Yohannes Measho

Cloud and DevOps Consultant

Cambridge, United Kingdom

Experience

Dec 2023 - Present
1 year 4 months
Cambridge, United Kingdom
Remote

DevOps and Infrastructure Engineer

The Server Labs

AWS Cloud DevOps and Infrastructure Engineer role for a migration of on premise legacy applications to AWS for a public sector client:

  • Migration of legacy Biometric applications running on IBM products and infrastructure to AWS
  • Provision Infrastructure in AWS using Terraform: VPC, EC2, ALB/NLB, ASG, Secrets Manager, IAM, KMS, Certificate Manager, Route 53, S3 and CloudWatch
  • Work closely with Security personnel to Implement High availability and replication of IBM Security Directory Service in AWS
  • Provisioning, configuration management and Deployment of infrastructure and applications using Terraform, Ansible, Atlassian Bitbucket and Bamboo into development, pre-production and production environments
  • Participated in agile sprint backlog grooming, sprint planning and review in sprint retrospective

Technologies: AWS, Terraform, Hashicorp Vault, Ansible, Atlassian Bamboo CI/CD pipelines, Bitbucket, Git, Bash Shell, JIRA, Confluence, Kanban, Red Hat Linux, Amazon Workspaces, IBM SDS, IBM ISVA, Splunk, TrendMicro, Centrify, Flexera, Agile, Scrum

Mar 2022 - Nov 2023
1 year 9 months
Germany
Remote

Senior Cloud DevOps Engineer

1NCE GmbH

Senior Cloud DevOps and Engineer role for the migration of Deutsche Telekom's HotSpot Drive fast Internet service for cars into the Telekom Internet Service Platform (TISP) managed and operated by 1NCE GmbH:

  • Migration and deployment of TISP Infrastructure and telecom application components from legacy to OpenStack and AWS for OEM Tenants that included BMW, VOLVO, and Rolls-Royce in Development, Test and Production environments
  • Implemented kubernetes based micro-services architecture in OpenStack and AWS (EKS)
  • High and low level infrastructure design of the TISP platform which includes networking, security, logging and monitoring
  • Provision new and maintain existing infrastructure resources which included AWS VPC, EC2, ALB, EKS S3, Route 53, RDS MS SQL Server, Secrets Manager, Parameter Store, VPN, Transit Gateway
  • Design and propose secure Network connectivity using DirectConnect and Site-to-Site VPN between third part Telecom providers and 1NCE AWS infrastructure
  • Infrastructure as code using AWS CDK and Terraform
  • DNS migration from Akamai to AWS Route 53
  • Implemented container synchronisation service from Harbor Container Registry to AWS Elastic Container Registry
  • Provision and Maintain microservices applications with GitOps pattern using Gitlab CI/CD, helm and Argo CD
  • Participate in production cutover and go live of migrated applications to AWS and OpenStack
  • On Call duty to support the TISP production platform
  • Work closely with Third Party vendors to integrate services

Technologies: AWS, OpenStack, kubernetes, ArgoCD, Helm, CDK, Terraform, GitLab CI/CD pipelines, Git, Bash Shell, JIRA, Confluence, Kanban, Ubuntu, Amazon Linux 2, Opsgenie, Agile, Scrum

Nov 2021 - Feb 2022
4 months
Cambridge, United Kingdom
Remote

DevOps and Infrastructure Architect Lead

The Server Labs

AWS Cloud DevOps and Infrastructure architect role for a migration project from UKCloud to AWS:

  • Migration of VMware VMs from UKCloud to AWS using CloudEndure
  • Provision Infrastructure in AWS using Terraform: VPC, EC2, ALB, SSM, Secrets Manager, Certificate Manager, S3, CloudWatch, RDS, Cost Explorer and Pricing Calculator
  • Migration of PostgreSQL databases
  • Configuration and deployment of different applications in development, pre-production and production environments
  • Security review and remediation of AWS infrastructure for assurance purposes using AWS Security Hub, AWS Inspector, CloudTrail, CloudWatch, DarkTrace and Datadog
  • Participate in production cutover and go live of migrated applications to AWS
  • Implemented FinOps strategy which resulted in over £1 million annual savings in AWS operational costs
  • Provide infrastructure support for AWS resources in development, test and production environments

