HimalayasHimalayas logo
Sunil ThapaST
Looking for a job

Sunil Thapa

@sunilthapa3

Infrastructure & DevOps engineer building secure AWS systems with CI/CD.

Nepal
Message

What I'm looking for

I’m looking for a role where I can build secure, automated AWS infrastructure for production systems—especially in regulated environments—own CI/CD and reliability improvements, and keep improving network/security practices with hands-on engineering.

I’m an Infrastructure and DevOps Engineer with 3+ years of hands-on experience designing, deploying, and securing cloud-native systems on AWS. I build reliable, scalable production infrastructure from the ground up, with a strong focus on network security, automation, and operational resilience.

At Wow Finstack Nepal, I provisioned the entire production AWS infrastructure from scratch using Terraform, including a dual-VPC topology with VPC peering for a live digital banking platform serving international clients. I implemented multi-tier network segmentation, isolated workloads in private subnets, and used ALB/NLB routing with Target Groups for containerized EC2 traffic distribution.

I also enforced a zero-trust perimeter by restricting security groups to inbound port 53 from the bastion host, eliminating direct internet exposure across production services. To secure internal access, I integrated AWS Client VPN with Lambda-based corporate IP whitelisting, and I applied custom WAF ACLs across CloudFront, ALBs, and API Gateway to deliver consistent layer 7 protection.

Beyond infrastructure, I’ve built secure data exchange using AWS Transfer Family (SFTP) integrated with S3, and optimized reliability and cost through VPC Gateway Endpoints and near-zero downtime blue/green deployments on AWS CodeDeploy with automatic rollback. I also contributed to research—publishing IEEE SaTC 2025 work on TinyML-enabled intrusion detection—and previously engineered backend systems with OAuth/JWT, API development, and CI/CD automation.

Experience

Work history, roles, and key accomplishments

WN
Current

Infrastructure & DevOps Eng

Wow Finstack Nepal

Mar 2025 - Present (1 year 2 months)

Provisioned production AWS infrastructure from scratch with Terraform, designing a dual-VPC architecture with VPC peering for a live digital banking platform. Implemented secure network segmentation, zero-trust access controls (Client VPN, security groups, WAF), and near-zero-downtime blue/green deployments using AWS CodeDeploy with automatic rollback.

SR

Machine Learning Engineer

Self-Directed Research

Jul 2024 - Feb 2025 (7 months)

Led end-to-end ML research, from problem formulation and dataset selection through model training and evaluation for IoT anomaly detection. Authored and formatted an IEEE-standard LaTeX research paper describing TinyML-enabled intrusion detection for EVSE security.

IN

Software Engineer

Ideapreneur Nepal

Nov 2022 - May 2024 (1 year 6 months)

Designed and optimized backend systems and database schemas to improve performance and reduce unnecessary real-time computation. Built authentication/authorization using OAuth and JWT, implemented subscription-based access with payment gateway integrations, and created APIs with automated CI/CD pipelines.

Education

Degrees, certifications, and relevant coursework

GS

Gandaki College of Engineering and Science

Bachelor of Engineering, Software Engineering

2017 - 2022

Activities and societies: Relevant coursework: Data Structures and Algorithms, Artificial Intelligence, Image Processing, Network Programming, Data Mining, Distributed Systems.

Bachelor of Engineering in Software Engineering from Gandaki College of Engineering and Science (2017–2022), covering coursework including data structures and algorithms, AI, and distributed systems.

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan