I am AWS Certified Solution Architect working full time on cloud infrastructure from last 3 years for our clients to achieve scalability and high availability of their applications with implementation of security on cloud.
In AWS, almost worked on all services of the cloud.
-Created VPC with public and private subnets.
-Secured application with ELB in front and all application/database instances remain in private subnet. For connection of privately hosted production instances configured bastion host with real-time log rotation of the syslog and shell history for auditing purposes.
Ensured applications must have minimum RTO/RPO for users.
-Implemented server-less architecture for deployment of application.
-Created VPN tunnel to connect securely AWS services from enterprise locations.
-Enabled and configured monitoring with Alerts for issues in relation to reachability or service related incidents.
-Secured S3 serving public content with versioning,security etc.
-Enabled alerts on cloud trails log for any false configuration in AWS console.
-Automated rotation of keys of services in relation to achieve security
Message me any time