Yamini Mandadi
Los Angeles ********************@*****.*** Linkedin GitHub Portfolio
EDUCATION
California State University, Los Angeles
Master of Science in Computer Science GPA 3.9
Reva University
Bachelor of Technology in Computer Science and Engineering GPA 3.9 EXPERIENCE
Cloud Platform Engineer Community Dreams Foundation Aug 2026-Present
Configured and supported Self-hosted Integration Runtime (SHIR) to securely connect Azure Data Factory with on-premises/private-network data sources, troubleshooting connectivity, authentication, and pipeline execution issues.
Implemented Azure Logic Apps and Event Hubs for event-driven workflows, system integrations, and event ingestion, automating operational processes while monitoring pipeline health and troubleshooting streaming and ingestion issues.
Supported Azure Container Instances and containerized workloads, assisting with deployment, configuration, networking, monitoring, and troubleshooting of container-based applications in Azure. System Engineer Tata Consultancy Services July 2023-Sep 2024
● Developed modular Terraform configurations for Azure environments with remote state and environment-specific configurations for Dev, QA, and Production, enabling consistent and repeatable infrastructure deployments.
● Built and maintained DevSecOps CI/CD pipelines using Jenkins, Terraform, Azure CLI, and Git, integrating secret scanning, Checkov IaC security checks, Terraform validate/plan, and approval gates to enforce automated quality and security controls before production deployments.
● Implemented secure Azure connectivity using Private Endpoints and Private DNS, enabling private access to Azure PaaS services while reducing public network exposure.
● Administered Azure SQL workloads, including SQL Server backup/restore, backup validation, long-term retention, and disaster recovery planning aligned with RPO/RTO requirements.
● Designed and implemented Azure network security architecture using hub-and-spoke VNets, subnet segmentation, VNet peering, UDRs, Azure Firewall, NSGs, Application Gateway, and Load Balancer to support secure and resilient application connectivity.
● Monitored Azure environments using Azure Monitor, Log Analytics, Application Insights, Prometheus, and Grafana, creating alerts and dashboards and supporting troubleshooting and root-cause analysis.
● Integrated Jira with Bitbucket to link development tickets with source-control workflows, enabling traceability between Jira issues, Git branches, pull requests, code reviews, and deployment activities across application and DevOps teams. Assistant System Engineer Tata Consultancy Services July 2022 - July 2023
● Reduced Azure infrastructure costs by approximately 50–66% through Azure Cost Management, resource rightsizing, App Service Plan optimization, and rehosting strategies.
● Supported migration of application workloads from Azure App Service Plan to the Consumption Plan to reduce cloud costs, performing proof- of-concept testing and validating application compatibility, scalability, networking, security, and deployment requirements.
● Supported Azure networking operations across VNets, subnets, NSGs, Azure Firewall, peering, and routing, troubleshooting connectivity and security issues for application workloads.
● Implemented Zero Trust security controls using Microsoft Entra ID, App registrations, Conditional Access, MFA, PIM, RBAC, Managed Identities, and Service Principals to enforce least-privilege access.
● Managed Azure Key Vault and SSL/TLS certificate lifecycle, supporting secure storage and access to application secrets and certificates.
● Supported Azure security posture and governance using Microsoft Defender for Cloud, Azure Policy, NSGs, firewall controls, and storage network restrictions.
Assistant System Engineer Trainee Tata Consultancy Services July 2021 - July 2022
● Automated standardized Azure infrastructure deployments using ARM Templates, establishing repeatable infrastructure deployment patterns.
● Provisioned and managed Azure Virtual Machines using Terraform and Azure CLI, standardizing compute infrastructure across development and production environments.
● Administered Active Directory, DNS, Microsoft Entra ID, and AWS IAM, supporting identity, authentication, authorization, and hybrid/multi-cloud environments.
● Implemented security controls including RBAC, Conditional Access, MFA, NSGs, firewall rules, Azure Policy, and Storage Account network restrictions.
● Managed ITIL-based incidents, service requests, changes, SLA requirements, and root-cause analysis, supporting reliable production operations.
CERTIFICATION(s) / ACHIEVEMENT(s)
• Microsoft Certified: Azure Administrator Associate (AZ-104)
• Microsoft Certified: Azure Security Engineer Associate (AZ-500)
• Microsoft Certified: Azure Fundamentals (AZ-900)
• Azure Security Hackathon Winner
• National Cyber League - Top 16%, ranked 574th out of 4,893 nationally RELEVANT PROJECT
NetworkScanning & Exploitation github.com/NetworkScanning
● Conducted manual and automated network security assessments using Nmap, Nessus, Wireshark, and Metasploit to identify exposed services, vulnerabilities, and insecure network configurations.
● Performed TCP/UDP port scanning, service enumeration, OS fingerprinting, vulnerability validation, and controlled penetration testing across test environments.
● Analyzed findings using CVSS-based risk categorization, documented security risks, and developed remediation recommendations.
● Produced structured security assessment reports covering vulnerabilities, impact, evidence, risk, and mitigation. Retrieval-Augmented-Generation-with-Llama-3-and-Vector-Search github.com/Llama-3-and-Vector-Search
● Developed a RAG application using Llama 3.2, LangChain, ChromaDB, Gradio, and Docker Compose, implementing semantic retrieval and LLM-based response generation.
● Automated application build/deployment workflows using GitHub Actions and Amazon ECR. Automated Monitoring and Self Healing infrastructure github.com/Automated-Monitoring
● Developed an automated monitoring and remediation solution using AWS CloudWatch, Lambda, EC2, SNS, and Python to detect web application issues and trigger corrective actions.
● Configured monitoring metrics and alarms and integrated notifications with Sumo Logic, improving visibility into infrastructure health and operational incidents.
AWS AMI Automation Pipeline github.com/AWS_Image_pipeline
● Automated AWS AMI creation and infrastructure provisioning using Packer, Terraform, HCL, and shell scripting, creating repeatable infrastructure deployment workflows.
● Configured EC2 and IAM resources using least-privilege access controls and automated application/server configuration. TECHNICAL SKILLS
Cloud & Azure: Azure, AWS, Vmware, Management Groups, Azure Policy, Azure Site Recovery, VNets, Hub-and-Spoke, Private Endpoints, Private DNS Azure Security & Identity: Azure Firewall, NSGs, Microsoft Defender for Cloud, Key Vault, Microsoft Entra ID, RBAC, Managed Identities, Service Principals, Conditional Access, MFA, PIM, Zero Trust, SSL/TLS
Infrastructure & DevOps: Terraform, ARM Templates, Jenkins, Bitbucket, GitHub Actions, Azure CLI, PowerShell, Packer, Git, Docker, Kubernetes Security Assessment: Nmap, Nessus, Metasploit, Wireshark, Vulnerability Assessment, Network Security Testing, Threat Analysis, Remediation Monitoring & Observability: Azure Monitor, Log Analytics, Application Insights, Prometheus, Grafana, Alert manager Programming & Databases: Python, C++, C, JavaScript, React, Node.js, REST APIs, MySQL, MongoDB, Elasticsearch Microsoft Suite and AI tools: Microsoft 365, Visio, Excel, Word, PowerPoint, Teams, Claude Code