Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Olorato Sono

Columbia

Summary

A skilled Cloud professional offering 6 years of experience, with robust background in infrastructure automation, continuous integration, and cloud services. I possess expertise in container orchestration, ensuring seamless deployments and efficient system operations. Strong focus on team collaboration and adaptability, consistently delivering reliable and effective solutions. Passionate about leveraging technical skills to drive operational excellence and support organizational goals.

Overview

1
1
Certification
6
6
years of professional experience

Work History

AWS DevOps Engineer

Shopify
07.2024 - Current
  • Leverages Identity and Access Management by implementing best practice in our infrastructure through authentication and authorization, Multifactor Authentication
  • Automate the deployment of resources using Infrastructure as Code (Terraform and CloudFormation) through pipelines using DevOps principals.
  • Leveraged Parameter files, Output, Mapping and Conditions in CloudFormation to bring dynamism and governance in resource creation.
  • Designed multi account structure by setting up AWS Control Tower and AWS Organization to successfully manage and govern a multi-account environment following company’s best practices to optimize cost.
  • Setup Ansible master node and target nodes and developed playbooks to automate configuration of servers across our environment.
  • Implemented and managed Ansible Tower to scale automation and oversee complex deployments as well as implement governance solutions across the enterprise environment.
  • Design and implement end-to-end Continuous Integration and Continuous Delivery (CI/CD) pipelines by leveraging GIT/GitHub, Maven, Nexus, SonarQube.
  • Leveraged other CICD tools such as Jenkins, Prometheus and Grafana during continuous deployment and continuous monitoring.
  • Integrated slack as a critical component in the application lifecycle as a feedback loop in our CICD pipeline.
  • Utilized Confluence for documentation and effective communication tool with the team concerning the various stages of the project.
  • Leveraged Jira/SNOW (Service Now) for ticketing and managing incidents.
  • Collaborated with developers to build, deploy, and orchestrate microservice applications in containers using Docker and Kubernetes.
  • Integrated AWS services such as Code Commit, Code Deploy, Code Build, Code Pipeline, EC2, EKS, Lambda and Elastic Beanstalk in our CICD pipeline.

AWS Cloud Engineer/DevOps Engineer

Airbnb
01.2022 - 06.2024
  • Deployed and managed AWS infrastructure using CloudFormation and Terraform, ensuring security and scalability
  • Configured and maintained AWS IAM policies and roles, ensuring proper access controls and permissions
  • Monitored and responded to security alerts created by AWS Security Hub and GuardDuty. Whenever there were urgent problems, I made sure to report them as required
  • Performed regular security assessments of AWS resources, identifying potential vulnerabilities and recommending remediation steps
  • Managed and rotated encryption keys using AWS KMS, ensuring secure data storage and transmission
  • Configured and maintained AWS Security Groups and Network ACLs to control network traffic and enforce security policies
  • Analyzed AWS CloudTrail logs to identify potential security incidents and unauthorized access attempts
  • Implemented AWS Config rules to monitor compliance with security standards and policies
  • Contributed to the development of incident response plans and procedures for AWS environments
  • Deployed and managed AWS WAF rules to protect web applications from common web exploits
  • Participated in security audits and compliance assessments of AWS environments
  • Set up infrastructure and security settings automatically by using scripting languages such as Python and Bash
  • Utilized AWS Trusted Advisor to review and improve the security posture and cost-effectiveness of AWS accounts
  • Design and implement end-to-end Continuous Integration and Continuous Delivery (CI/CD) pipelines by using GIT/GitHub, Maven, Nexus, SonarQube
  • Made use of other CI/CD tools such as Jenkins, Prometheus, and Grafana during continuous deployment and continuous monitoring
  • Integrated Slack as a critical component in the application lifecycle as a feedback loop in our CI/CD pipeline
  • Utilized Confluence for documentation and effective communication with the team concerning the various stages of the project
  • Collaborated with developers to build, deploy, and orchestrate microservice applications in containers using Docker and Kubernetes
  • Integrated AWS services such as Code Commit, Code Deploy, Code Build, Code Pipeline, EC2, EKS, Lambda, and Elastic Beanstalk in our CI/CD pipeline.

