Available for new opportunities

Salman
Ansari

AWS Cloud Engineer with 3+ years managing production multi-account environments. I design secure, scalable, and cost-optimized cloud architecture.

3+
Years Experience
7–8
AWS Accounts
50+
Cloud Resources
40%
Cost Reduction
Terraform EKS ECS Transit Gateway FinOps CloudWatch IAM
Technical Expertise

Core Skills

☁️
Cloud Computing & Architecture
EC2S3 Route 53CloudFront ALB/NLBAPI GatewaySSM
AWS Core Services90%
🏗️
Infrastructure as Code
TerraformAWS Lambda Auto ScalingIaC Modules
Terraform88%
🐳
Container Orchestration
Amazon EKSAmazon ECS KubernetesFargate
EKS / ECS82%
🔐
Cloud Networking & Security
VPCTransit Gateway Direct ConnectIAM KMSNACLsCognito
Networking85%
🗄️
Database & Storage
RDSDocumentDB EBSEFS
DB & Storage78%
⚙️
DevOps & Scripting
Bash/ShellPython GitCI/CD Linux RHEL Docker Jenkins GitHub Action
Scripting75%
Career Timeline

Work Experience

AWS Cloud Engineer
July 2022 – Present
🏢 Tata Consultancy Services (TCS)  ·  Mumbai
  • Provisioned and managed AWS infrastructure across 7–8 accounts using Multi-Account Management, supporting 50+ active cloud resources in production and non-production environments.
  • Built repeatable, scalable environments using Terraform (IaC) to standardize provisioning and improve deployment consistency across teams.
  • Designed scalable Cloud Architecture leveraging EC2, VPC, ALB/NLB, S3, RDS for critical workloads.
  • Implemented hybrid connectivity via Site-to-Site VPN, AWS Direct Connect, and Transit Gateway for secure cross-network communication.
  • Provisioned and managed Amazon EKS (Kubernetes) and Amazon ECS container platforms with Auto Scaling Groups for High Availability and Fault Tolerance.
  • Performed Linux Administration (RHEL) on EC2 with Bash scripting for system-level optimizations.
  • Executed AWS Cost Optimization & FinOps strategies achieving ~30–40% cost reduction in overall infrastructure spend.
  • Configured Amazon CloudWatch for comprehensive infrastructure monitoring, alerting, and log management.
B.Tech Graduate
2018 – 2022
🎓 PVPP College of Engineering, Mumbai  ·  CGPA: 7.4
  • Bachelor of Technology — completed foundational engineering and computer science curriculum.
  • Obtained AWS Certified Cloud Practitioner shortly after graduation in 2022.
Featured Work

Key Projects

🏗️
Production Multi-Tier Serverless & Containerised Infrastructure
  • Provisioned production-grade AWS infrastructure using Terraform across a single account with three distinct traffic flows
  • Flow 1 — static content served globally via CloudFront backed by S3
  • Flow 2 — dynamic API traffic routed through CloudFront to API Gateway, NLB, and ECS Fargate with RDS PostgreSQL as the transactional backend; Fargate Spot used for non-production to reduce compute costs
  • Flow 3 — async event-driven processing via API Gateway publishing to SQS, with Lambda consumers writing results to DynamoDB, fully decoupling async workloads from the synchronous API layer
CloudFrontS3 API GatewayNLB ECS FargateRDS PostgreSQL SQSLambda DynamoDBTerraform
🌐
Hybrid Multi-Account Network Architecture
  • Architected secure hybrid connectivity bridging on-premises infrastructure with AWS using a Site-to-Site VPN terminating into a shared services account
  • AWS Transit Gateway acts as the central routing hub, distributing all on-premises traffic across UAT and Production VPC attachments via TGW routing tables
  • Single VPN connection serves all environments, eliminating the need for separate tunnels per environment
  • Hub-and-spoke model enforced clean environment isolation while providing a single point of network governance for all cross-environment traffic
Site-to-Site VPNTransit Gateway Shared ServicesUAT + Prod VPC Hub & SpokeTerraform
💰
AWS Cost Optimization & FinOps Automation
  • Configured S3 lifecycle policies to automatically transition and expire objects across storage tiers
  • Migrated all non-production EKS workloads to Spot Instances, reducing compute costs while maintaining availability
  • Built a Python cleanup script triggered via EventBridge to automatically remove orphaned EBS volumes and stale snapshots on a schedule
  • Replaced 3–4 manually managed EC2 instances behind an ALB with an Auto Scaling Group, improving resilience and eliminating manual overhead
  • Used AWS Compute Optimizer to identify and implement rightsizing recommendations across EC2 instances
  • Exported Cost Explorer recommendations, mapped against existing workloads, modelled estimated savings, presented to client, and facilitated purchase of Savings Plans and Reserved Instances
S3 LifecycleSpot Instances EventBridgePython ASGCompute Optimizer Savings PlansReserved Instances
Serverless Attendance Tracking Application
  • Built a fully serverless attendance tracking application, decoupling frontend from backend for high scalability with zero server maintenance
  • Provisioned frontend hosting using S3 and CloudFront for fast, globally distributed, and secure delivery
  • Backend powered by API Gateway, Lambda, and DynamoDB to handle all dynamic requests without any server provisioning
  • Automated infrastructure deployments via a Dockerized Jenkins CI/CD pipeline with Git hooks triggering Terraform plan on every commit and manual approval gate before apply
S3CloudFront API GatewayLambda DynamoDBTerraform Jenkins CI/CDDocker
Project 1 — Infrastructure Deep Dive

AWS Architecture

Production Multi-Tier Serverless & Containerised Infrastructure
ENTRY POINT
CloudFront
CDN + Edge
STATIC
S3
Static Assets
SYNC API
API Gateway
REST
NLB
Network LB
ECS Fargate
Prod / Spot
RDS
PostgreSQL · Multi-AZ
ASYNC
API Gateway
REST
SQS
Queue
Lambda
Consumer
DynamoDB
NoSQL · Results
Flow 1 — Static (CF → S3)
Flow 2 — Sync API (CF → APIGW → NLB → ECS Fargate → RDS PostgreSQL)
Flow 3 — Async (CF → APIGW → SQS → Lambda → DynamoDB)
Credentials

AWS Certifications

🏅
AWS Certified Solutions Architect – Associate
Amazon Web Services · SAA-C03
2024
☁️
AWS Certified Cloud Practitioner
Amazon Web Services · CLF-C02
2022
Get In Touch

Let's Connect

Open to New Roles
I'm actively looking for AWS Cloud / DevOps Engineering opportunities. Whether it's full-time, contract, or consulting — feel free to reach out.
Currently open to opportunities

Mumbai, India

Open to remote roles worldwide and relocation opportunities.

Send Email ⬇ Download Resume