Iβm a DevOps and SRE-focused engineer who loves building highly scalable and secure systems from the ground up.
My core strength lies in infrastructure automation, DevSecOps, container orchestration, and observability. I think in terms of reliability, security-first CI/CD, and scaling behavior β ensuring systems are deterministic and resilient.
- π DevOps & DevSecOps Engineer with strong backend foundations
- π§ Deeply interested in Linux internals & system-level behavior
- βοΈ Obsessed with automation, security-first CI/CD, and clean infrastructure
- π Strong believer in observability-first architecture
- π Integrating 'Shift-Left' security into every stage of the SDLC
- π§ First-principles thinker β break down β understand β rebuild
π Noida, India
- βοΈ Kubernetes internals & workload autoscaling (HPA)
- βοΈ Cloud-native infrastructure & GitOps workflows (ArgoCD)
- π Shift-left pipeline security & container scanning (Trivy, Gitleaks)
- π‘ Observability & alerting (Prometheus, Alertmanager, Grafana, Loki)
| Domain | Tools / Technologies |
|---|---|
| DevOps & Automation | Terraform, Ansible, GitLab CI, GitHub Actions, Jenkins, CI/CD, GitOps, Argo CD |
| Pipeline Security | SAST, Dependency/CVE Scanning, Trivy, Gitleaks, Hadolint, Image Hardening |
| Containers & Orchestration | Docker, Kubernetes (kubeadm), Helm, HPA, NGINX Ingress, Docker Compose |
| Observability & Reliability | Prometheus, Alertmanager, Grafana, Loki, Incident Response, RCA, Runbooks |
| Backend & Systems | Golang, C, Python, TypeScript, MySQL, Redis |
| Scripting & Infra Config | Bash, YAML |
| Cloud & Infrastructure | AWS (EC2, S3, IAM, Route53), Infrastructure as Code |
I approach engineering using first principles:
- Understand the kernel of the problem
- Identify resource boundaries (CPU, memory, I/O, network)
- Automate everything reproducibly
- Make systems observable before scaling them
- Prefer clarity over complexity
Infrastructure should be:
- Deterministic
- Observable
- Scalable
- Debuggable
- Stack: Python, AWS CLI, EC2, Cron
- Highlights: Schedules startup and shutdown of 15 LTS dev instances across 5 environments, taking each from 168 to 45 running hours a week (~73% fewer idle compute hours). Ordered startup and shutdown (infra before app instances, reversed on stop) with a configurable settle delay. Reads live instance state before acting, so repeated cron runs are idempotent and safe to retry.
- Stack: Golang, MySQL, HTML/CSS/JS, Kubernetes, GitHub Actions
- Highlights: Aggressively optimized Docker images via multi-stage builds (reducing frontend from 92MBβ20MB, backend 34MBβ12MB). Fully automated CI/CD with security gates (golangci-lint, Gitleaks, govulncheck, Hadolint, Trivy). Rolling deployments with HPA autoscaling.
- Stack: React, Node.js, Docker Compose, GitHub Actions, VPS
- Highlights: End-to-end automated pipeline incorporating DevSecOps principles. Remediated 19 High and 2 Critical vulnerabilities by hardening base images. Achieved zero-manual-step delivery flow: Code β CI Checks β Image Build β Scan β Deploy.
- βοΈ Infrastructure-as-Code (Terraform, AWS)
- π DevSecOps CI/CD Pipelines (GitHub Actions)
- βοΈ Kubernetes & GitOps setups
- π‘ Observability stacks (Prometheus, Grafana)
- π§ͺ Go and Python automation scripts
- Certified DevOps Engineer Associate β TrainWithShubham (Issued May 2026, Credential ID: CRD-8FFHEZGG)
- DevOps - Zero To Hero (Josh Batch 10) β TrainWithShubham (Issued May 2026, Credential ID: DIAAUXCX)
π GitHub: https://github.com/shivang21007
π LinkedIn: https://linkedin.com/in/shivang21007
π Noida, India
To build highly reliable, deeply observable, and highly secure cloud-native systems β
where infrastructure, SRE principles, and automated security intersect.
"If you can't explain the system from the kernel up, you don't fully understand it."




