Resume
Deepak Gupta — DevOps · SRE · Platform Engineering
- Email: hello@hellodk.io
- Blog: hellodk.io
- GitHub: github.com/hellodk
- LinkedIn: linkedin.com/in/hellodk
- Docker Hub: hub.docker.com/r/hellodk
- About: about.me/hellodk
Work experience
Lead DevSecOps Engineer — HDFC Bank, Bengaluru
December 2021 – Present
Indian banking and financial services company headquartered in Mumbai.
- Defining secure CI/CD workflow architecture — OSA, SAST, container trust registry, DAST
- Writing IaC for Kubernetes, RabbitMQ, Kafka and Nginx
- Detecting application security issues by implementing policy as code
- Monitoring systems with Prometheus, Grafana, Graphite and ELK
- MLOps implementation using Kubeflow
- Mobile CI/CD for Android and iOS with Fastlane, Flutter and Bitrise
- Distroless and multi-stage image builds across applications
- Writing Kubernetes CRDs for internal applications
SDE III — Play Games24x7, Bengaluru
October 2020 – December 2021
One of the fastest-growing online gaming companies in India. Contributions:
- Migrating databases to the Kubernetes ecosystem
- Developing MLOps architecture and pipelines for the Data Science team
- Running Spark jobs in containerised environments using Kubeflow
- Data cleansing, EDA, inference and hyperparameter tuning on Kubeflow
- Spark job internal metrics with Graphite and Grafana
- Jenkins pipelines for app deployments and rollbacks
- Stable Kubernetes cluster autoscaling with spot instances
- Service mesh implementation with Istio
- Automated Docker image builds for custom Spark applications and operators
- EKS maintenance — upgrades, monitoring, alerting
- Microservices network flow diagrams from VPC flow logs and Neo4j, giving a bird’s-eye view of service communication
- Monitoring systems for Kubernetes
- Chaos engineering framework for Kubernetes with Litmus Chaos
- Sprint planning and task distribution
DevOps Consultant / Trainer — Bengaluru
June 2018 – September 2020
Helped organisations adopt DevOps tooling and practices, scaling strategies, and delivered training.
- Built and ran an online virtual lab platform, operated profitably
- Active development in Python
- Automation with Ansible
- Website content publishing on Heroku
- Google Analytics and SEO implementation
- Scalable, automated, deployable apps on Kubernetes clusters
- Evaluating new cloud solutions for clients
- Managing SQL and NoSQL databases — MySQL, MariaDB, Cassandra, MongoDB
DevOps Lead — Moveinsync Technology, Bengaluru
January 2018 – June 2018
India’s chief employee transportation management solution.
- VAPT
- Implementing disaster recovery across multiple availability zones with Ansible
- Securing ISO 27001 certification, which unlocked further client contracts
Systems Engineer — Myntra Designs, Bengaluru
June 2016 – January 2018
India’s largest fashion e-commerce organisation. Part of the sysadmin team.
- Maintaining 99.9999% infrastructure uptime across datacentre, AWS and Azure
- Monitoring microservice API calls, revenue metrics, on-call rotation
- Writing scalable internal tools in Python and Go
- Automating deployments and audits with Ansible
- Database maintenance
- PCI maintenance and audit
DevOps Engineer — Knowlarity Communications, Bengaluru
January 2015 – May 2016
AI-enabled cloud telephony.
- Debian packaging of applications
- Automating deployments with Ansible
- Maintaining RethinkDB — backup, recovery, scaling, sharding
- Custom tools and APIs to scrub data across 440 million records
- Billing framework with Cassandra and ELK
- Grafana dashboards using statsd and Graphite
- Maintaining RabbitMQ clusters
Project Engineer — Wipro Technologies, Bengaluru
November 2011 – January 2015
Indian IT consulting and services multinational.
