Infra Architect
Role: Senior DevOps Engineer – Platform Operations & Data Engineering
Client: Thomson Reuters · Feb 2024 – Present
Summary:
Driving infrastructure modernization at Thomson Reuters across serverless architecture, container platforms, CI/CD pipelines, and security — delivering reusable AWS CDK frameworks that accelerate team delivery, while managing releases and supporting SRE teams across SAT, UAT, and PROD environments.
Engineering Practices
- Leverage AI coding assistants (GitHub Copilot) daily to accelerate infrastructure code development, pipeline authoring, debugging and documentation
- Build reusable CDK constructs and GitHub Actions workflows — enabling teams to onboard new services without rebuilding foundational infrastructure from scratch
- Automate repetitive operational tasks including token rotation, regression testing, code coverage reporting and DB schema migrations — eliminating manual intervention from routine workflows
API & Serverless Architecture
- Designed and deployed API Gateway with VPC Link, NLB, and ECS service integration — including request transformations and proxy route configurations
- Implemented API Gateway with Lambda-backed custom authorizers and automated API key lifecycle management
- Built SQS-to-Lambda event-driven integrations
- Automated token rotation for JFrog using Lambda and Secrets Manager
Container & Service Infrastructure
- Built reusable CDK constructs for ECS microservice deployment with Datadog observability and CI/CD pipeline — reducing new service onboarding from days to under a day
- Containerized Java microservices for ECS Fargate deployment with Cloud Map service discovery and Datadog sidecar for unified logs, metrics, and distributed traces
- Configured and deployed Nginx within ECS, managing reverse proxy and routing rules
- Provisioned full ECS stack (ECS, ALB, RDS, ECS Services) using CDK TypeScript with zero manual touchpoints
CI/CD & Developer Platform
- Developed reusable CDK constructs for API Gateway and Lambda that enable teams to configure and deploy production-ready serverless infrastructure in minutes
- Reduced container build time for a legacy .NET application from 37 minutes to 15 minutes by diagnosing and resolving Docker build issues
- Deployed self-hosted GitHub runners on CodeBuild and configured OIDC roles for secure GitHub-AWS integration — eliminating long-lived credentials
- Automated regression testing and code coverage reporting within CI/CD pipelines
- Built DB schema migration pipelines using Flyway in CodeBuild
Security & Compliance
- Customized WAF policies to handle environment-specific exceptions
- Configured OIDC-based identity federation between GitHub and AWS
- Managed services within AWS Managed Services (AMS) account environment — operating under enterprise-grade change management and compliance guardrails
Data & Resilience
- Deployed DynamoDB with cross-region replication for disaster recovery
- Configured S3 lifecycle rules for cost-optimized data retention
- Managed Route 53 records via CDK for ALB routing across environments
Cost Optimization
- Identified and drove cost optimization measures resulting in significant recurring savings across S3 and Secrets Manager, coordinating implementation across cross-functional teams
Documentation
- Maintained meticulous technical documentation to support knowledge sharing and onboarding across platform teams

