Sudha D – Sr Cloud Engineer
***********.*****@*****.*** 302-***-**** LinkedIn
PROFILE
Results-driven Azure Cloud Engineer with 8+ years of experience managing and optimizing Azure environments across SaaS, PaaS, and IaaS models. Proven track record in cloud security, compliance, cost optimization, and supporting enterprise-scale applications. Expert in Azure services including App Services, SQL, Storage, Virtual Networks, AAD, and Azure DevOps. Skilled in cloud migration of .NET apps, infrastructure automation using ARM templates and PowerShell, and configuring high availability and disaster recovery. Hands-on with monitoring tools like Azure Application Insights and experienced in microservices, containers, and DevOps tools like JIRA and ServiceNow.
SKILLS
Cloud Services: VNet, NSG, Application Gateway, Private Link, Perring Services, DDoS Protection, Azure Firewalls, Network Security Groups, Web Application Firewall, Load Balancers, Bastions, Azure Route Tables, Front Door and CDN, and Network Watcher, App Services, Redis Cache, Azure SQL, AAD, Azure Data Factory, Azure Databricks.
Tools & Languages: PowerShell, ARM Templates, Terraform, Git, .NET, C#, JavaScript, HTML5, CSS
DevOps & Infra: Azure DevOps CI/CD, Azure Monitor, App Insights, Container Insights, Azure Site Recovery
Containers: Docker, Azure Kubernetes (AKS), Azure Container Registry
OS & Web Servers: Windows Server, Linux, Apache, Nginx, IIS
Databases: Azure SQL, MySQL, Redis
Monitoring Tools: Container Insights, App Insights, Azure Monitor.
PROFESSIONAL EXPERIENCE
Client : PBGC (FEDERAL) Feb 2022 – Present Role : Sr Cloud Engineer
Responsibilities:
Provisioned and configured Azure resources for diverse teams, resulting in a 30% improvement in infrastructure efficiency and ensuring reliable support for enterprise applications.
Remediated non-compliant resources and enforced comprehensive tagging policies, reducing non-compliance incidents by 40% and streamlining resource management.
Utilized Azure Policy remediation tasks to automatically bring non-compliant resources into compliance, reducing manual intervention by 50% and improving resource compliance accuracy.
Enhanced security measures using Microsoft Defender for Cloud, resulting in a 25% decrease in security vulnerabilities and ensuring compliance with organizational policies.
Implemented Azure cost optimization strategies, reducing monthly cloud spending by 15% through the identification and elimination of underutilized resources and optimized resource allocation.
Managed and optimized Azure Storage Account performance, reducing storage costs by 20% by selecting the appropriate storage tiers (Hot, Cool, Archive) and configuring lifecycle policies.
Managed Azure budgets and cost allocation, implementing monitoring and alerting mechanisms that led to a 10% reduction in unexpected cloud costs by identifying potential overruns early.
Streamlined identity and access management with Microsoft Entra, implementing multi-factor authentication (MFA) and conditional access policies, increasing overall security compliance by 30%.
Managed Azure governance with policies, resource locks, and custom RBAC, leading to a 25% improvement in organizational compliance and efficient resource management.
Managed Azure App Registrations and Service Principals, reducing security vulnerabilities by 35% by implementing least-privilege principles and secure access configurations.
Monitored and troubleshooted Azure Backup jobs, ensuring 99.9% backup success rate and guaranteeing data recoverability.
Implemented Azure DDoS Protection to safeguard applications from volumetric cyber-attacks, ensuring high availability.
Utilized Azure Network Watcher for proactive network monitoring, diagnostics, and troubleshooting.
Accelerated content delivery and improved application performance through Azure Front Door and CDN services.
Developed and deployed Azure-based solutions for Dynamics 365 CRM, including custom portals and data migration tools, resulting in a 40% increase in user adoption and improved CRM functionality.
Worked on proof of concept of Azure Synapse Analytics, contributing to real-time data processing improvements and enhancing analytics capabilities for the business.
Implemented and managed Azure Site Recovery (ASR), ensuring 100% business continuity and disaster recovery for critical applications and workloads.
Streamlined operations with APIM, Function Apps, and Logic Apps, improving workflow efficiency by 30% through automation and seamless integration.
Managed network security and performance through DNS configurations and ZScaler implementation, enhancing network speed and security by 20%.
Migrated ASE V2 to V3 and APIM to STV2, ensuring a 40% improvement in application performance and service efficiency.
Set up geo-redundancy and backup solutions for mission-critical applications, ensuring 99.99% availability and business continuity in case of disasters.