Technologies: AWS, UKCloud, Terraform, GitLab CI/CD pipelines, Git, Bash Shell, PostgreSQL, JIRA, Confluence, Kanban, Ubuntu, Amazon Linux 2

May 2021 - Oct 2021
6 months
Germany
Remote

AWS Lead Developer

MHP - A Porsche Company

AWS Lead Developer role for Industrial Cloud solution products:

  • Design, Development and implementation of Industrial applications using AWS Lambda, API Gateway, AWS IOT, DynamoDB, Cognito, Route 53, S3, EC2, CloudFront, SQS, SNS, SSM, Secrets Manager, KMS, EC2 Image Builder, Certificate Manager, Angular and React
  • Develop and Publish Industrial Cloud Solution products that conform to the AWS Marketplace standards
  • Design, Development and implementation of Infrastructure as code using AWS CDK, AWS SAM and CloudFormation
  • Design, Development and implementation of Industrial Data Ingest models using OpenAPI 3.0, MQTT and PPMP protocols with AWS API Gateway, LoRaWAN and AWS IOT
  • Develop and Implement continuous delivery process using AWS CDK CodePipeline and EC2 AMI builder pipeline
  • Integrate Serverless Applications with Shop floor ERP systems (SAP)
  • Develop and Implement code obfuscation of Lambda functions and Layers
  • Develop and Implement product license verification solution for AWS Marketplace Serverless products
  • Technical review of existing infrastructure, document, propose and implement feature and security enhancements
  • Provide support and Mentoring to Junior AWS Developers, DevOps and Architects

Technologies: AWS, Agile (Kanban), arc42, SAM, CDK, Cloudformation, IOT, LoRaWAN, MQTT, SAP (ERP), Git (codecommit), codepipeline, codebuild, Docker, Bash Shell, Typescript, React, Angular, SonarQube, node.js, python and JSON

Feb 2021 - Apr 2021
3 months
Cambridge, United Kingdom
Remote

DevOps and Infrastructure Architect Lead

The Server Labs

AWS Cloud DevOps and Infrastructure architect role for a three tier web platform responsible for:

  • Design, Development and implementation of Infrastructure as code using AWS CDK
  • Design, Development and implementation of AWS Security services using Security Hub, WAF, Shield, Config, Cognito, Inspector, IAM security Analyzer, GuardDuty, SSM, Secrets Manager, KMS, Certificate Manager, encryption of RDS databases and EBS volumes
  • Technical review of existing infrastructure, document, propose and implement security and feature enhancements
  • Provision new and maintain existing infrastructure resources which included EC2, ALB, CloudFront, S3, WAF, Route 53 and RDS MS SQL Server, VPN and Transit Gateway
  • Infrastructure as code using AWS CDK
  • Provide infrastructure support for AWS resources in development, test and production environments

Technologies: AWS, Cloudformation, CDK, Azure DevOps, Git, Bash Shell, Typescript, node.js, JSON

Dec 2020 - Jan 2021
2 months
Cambridge, United Kingdom
Remote

DevOps and Infrastructure Architect Lead

The Server Labs

AWS Cloud DevOps and Infrastructure architect role for a three tire serverless mobile and web application platform responsible for:

  • Design, Development and implementation of Infrastructure as code using AWS CDK and Terraform
  • Design, Development and implementation of AWS Security services using Security Hub, WAF, Shield, Config, Cognito, Inspector, IAM security Analyser, GuardDuty, SSM, Secrets Manager, KMS, Certificate Manager, encryption of RDS databases and EBS volumes
  • Technical review of existing infrastructure, document, propose and implement security and feature enhancements
  • Develop and maintain Lambda functions using node.js
  • Perform Web application scanning and security penetration testing
  • Provision new and maintain existing infrastructure resources which included API Gateway, EC2, ALB, NLB, CloudFront, Route 53, LAMBDA, S3, WAF and RDS AURORA
  • Provide infrastructure support for AWS resources in development, test and production environments

