Zero-Trust Cloud Infrastructure & GitOps Pipeline
sreeramkr.com
- Orchestrated declarative, state-locked provisioning of private VPC networks, firewalls, and Compute instances using Terraform.
- Engineered a secure, keyless CI/CD pipeline via GitHub Actions using Workload Identity Federation (WIF) and OIDC.
- Implemented secure push-based SSH deployments over GCP Identity-Aware Proxy (IAP) to run containerized stacks.
- Isolated services inside a private Docker Compose network routed via Cloudflare Tunnels, exposing zero host ports.