Cloud-Native 3-Tier Application on Kubernetes (AWS EKS)
Designed and implemented an end-to-end CI/CD pipeline using GitHub Actions to automate build, security scanning, and production deployment on every merge to the main branch. Integrated DevSecOps practices using Gitleaks, Checkov, Trivy, and SonarQube to detect vulnerabilities across source code, infrastructure, Dockerfiles, and Kubernetes manifests. Built and pushed commit-SHA-tagged images to Docker Hub and Amazon ECR for traceability and rollback, and implemented secure Amazon EKS deployment using GitHub OIDC with IAM roles and least-privilege access.
// INTERVIEW ENGINE