Monitored and validated configurations with Azure Monitor and Log Analytics, leading to 15% improvement in performance optimization and proactive security enhancements.
Client : Honeywell July 2021 – Feb 2022 Role : Azure Cloud Engineer
Responsibilities:
Setting up DaaS environment to migrate users from on-premise and other cloud providers like VM Ware Horizon using Lift and shift/rehosting/refactoring/rearchitect approaches, post migration evaluation and maintenance.
Designed and implemented Azure Virtual Desktop (AVD) environments for users across Europe, USA, and Central India, ensuring scalable and high-performance access to applications and desktops.
Migrated Azure Virtual Desktop (AVD) session hosts between Azure regions to optimize performance, improve disaster recovery posture, or meet compliance requirements.
Configured FSLogix as the user profile management solution for Azure Virtual Desktop (AVD) deployments, ensuring consistent user experiences across sessions and reducing profile-related issues.
Automated the lifecycle management of Azure Virtual Machines using Azure Automation Runbooks, including tasks such as starting, stopping, and scaling VMs.
Designed, implemented, and managed Azure infrastructure (compute, storage, networking, security) using Terraform, ensuring infrastructure-as-code principles for scalability, repeatability, and version control.
Proactively optimized file redirection policies within Azure Virtual Desktop (AVD), leveraging performance monitoring and user feedback to enhance Microsoft Teams and Office application responsiveness. This led to a 30% decrease in help desk tickets related to file access issues.
Collaborated with security teams to implement Azure Policy for enforcing compliance and configuration standards across Azure resources.
Worked closely with Identity Access Management team to implement Azure AD MFA for users to sign in, federation and single sign-on password sync and password writeback, conditional access policy.
Collaborated with Chef/SCCM teams to integrate on-premises configuration management practices with Azure Image Builder for consistent software deployment to Azure Virtual Machine images.
Client : Citibank, Dallas TX March 2018 – June 2021 Role : Azure Cloud Engineer
Responsibilities:
Led the migration of 25+ critical enterprise applications from on-prem to Azure IaaS and PaaS using rehosting (“lift-and-shift”) and refactoring strategies, resulting in improved scalability and a 20% reduction in infrastructure costs.
Engineered infrastructure-as-code (IaC) deployments with ARM templates and Terraform, integrated within Azure DevOps CI/CD pipelines to enable automated and repeatable provisioning across dev, QA, and production environments.
Managed containerized workloads using Docker and orchestrated deployments with Azure Kubernetes Service (AKS) and Azure Container Registry (ACR), supporting microservices architecture and reducing deployment time by 40%.
Configured Azure Load Balancers (Standard and Application Gateway) for internal and external traffic, implemented NAT rules, and ensured high availability and performance across multi-tier applications.
Automated infrastructure tasks such as OS patching, storage backups, and network rule deployments using advanced PowerShell scripting, improving operational efficiency and reducing manual errors.
Enhanced network security posture by configuring site-to-site VPN Gateways, VNet peering, service endpoints, and custom NSG/ASG rules, resulting in a 30% improvement in threat mitigation.
Managed Azure Storage Accounts, including Blob, File, and Table storage, by implementing secure access strategies using shared access signatures (SAS), storage account keys, and RBAC, ensuring compliance with enterprise data governance policies.
Client : Delta Airlines, Atlanta GA. Sept 2016 - Feb 2018 Role: Azure Cloud Engineer
Responsibilities:
Designed and deployed Azure IaaS and PaaS infrastructure using ARM templates, configuring VNets, NSGs, UDRs, Gateway Subnets, DNS, and VMs to support internal applications.
Automated provisioning and management of Azure resources (VMs, Web Apps, SQL, Blobs, Data Factory, Data Lake) using Azure Automation Runbooks, PowerShell, and Recovery Services Vault.
Built scalable ETL pipelines in Azure Data Factory with Integration Runtime, Linked Services, and Copy Activities to process and transform data from multiple sources.
Secured enterprise identity and access with Azure AD Premium, implementing Multi-Factor Authentication (MFA) and managing app access via Azure AD and VSTS.
Monitored and optimized infrastructure using Azure Monitor and Application Insights; automated deployments and improved VM performance through PowerShell scripting and disk optimization.
Created interactive Power BI dashboards for financial analysis (P&L, headcount), integrating data from SQL Server, SAP BW, Oracle, and Azure SQL.
EDUCATION
MBA – Glyndwyr University, UK(2008 - 2010)
BTech – Computer Science Engineering, India(2003 – 2007)