Varun Bhandari

Security Engineer

Pune, Maharashtra, India8 yrs 9 mos experience
Highly Stable

Key Highlights

  • Built resilient multi-stage CI/CD pipelines.
  • Operated high-availability EKS/GKE clusters.
  • Automated processes using Python to enhance developer experience.
Stackforce AI infers this person is a DevSecOps and Cloud Security expert in the Fintech industry.

Contact

Skills

Core Skills

DevsecopsCloud SecurityDevopsCloud MigrationCi/cd

Other Skills

LinuxGitTerraformAWSCybersecurityThreat & Vulnerability ManagementAWS LambdaAmazon ECSGitHubRedisKafkaPostgreSQLCassandraAmazon Relational Database Service (RDS)Elastic Stack (ELK)

About

I write about: • DevSecOps fundamentals • Cloud security (AWS, GCP) • CI/CD at scale • Kubernetes (EKS, GKE) • Platform engineering • Python automation • SRE practices and observability • Secure SDLC and policy-as-code **** DevSecOps Engineer || Cloud Security || CI/CD & Kubernetes || AWS | GCP || Python Automation. **** Bio: Experienced DevSecOps and Cloud Security engineer with 9+ years building secure, reliable delivery platforms across AWS and GCP, with deep hands-on experience in EKS/GKE, GitHub Actions, ADO Pipelines, Jenkins, and GitLab CI. Focus areas include defence-in-depth for pipelines, least‑privilege IAM, Kubernetes hardening, IaC-driven consistency, and progressive delivery for safer, faster releases. Writes and speaks about practical platform patterns, scaling DevSecOps in real teams, and balancing velocity with compliance. Actively maintains a technical blog on Kubernetes, CI/CD, and cloud security, sharing repeatable playbooks and reference architectures. Highlights: • Built resilient multi-stage CI/CD with automated testing, policy gates, and rollout strategies to cut lead time for changes while improving change failure rate. • Operated high-availability EKS/GKE clusters with cluster hardening, workload isolation, and standardised release workflows using Helm and GitOps. • Embedded security in delivery via policy-as-code, SAST/DAST where appropriate, SBOMs, signing/verification, and secrets hygiene integrated from commit to deploy. • Reduced operational risk with strong security baselines, HTTPS/HSTS, and edge protections; aligned controls to least privilege and continuous posture improvement. • Automated with Python to remove toil, enforce guardrails, and uplift developer experience; built internal tools that standardise environments and reduce drift. • Invested in observability (metrics, logs, traces) to tighten feedback loops, improve MTTR, and guide pragmatic automation based on data. What to expect here: • Practical guides on CI/CD patterns, secure supply chain, and platform engineering • Kubernetes production tips (multi-env strategy, tenancy, cost and reliability trade-offs). • Cloud security primers for AWS/GCP with actionable guardrails. • Python tooling for ops automation and compliance. • Career notes for DevSecOps/SRE roles: interviews and upskilling roadmaps. If you’re scaling delivery, hardening cloud workloads, or building a developer platform that teams love, let’s connect and collaborate. ** Opinions expressed are personal and don’t reflect my employer’s positions. **

Experience

8 yrs 9 mos
Total Experience
2 yrs 8 mos
Average Tenure
9 mos
Current Experience

Crypto.com

Senior Security Engineer

Sep 2025Present · 9 mos · Singapore · Remote

Letsbloom

2 roles

Head of DevSecOps

Promoted

Mar 2025Sep 2025 · 6 mos · Hybrid

LinuxGitDevSecOpsCloud Security

DevSecOps Lead

Nov 2022Mar 2025 · 2 yrs 4 mos · Hybrid

DevSecOpsCloud Security

Cloudcover

3 roles

DevOps Technical Lead

Promoted

Apr 2021Nov 2022 · 1 yr 7 mos

  • As a Lead DevOps engineer here, I worked on multiple projects including a Crypto trading platform and a Fintech Security platform. Where my work involved:
  • ✅ Handling an internal team of 10 people across different geographies mentored their progress and helped them to grow in their careers.
  • ✅ Creating IAC using Terraform from scratch for a Crypto-based platform hosting application in AWS.
  • ✅ Importing existing infrastructure in terraform code for Dev environment.
  • ✅ Creating CI/CD pipeline using AWS Code deploy to deploy the application on ECS.
  • ✅ Setting up alerting and monitoring using CloudWatch events and logs.
  • ✅ Handling clients properly and delivering projects on time with excellent solutions, which resulted in more work from the customer.
  • ✅ Engaging with the client and handling the entire project on my own delivering application and infrastructure.
  • ✅ Extending my capabilities and filling in the role of project manager for 8 months along with DevOps work.
  • ✅ Handling and coordinating teams of developers and DevOps to ensure timely delivery of the project's milestones.
  • ✅ Using my experience in CICD to streamline the CICD process to improve the delivery time of the product.
  • ✅ Learning Azure cloud quickly and handling entire infra hosted on Azure and AKS.
  • ✅ Writing automation test suite in Python to test the features of the application.
  • ✅ Writing multiple automation in Python to clean unused AWS accounts.
  • ✅ Setting up Hashicorp vault running in AKS cluster and allowing the application to read secrets directly from the vault.
LinuxGitTerraformAWSCI/CDDevOps+1

