Available for opportunities · Sydney, NSW

Shohag
Rana

$ whoami →

Cybersecurity & DevSecOps engineer building secure, observable, self-healing cloud infrastructure. I ship CI/CD pipelines, harden systems, and cut cost without cutting uptime.

shohag@prod — zsh — 80×24

Commit

git push origin

Build

docker build

Test & Scan

trivy · sast

Deploy

blue / green

Observe

prometheus · ELK

Measured impact

Numbers from production.

Outcomes from real systems serving real traffic — cost, reliability, scale and recovery.

0%
AWS cost reduction — ~$15K saved every month through rightsizing & automation
0%
Uptime sustained for mission-critical fintech systems
0+
Transactions per second handled behind Cloudflare WAF & DDoS protection
0%
Faster recovery — MTTR cut in half via root-cause analysis & prevention
Career log

Where I've shipped.

Infrastructure-Focused Full Stack Software Engineer

YouxPowered · Sydney
Jul 2025 — Present
  • Architected end-to-end CI/CD pipelines in Jenkins & CodePipeline with blue-green deployment strategies across multiple environments.
  • Built infrastructure observability with Prometheus, Grafana and the ELK Stack — sharpening incident response and performance monitoring.
  • Stood up a self-hosted MongoDB cluster with Point-in-Time Recovery and automated backups for disaster recovery.
  • Managed core AWS (EC2, Beanstalk, Lambda, VPC, IAM, CloudFront, S3, LightSail, Security Groups) for scalability and compliance.
  • Deployed Rapid7 SIEM & Incident Command for threat detection across endpoints and cloud assets.
  • Led incident response and post-mortems, driving root-cause fixes and preventive measures.
↓ 50% AWS cost (~$15K/mo) ↑ 20% dev efficiency ISO 27001 certified ↓ 50% MTTR

Engineer — Platform & Integration, Systems Engineering

bKash Ltd · Fintech · Bangladesh
Oct 2021 — Feb 2023
  • Managed 500+ RHEL/Ubuntu VMs, automating provisioning with Ansible and cutting setup time by 40%.
  • Built CI/CD pipelines with Jenkins and Tekton — 20% faster deployments, fewer manual errors.
  • Operated containerized workloads with Docker, Kubernetes, Helm and KEDA autoscaling across 50+ production services.
  • Centralized logging & observability with Elastic Stack and Prometheus/Grafana, improving mean-time-to-detect by 35%.
  • Administered Cloudflare DNS, WAF and L7 DDoS protection — 500+ DNS entries, 50,000+ TPS.
99.99% uptime ↓ 40% provisioning time ↓ 35% MTTD 50+ services

Academic Tutor — Cybersecurity & Digital Forensics

University of Technology Sydney (UTS)
Jan 2024 — Jul 2025
  • Delivered instruction in Cryptography, Cybersecurity and Digital Forensics to undergraduate and postgraduate students.
  • Led weekly lab sessions, guiding hands-on exercises that reinforced theory with practical skill.
  • Evaluated assignments and projects with detailed, constructive feedback supporting academic growth.
↑ 30% participation Top satisfaction ratings Course material revamp
The stack

Tools I reach for.

Cloud, security and automation — wired together with a security-first mindset.

Cloud & DevOps

AWS EC2LambdaBeanstalkVPCIAMCloudFrontRoute 53CodePipelineAzureJenkinsDockerKubernetesHelmArgoCD

Security & Monitoring

Rapid7 SIEMPrometheusGrafanaELK StackCloudflare WAFLinux HardeningSecure CI/CDThreat AnalysisDevSecOps

Infrastructure as Code

TerraformAnsibleTektonKEDAGitBashCI/CD automation

Languages & AI Tooling

PythonGoLangJavaC++JavaScriptPHPCisco CCNACursorClaude CodeKiro
Selected work

Things I've built.

// 01 — gov fintech

National payment gateway CI/CD

Designed and ran the CI/CD pipeline for a government project delivering a central payment gateway between banks — secure, auditable releases across a regulated environment.

JenkinsBlue-GreenSecure CI/CD
// 02 — serverless at scale

200+ Lambda fleet across 5 environments

Deployed and maintained 200+ AWS Lambdas spanning dev, SIT, UAT, demo and production — including Twilio SMS, an API emailer, an AI chatbot, Equifax and Zignsec integrations.

AWS LambdaIntegrationsMulti-env
// 03 — resilience

Self-hosted MongoDB with PITR

Built and maintained a self-hosted MongoDB cluster with Point-in-Time Recovery and automated backups — a disaster-recovery posture that survives the bad days.

MongoDBPITRBackup automation
// 04 — platform

Containerized platform, 50+ services

Operated 50+ production services on Docker & Kubernetes with Helm and KEDA autoscaling, backed by centralized observability — sustaining 99.99% uptime.

KubernetesHelmKEDA
Foundations

Education & honors.

Master of Information Technology

University of Technology Sydney (UTS)
Feb 2023 — Feb 2025
90.50WAM · Weighted Average Mark

1st place — UTS Techfest 2023AI Hackathon · Google Cloud Marathon

UTS SecOps BootcampCompleted with ThreatDefence

VC's Scholarship & Dean's List 2024University of Technology Sydney

Let's connect

Building something that needs to stay up?

I'm open to DevOps, DevSecOps, Cloud and SRE roles. Let's talk reliability, security and scale.