Junior Cloud Engineer

P&G
11.2020 - 12.2021
  • Assisted in the management of AWS IAM users, groups, and roles, ensuring proper access controls
  • Created S3 buckets and granted permissions to S3 buckets
  • Applied Bucket Versioning, Cross-Region Replication, and Lifecycle Management for Durability and Cost optimization
  • Monitored AWS Security Hub alerts and reported potential security incidents to senior engineers
  • Conducted basic security assessments of AWS resources, identifying and reporting potential vulnerabilities
  • Assisted in the configuration of AWS Security Groups and Network ACLs to control network traffic
  • Reviewed AWS CloudTrail logs for suspicious activity and potential security incidents
  • Assisted in the development and maintenance of security documentation for AWS environments
  • Participated in security awareness training and workshops, enhancing knowledge of AWS security best practices
  • Assisted in the deployment of AWS Config rules
  • Contributed to the creation of security-related scripts
  • Assisted in the implementation of security best practices
  • Helped with the management and upkeep of AWS KMS keys
  • Assisted in the daily monitoring of network security
  • Participated in basic incident response procedures

AWS Junior Cloud Administrator

ALDO
04.2020 - 10.2020
  • Optimized cost by making use of reserve instances, proper utilization of S3 storage classes and leveraging S3 lifecycle policies, lifecycle hooks and autoscaling.
  • Launched VPC in various regions and created Private and Public Subnet and secured the environment with AWS Shield and NACLs.
  • Responsible for launching Amazon EC2 instances on the console and configuring the launched instances with respect to specific applications and security groups.
  • Created S3 buckets, granted permissions to S3 buckets by leveraging bucket policies and IAM role-based policies and ACLS.
  • Applied Bucket Versioning, Cross Region Replication, and Lifecycle Management for Durability and Cost Optimization.
  • Created read replicas, multi-AZ, and snapshots as disaster recovery on our RDS instances as well as ElastiCache to optimize performance and availability.
  • Leveraged CloudTrail and CloudWatch by setting alarms to trigger a lambda function to auto remediate any occurrences in our environment.

Education

Bachelor Of Science - Computing

Teesside University

Skills

  • Security, Governance & Compliance
  • IAM
  • NACLS & Security group
  • AWS KMS
  • Encryption
  • AWS Secrets Manager
  • SSM Parameter Store
  • Amazon Macie
  • AWS WAF
  • Guard Duty
  • AWS Security Hub
  • AWS Shield
  • Monitoring and Auditing
  • Trusted Advisor
  • CloudWatch
  • CloudTrail
  • SNS, AWS Config
  • AWS Organization
  • AWS Control Tower
  • Cost Optimization
  • AWS Budgets
  • Cost Explorer
  • Data Storage
  • EBS
  • EFS
  • Amazon S3
  • Storage Gateway
  • RDS
  • DynamoDB
  • Network Management
  • VPC & Subnets
  • Route 53
  • AWS Direct Connect
  • Elastic Load Balancing & ElastiCache
  • AWS Transit Gateway
  • NAT
  • VPC Perring
  • IGW
  • Serverless Architecture
  • AWS Lambda
  • Data and Application Migration
  • Database Migration Service
  • AWS Server Migration Service
  • AWS MGN
  • Cloud Orchestration and Automation
  • Ansible & Ansible Tower
  • CloudFormation
  • Terraform
  • AWS SSM
  • Programming Languages
  • JSON
  • YAML
  • Linux
  • Shell
  • Bash
  • DevOps and CI/CD
  • GitHub
  • Maven
  • Nexus
  • Jenkins
  • SonarQube
  • Prometheus
  • Grafana
  • Docker
  • Kubernetes
  • Other Tools
  • Jira
  • Confluence
  • Slack
  • Interpersonal Skills
  • Team Player
  • Problem solving /Troubleshooting skills

Certification

  • AWS Certified Solutions Architect-Associate
  • AWS Cloud Engineer-Professional
  • AWS Certified DevOps Engineer

Timeline

AWS DevOps Engineer

Shopify
07.2024 - Current

AWS Cloud Engineer/DevOps Engineer

Airbnb
01.2022 - 06.2024

Junior Cloud Engineer

P&G
11.2020 - 12.2021

AWS Junior Cloud Administrator

ALDO
04.2020 - 10.2020

Bachelor Of Science - Computing

Teesside University
Olorato Sono