Hi, I'm Ritik Sah. I study Cloud Computing & Cybersecurity at KFA Business School & IT. I focus on deploying static websites via AWS CloudFront CDN & S3, building multi-region Auto-Scaling infrastructures, configuring hardened Linux servers, and writing Terraform code.
Cloud Practitioner Certified
Certified in Cybersecurity
Linux Essentials Certified
Cloud & Security Engineer
KFA BUSINESS SCHOOL & ITI focus on cloud infrastructure, web deployment pipelines, server security, and system automation. Here is how I build modern web applications and infrastructure.
View AWS Project ShowcaseCDN & Static Site Hosting
Deploying static websites using Amazon S3 bucket origin storage, AWS CloudFront global edge caching, Route 53 custom domain management, and ACM SSL certificates.
Auto-Scaling & Multi-AZ
Architecting multi-region EC2 Auto Scaling Groups, Application Load Balancers, Route 53 latency routing, and RDS database replication to ensure maximum uptime.
Infrastructure as Code
Writing modular Terraform code with Amazon S3 state storage, DynamoDB lock keys, and automated GitHub Actions workflows for zero-drift deployments.
Ubuntu 24 & CIS Benchmarks
Applying Level 1 CIS Benchmark security controls to Ubuntu servers: UFW firewall configuration, Fail2ban brute-force protection, Auditd log management, and Lynis auditing.
A structured process for building reliable cloud infrastructure.
Defining system requirements, choosing AWS resources (S3, CloudFront, EC2, RDS), and drafting network subnets.
Writing clean, modular Terraform IaC modules or Docker Compose definitions to automate resource creation.
Deploying static assets to S3 + CloudFront CDN, configuring SSL/TLS certificates via ACM, and hardening Linux servers with UFW and Fail2ban.
Testing global CDN latency, verifying Route 53 DNS records, running Lynis vulnerability scans, and monitoring logs.
Deployed and secured a high-performance, globally distributed static website on AWS. Configured an Amazon S3 bucket for origin asset storage, created an AWS CloudFront CDN distribution with Origin Access Control (OAC) to block direct public access to S3, linked a custom domain via Amazon Route 53, and provisioned SSL/TLS certificates using AWS Certificate Manager (ACM). Achieved sub-50ms latency across global edge locations.
Role: AWS Cloud Trainee
Multi-region web infrastructure utilizing EC2 Auto Scaling Groups, Application Load Balancers (ALB), Route 53 health check failover, and RDS Multi-AZ replication.
Automated Terraform IaC project provisioning AWS VPC subnets, Security Groups, and EC2 instances with S3 remote state storage and GitHub Actions CI/CD workflows.
Security hardening script applying CIS Level 1 benchmarks on Ubuntu Linux: UFW firewall posture, Fail2ban SSH protection, Auditd system auditing, and Lynis compliance reporting.
Automated Bash script to monitor server health metrics, check disk usage, verify web service uptime, and trigger automated system alerts.
Personal finance tracking application built in Python to log transactions, compute monthly category spending, and export analytics.
*Estimated monthly cost based on AWS resource pricing & configuration.
Amazon Web Services · 2025
✓ Official Verified BadgeISC² Security Council · 2025
✓ Official Verified BadgeLinux Professional Institute · 2024
✓ Official Verified Badge| Skill Area | Tools & Technologies | Proficiency | Years |
|---|---|---|---|
| AWS Cloud Services | CloudFront, S3, EC2, VPC, Route 53, ALB, RDS, Lambda |
|
2 Yrs |
| Linux Administration | Ubuntu 24.04, UFW, Fail2ban, Auditd, Bash Shell Scripting |
|
3 Yrs |
| Infrastructure as Code | Terraform, GitHub Actions CI/CD, Checkov, TFLint |
|
1.5 Yrs |
| Containers & Web Servers | Docker, Docker Compose, Nginx Reverse Proxy, Redis |
|
2 Yrs |
| Network Security | Nmap, Wireshark, Lynis Auditing, WireGuard VPN |
|
2 Yrs |
Whether you have an inquiry about cloud infrastructure, DevOps deployment, or career opportunities, feel free to send me a message.
Ritik Sah · KFA Business School & IT · Kathmandu, Nepal.
Available for remote roles and projects worldwide.
Feel free to connect via any of my personal links below.
Response time: Within 24 hours.
Open for Cloud Infrastructure, DevOps, and Cybersecurity roles and project collaborations.
Send Me A Message