RHCSA Certified • DevOps & Cloud Infrastructure

Hi, I'm Avi Arora
 

DevOps Engineer with hands-on production experience managing cloud infrastructure across AWS and Azure, containerizing applications with Docker & ECS Fargate, building CI/CD pipelines with GitHub Actions, and provisioning reproducible infrastructure as code with Terraform.

Terraform IaC AWS & Azure Docker & ECS Cloudflare ZTNA Red Hat RHCSA
Avi Arora - DevOps Engineer

Avi Arora

SDE-1(DevOps)

Sri Ganganagar, Rajasthan, India

RHCSA Red Hat Certified
AWS & Azure Multi-Cloud
0
+
Live SaaS Platforms
Chatreal.ai • CelebsGPT • ExciteMe
0
s
User-Facing Downtime
Azure → AWS ECS Fargate Migration
0
.9%
Production SLA & Uptime
Continuous Monitoring & Alerts
0
+
Cloud & DevOps Technologies
AWS, Azure, Terraform, Docker & Linux
Production Infrastructure & Operational Highlights
About Me

Automation, Reliability & Clean Infrastructure

I am a DevOps Engineer based in India, currently working at 4 Way Technologies where I manage cloud infrastructure across AWS and Azure for live SaaS applications.

My hands-on experience centers on provisioning AWS resources using Terraform, containerizing applications with Docker, deploying services to AWS ECS Fargate, configuring Application Load Balancers, and securing application endpoints with Cloudflare Access.

I am certified as a Red Hat Certified System Administrator (RHCSA), giving me a solid foundation in Linux administration, storage management (LVM), service configuration, permissions, and command-line troubleshooting.

🛠️

Hands-On Cloud Operations

Experience monitoring live environments, diagnosing deployment issues, and setting up automated alerts with CloudWatch and Slack.

🔒

Access Control & Network Security

Implementing least-privilege IAM roles, Cloudflare Access policies, and private subnet isolation behind load balancers.

⚡

Infrastructure as Code

Writing modular, reusable Terraform code with remote S3 state storage and DynamoDB locking for predictable deployments.

Quick Information

  • Location: Sri Ganganagar, Rajasthan, India
  • Experience: SDE-1(DevOps) at 4 Way Technologies
  • Education: B.Tech in Artificial Intelligence & Data Science
  • Primary Clouds: Amazon Web Services (AWS)
  • Certification: Red Hat RHCSA (Certified System Administrator)
  • Availability: Full-Time / Relocation / Remote
Technical Arsenal

Battle-Tested Skills & Tools

Categorized technologies actively used in high-volume production environments.

Cloud Infrastructure

Multi-Cloud AWS & Azure

AWS EC2 & ASG AWS ECS Fargate VPC & Networking Application Load Balancer AWS RDS (Postgres/MySQL) AWS S3 & Glacier AWS IAM (Least Privilege) AWS Route 53 AWS Secrets Manager AWS SES & SNS Azure App Services Azure Cognitive AI Services

Infrastructure as Code (IaC)

Declarative & Automated

Terraform (HCL) Modular Architecture S3 Remote State + Locking Ansible Automation Dynamic Data Lookups Cloud-Init / UserData Target Tracking Policies Terraform Cloud / CLI

Containers & Orchestration

Microservices at Scale

Docker & Multi-Stage Builds AWS ECS Fargate Amazon ECR Kubernetes (K8s Exploratory) Container Security Auditing Health Checks & Grace Periods Zero-Downtime Rolling Deploys

CI/CD & DevSecOps

Fast, Secure Delivery

GitHub Actions Automated Test & Deploy Dependency Vulnerability Scanning Git Version Control & PR Workflows Secrets Management Automated Release Tagging Zero-Secret Git Safeguards

Networking & Security

Defense-in-Depth

Cloudflare Zero Trust (ZTNA) Cloudflare Access & WAF Public / Private Multi-AZ Subnets NAT Gateways & Elastic IPs Security Groups ("Velvet Rope") Route Tables & Internet Gateways SSL / TLS Termination DNS & Domain Migrations

