Vedant Gaidhane
Executive – Cloud Infrastructure · Harrier Information Systems
Cloud Infrastructure & DevOps Engineer with 1.5+ years architecting and operating production-grade AWS environments for clients in financial services, investment management, and capital markets. Sole cloud engineer entrusted with end-to-end ownership of provisioning, CI/CD, security, observability, and FinOps across 8+ concurrent client accounts.
AWS CloudDevSecOpsFinOpsFinancial ServicesTerraformKubernetes
What I Do
FinOps & Cost Engineering
- 50–85% AWS cost reductions across client portfolios
- Right-sizing, EC2 scheduling via EventBridge + Lambda
- Reserved Instance & Savings Plan procurement
- Orphaned resource remediation & billing transparency
DevSecOps Pipeline Architecture
- Jenkins CI/CD with shift-left security gates
- Gitleaks · SonarQube · Trivy · AWS Secrets Manager
- Zero-downtime blue-green deployments
- 80% faster release cycles for trading platforms
Cloud Security & Compliance
- GuardDuty · Inspector · WAF · Shield · Security Hub
- Config · CloudTrail · KMS · IAM least-privilege
- Plerion CNAPP for continuous posture management
- SCP guardrails & Security Group hardening
Infrastructure as Code
- Reusable parameterised Terraform modules
- AWS CloudFormation & Ansible playbooks
- Version-controlled infra for auditability & rollback
- Rapid dev/staging/prod environment provisioning
Observability & Incident Response
- Prometheus + Grafana with custom dashboards
- CloudWatch Logs, CloudTrail & Uptime Kuma
- PagerDuty-style alerting for downtime & latency
- Automated SSL expiry detection via Jenkins + Python
Containerised Deployments
- Multi-app Docker isolation on single EC2
- Automated image builds to private ECR registries
- Kubernetes orchestration for staging environments
- Container CVE scanning with Trivy
Hybrid Cloud & Networking
- Multi-node on-prem Proxmox virtualisation cluster
- AWS Site-to-Site VPN for hybrid connectivity
- Secure VPC design: public/private subnets, NAT, IGW
- Route 53 DNS management & traffic routing
Enterprise GitLab CE & Version Control
- Self-hosted GitLab CE — eliminating VCS licensing costs
- Bitbucket → GitLab migration with full commit history
- TLS termination, SMTP relay, S3 backup (30-day retention)
- Integrated with Jenkins & SonarQube for DevSecOps
Web Server & Application Management
- Nginx, Apache, Tomcat, IIS configuration
- Reverse proxies, SSL/TLS & caching layers
- ALB + WAF with OWASP rule sets
- Load testing & performance tuning
Backup & Disaster Recovery
- Automated EBS snapshot lifecycle policies
- Cross-region S3 replication for DR
- AWS Backup with RTO/RPO compliance testing
- Forensic incident analysis & secure recovery
Serverless & CDN
- S3 + CloudFront static hosting with WAF
- Lambda functions for cost-saving automation
- Near-zero hosting cost for static workloads
- ACM SSL, Route 53, SES email delivery
AWS Marketplace & Cloud-as-a-Service
- Hardened AMI packaging for Marketplace listing
- Cloud-as-a-Service delivery framework design
- Standardised operational blueprints & runbooks
- Positioning Harrier as a cloud solutions provider
Tech Stack
Tools I Use
🎓
Bachelor of Technology – Electronics Engineering
Yeshwantrao Chavan College of Engineering (YCCE), Nagpur
2020 – 2024 · CGPA: 7.76