Technologies: AWS, Cloudformation, Terraform, CDK, Azure DevOps, Git, Bash Shell, Typescript, node.js, JSON

Oct 2020 - Nov 2020
2 months
Cambridge, United Kingdom
Remote

DevOps and Infrastructure Architect Lead

The Server Labs

AWS Cloud DevOps and Infrastructure architect role for a three tier web platform responsible for:

  • Design, Development and implementation of Infrastructure as code using AWS CDK
  • Design, Development and implementation of AWS Security services using Security Hub, WAF, Shield, Config, Inspector, IAM security Analyser, GuardDuty, SSM, Secrets Manager, KMS, Certificate Manager encryption of RDS databases and EBS volumes
  • Technical review of existing infrastructure, document, propose and implement security and feature enhancements
  • Provision new and maintain existing JIRA infrastructure resources which included EC2, ALB, CloudFront, Route 53, S3, WAF, Secrets manager and RDS MYSQL
  • Perform Web application scanning and security penetration testing
  • Provide infrastructure support for AWS resources in development, test and production environments

Technologies: AWS, Cloudformation, CDK, Azure DevOps, JIRA, Git, Bash Shell, Typescript, node.js, JSON

Apr 2020 - Sep 2020
6 months
Cambridge, United Kingdom
Remote

DevOps and Infrastructure Architect Lead

The Server Labs

AWS Cloud DevOps lead role with the NHS Covid-19 Home Test Delivery team responsible for the delivery of covid-19 home test kits via a serverless digital portal. Duties entailed:

  • Design, Development and implementation of automation services using AWS Lambda and AWS API to efficiently manage the operations of the portal. This includes monitoring stock levels in DynamoDB tables to trigger the opening and closure of the portal by manipulating CloudFront, API gateway usage plans, WAF, Secrets Manager and Slack
  • Design, Development and implementation of monitoring and reporting services using AWS Lambda, AWS API, Kinesis Firehose, S3, CloudWatch, Glue, Athena, SPICE, QuickSight, SQS, Amazon MWS API, Secrets Manager and Slack
  • Design, Development and implementation of alerting services using AWS Lambda, CloudWatch, SNS and Slack
  • Design, Development and implementation of Amazon shipment and delivery tracking of covid-19 home test kits using SQS, Amazon MWS API, Lambda and S3
  • Develop Lambda functions using node.js and python
  • Provision new and Maintain existing infrastructure resources in AWS using Serverless Framework, Cloudformation, AWS CLI and SDKs
  • Provide infrastructure support for AWS resources including Lambda, API Gateway, CloudFront, IAM, Cognito, ACM, Secretes Manger, Route 53, S3, SQS, SNS, SES, SSM, Athena, Glue, DynamoDB, Kinesis, CloudTrail, CloudWatch, WAF, Shield, Amplify, Code pipeline in development, test and production environments

Technologies: AWS, Cloudformation, Serverless Framework, Azure DevOps, JIRA, Confluence, Git, Bash Shell, node.js, Python, JSON, JQ, React and Splunk

Sep 2018 - Feb 2020
1 year 6 months
London, United Kingdom
Hybrid

Principal DevOps Engineer

HSBC

AWS Cloud DevOps engineer role with the Global Cloud Services AWS platform team which is responsible for the Adoption of AWS to enhance HSBC's ability to leverage latest technologies, to work and deliver at pace, and to build applications and services for customers at an unprecedented scale by: Defining and building the global AWS service catalogue that enables application teams across the bank to leverage Cloud services, Providing robust solutions based on the banks internal audit, compliance and security needs, in conjunction with industry best practices, Ensuring HSBC's use of AWS is secure and compliant with HSBC's Group standards and policies across technology, security and broader governance, Building toolkits that enable teams to leverage AWS services in self-service secure and compliant manner, Providing architectural and cloud engineering support to global project teams, Assuring, tracking and supporting solutions developed by other teams, and making them re-usable for others.