- Applications in Java/CORBA for telecom OSS
- Python APIs for a custom OpenStack implementation
- Monitoring OpenStack with Zabbix
Skills
| Area | Tools |
|---|---|
| Programming (current) | Python, Go, Bash |
| Programming (past) | Java, Rust, C |
| Cloud | AWS, Azure, Heroku, OpenStack |
| Containers | Docker, Kubernetes |
| Monitoring | Prometheus, Zabbix, Nagios, Sensu, Datadog, Icinga2 |
| SQL databases | MySQL, MariaDB, PostgreSQL |
| NoSQL databases | MongoDB, Cassandra, Redis, DynamoDB, CouchDB |
| Web servers / load balancers | Nginx, HAProxy, Apache, Gunicorn, uWSGI, Tomcat |
| Messaging | RabbitMQ, Kafka |
| Configuration management | Ansible, Terraform, Chef, Puppet, SaltStack, Fabric |
| Visualisation | Grafana, D3, Kibana, Talend |
| Log management | Elasticsearch, Solr, Fluentd, Logstash |
| Web frameworks | Django, Flask, Falcon, Spring Boot, Spring Cloud |
| Build / CI | Jenkins, Jira, Gerrit |
| CDN | Akamai, CloudFront, Cloudflare |
| Protocols | REST, CORBA, SNMP, HTTP, TCP/IP, SIP |
| Blockchain | Bitcoin, Ethereum, Hyperledger |
| Hardware / other | Raspberry Pi, Arduino, Spartan 3E, AVR, Debian packaging, FreeSWITCH, Litmus Chaos |
Projects
Fulcrum — Streamlined the ML workflow for the organisation using Kubeflow, worked independently.
Havoc — Used Litmus Chaos to test Kubernetes cluster scalability and DNS lag behaviour.
Cylon — Built a virtual lab for students during online training, independently.
Disaster recovery — DR infrastructure from requirement gathering through Kubernetes clusters on bare metal, with infrastructure and service monitoring alerting to Slack and SMS.
Payments service — Payment transaction service in Java and Spring Boot, with analytics.
Centralised log management — Elasticsearch-based central log monitoring, from evaluation through delivery.
PCI compliance — Made the payments setup PCI DSS compliant via network segmentation and DMZ environments.
Apollo — One-click app deployment with Ansible, Docker and Kubernetes, automatically generating templates.
Sethji — AWS and Azure billing tracker. Bill analysis via ETL, billing management stack in Python and Flask. Reduced billing costs by 25% by identifying overprovisioned and unused services.
Graphite / Grafana integration — Monitoring services, function calls, throughput, response codes and revenue. Requirement gathering through UML, coding, automation and deployment in Python.
Monitoring setup — Hybrid infrastructure monitoring over Icinga2, Zabbix and Talend, ensuring service high availability.
Daily operations — Tooling in C++, Java, Python and Go. Security audit with IDS and DDoS mitigation via fail2ban. Packet tracing and filtering with custom tooling and Wireshark. Fixing infrastructure vulnerabilities. Log aggregation and analytics with Elasticsearch, Solr and Kibana. Key rotation policy. HA RabbitMQ cluster serving as the backbone for intercommunication between roughly 40 microservices. DNS, LDAP, monitoring and load balancing over Nginx and HAProxy. Reduced data transfer costs, improved performance. Subnet planning to simplify service and IP whitelisting. Network planning for infrastructure migration. Azure account setup with DNS, LDAP and monitoring.
Clickstream analytics — Single point for clickstream data and analysis. Integrated existing SQL databases with Talend ETL and built dashboards covering demography, geography and time, feeding a recommendation engine.
WRAN CM OSS-RC — Operational Support System for radio and core, a domain manager for operator network infrastructure. Product design and network element configuration in Spring and Java. Sprint planning, requirement gathering, user stories, TDD, SIT and UAT coordination.
Cloud adapter — Integrated cloud services with physical machines for centralised monitoring. Development environment and configuration, JUnit test cases, authentication modules, schedulers, startup scripts and notification management in Java.
Billing framework — Billing framework in Python and Django, handling multiple contract types.
NDNC deployment — Telemarketing regulation requires calling only non-DND-registered numbers. TRAI provides DND data as CSV with 500 million rows. Built an in-house NDNC scrubbing solution kept continuously updated, using Spring Boot — requirement gathering, UML and flow diagrams, data ingestion and APIs.
Side projects
- Multiplayer games in Python — Stopwatch, Pong, Memory, Spaceship, Blackjack, Rice Rocks
- RTL design and synthesis of a 32-bit microprocessor in VHDL performing arithmetic and logic functions. Target device Spartan 3E; tools Xilinx 9.1 and ModelSim SE 5.7f
- Blockchain signalling system — using blockchain to signal DDoS attacks in a cooperative, distributed network defence
- Real-time Bitcoin price monitor using Arduino
- Decentralised fleet tracking with blockchain — asset tracking where each action, event and alert is stored on-chain
- A cryptocurrency built on Litecoin for testing purposes
Awards
- Maestro Award — for making a difference in the account, for technically ramping up team members in a short span
- High Flyer Award — for individual contribution in the account
Certifications
Enjoyed this post?
Get the next one in your inbox — only when I ship something worth reading.
Newsletter form not configured.
Or follow on Substack for the newsletter.
Comments via GitHub Discussions
Comments not configured. Set GISCUS env vars to enable.