HIRANMAYI RACHAMALLI Arlington, VA
Email: ************@*****.*** +1-412-***-****
LinkedIn: https://www.linkedin.com/in/hiranmayirach/
SUMMARY:
DevOps Engineer with 4+ years of experience in Linux systems administration, cloud infrastructure management, and automation scripting. Skilled in troubleshooting and root-cause analysis of production issues and managing Windows server environments with IIS. Proficient in CI/CD tools such as Jenkins, Git, Ansible, and Subversion, with a focus on automating workflows and improving deployment efficiency. Experienced in Agile methodologies and working in large, complex enterprise environments. Passionate about optimizing performance and delivering high-quality solutions.
SKILLS & EXPOSURE
• Operating Systems: Linux (CentOS, RHEL), Windows Server (IIS, Windows 2012 R2 and higher)
• CI/CD & Automation: Jenkins, Git, Subversion, Ansible, JIRA, Confluence
• Scripting & Programming: Python, Bash, PowerShell, Perl, Visual Basic
• Web Servers: IIS, Apache, Nginx
• Infrastructure & Cloud: AWS, Azure, VMware ESXi, Docker, Kubernetes
• Version Control: Git, GitHub, Bitbucket
• Monitoring & Logging: Prometheus, Grafana, CloudWatch, Splunk
EXPERIENCE:
Direct Chassis Link Inc. — Cybersecurity Analyst, July 2024 – Present
• Designed and automated secure AWS and Azure infrastructure using Terraform, aligning deployments with AWS Well-Architected and security best practices.
• Built reusable Terraform modules for IAM, VPC, EC2, S3, Lambda, and EKS, enabling consistent, scalable, and auditable infrastructure provisioning.
• Implemented GitHub Actions CI/CD pipelines for infrastructure and application delivery, integrating security scanning and policy enforcement.
• Enabled OIDC-based authentication between CI/CD pipelines and AWS, eliminating long lived credentials and improving platform security posture.
• Automated compliance enforcement and drift remediation using AWS Config and Lambda, reducing manual operational effort by 30%.
• Supported EKS cluster lifecycle operations, including Helm-based deployments, secrets management, and runtime observability.
• Enhanced infrastructure observability using CloudWatch and Splunk, reducing incident response time by 20–30%.
Business Intelli Solutions — DevOps Engineer, Jan 2023 – Aug 2023
• Engineered secure AWS and Azure landing zones with IAM, MFA, SSO, OAuth, and Entra ID integrations. • Authored Terraform templates to provision compliant infrastructure aligned with CIS and NIST benchmarks.
• Developed automation using Python, Bash, and serverless workflows to eliminate repetitive operational tasks.
• Embedded security and reliability controls into CI/CD pipelines supporting containerized and serverless workloads.
• Supported Kubernetes-based workloads, validating secure cluster configuration, access controls, and deployment patterns.
• Conducted cloud architecture reviews focused on scalability, reliability, and fault tolerance.
• Partnered with engineering teams to integrate infrastructure automation and security-as-code practices. Itsoli — Infrastructure Engineer, Oct 2021 – Dec 2022
• Managed and secured hybrid infrastructure environments integrating on-prem systems with AWS and Azure.
• Automated firewall rule analysis and access reviews using Python, reducing configuration errors and manual effort.
• Supported infrastructure provisioning, patching, and hardening for production systems.
• Enforced least-privilege IAM and network segmentation strategies across environments.
• Optimized firewall and VPN configurations, improving network reliability and performance.
• Assisted with monitoring, incident response, and root cause analysis for infrastructure issues.
PROJECTS
AWS Multi-Account Security Automation
• Designed modular Terraform architecture to manage multi-account AWS environments at scale.
• Enforced IAM standards, least-privilege access, and centralized logging across accounts.
• Automated S3 access logging and encryption using policy-driven controls.
• Implemented IMDSv2 enforcement to harden EC2 instance metadata access.
• Integrated AWS Config rules to detect and remediate configuration drift.
• Developed Lambda functions to trigger automated compliance actions.
• Enabled centralized visibility into security posture across accounts.
• Reduced configuration drift and manual remediation effort through automation. Secure CI/CD with OIDC Authentication
• Designed GitHub Actions pipelines for infrastructure and application deployments.
• Implemented OIDC-based authentication between GitHub Actions and AWS IAM roles.
• Eliminated static credentials and improved secret management practices.
• Integrated policy checks and automated validation into pipeline workflows.
• Supported high-throughput, repeatable deployments across environments.
• Improved CI/CD security posture while maintaining developer velocity.
• Documented pipeline standards and reusable templates.
• Enabled scalable adoption across multiple engineering teams. Kubernetes Platform Standardization
• Standardized Helm charts for EKS-based workloads.
• Defined consistent deployment, configuration, and rollback strategies.
• Improved workload scalability and reliability through standardized patterns.
• Enhanced observability integration with Prometheus and CloudWatch.
• Collaborated with engineers to adopt GitOps-aligned workflows.
• Reduced deployment inconsistencies across environments.
EDUCATION
Master of Science – Cybersecurity (Computer Science) — The George Washington University Washington, DC May 2025
CERTIFICATIONS
• AWS Solutions Architect – Associate
• AWS Cloud Practitioner
• Microsoft Certified: Azure Fundamentals
• Google Associate Cloud Engineer
• CompTIA Security+ Network+
• CISSP – In Progress