Senior DevOps Engineer

Jan 2020Mar 2021 · 1 yr 2 mos

  • As a Senior DevOps engineer here, I worked on multiple projects including E-commerce and Fintech applications. These systems were very critical as peak load ranged between 100 to 2 million requests per second. Where my work involved:
  • ✅ Having calls with the client and creating the strategy for migrating onprem applications to the GCP cloud.
  • ✅ Writing complex automation to discover details for legacy applications running on VM and putting details in Bigquery.
  • ✅ Creating templates for documenting the process, like a pre-migration checklist, loadtest document, cutover runbook, and post-migration handover.
  • ✅ Writing automation using Ansible to set up replication for Redis, Postgres, and Cassandra clusters.
  • ✅ Handling migration of Fintech applications and setting up everything from scratch.
  • ✅ Creating CI/CD pipeline using Jenkins to deploy applications on GCE instances using managed and unmanaged instance groups.
  • ✅ Creating monitoring dashboards using Datadog.
  • ✅ Migrating and replicating Kafka hosted on on-prem to Confluent Kafka with live replication.
  • ✅ Handling team of 4-7 people to carry out the process of Cloud migration smoothly.
LinuxGitDevOpsCloud Migration

DevOps Engineer

Jan 2019Dec 2019 · 11 mos

  • As a DevOps engineer here, I worked on multiple projects including Ecommerce applications and matrimonial websites. These systems were very critical as peak load ranged between 100 to 1 million requests per second. Where my work involved:
  • ✅ Architecting a small project on AWS using talend for ETL application. Implemented solution using scheduled EC2 instance, which was pulling data from S3 bucket and tranforming it and putting the data in RDS instance.
  • ✅ Completing entire ETL project from disocvery call with client till the delivery of the project single handely.
  • ✅ Migrating On-Prem applications to Google Cloud. We followed the list and shift approach with the minimum modernization required to run the application on GCP.
  • ✅ Writing multiple automation scripts using Python and Ansible so that applications can be migrated to the cloud quickly and properly.
  • ✅ Bringing down human error during migration by automating multiple tasks where chances of human error were high and frequent.
  • ✅ Refactoring docker files for applications to reduce build time and image size.
  • ✅ Implementing security practices in GKE cluster and giving proper access to different team members.
  • ✅ Sitting with the development team and finding issues in the application related to performance and migration to the cloud.
  • ✅ Having on-call shifts in rotation for debugging application downtime and general issues in production.
  • ✅ Designing and implementing IAC for GCP and AWS using Terraform, Terragrunt, CloudFormation, ansible, shell scripting, and Python.
  • ✅ Designing and implementing CI/CD pipelines using Gitlab CI to deploy applications onto GKE and ECS. Deployment frequency was high ranging from 50 to 200 deployments per day.
  • ✅ Working with the team to implement logging and monitoring using Datadog, Prometheus, and Grafana.
  • ✅ Writing loadtest scripts in Python using the locust tool. Performed loadtest for applications with requests ranging between 100 per second to 100K requests per second.
LinuxGitDevOpsCloud Migration

Reflex software solutions ltd

2 roles

DevOps Engineer

Jun 2017Dec 2018 · 1 yr 6 mos · On-site

  • As a DevOps engineer in this organization, I worked on multiple projects where I implemented IAC, and CI/CD pipelines using Jenkins to deploy applications in AWS Beanstalk and handled the DevOps lifecycle of the products. This involved:
  • ✅ Implementing IAC with Terraform, ansible, shell scripting, and Python.
  • ✅ Implementing CI/CD pipelines using Jenkins to deploy applications in AWS Beanstalk.
  • ✅ Implementing Logging and Monitoring using AWS CloudWatch, ELK stack.
  • ✅ Creating a backend service using Python to create AWS infrastructure using boto3.
  • ✅ Implementing automated backup of RDS and copying those in separate regions and AWS accounts.
  • ✅ Saving Infrastructure costs by automatically stopping bastion hosts and other non-critical machines in non-working hours and provisioning deployment agents at runtime for all non-dev environments.
  • ✅ Complete responsibility for application deployment, uptime, logging, monitoring, and alerting.
  • ✅ Creating docker files for applications running on Beanstalk to migrate those to Kubernetes (EKS).
  • ✅ Having oncall shifts in rotation for debuging application downtime and general issues in production.
LinuxGitDevOpsCI/CD

DevOps Engineer

Dec 2016May 2017 · 5 mos · On-site

  • Started my career here as a trainee. Learned multiple tools and technologies: AWS, Jenkins, Bash, and Python scripting.
LinuxGit

Education

Bharati Vidyapeeth's Institute of Computer Applications and Management

Master of Computer Applications (MCA) — Computer Science

Aug 2014Jun 2017

Amrapali Institute

Bachelor Of Computer Application — Computer Science

Aug 2010Jun 2013

Stackforce found 100+ more professionals with Devsecops & Cloud Security

Explore similar profiles based on matching skills and experience