Skip to content
View rishirajbansal's full-sized avatar

Block or report rishirajbansal

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
rishirajbansal/README.md

🙏 About Myself

♦ 20+ years of total experience in Software engineering and Systems Architecture. Providing software services & solutions to various industry verticals in most reliable & consistent manner, assisting the industries to make their businesses more successful with optimum costing structure and rapid ROIs execution plans.
♦ 12+ years of Experience in DevOps, DevSecOps, Cloud Engineering/Architect
♦ Proven Long term engagements with clients, consistent and reliable performance
♦ Master’s degree in Computer Science/Engineering from prominent university
♦ Core Tech Skills: ▪ AWS ▪ Azure ▪ GCP ▪ Docker ▪ Linux
♦ Prog Lang: ▪ Java ▪ Node.js/TypeScript ▪ Python ▪ Bash

🔭 Find me on:


🏭 Industries Served

♦ HealthCare (https://www.engagedmd.com, https://www.visibleep.com)
♦ FinTech (RBS, Western Union Money Transfer, NCR/Diebold ATMs)
♦ ITTech (https://www.fitrix.com)
♦ Manufacturing/Retail (https://www.ghirardelli.com, https://www.e-supplylink.com)

📝 Governance & Compliances

▪ HIPAA ▪ NIST ▪ SOC 1/2/3 ▪ PCI-DSS ▪ GDPR ▪ CCPA ▪ SEC

💡 Expertise

♦ Cloud Infra Setup/Automation
♦ Networking setup in Cloud Providers
♦ IaC (CDK, Terraform, Pulumi)
♦ Containerization, Orchestration
♦ Deployment and Release Management
♦ Configuration Management
♦ CI/CD Pipelines management
♦ Security Alignments
♦ Disaster & Recovery Management
♦ Infra Migrations (Cloud Migration, Database Migration)
♦ Identity and Access Management (CIAM, IDM)

💼 Experience

• I am best in researching solution design/arch, building platform from scratch to PROD and selecting best robust technologies that can help in achieving the goal of the organization. This could also include determining what Cloud services can be used to be integrated with the core applications of the system.
• Automating the complete setup of all resources with minimal human intervention
• CI/CD Pipeline Management: Design, implement, and maintain CI/CD pipelines using tools like GitHub Actions, BitBucket Pipelines and AWS CodeBuild/CodePipeline to automate the software delivery process.
• Cloud Services Management: Manage and optimize cloud resources for scalability, performance, and cost-effectiveness while implementing security best practices.
• Collaboration and Communication: Work closely with development, QA, and operations teams to foster a collaborative culture, ensuring alignment on project goals and timelines.
• Automation: Automate repetitive tasks and processes to improve efficiency and reduce manual errors, developing scripts for deployment and system maintenance.
• Configuration Management: Manage configuration files and settings for applications and services to ensure consistency across environments.
• Incident Management: Participating in incident response and root cause analysis to quickly resolve production issues, implementing tracking and resolution processes.
• Performance Optimization: Conducting performance testing and optimization of applications and infrastructure, identifying bottlenecks and recommending solutions.
• Microservices - Proficient in Microservices architecture including gateway, service discovery, authentication & authorization, central configuration, event sourcing, load balancing
• Serverless – Expertise in serverless architecture and applications, Lambda functions, API Gateway
• Experience in handling projects of large scale secure systems with high volume and high-performance requirements, Cross-language, Cross-platform applications
• Keeping costing structure Optimized - Analyzing and Suggesting best infrastructure and services of AWS with optimum costs and robust architecture

🚪 Identity and access management (IDM/CIAM)

• Cognito, SAML, OAuth, OpenID Connect (OIDC) authentications integration whether it is custom or vendor specific
• Social identity providers like Facebook, Google, Amazon, and Apple
• SAML 2.0 identity provider (IdP)
• Machine-to-machine (M2M) authorization
• Multi-factor authentication (MFA), Passkey, WebAuthn, Passwordless
• Role-based access control (RBAC), Attribute-based access control (ABAC)

📍 Security Management

• Safeguarding the entire DevOps environment through strategies, policies, processes
• Entail embedding governance and cybersecurity functions such as IAM, privilege management, firewalling / unified threat management, code review, and vulnerability management throughout the DevOps workflow
• Security Alignments: Implement security measures throughout the development and deployment lifecycle, ensuring compliance with industry standards. Have implemented HIPAA and PCI-DSS compliances
• Database Encryption, Encryption at rest, Encryption at transit
• Deep understanding of IAM (to securely control AWS resources accesses) users, roles, policies and Security Groups to secure the applications, infrastructure components, servers etc.
• Threat Modeling and Risk Analysis: Identify potential security threats and assess the risk associated with them
• Security Policy Implementation: Develop and implement security policies and procedures to protect the organization's assets.
• Vulnerability Management: Identify, assess, and mitigate security vulnerabilities.
• Data Protection: Implement measures to protect sensitive data and prevent data breaches
• Tools: Hashicorp Vault, onetimepassword, lastpass, SSH Keys, JWT Tokens, Cognito, SSO, Shield, WAF, IAM, Security hub, Trusted Advisor, Guard Duty

Awards & Achievements

• 'Core Value' award from Sapient Corporation (US)

• ‘Technocrat’ award from Royal Bank of Scotland (UK)

👨‍💻 Tech Stack

AWS Azure Google Cloud Docker Kubernetes
Java Python NodeJS TypeScript Bash Script
Grafana Prometheus Terraform Nginx NestJS Spring Redis GitHub Actions Pulumi Vault Datadog
Bitbucket GitHub Jira TurboRepo

📊 GitHub Stats




Pinned Loading

  1. BrainyTranslator BrainyTranslator Public

    Natural Language Based Brainy Translator

    Python 1

  2. DevSecOps-Hardening-Poc DevSecOps-Hardening-Poc Public

    A complete demonstration of a secure CI/CD pipeline integrating DevSecOps best practices using open-source tools. This PoC showcases how to build a pipeline that catches misconfigurations, secrets,…

    JavaScript

  3. SAML-SSO-Authenticator-Using-CognitoOktaPulumi SAML-SSO-Authenticator-Using-CognitoOktaPulumi Public

    SAML SSO Authentication system for Django Administrator using Cognito, Pulumi as a IaC and Okta as Identity Provider

    Python 3 1

  4. AWS-SecureWebAppViaVPC AWS-SecureWebAppViaVPC Public

    Securing Web Application via VPC, Firewalls, Submets, ACLs

  5. App-Perf-data-to-AWS-CloudMetrics App-Perf-data-to-AWS-CloudMetrics Public

    Displaying Apps Performance Testing Statistical data to AWS CloudWatch Metrics

    Shell

  6. Microservices-HealthChecker Microservices-HealthChecker Public

    Health Monitoring tool to monitor microservices/apps

    TypeScript