Available for opportunities

Hello, I'm Midhun Krishna

Devops & Cloud Engineer with 5+ years of experience architecting production-grade, highly available infrastructure on cloud platforms. Specializing in Kubernetes platform engineering, Infrastructure as Code, CI/CD automation, and Zero Trust security architectures.

0+ Years Experience
0+ Linux Servers Managed
0% Faster Provisioning
2 Cloud Platforms (Azure • AWS )
Midhun Krishna
☁️
⚙️
🔒
Scroll Down

Who I Am

I'm a Devops & Cloud Platform Engineer based in Kochi, Kerala, India, passionate about building resilient, scalable, and secure cloud infrastructure. With over 5 years of hands-on experience, I specialize in transforming complex infrastructure challenges into elegant, automated solutions.

My expertise spans the entire cloud-native ecosystem — from architecting Azure Landing Zones following the Microsoft Cloud Adoption Framework, to designing Kubernetes platforms, implementing GitOps workflows, and building Zero Trust security architectures that meet PCI-DSS and ISO 27001 compliance.

I believe in the power of automation, infrastructure as code, and observability to create systems that are not just functional, but truly resilient and self-healing.

Production-Grade Infrastructure Architecting HA systems for enterprise workloads
Security-First Approach Zero Trust, DevSecOps, compliance-driven design
Automation Evangelist IaC, CI/CD, GitOps-first philosophy

Quick Info

Education

MSc Cyber Forensics & Information Security
University of Madras
2019 – 2021
BCA
University of Calicut
2016 – 2019

Professional Journey

May 2024 – Present Current

Senior Devops Engineer

Zenda
  • Architected and delivered production-grade Azure cloud infrastructure aligned with the Microsoft Cloud Adoption Framework (CAF) and Landing Zone architecture, meeting PCI-DSS and ISO 27001 compliance requirements.
  • Designed and implemented Zero Trust Network Access (ZTNA) using Microsoft Entra Private Access (Global Secure Access), replacing traditional VPN access with secure, policy-driven remote connectivity.
  • Led production incident response, authored Root Cause Analysis (RCA) reports, and delivered structured stakeholder communications to ensure rapid recovery and operational transparency.
  • Led migration of multi-tenant applications to redesigned cloud infrastructure with database separation and Azure subscription isolation, achieving minimal downtime and zero production incidents.
  • Designed and managed self-managed Kubernetes clusters using Kubeadm, reducing cluster infrastructure costs by 30% and contributing to an overall 15% cloud cost optimization.
  • Implemented GitOps workflows using Kustomize for consistent, version-controlled, and environment-specific Kubernetes deployments.
  • Administered and optimized Azure services including AKS, Azure Firewall, Front Door, Flexible MySQL, Virtual Machines, Storage Accounts, and Key Vault, ensuring high availability and performance.
  • Built observability and monitoring solutions using Datadog and Azure Monitor with Terraform-based alerting automation, improving system visibility and incident detection.
  • Built and optimized Jenkins CI/CD pipelines following DevSecOps best practices, reducing average deployment time by 20%.
  • Enforced enterprise security through RBAC, least-privilege access, encrypted secrets, audit logging, network segmentation, and SSL pinning across Azure environments.
  • Defined SLIs, SLOs, and error budgets to align system reliability with business availability targets and guide engineering decisions.
  • Conducted disaster recovery drills validating RTO and RPO targets to ensure production resilience and business continuity readiness.
  • Developed incident response runbooks, release workflows, and operational dashboards to reduce Mean Time to Resolution (MTTR).
  • Collaborated with engineering and vendor teams to deliver infrastructure initiatives, leading daily standups and cross-functional coordination.
Azure AKS Kubernetes Kubeadm Terraform Jenkins GitOps Kustomize Flux v2 Datadog Azure Monitor Azure Firewall Azure Front Door Azure Key Vault Azure MySQL Zero Trust Microsoft Entra DevSecOps PCI-DSS ISO 27001
Oct 2021 – May 2024

Devops Engineer

Turbolab Technologies Pvt. Ltd.
  • Automated provisioning workflows, reducing provisioning time by 80% and manual effort by 70%.
  • Managed and maintained 400+ Linux servers across unmanaged cloud environments.
  • Designed containerized microservices with Kubernetes and Nomad, migrating from monolithic architectures.
  • Built centralized observability using Prometheus, Grafana, Zabbix, and ELK Stack.
  • Optimized infrastructure through resource rightsizing, reducing operational costs by 30%.
  • Developed reusable Terraform modules and integrated automation with GitLab CI/CD and Ansible/AWX.
AWSTerraformGitLab CIAnsibleKubernetesNomadPrometheusELK
Jul 2019 – Dec 2020

IT Administrator

Billion Atom
  • Administered Active Directory, Group Policies, DNS, DHCP, and core network infrastructure.
  • Managed VMware and Hyper-V virtualization platforms for stable server environments.
  • Deployed and maintained secure examination infrastructure across multiple test centers.
Active DirectoryVMwareHyper-VDNSDHCPNetworking

Featured Work

Self-Managed Kubernetes Platform

Kubeadm | Rancher | Monitoring

Designed a production-like, multi-node self-managed Kubernetes cluster using kubeadm on low-cost VMs. Integrated Prometheus, Grafana, Argo CD, and Azure CSI Driver for a complete platform.

Feb 2025 – Apr 2025
KuberneteskubeadmRancherPrometheusArgo CD

Self-Service Server Provisioning Platform

Terraform | Ansible AWX | GitLab CI/CD

Designed a self-service automation platform for cloud server provisioning. Users submitted requirements through Appsmith portal, triggering automated Terraform + Ansible workflows.

Mar 2022 – Jul 2023
TerraformAnsible AWXGitLab CIFlaskAppsmith

Centralized Log Processing Platform

HashiCorp Nomad & ELK

Implemented containerized Logstash deployment on HashiCorp Nomad, migrating 30+ manually managed Logstash servers to a scalable, containerized platform.

Jan 2023 – Apr 2023
NomadELK StackDockerCI/CDRedis

SSL Certificate Lifecycle Automation

NGINX | Automated Renewal

Built a centralized SSL certificate lifecycle management platform to automate renewal across NGINX servers. Implemented expiration monitoring, secure distribution, and zero-downtime reloads.

Sep 2022 – Feb 2023
NGINXSSLAutomationWebhooksBash

Technical Arsenal

Cloud Platforms

Microsoft Azure AWS OVH Cloud Fasthosts

Containers & Orchestration

AKS Kubeadm Docker Nomad Kustomize Helm

IaC & Automation

Terraform Ansible Bash Python

CI/CD & GitOps

Jenkins GitLab CI Flux v2 Argo CD Git

Security & Compliance

Zero Trust (ZTNA) Firewall WAF Key Vault SIEM IAM PCI-DSS ISO 27001

Networking

NGINX Kong API Gateway ProxySQL OpenVPN

Data & Messaging

MySQL PostgreSQL Redis Kafka RabbitMQ

Monitoring & Observability

Datadog Prometheus Grafana Zabbix ELK Stack Azure Monitor

Credentials & Achievements

Azure Administrator Associate

AZ-104

Microsoft Certified

March 2025

Information Assurance Professional

Cyber Security

DRDO-DIAT

July 2021

Network Security Specialist

Network Security

DefensityOne

May 2020

Let's Connect

I'm always open to discussing new opportunities, interesting projects, or just having a conversation about cloud infrastructure and Devops. Feel free to reach out!