Skip to content
View DevSecOpsSohan's full-sized avatar

Block or report DevSecOpsSohan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
DevSecOpsSohan/README.md
Profile Picture

👋 Hello, I'm Sohan

Senior DevOps Engineer | Cloud Infrastructure | Platform Engineering | DevSecOps

LinkedIn Email


🚀 About Me

DevOps engineer with 4+ years building reliable, secure, and scalable cloud platforms across AWS, GCP, and Kubernetes. I work end-to-end across CI/CD, Infrastructure as Code, GitOps delivery, observability, and DevSecOps — currently as a Senior Associate Infrastructure Engineer at Publicis Sapient.

  • ☸️ CKA and AWS Solutions Architect – Associate certified
  • 🔄 GitOps delivery with Argo CD, Helm, and the App-of-Apps pattern
  • 🔐 Shift-left security — SAST, DAST, image scanning, and secret scanning in CI
  • ☁️ Production EKS and GKE, Terraform-provisioned across AWS and GCP
  • 🤖 Currently extending into AI-assisted infrastructure automation and MLOps

💼 Core Expertise

DevOps & Platform

CI/CD:        Jenkins, GitLab CI/CD, GitHub Actions
GitOps:       Argo CD, Argo Workflows, App-of-Apps, canary deployments
Containers:   Docker, Kubernetes, Amazon EKS, GKE, Helm, Istio
IaC:          Terraform, Ansible (roles, dynamic inventory, Molecule)
Cloud:        AWS (EKS, RDS, IAM, VPC, SSO, Control Tower), GCP (GKE)
Governance:   Control Tower, Landing Zones, Service Control Policies

DevSecOps

SAST/DAST:    SonarQube, OWASP ZAP, MobSF
Scanning:     Trivy (images), Gitleaks (secrets)
Practices:    Shift-left security in GitLab CI, pipeline gating

Observability & Reliability

Monitoring:   Dashboards and alerting for CI/CD and platform workloads
Reliability:  Zero-downtime production upgrades (EKS, RabbitMQ, NiFi, RDS)
Performance:  GitLab Runner OS-level tuning, cloud cost optimization

🛠️ Tech Stack

Cloud

AWS GCP

Containers & Orchestration

Docker Kubernetes Helm Istio

Infrastructure as Code

Terraform Ansible

CI/CD & GitOps

Jenkins GitLab CI GitHub Actions Argo CD

Security

SonarQube Trivy OWASP ZAP

Languages & Scripting

Python Bash Linux


🏆 Certifications

  • 🎖️ AWS Certified Solutions Architect – Associate · Active
  • 🎖️ Certified Kubernetes Administrator (CKA) · Active

💼 Experience

Senior Associate Infrastructure L1 — Publicis Sapient · Sep 2025 – Present Argo CD GitOps rollout for backend services, Helm App-of-Apps standardization, and a DevSecOps CI pipeline with SAST, Gitleaks, and Trivy.

DevOps Engineer — Deutsche Telekom Digital Labs · Dec 2024 – Sep 2025 Production EKS upgrades with minimal downtime, Istio service mesh with Argo CD canary deployments, MobSF security pipeline, and GitLab Runner optimization.

DevOps Specialist — OpsTree Solutions · Apr 2022 – Dec 2024 AWS Control Tower and landing-zone governance, Terraform provisioning pipelines, DevSecOps controls in GitLab CI, and cloud cost optimization that reduced spend by 30%.


📂 Featured Work

A hands-on reference for Argo Workflows on Kubernetes: 40+ annotated YAML examples covering DAG and step templates, container/script/resource tasks, cluster workflow templates, cron workflows, exit handlers, artifact management, parameter passing, and RBAC — with documentation on architecture and installation.

Tech: Kubernetes, Argo Workflows, YAML, RBAC


🔭 Currently Working On

  • MLOps pipeline — containerized FastAPI model serving with Docker, MLflow experiment tracking and model registry, and pytest coverage for API and business logic
  • AI-assisted infrastructure automation — LLM-driven workflows for provisioning and cloud operations tasks
  • Deepening observability practice around SLOs and error budgets

🤝 Let's Connect

Open to collaborating on DevOps, platform engineering, and cloud security work.


⭐️ From Sohan | Building secure infrastructure, one commit at a time

@DevSecOpsSohan's activity is private