Shaistha Khanum

DevOps Engineer

Luton, England, United Kingdom9 yrs 5 mos experience
AI Enabled

Key Highlights

  • Expert in securing AWS environments with hands-on Terraform experience.
  • Proficient in implementing automated security monitoring and compliance.
  • Strong background in cloud security assessments and vulnerability management.
Stackforce AI infers this person is a Cloud Security Engineer specializing in AWS security and Infrastructure as Code.

Contact

Skills

Core Skills

Aws Cloud SecurityInfrastructure As CodeCloud Security AssessmentCloud Infrastructure Management

Other Skills

TerraformIAMGuardDutySecurity HubAWS ConfigCloudTrailCloudWatchSNSAWSGitLinuxCloud SecurityCloudFormationNetwork InfrastructureLog Analysis

About

I am a Cloud Security Engineer with an MSc in Cybersecurity, specialising in securing AWS environments through architecture design, threat detection, and compliance automation. My experience includes implementing AWS security services such as IAM, GuardDuty, Security Hub, AWS Config, CloudTrail, and KMS to design secure-by-design cloud infrastructures. I have hands-on experience deploying and securing environments using Terraform, with a strong focus on Infrastructure as Code security, compliance validation, and automated remediation. Through practical implementation and research, I have built serverless monitoring architectures, simulated cloud-based attack scenarios, and evaluated detection and remediation effectiveness. My work aligns with industry best practices including CIS benchmarks and risk-based security controls. Alongside defensive cloud security engineering, I am developing expertise in cloud and web application penetration testing to strengthen my understanding of attacker methodologies and enhance defensive architecture. I am seeking opportunities within the UK to contribute as an AWS Security Engineer or Cloud Security Engineer, supporting organisations in building secure, resilient, and compliant cloud environments.

Experience

Vernovi cyber

Cloud Security Analyst

Aug 2024Present · 1 yr 7 mos · London Area, United Kingdom · Hybrid

  • Designed and deployed secure AWS infrastructure using Terraform, implementing Infrastructure as Code (IaC) best practices.
  • Configured and managed IAM roles and policies, enforcing least-privilege access controls across AWS resources.
  • Implemented AWS security services including GuardDuty, Security Hub, AWS Config, and CloudTrail to enable real-time threat detection and compliance monitoring.
  • Identified and exploited OWASP Top 10 vulnerabilities, insecure IAM roles, cloud misconfigurations, and basic privilege escalation paths
  • Built automated security monitoring and alerting mechanisms using CloudWatch and SNS.
  • Identified and remediated cloud misconfigurations (e.g., S3 public access, overly permissive security groups, IAM policy risks).
  • Implemented auto-remediation mechanisms using AWS Lambda and Config rules to strengthen security posture.
  • Conducted security testing and validation of deployed environments to evaluate detection and response effectiveness.
  • Produced technical documentation outlining architecture design, security controls, and remediation workflows.
TerraformIAMGuardDutySecurity HubAWS ConfigCloudTrail+4

University of hertfordshire

Student Ambassador

Mar 2024Mar 2025 · 1 yr · Hertfordshire · On-site

  • As a student ambassador at University of Hertfordshire, I served as a liaison between prospective students, current students, and university staff.
  • My role included:
  • 1. Conducting campus tours and providing information about academic programs, facilities, and student life.
  • 2. Assisting with recruitment events such as open houses, orientation sessions, and admissions fairs.
  • 3. Representing the university at community events, high schools, and college fairs to promote higher education.
  • 4. Providing personalized support to prospective students and their families, answering questions and addressing concerns.
  • 5. Collaborating with university staff to enhance the recruitment and retention strategies.
  • Through this role, I developed strong communication, leadership, and interpersonal skills, while also deepening my passion for education and community engagement.

Hcl technologies ltd

Cloud Security Analyst

Jul 2022Jul 2023 · 1 yr · India · Remote

  • Conducted comprehensive AWS cloud security assessments, identifying IAM, logging, and configuration risks.
  • Performed threat modeling for CI/CD pipelines and serverless workloads, aligning with NIST risk frameworks.
  • Deployed controlled misconfigured AWS environments via Terraform to evaluate GuardDuty and Security Hub detection coverage.
  • Mentored junior engineers on secure cloud deployment practices, enhancing team capabilities.
AWSIAMGitLinuxCloud SecurityAWS Cloud Security+1

Blend

Cloud Engineer

Nov 2020Jul 2022 · 1 yr 8 mos · Bengaluru · Remote

  • Designed secure AWS architectures with a focus on IAM governance, encryption, VPC segmentation, and logging controls.
  • Deployed infrastructure using Infrastructure as Code (CloudFormation) for consistent and secure provisioning.
  • Implemented monitoring and alerting solutions using CloudWatch and SNS to enhance system reliability.
CloudFormationIAMAWSLinuxAWS Cloud SecurityInfrastructure as Code

Microland limited

Cloud Infrastructure Engineer

Aug 2016Oct 2020 · 4 yrs 2 mos · India · Remote

  • Deployed onsite within McKinsey & Company’s enterprise environment, enhancing AWS infrastructure operations and security monitoring.
  • Assisted in maintaining secure and reliable cloud environments, focusing on logging and incident escalation processes.
  • Contributed to network segmentation and infrastructure hardening initiatives to ensure high availability in production environments.
IAMLinuxGitAWSCloud Infrastructure Management

Tata consultancy services

Assistant System Engineer

Jul 2015Jul 2016 · 1 yr · bangalore,india · On-site

  • •Supported enterprise infrastructure, access management, and system hardening initiatives.
Network Infrastructure

Education

University of Hertfordshire

MSc Cybersecurity

Sep 2023Oct 2025

Visvesvaraya Technological University

Engineer’s Degree — Electronics and communication engineering

Jan 2011Jan 2015

Stackforce found 100+ more professionals with Aws Cloud Security & Infrastructure As Code

Explore similar profiles based on matching skills and experience