// DevOps & Cloud Security Engineer → Solutions Engineering

Ishwarya
Lakshmi C

7 years designing and securing enterprise-scale AWS infrastructure. Targeting Solutions Engineer and Pre-Sales Architect roles at cloud security companies across EMEA and APAC.

n8n run cloud-security-pipeline
Loaded 8 flows · OpenRouter connected · Sheets synced
View on GitHub Get in touch →

Previously at

Cisco Systems · Bugcrowd · Mercor AI Lab · Gale Partners · Reshamandi · Qburst Technologies · Sify Technologies

Infrastructure depth. Customer-layer ambition.

7+ years designing, automating, and securing enterprise AWS infrastructure at scale. Authored platform RFCs, evaluated ZTNA vendors for organisation-wide security strategy, and presented architecture trade-offs to engineering leadership. Now making that experience customer-facing.

Cloud & Infrastructure

Multi-region AWS (including China and US Gov), EKS at scale supporting 2M+ monthly transactions, Terraform multi-tenant restructuring, Spacelift-driven ClickOps-free pipelines.

AWSKubernetes / EKSTerraform SpaceliftGitOpsArgoCD

Identity & Zero Trust

Evaluated Cloudflare Zero Trust, Netskope, and Palo Alto ZTNA for organisation-wide adoption at Cisco. Deployed Okta, Azure AD, Ping Identity with SCIM lifecycle automation across 1,000+ EKS clusters.

ZTNAOktaSCIM OIDC / OAuth2SSO/SAMLZero Trust

SE-Adjacent Work

RFC and architecture design document authorship. Presented infrastructure trade-offs to senior engineering leadership and coordinated cross-functional stakeholder discussions across security, compliance, and engineering at Cisco and Mercor.

RFC AuthorshipStakeholder Presentations Technical AdvisoryVendor Evaluation

Target Roles & Locations

Solutions Engineer, Pre-Sales Architect, Security Solutions Architect at cloud security, identity, and infrastructure companies. Open to EMEA and APAC — requires employer-sponsored visa.

Solutions EngineerPre-Sales Architect EMEAAPACVisa sponsorship

Cloud Security Alert Intelligence

8 production-grade n8n automation flows. An alert enters as raw webhook data and exits as a scored, enriched, ticketed, and remediated action item — with zero manual triage.

Webhook alert Normalise schema AI triage Anomaly detect Multi-model consensus Jira ticket Threat intel Remediation Weekly digest

FLOW 01

Alert Ingestion + Normalisation

Webhook receives alerts from Wiz, CrowdStrike, and Datadog. Normalises across schemas. Logs to Google Sheets. Slack ping on critical/high.

webhook · sheets · slack

FLOW 02

AI-Powered Triage + Scoring

GPT-4o-mini scores each alert 1–10 on blast radius, resource exposure, and attack pattern. Writes risk score and rationale back to Sheets.

openai · gpt-4o-mini

FLOW 03

Jira Ticketing + Deduplication

JQL deduplication before every ticket. Creates with priority, SLA due date, and owner assignment — or adds a comment to the existing ticket.

jira · sheets · slack

FLOW 04

Weekly Security Posture Digest

Monday 9am. MTTR, true positive rate, top 3 findings, severity breakdown. Slack Block Kit + HTML email to stakeholders.

sheets · slack · gmail

FLOW 05 — AI

Anomaly Detection

30-day rolling baseline per resource type. Scores frequency spikes, severity jumps, and novel patterns. Mistral confirms behavioural anomaly vs statistical noise.

mistral-7b · openrouter

FLOW 06 — AI

Multi-Model Consensus

Two LLMs triage the same alert independently. Agreed results are accepted. Contested results (divergence ≥ 3pts) route to human review in Slack.

llama-3 · qwen · openrouter

FLOW 07 — AI

Threat Intel Enrichment

MITRE ATT&CK + NVD CVE lookups per confirmed finding. Qwen synthesises TTP IDs, threat actor groups, related CVEs, and detection gaps.

qwen · mitre · nvd · openrouter

FLOW 08 — AI

Automated Remediation

Generates exact AWS CLI fix, Terraform prevention snippet, estimated fix time, and production risk per confirmed finding. Posted directly to the Jira ticket.

mistral-7b · openrouter

Watch the flows run

Each video is a live walkthrough of one flow — problem framing, n8n canvas, test payload, output. No slides.


Stack & certifications

Cloud

  • AWS (multi-region, multi-account)
  • EKS / Kubernetes
  • EC2, S3, RDS, Lambda
  • VPC, Route53, CloudFront

IaC & Automation

  • Terraform (RFC authorship)
  • HCP Terraform Workspaces
  • Ansible, Helm
  • n8n workflow automation

Identity & Security

  • Okta, Azure AD, SSO/SAML
  • OIDC, OAuth2, SCIM
  • Zero Trust / ZTNA
  • SAST/DAST (SonarQube, CodeQL)

Observability

  • Datadog, Prometheus, Grafana
  • ELK stack
  • PagerDuty, OpsGenie
  • CloudWatch, CloudTrail

CI/CD & GitOps

  • GitHub Actions, GitLab CI
  • ArgoCD, FluxCD
  • Docker, Containerd
  • Nexus, JFrog Artifactory

AI & Automation

  • OpenAI, OpenRouter
  • Mistral, Llama 3, Qwen
  • MITRE ATT&CK, NVD CVE
  • Prompt engineering
AWS Solutions Architect Associate (SAA-C03) IN PROGRESS
HashiCorp Terraform Associate (003) IN PROGRESS
Published Research — MANET Attack Detection PUBLISHED
B.Tech Information Technology — Anna University GPA 8.47/10

Open to SE roles across EMEA & APAC

Targeting Solutions Engineer, Pre-Sales Architect, and Security Solutions Architect roles at cloud security, identity, and infrastructure companies. Requires employer-sponsored visa.