  • Contribute to the security controls in place that ensure the security of HSBC's assets that evolve continually with AWS improvements and evolving project needs based on HSBC's AWS Security patterns
  • Build and Automate tooling and services that help many projects in more than 200 AWS accounts to build services in a secure and efficient way
  • Develop robust artefacts including code modules that help project teams to get their security profiles right before any infrastructure is built
  • Write technical documentation to guide project teams utilise the shared services developed by the Global Cloud Services
  • Provide first line support for AWS services in development, pre-production and production accounts
  • Provision new and Maintain existing infrastructure resources in AWS using Terraform, Cloud-formation, AWS CLI and SDKs
  • Provide infrastructure support for AWS resources including DirectConnect, Organisation, IAM, ACM, VPC, EC2, Auto-Scaling, Lambda, API Gateway, Route 53, S3, RDS, SQS, SNS, SES, SSM, Athena, DynamoDB, Kinesis, CloudTrail, CloudWatch, GuardDuty, Config, Inspector, Trusted Advisor, Sidecar Proxy in development, test and production environments
  • Provide support, maintenance, provisioning and scanning of HSBC standard Windows, RedHat and Amazon Linux base AMIs
  • Provide Mentoring and coaching to HSBC application DevOps teams with AWS infrastructure and tools

Technologies: AWS, Terraform, Ansible, Serverless, Jenkins, JIRA, Confluence, Enterprise Git, Nexus, Bash Shell, Python, JSON, JQ, docker, Splunk, Qradar, Alert API and XMatters

Oct 2017 - Aug 2018
11 months
London, United Kingdom
Hybrid

AWS DevOps Engineer

PPL

This role involved working cooperatively and in consultation with a number of business stakeholders including the Member Services, International, Music Reporting, Distribution and a close relationship with other parts of the IT department. AWS/DevOps Engineer role providing DevOps services including CI/CD & automated environment builds with configuration management to enable PPL to build new systems and ensure the development life cycle is as efficient as possible.

  • Automation of the delivery pipeline using Ansible, Jira, BitBucket (Git), Jenkins, Nexus, AWS Cloudformation, Gitflow, Maven and branching patterns
  • Scripting in JSON, Linux/BASH, YAML, Groovy, Jq & Python
  • Configuration Management using Ansible supporting over 80 AWS EC2 instances in development, test and production environments
  • Provision new and Maintain existing infrastructure resources in AWS using Cloudformation
  • System administration of Linux and Windows including backup and patching services
  • Integrate Linux and Windows systems with Active Directory services using Open PBIS
  • Provide infrastructure support for AWS resources including IAM, VPC, EC2, EC2 container services (docker), Lambda, step function, API Gateway, Route 53, S3, RDS, SQS, SNS, SES, SSM, EMR, Elasticsearch and CloudWatch in Development, Test and Production environments
  • Provide AWS account management and cost saving strategies
  • Provide Mentoring and coaching to PPL Developers with AWS infrastructure and tools

Technologies: Ansible, AWS, Microservices, Serverless, Jenkins, JIRA, BitBucket (GIT), Nexus, Bash Shell, Python, JSON, Groovy, JQ, docker, NGINX, Apache Airflow, Tomcat, Nexus, SonarQube and Sumo Logic

Aug 2016 - Oct 2017
1 year 3 months
London, United Kingdom
On-site

AWS DevOps Engineer

DirectLine Group

DirectLine group had adopted AWS cloud services to build out Strategic Claims Online and Fraud Analytics capabilities. These were run as two projects which are working together to provide the common cloud foundation requirements. AWS Build/DevOps engineer role responsible for delivering fully automated infrastructure as code on Amazon Web Services.

