Puskar Khadka

Platform Engineer

Platform Engineer specializing in Cloud / Distributed Systems, Kubernetes, Terraform, and production automation. Experienced in building scalable infrastructure, debugging mysterious production issues, and writing YAML files that hopefully behave on the first deployment.

Scroll

Platform engineer who ships infrastructure

Puskar Khadka

My work spans cloud infrastructure, DevSecOps, and platform engineering, with a focus on AWS, Kubernetes, Terraform, CI/CD automation, observability, and infrastructure security. I build systems that integrate security into every stage of the deployment lifecycle, from code to production.

My contributions help improve system reliability, reduce security risks, and enable teams to deploy faster with confidence. The infrastructure I work on is designed to be secure by default, scalable by design, and production-ready in real-world environments.

Cloud Architecture

Designing scalable, secure, and cost-optimized AWS infrastructure across multi-account environments.

Kubernetes Platforms

Building and operating production EKS clusters with autoscaling, GitOps, and full observability.

🔧

Automation & IaC

Codifying infrastructure with Terraform and automating workflows with Python, Bash, and CI/CD pipelines.

🔒

Reliability & Security

Embedding security into the SDLC — from secrets management and IAM least-privilege to container scanning, runtime policies, and compliance guardrails in CI/CD pipelines.

Tools & Technologies

☁️

Cloud & Platform Engineering

AWSEC2EKSECSVPCIAMRDSS3ALBRoute53CloudFront
⚙️

Kubernetes & Containers

KubernetesEKSHelmArgoCDDockerKarpenter
🏗️

Infrastructure as Code

TerraformTerragruntCloudFormationAnsible
🔄

CI/CD & GitOps

JenkinsGitLab CIArgoCDGitOps workflows
📊

Observability & Monitoring

PrometheusGrafanaFluent BitOpenSearchCloudWatchPagerDutyUptime Kuma
🔒

Security & DevSecOps

AWS WAFIAM SecurityVeracodeSysdigSecurity Hub

Certifications

AWS Certified Developer – Associate
Amazon Web Services
Expires Jan 5, 2029
View on Credly ↗
CKA: Certified Kubernetes Administrator
The Linux Foundation
Expires Nov 25, 2026
View on Credly ↗
HashiCorp Certified: Terraform Associate (003)
HashiCorp
Expires Jun 29, 2027
View on Credly ↗

Featured Projects

Infrastructure

AWS Multi-Account Platform

Production-grade AWS infrastructure across multiple accounts with centralized networking, security, and GitOps delivery.

  • Provisioned multiple EKS clusters across multiple AWS accounts with multi-cluster ArgoCD following GitOps practices
  • Reusable Terraform modules for VPC, EKS, RDS, ALB, and IAM
  • ArgoCD-based GitOps with app-of-apps pattern
AWSTerraformVPCArgoCDIAM
Observability

Centralized Observability Stack

Full-stack observability platform covering metrics, logs, and alerting for Kubernetes workloads.

  • Prometheus + Alertmanager for metrics and alerting
  • Grafana dashboards for cluster and application metrics
  • Fluent Bit DaemonSet for log shipping to OpenSearch
PrometheusGrafanaFluent BitOpenSearch
Automation

EKS Upgrade Automation

Python-based automation framework for safe, zero-downtime EKS cluster version upgrades.

  • Automated discovery of clusters requiring upgrades
  • Upgrades EKS cluster version, managed node groups, and AWS managed add-ons automatically
  • Generates upgrade status report post-completion with Jenkins pipeline approval gates for production
PythonAWS EKSJenkinsBoto3
Security

Infrastructure as Code Library

Reusable Terraform module library covering core AWS services, enforcing standards and reducing provisioning time across teams.

  • Modules for VPC, EKS, RDS, ALB, IAM, S3, and CloudFront
  • Jenkins pipeline for Terraform plan and apply to manage infrastructure changes
TerraformTerragruntAtlantisAWS
CI/CD

CI/CD Automation Platform

Standardized CI/CD pipelines for containerized microservices with automated testing and deployment.

  • Shared Jenkins library for reusable pipeline stages
  • GitLab CI pipelines for containerized microservice builds and deployments
  • Environment promotion workflow with manual approval gates
JenkinsGitLab CIDockerGitHub ActionsArgoCD
Serverless

Serverless Architecture & Automation

Event-driven serverless workflows on AWS for infrastructure automation, cost optimization, and operational tasks.

  • AWS Lambda functions for automated remediation and scheduled infrastructure tasks
  • EventBridge rules triggering workflows based on AWS resource state changes
  • S3 + Lambda pipelines for automated data processing and notifications
  • API Gateway backed by Lambda for lightweight internal tooling
AWS LambdaEventBridgeAPI GatewayS3Python

Let's Connect

Open to platform engineering roles, cloud architecture consulting, and DevOps collaboration.

📍 Open to remote opportunities worldwide