Linux & Observability

RHCSA & Incident Readiness

Red Hat Enterprise Linux (RHEL) Ubuntu Server 24.04 Bash & Shell Scripting Amazon CloudWatch (Metrics & Alarms) Axiom & Fluentd Log Pipelines Slack Webhook Alerts Systemd, Storage LVM, Perms P0 Incident Root Cause Analysis
Career Path

Production Experience

Present Role

SDE-1(DevOps)

4 Way Technologies • New Delhi, India

Supporting Aisun Organization: Chatreal.ai, CelebsGPT.com, ExciteMe.ai

August 2025 – Present
  • Multi-Cloud Infrastructure Management: Oversee production AWS (EC2, ECS Fargate, RDS) and Azure infrastructure across three high-traffic SaaS products serving thousands of daily active users.
  • Zero-Downtime Backend Migration: Planned and executed a full migration of backend and authentication services from Azure to AWS ECS Fargate using Terraform — provisioning VPC, ALB, ECR repos, task definitions, CloudWatch alarms, and Secrets Manager. Cutover traffic via ALB listener rules with 0s user-facing downtime.
  • Zero Trust Network Access (ZTNA): Implemented Cloudflare Access across all application auth endpoints, enforcing identity-based controls and eliminating direct public exposure of backend servers.
  • CI/CD & DevSecOps Pipeline: Built GitHub Actions deployment workflows with Terraform, introducing automated dependency vulnerability auditing and static code security checks.
  • Production Observability: Configured comprehensive CloudWatch CPU/Memory alarms, Slack instant notifications, and unified log aggregation via Axiom and Fluentd.
  • P0 Incident & Email Deliverability Rescue: Diagnosed and resolved critical P0 incidents including failed deployments and an 8% bounce-rate SES delivery crisis by separating transactional/marketing pipelines, restoring 100% login OTP delivery.
  • DNS & CDN Migration: Successfully migrated frontend hosting and DNS from AWS Route 53 to Cloudflare across multiple domains, including SSL certificates and automated redirect rules.
AWS ECS Fargate Terraform Docker Cloudflare ZTNA GitHub Actions CloudWatch AWS SES Axiom / Fluentd
Internship

DevOps Trainee

CodeSpazio Solutions Pvt. Ltd. • Jaipur, India

May 2025 – August 2025
  • Infrastructure as Code: Built and tested modular Terraform configurations to provision and maintain AWS EC2, Security Groups, and VPC networking.
  • Containerization & Deployment: Automated application deployment pipelines and containerized environments using Docker, Ansible, and Terraform.
  • Load Balancing & High Availability: Configured and tested Application Load Balancers with target groups and health probes to distribute traffic evenly across web workloads.
AWS Terraform Docker Ansible ALB Linux
Internship

Cloud & DevOps Intern

Celebal Technologies • Remote, India

June 2024 – August 2024
  • Cloud Fundamentals in Practice: Gained hands-on exposure to AWS and Azure cloud platforms, exploring core services including virtual machines, storage, and networking as part of structured cloud training.
  • Linux Administration: Worked extensively with Linux environments for server configuration, user management, and shell scripting — laying the foundation for RHCSA certification pursuits.
  • DevOps Tooling Exposure: Explored industry DevOps toolchains including Docker containerization basics, Git version control workflows, and CI/CD pipeline concepts.
AWS Azure Linux Docker Git Shell Scripting
Architecture Portfolio

Featured Engineering Projects

Real-world Infrastructure as Code and production cloud implementations.

AWS High Availability

Multi-AZ High Availability & Auto Scaling Infrastructure

Production-ready elastic infrastructure featuring an internet-facing Application Load Balancer (ALB), Target Group with active HTTP health probes, and an Auto Scaling Group spanning Mumbai availability zones.

  • Dynamic Scaling: Configured Target Tracking Scaling policy based on ALBRequestCountPerTarget (20 req/min/target).
  • Self-Healing: Configured ELB health checks with automated instance termination and replacement upon failure.
  • "Velvet Rope" Security: EC2 Security Group strictly rejects direct public traffic and only allows HTTP from the ALB security group.
Terraform AWS ALB Auto Scaling Group CloudWatch Alarms Ubuntu 24.04
Cloud Networking

Production Custom Multi-AZ VPC Architecture

A secure, multi-tier Amazon Virtual Private Cloud (10.0.0.0/16) in Mumbai (ap-south-1) with 2 Public subnets and 2 isolated Private subnets across multiple AZs.

  • NAT Gateway & EIP: Allows private app workloads to securely pull updates without public ingress exposure.
  • Isolated Route Tables: Distinct route tables for public ingress (IGW) and private egress (NAT).
  • Verified Connectivity: Validated through live packet routing tests and Bastion host validation.
Terraform AWS VPC NAT Gateway Internet Gateway Route Tables
Production Migration

Zero-Downtime Azure to AWS ECS Fargate Migration

Full infrastructure and backend migration for Chatreal.ai & CelebsGPT from Azure App Services to AWS ECS Fargate using Terraform.

  • End-to-End Terraform: Provisioned VPC, ALB, ECR repos, ECS task definitions, and Secrets Manager.
  • Traffic Cutover: Executed live DNS switch and weighted ALB listener routing with 0% downtime.
  • Cost & Performance: Reduced infrastructure overhead and consolidated monitoring into CloudWatch & Axiom.
AWS ECS Fargate Docker Terraform Cloudflare Access Secrets Manager
Automation & IaC

Automated EC2 Web Server with Zero-Touch Bootstrap

Automated provisioning of Ubuntu 24.04 servers with dynamic AMI data filters, TLS key generation, custom security groups, and cloud-init Nginx bootstrapping.

  • Dynamic AMI Lookup: Discovers latest Canonical official Ubuntu 24.04 AMI dynamically.
  • Automated Key Generation: Generates 4096-bit RSA keys and saves local .pem files with strict permissions.
  • Zero-Touch UserData: Installs and starts Nginx displaying server metadata (IP & AZ) immediately upon boot.
Terraform AWS EC2 TLS Key Pair Nginx UserData / Bash
Enterprise Architecture

Enterprise 3-Tier Web Application Infrastructure

Production blueprint segregating workloads into Presentation Tier (Public ALB), Logic Tier (Private EC2 ASG), and Database Tier (Multi-AZ RDS).

  • Strict Tier Isolation: Presentation tier talks only to app tier; app tier talks only to database tier via security group chaining.
  • High Availability RDS: Automated synchronous failover standby across multiple Availability Zones.
  • Secrets Integration: Master credentials provisioned via AWS Secrets Manager with zero hardcoded passwords.
Terraform AWS ALB EC2 App Tier AWS RDS Multi-AZ AWS Secrets Manager
Deliverability & Security

Production Email Infrastructure & Deliverability Hardening

Architected and stabilized transactional and marketing email infrastructure across multiple brand domains using AWS SES, Sendy, and Google SMTP.

  • Bounce-Rate Mitigation: Implemented SNS bounce/complaint handling to auto-suppress bad emails, keeping bounce rate strictly < 2%.
  • Subdomain Separation: Isolated critical auth OTP emails from bulk marketing blasts to preserve reputation.
  • Full Authentication: Enforced SPF, DKIM, and strict DMARC alignment, eliminating blacklist incidents.
AWS SES Amazon SNS CloudWatch DNS / DKIM / DMARC Dedicated IP
Credentials

Certifications & Accreditations

Architectural Simulation

AWS Solutions Architecture Job Simulation

Amazon Web Services • Forage

Completed real-world simulations designing resilient AWS architectures, evaluating multi-region disaster recovery strategies, cost optimization models, and IAM security best practices.

• Completed Multi-Region, Disaster Recovery & Sizing
Academic Foundation

Bachelor of Technology (B.Tech)

Arya College of Engineering and IT • Jaipur

Specialized in Artificial Intelligence & Data Science (October 2021 – May 2025). Built strong analytical foundation in operating systems, distributed computing, database systems, and networking algorithms.

• Graduated (2021–2025) AI & Data Science, Operating Systems
Get in Touch

Let's Build Something Resilient Together.

Whether you need to scale cloud infrastructure, migrate to zero-downtime containers, automate your CI/CD pipelines, or discuss a high-impact DevOps role — my inbox is always open.

Send a Quick Message

Sends directly to my inbox via your preferred mail client.