I build high-availability AWS infrastructure, hardened Linux server environments, zero-drift Terraform pipelines, and automated security controls. Turn complex systems into quiet, reliable operations.
Target SLA Uptime
Core Certifications
Production Projects
KFA Business School & IT
AVAILABLE FOR ROLESInfrastructure shouldn't be unpredictable. I deliver production-ready cloud architectures, automated deployment workflows, and hardened Linux configurations with defined SLAs and zero-drift code.
Calculate Infrastructure EstimateMulti-Region & Auto-Scaling
VPC isolation, EC2 Auto Scaling Groups, Application Load Balancers, Route 53 latency-based routing, and RDS Multi-AZ replication with 99.99% uptime target.
Terraform & GitHub Actions
Modular Terraform provisioners with remote S3 state storage, DynamoDB lock mechanisms, TFLint formatting, and automated Checkov security checks in CI/CD.
Ubuntu 24.04 & CIS Benchmarks
Level 1 CIS hardening on Linux servers, UFW firewall policies, Fail2ban intrusion protection, kernel sysctl tuning, Auditd logging, and Lynis vulnerability scanning.
Docker, K8s & Nginx
Multi-container Docker Compose stacks (Nginx reverse proxy, Node.js API, PostgreSQL, Redis) and Kubernetes (k3s) clusters with Nginx Ingress and Let's Encrypt SSL.
A disciplined, command-line-driven approach to cloud reliability.
Detailed site survey analyzing current workload bottlenecks, single points of failure, open attack vectors, and network subnets.
Writing modular Terraform configurations, locking cloud state in DynamoDB, and drafting GitHub Actions CI/CD workflows.
Applying Linux CIS hardening, setting up UFW firewalls and Fail2ban, building immutable Docker containers, and executing blue-green deployments.
Configuring CloudWatch alarms, Lynis compliance checks, automated log rotation, and real-time incident alerting.
Architected a fault-tolerant multi-region web stack using EC2 Auto Scaling Groups, Application Load Balancers, Route 53 latency routing, and RDS Multi-AZ. Reduced downtime by 94%.
Modular Terraform infrastructure code with Amazon S3 remote state, DynamoDB state locking, TFLint checkov security scanning, and automated GitHub Actions workflows.
Applied CIS Level 1 security hardening on bare-metal Ubuntu servers: UFW firewall posture, Fail2ban intrusion defense, kernel sysctl lockdown, Auditd tamper-evident logs, and Lynis score 86/100.
Automated Bash script designed for Linux sysadmins to execute health checks, monitor disk space utilization, verify web service uptime, and send system alerts.
Modular Python application built for tracking monthly expenditures, categorizing financial transactions, and generating analytical expense reports.
Architected a containerized application stack using Docker Compose: Nginx reverse proxy, Node.js API load balancing, PostgreSQL persistent DB, and Redis cache layer.
*Final binding SLA estimate delivered following site architecture audit.
Amazon Web Services · 2025
✓ Verified Official BadgeISC² Security Council · 2025
✓ Verified Official BadgeLinux Professional Institute · 2024
✓ Verified Official Badge| Technology Domain | Tools & Frameworks | Proficiency | Experience |
|---|---|---|---|
| AWS Cloud Platform | EC2, VPC, S3, RDS, Auto Scaling, Route 53, Lambda |
|
2+ Yrs |
| Linux Administration | Ubuntu 24, CIS Hardening, UFW, Fail2ban, Auditd, Bash |
|
3 Yrs |
| Infrastructure as Code | Terraform, GitHub Actions, Checkov, TFLint |
|
1.5 Yrs |
| Containers & Orchestration | Docker, Docker Compose, Kubernetes (k3s), Nginx Ingress |
|
2 Yrs |
| Network Security & Recon | Nmap, Wireshark, Lynis, WireGuard VPN, Metasploit |
|
2 Yrs |
Discuss your cloud infrastructure requirements, security hardening needs, or career opportunities directly.
KFA Business School & IT · Kathmandu, Nepal.
Available for remote global engagements and on-site consultations.
Reach out directly via email or social professional profiles.
Response time: Guaranteed within 24 business hours.
Engineer your infrastructure for 99.99% availability, zero security vulnerabilities, and automated scale.
Calculate Estimate & Start