- Published on
Graduate Product Engineer
paradime.io
- Built new infratructure and contributed to better DevOps practices
- Built Kubernetes Vulnerability Scanner for automated weekly vulnerability assessments using tools including Trivy, Kubeaudit, and Kube_bench, deployed to airflow. Developed a way to securely connect to the production clusters.
- Implemented a web‑based Kubernetes user interface with multiple‑level role access, attached a Tailscale sidecar for the interface to be accessible just via internal VPN using Terraform
- Implemented alarms for failed Kubernetes nodes (failing status check) in ASG(auto‑scaling groups) and per node
- Built a new monitoring infrastructure:
- Installed cluster‑level Prometheus instances, AWS‑managed Grafana, and Prometheus (AMP), using Terraform
- Built a pipeline to transfer data related to metrics from cluster‑level Prometheus instances to AWS‑managed Prometheus instance, utilized those to generate dashboards in Grafana using AMP as the primary data source using Terraform and Helm
- Built custom dashboards to generate meaningful insights from the collected metrics