Securing Cloud InfrastructureDevSecOps & Cybersecurity Expert
6+ years building security-first cloud systems, automating threat detection, and implementing zero-trust architectures across AWS, GCP, Heroku, Azure, and Kubernetes.
Senior DevSecOps Engineer with 6+ years securing cloud infrastructure and automating security into CI/CD pipelines. I design security-first architectures, build automated threat detection systems, and implement defense-in-depth strategies for multi-cloud environments. My expertise spans infrastructure security, container hardening, vulnerability management, and incident response. I combine hands-on security engineering with research-driven approaches to solve complex cybersecurity challenges.
Delivering secure, production-grade systems with automated security controls.
- Built security-first CI/CD pipelines reducing vulnerabilities by 85% through automated SAST/DAST integration.
- Implemented infrastructure security hardening across multi-cloud environments, achieving SOC2 compliance.
- Designed and deployed zero-trust architectures with automated threat detection, reducing incident response time by 70%.
Security-First Architecture
Designing cloud systems with security as a foundational principle.
Infrastructure Automation
Building scalable, resilient infrastructure with IaC and CI/CD.
Cybersecurity Defense
Implementing defense-in-depth, zero-trust architectures, and automated threat detection for enterprise cloud environments.
Cloud-Native
Expertise in AWS, GCP, Heroku, Azure, and Kubernetes orchestration.
Impact Metrics
Measurable security outcomes, research impact, and engineering achievements demonstrating DevSecOps expertise
Research Reads
Distribution
Development & Open Source
Distribution
Community & Credentials
Technology Stack
DevSecOps tools and security technologies I use to build, secure, and monitor cloud infrastructure from code to production
Scripting
2 technologies

Version Control
3 technologies

Containerization and Orchestration
5 technologies





Cloud Platforms
4 technologies



Database Management
5 technologies



Security Tools and Practices
5 technologies
Ci/Cd Code Repository
4 technologies


Infranstracture as Code (IAC)
3 technologies

Logging and Monitoring
8 technologies


Serverless
5 technologies





Networking
3 technologies


Communication
7 technologies

Message Queqe
4 technologies

Software Development Methodologies
3 technologies



Background
Education and work experience
Education
Information Technology and Applied Security, MSc
Islington College, London Metropolitan University
09/2023
Thesis:
Continuous Automation with DevOps practices for Threat Detection
Computer Networking and IT Security, BSc
Islington College, London Metropolitan University
09/2018
Thesis:
Wireless Hotspot: Current and Future Challenges
Work Experience
Available upon request
Volunteering
Rotaract Club of Jawalakhel
Secretary
Jun 2019 - Present
6 yrs 6 mos
Leo club of Samakhusi
General member
Sep 2018 - Present
7 yrs 3 mos
Bishweshwor Sushila Foundation
Program Manager
Sep 2015 - Present
10 yrs 3 mos
Professional Certifications
Industry-recognized certifications and credentials
3
Certifications
1
Certification
2
Certifications
1
Certification
1
Certification
2
Certifications
Security-First Approach
Integrating security at every stage, from code commit to production monitoring, using shift-left principles, automated threat detection, and continuous security validation to build resilient, attack-resistant systems.
Security Pipeline
Shift Left Security
Automated SAST/DAST scanning in CI/CD pipelines, secret detection, dependency vulnerability scanning, and security policy enforcement before code reaches production.
Infrastructure Hardening
IaC security scanning (Trivy, Terrascan), CIS benchmark compliance, network segmentation, least-privilege IAM, and container security hardening.
Continuous Security Monitoring
Real-time threat detection using SIEM integration, automated incident response playbooks, security event correlation, and runtime application self-protection (RASP).
Recommendations
What colleagues and collaborators say
"I've had the pleasure of working closely with Krishna Neupane at Vianet Communications Ltd, where we both contribute to designing and maintaining complex network and system solutions for corporate clients. Krishna stands out as a highly skilled and reliable professional in the areas of DevSecOps, cloud infrastructure, and cybersecurity. His ability to blend deep technical knowledge with practical execution is impressive. I've seen him successfully lead automation initiatives, troubleshoot critical production issues, and implement secure CI/CD pipelines that significantly improved deployment efficiency and security posture. What I admire most about Krishna is his curiosity and constant drive to learn. Whether it's adopting new tools, diving into research, or sharing insights with the team, he's always ahead of the curve. His collaborative nature and willingness to support others make him a strong team player and a dependable colleague. I highly recommend Krishna for any opportunity that values technical excellence, adaptability, and a proactive mindset. He's truly an asset to any engineering or DevSecOps team."
"I had the pleasure of working under Krishna Neupane during my time as a System Administrator at Park City Pvt. Ltd. in 2019. Krishna was not only a knowledgeable and dependable senior but also a great mentor. His guidance and support helped me grow both technically and professionally. He has a strong grasp of system infrastructure and a calm, solution-oriented approach to challenges. Any team would be lucky to have him!"
"I highly recommend Krishna for his exceptional DevOps expertise, collaborative approach, and proficiency in tools like Docker, Ansible, GitLab, and DevSecOps. During our time at BeyondID, he consistently demonstrated a strong command of these technologies while fostering a positive team environment. Krishna's dedication and technical skills, coupled with his commitment to security practices, make him a valuable asset to any organization."
"I had the pleasure of collaborating with Mr. Krishna Neupane on the DotTrade project, where his expertise in DevOps architecture and AWS Cloud proved indispensable. His innovative solutions seamlessly integrated an ERP system with e-commerce and supply chain management, showcasing a deep understanding of technology and solution architecture. Krishna is a collaborative and communicative professional who sets a high standard for excellence. I highly recommend him for his outstanding contributions."
"Krishna is an individual with good communication skills and an individual who is willing to learn new technologies. I have mentored Krishna for few DevOps Projects. His curiosity in technologies will lead him towards what he is looking upto as a career path. Krishna gains highest recommendation in his Network and Security skills and his interest in DevOps."
"I always had a good impression of krishna, such a talented and skilled professional. I never heard a word no from him to new challenges, instead, he enjoys doing things differently with some research and sophisticated approach. He is a person of quality work, focus and one of a passionate individual who gets thrilled to learn new skills and keep up to date with the technological trend. I wish him the best for his future endeavors."
Stay Updated
Subscribe to my newsletter for the latest research insights, project updates, and DevSecOps best practices