Cloud · DevOps · Security

Shahriar Hussain

Cloud Support Engineer
& Security Specialist

I build and secure cloud infrastructure — AWS, Linux systems, Docker deployments, and automated security operations with production-grade reliability.

What I Work With

Cloud & Infrastructure

Building and managing cloud infrastructure, Linux servers, and containerized deployments with production-grade reliability.

  • AWS (EC2, S3, IAM, VPC)
  • Linux Administration
  • Docker & Coolify
  • Traefik Reverse Proxy
  • NordVPN / iptables Routing
  • Terraform & Ansible

Security Operations

Embedding security into every layer — from identity management to runtime monitoring and compliance.

  • OWASP Top 10 Mitigation
  • IAM & Zero-Trust
  • Secrets Management
  • SAST & DAST Scanning
  • Container Security
  • Compliance & Auditing

Backend & Automation

Automating workflows, building APIs, and maintaining CI/CD pipelines for reliable production systems.

  • Python & FastAPI
  • Django & REST Framework
  • PostgreSQL & Redis
  • CI/CD Pipelines
  • GitHub Actions & GitLab CI
  • Prometheus & Grafana

Projects

Hermes — Multi-Pipeline Market Intelligence System

Production-grade agentic infrastructure powering automated market intelligence across crypto, stocks, and commodities. Deployed on Ubuntu 24.04 VPS with Docker, Coolify, Traefik reverse proxy, and NordVPN split-tunnel routing via custom iptables policies. ~27 scheduled cron jobs with a Python watchdog/alerting system.

Ubuntu 24.04 Docker Coolify Traefik NordVPN Python iptables PostgreSQL
  • 27 automated cron jobs across 3 isolated profiles with multi-agent orchestration
  • Custom iptables policy-based routing with NordVPN split-tunnel for selective traffic
  • Traefik reverse proxy with Docker/Coolify for zero-downtime container deployments
  • Python watchdog/alerting system for infrastructure health and pipeline monitoring

habitrack — Smart Daily Habit Tracker

Python CLI habit-tracking tool with streak analytics, trend reports, and a background notifier daemon. Zero external dependencies, full pytest coverage, published on PyPI.

Python CLI pytest PyPI
  • Pure stdlib implementation — zero external dependencies
  • Full test suite with pytest covering all commands and edge cases
  • Background daemon notifier with systemd-compatible process management
  • Published as pip-installable package: pip install habitrack

Prosno.io — Question Paper Platform

Full-stack SaaS application for automated question paper generation with auth, credit systems, and document export.

Python Flask PostgreSQL Supabase Auth Render
  • Built full authentication flow with Google OAuth2 and session management via Supabase
  • Implemented credit-based rate limiting system with tiered access control
  • Automated DOCX and PDF generation pipeline with OMR sheet support
  • Deployed on Render with CI/CD pipeline and environment-based configuration

Automated Question Generation Script

Python-based CLI tool for extracting and generating structured question sets from text content using NLP techniques.

Python NLP CLI JSON Schema
  • Designed structured JSON output format for consistent downstream consumption
  • Implemented modular parsing pipeline with extensible question type support
  • Reduced manual question creation time by automating extraction from raw text

Forex Lot Size Calculator

Precision risk management tool for calculating optimal position sizes in Forex trading based on configurable parameters.

Python Financial Modeling CLI
  • Implemented risk-based position sizing with configurable account balance and risk tolerance
  • Supports multiple currency pairs with accurate pip value calculations
  • Designed for reliability with input validation and edge case handling

Infrastructure with a Security Mindset

I approach infrastructure and security from an operator's perspective — Linux systems, cloud infrastructure, and network security. Every system I build starts with threat modeling — identifying attack surfaces, enforcing least-privilege access, and ensuring data integrity at every layer. Security is not an afterthought; it is the foundation of reliable architecture.

My work sits at the intersection of cloud infrastructure, systems administration, and operational security. I build APIs that handle production traffic with predictable performance, deploy infrastructure through code that can be audited and versioned, and integrate security scanning into CI/CD pipelines so vulnerabilities are caught before they reach production.

I believe in automation over manual process. From infrastructure provisioning with Terraform to automated compliance checks and container scanning, I eliminate human error by codifying operational procedures. This approach reduces incident response time and ensures consistent, reproducible deployments across environments.

Whether it is hardening a Kubernetes cluster, implementing zero-trust networking, or designing rate-limited API gateways — I build systems that are secure by default, observable in production, and resilient under load.

Focus Areas

  • AWS & Cloud Infrastructure
  • Linux Administration
  • Secure API Design
  • Infrastructure as Code
  • CI/CD Security
  • Container Hardening
  • Production Observability

Currently

  • Open for Cloud Support Engineer & Security roles
  • Building cloud infrastructure & security operations
  • Writing at shahariar.iam.bd/blog

Blog

Loading posts...

Ecosystem

shahriar@ecosystem:~$ ./ecosystem.sh
$ cat ecosystem.log
status: balanced
uptime: continuous
organisms: interdependent
health_check: passing
entropy: managed
resilience: adaptive
// A stable ecosystem — like reliable infrastructure —
// is quiet when it works.
$ terraform apply ecosystem.tf
Apply complete. Stability achieved.

Get in Touch

Interested in working together or have a question about my work? Reach out through any of the channels below.

GitHub
LinkedIn
Status
Open for opportunities