  • Working closely with Amazon Web Services Consultants, DLG Networking, Business solutions Security architects and Third party vendors to design and deliver a secure cloud solution for the DLG's cloud foundation layer, Strategic Claims online and Fraud Analytics projects
  • Designed and deployed re-usable Terraform templates for provisioning Virtual Private Cloud, Private and Public Subnets, Routes and Route Tables, Security Groups and NACLs, Internet and Virtual Private Gateways, VPC Peering, Elastic load balancers, Route 53 DNS, EC2 instances, Launch configurations and Auto-scaling, S3 data storage and IAM
  • Implemented Amazon Machine Image baking processes for base OS, Middleware and Applications using Hashicorp packer. Security hardening of RedHat Enterprise Linux AMI's
  • Implemented bootstrapping and configuration changes to application instances using provisioning tools
  • Implementation of AWS IAM, Single-Sign-On and VPC peering for inter and Intra AWS accounts
  • Implementing DNS service using AWS Route 53
  • Implemented VPN tunnels between an on premise data centre and several AWS VPCs in collaboration with DLG's on premise Networking team
  • Implemented and deployed Foundation tools on EC2 instances on Linux and Windows platforms: Jenkins, Nexus, SVN, Fortinet FortiGate VM, Bluecoat ProxySG, Qualys, RSA Analytics, Active Directory Domain controller, CyberArk
  • Implemented and deployed Fraud Analytics tools on EC2 instances: R, SAS, and SFTP
  • Implementation of an automated data transfer from on premise data centre into AWS Data Lake
  • Implemented and deployed EC2 instance Patch management for Red Hat Linux and Windows
  • Implemented an automated nightly EBS snapshot backups of EC2 instances using Cloudformation, Lambda, Cloud watch and DynamoDB
  • Implemented an automated Disaster Recovery in AWS
  • Delivered various technical and process documentation: Detailed Level Design (DLD), Security, Functional Testing and Service transition documents
  • Liaise with Live Services and Information Security teams to transition the project into BAU/production
  • Provided training and Mentoring to BAU/production support staff

Technologies: Terraform, Cloud Formation, Packer, Jenkins, Subversions, Nexus, Lambda, Bash Shell, Python, Node.js, AWS CLI

Dec 2013 - Jul 2016
2 years 8 months
London, United Kingdom

Software Configuration, Release and DevOps Consultant

DirectLine Group

May 2011 - Nov 2013
2 years 7 months
London, United Kingdom

Software Configuration and Release Management Consultant

DirectLine Group

Apr 2010 - Apr 2011
1 year 1 month
London, United Kingdom

Software Configuration and Release Management Consultant

Lloyds Banking Group

Sep 2009 - Mar 2010
7 months
Zürich, Switzerland

Software Configuration Management Consultant

Credit Suisse AG

Feb 2009 - Aug 2009
7 months
Cambridge, United Kingdom

Software Configuration Management Consultant

eyeSpan Limited

Feb 2007 - Jan 2009
2 years
Staines-upon-Thames, United Kingdom

IBM Rational Software Specialist

News Digital Systems Ltd

Jan 2005 - Jan 2007
1 year 1 month
London, United Kingdom

Software Configuration Management Consultant

fmiSolutions

Apr 2001 - Dec 2005
4 years 9 months
Cambridge, United Kingdom

Senior Development Practices Specialist

Aspen Technology

May 1998 - Mar 2001
2 years 11 months
Leyland, United Kingdom

Project Engineer

Torotrak Plc

Jul 1997 - Apr 1998
10 months
Farnham, United Kingdom

Control Systems and Applications Engineer

Cytek Projects Ltd

Sep 1993 - Jun 1997
3 years 10 months
Kingston upon Hull, United Kingdom

Research Assistant

University of Humberside & Lincolnshire

Sep 1989 - Aug 1992
3 years

Process Engineer

Legadembi Gold Mine

Summary

Certified cloud and DevOps practitioner with 24 years of experience delivering technology solutions for financial, insurance, and blue-chip organizations with focus on cloud architecture, DevOps, automation, migration, implementation support, and coaching to help organizations optimize their cloud and DevOps processes.

Languages

English
Native

Education

Lorem ipsum dolor sit amet

BSC · Chemical Engineering

Lorem ipsum dolor sit amet

MSC · Computer Based Plant and Process Control

Certifications & licenses

Aws Certified Ai Practitioner

Aws Certified Security - Specialty

Aws Certified Solutions Architect - Associate