Vinod Kumar Vasudevan Nair
Details
Electronics and Communications Engineering
University of Kerala
2005 : 2009
Communication Protocols
Mobile Communication
Convergence labs
2010 : 2010
• Technical Governance and Oversight council member. Guides development teams on implementing security best practices to that ensure confidentiality, integrity and availability is maintained for every new feature releases.
• Led public cloud migrations initiatives.
• Transform Logging and Monitoring solutions.
• Lead a team of software developers that handles multiple portfolios
2020 : Present
Charles Schwab
Senior Manager - CyberSecurity, SRE
• Design, Create and Manage the Kubernetes clusters for Dev, QA, Stage, and PROD environments.
• Architected and implemented a VPN solution for the company.
• Identity and Access Management (IAM) using Google SSO for AWS accounts and K8s clusters.
• Implement and manage the CICD Pipelines that have tight integration with QA and Static code analysis
tools.
• Administer AWS accounts
• Infrastructure as Code (IaC) using Terraform, Terragrunt.
• Cloud and Container Security, Vulnerability management
• Cost Optimization
• Design and Implement Logging and Monitoring solutions - Splunk, ELK, SumoLogic, Prometheus,
Grafana etc
2019 : 2020
Tala
Senior DevOps/SRE Engineer
• Engineered AWS account for the specifics use case of Symantec for malware analysis and detonation.
• Defined and enforced the baselines and standards for IAM, the use of AWS resources with security as priority.
• Infrastructure as Code automations using CloudFormation, Terraform, Python etc.
• Build new tools for automation using Python.
• Assisted Dev team in migrating to a DevOps model for deploying new feature sets quickly and reliably.
• MicroServices - Docker, kubernetes.
• Delivered projects following Agile Scrum and Kanban methodologies.
• On call support for critical backend and customer facing applications which are built on various technologies and infrastructure like VMware, AWS etc.
• Enforced Authentication, authorization, and accounting for all the applications.
• Reduced the overall cloud spend by 40%.
• Setup and administer Splunk Enterprise.
• Auto remediation of policy violations like wide open security groups and monitor for unusual traffic, public S3 buckets, credential exhilarations, unencrypted EBS, anomaly detection, etc.
• Worked with Content Delivery vendor to use AWS S3 as the origin shield for antivirus content delivered all Symantec customers worldwide.
• Setup vulnerability scanning using Qualys.
• Setup patch management using systems manager.
• Migrated multiple mission critical production systems to AWS including the re-architecture of an urgent SLA application, which facilitates rapid disaster recovery for premium enterprise anti-virus services, migrating petabytes scale data from on promise to cloud.
2016 : 2019
Symantec
Sr. SRE/DevOps/Cloud Specialist
In this role, I was responsible for the day to day operations of Global Infrastructure Service Team's (GIST) data center in Culver City, CA which needed 99.9% uptime with stringent SLAs. This lab was crucial for Symantec's liveupdate backend, telemetry systems and sample classification systems. The job functions includes...
• Administrator of VMware infrastructure which has grown to more than 200 hosts and 2500 virtual machines.
• Troubleshoot any issues related to VMWare infrastructure like datastore, VMotion, network issues, over/under provisioning etc
• Administration of SeaMicro SM15000 integrated compute unit which hosted worker farm for automated virus definition systems.
• Administration of Windows and Linux servers, OS hardening etc.
• Setup and maintenance of virtual firewalls and NAT gateways.
• Setup Automated installation of base operating system, hypervisor on bare metal servers
• Racking and stacking of new bare metal server.
• Administration of Microsoft Active Directory, DNS and DHCP servers on Symantec's viral network and clean network which needed network segregation.
• Maintained our Symantec NetBackup tape/disk library servers to backup critical databases and fileservers in our lab.
• Maintaining storage solutions like Dell EQLogic, NetApp, Fusion-io, DAS storages etc. for virtual infrastructure, high performance databases.
•. Operation of our Symantec NetBackup tape/disk library servers to backup critical databases and file servers in our lab.
• Maintenance and operation of Symantec Corporation’s proprietary antivirus build components.
• Consolidation of billions sample data for ingestion by backend applications.
• Diagnosing scripting issues in existing applications and taking remedying actions to improve performance.
• Setting up and maintaining a proactive monitoring system for all our networks.
• Resolving both hardware and software issues to minimize system downtime.
2014 : 2016
Symantec
IT Infrastructure Specialist
My responsibilities on this role were more like a System Administrator type. The job function includes..
• Automate any recurring manual task using shell/perl/batch scripts.
• Provided Operation support for mission critical, revenue generating production systems 24x7.
• Setting up and maintaining a proactive monitoring system for all our networks using Nagios, Icinga, Zabbix, solarwinds, etc.
• Responding to and resolving alerts in a timely manner.
• Maintaining our Virtual Infrastructure.
• Diagnosing and remedying performance and scripting issues in existing applications.
• Creating new solutions as our customer needs evolve.
• Working with different customer teams to provide solutions to an ever-increasing list of requirements.
• Resolving both hardware and software issues to minimize system downtime.
• Prototyping new systems and technologies before rollout.
• On-Call response.
• Creating custom monitoring solutions to fit into our existing infrastructure.
• Re-designing infrastructure backend systems to operate more efficiently.
2012 : 2014
Symantec
Configuration Management Engineer
Skills
windows system administration, vmware vcenter, it infrastructure design, it infrastructure management, high availability, network-attached storage (nas), storage management, linux firewalls, zabbix, sql, internet protocol suite (tcp/ip), performance improvement, icinga, network monitoring tools, remote infrastructure management, remote administrator, idrac, perforce, storage area network (san), das, netbackup, tape backup, ghost imaging, p2v, network troubleshooting, vlan, it infrastructure operations, amazon web services (aws), amazon s3, amazon ec2, content delivery, web hosting, akamai, ssl certificates, disaster recovery, tape libraries, hybrid cloud, cloud computing, elastic load balancing, symantec backup, symantec antivirus, web applications
About
Engineering Lead with more than a decade of experience in architecting, building, managing enterprise-class IT infrastructure on-premise, and on the public cloud with emphasis on Information Security, Scalability, and Performance. Skilled in
• Public Cloud
• DevOps, CICD
• Kubernetes, Containers
• Infrastructure as Code
• Cloud and Information Security
• Vulnerability Management
• Risk Management
• Patch Management
• Cloud Architecture
• Metrics, Logging, and detection
• Cost Optimization Capacity Planning
• VMware Administration
• Data Center Operations
• Automation using Python
• Windows and Linux server administration
• ACLs, Antivirus, IPS, IDS, CASB, Firewalls
• Storage administration, Network Operations