monthly AWS spend by 30–40%.
Tools & technologies
Cloud Platforms
Security & Compliance
Containers & Orchestration
CI/CD & IaC
Monitoring & Observability
Scripting
Selected work
Real-world cloud architecture, security, and automation projects.
AKS Security Modernization & Platform Engineering
Transformed a traditionally deployed application into a secure, observable, cloud-native AKS platform — private networking, Istio service mesh, Key Vault secret auto-rotation, GitOps with ArgoCD, and centralized observability.
AWS Cloud Security Architecture & SOC 2 Compliance
Led the security transformation of a production AWS environment into a SOC 2–aligned platform — IAM redesign, centralized secrets, continuous monitoring, stronger incident response, and ~30–40% lower cloud spend.
Containerized Platform on AWS ECS & Fargate
Modernized application delivery onto a secure, serverless container platform on Amazon ECS and AWS Fargate — automated CI/CD, least-privilege security, auto-scaling, self-healing, and centralized observability.
Azure Cloud Architecture & GitHub Actions CI/CD Platform
Platform engineering & release automation: a secure Azure application platform and a GitHub Actions pipeline that turns a single repository into automated, multi-OS desktop releases for Windows, Linux, and macOS.
Azure to AWS Migration & Infrastructure Modernization
Migrated a multi-environment production web application ecosystem from Azure to AWS with minimal downtime — re-platforming the backend onto Docker + Elastic Beanstalk, moving to S3/CloudFront and Amazon RDS, and preserving the existing CI/CD.
Where I've worked
Work Experience
-
Cloud Security Engineer L2
2024 – PresentAppwrk IT Solutions
-
Network Engineer
2021 – 2024SPL Info Pathway
Education
-
MCA
2025LPU (Distance Education)
-
B.Tech
2017LRIET, Solan, H.P.
Let's build something secure
Happy to connect about cloud security, DevOps, and platform engineering. The best way to reach me is on LinkedIn.