Professional Summary

A results-driven IT professional with extensive hands-on experience in designing, deploying, and managing secure, scalable, and compliant cloud infrastructures across AWS, GCP, Huawei Cloud, Orel Cloud. Skilled in cloud architecture, administration, and automation, with a strong focus on DevOps practices and cloud-native technologies. Proven ability to implement and optimize CI/CD pipelines using AWS CodePipeline, CodeBuild, and GitHub Actions. Experienced in containerization with Docker and orchestration using AWS EKS, Kind, and Docker Desktop for efficient application deployment and management. Adept at configuring and maintaining secure VPN integrations with financial institutions, monitoring system performance with CloudWatch, and ensuring adherence to PCI DSS and ISO standards. Committed to delivering high-availability, cost-optimized, and secure cloud solutions that support mission-critical payment systems and enterprise applications.

4

Cloud Platforms

8+

Projects Delivered

10+

VPN Tunnel Integrations

99.9%

Uptime Maintained

Technical Skills

Cloud Platforms & Services

AWS

EC2, S3, RDS, VPC, CloudFront, Route 53, IAM, Lambda, EKS, CloudWatch, Cloudtrails, VPN, ALB, NLB, API Gateway, AWS Cost Explorer, ACM, KMS, EFS

GCP

Compute Engine, Cloud Storage, VPC, IAM

Huawei Cloud

ECS, VPC, SFS, WAF, VPN-Classic, CloudEye

Orel Cloud

ECS, VPC, VPN, ELB, OBS

DevOps & Automation Tools

Container runtime

Docker

Orchestration

AWS EKS, Kind, Docker desktop Kubernetes

CI/CD & Automation

Github Actions, Cloud Native {Code Build, Code Deploy, AWS CodePipeline} , Scripting {Bash}

Infrastructure as Code

Terraform Basics

System Administration & OS

Operating Systems

Linux (Amazon Linux, RedHat, Ubuntu)

Server Management

Provisioning, Configuration, Monitoring, Hardening, Patching

Networking

VPN, DNS, VPC, Subnetting, Routing

Logging and Monitoring

Cloudwatch, Cloudtrail, Zabbix, Wazuh, GuardDuty

Security & Compliance

Standards

PCI DSS, ISO 27001

Security Tools

WAF, KMS, Security Groups, IAM, CloudTrail

VPN Solutions

AWS VPN, Libreswan, OpenSwan, Wireguard

Soft Skills & Languages

Professional Skills

  • Adaptability
  • Responsibility
  • Time Management
  • Collaboration
  • Problem Solving

Languages

  • English (Professional)
  • Sinhala (Native)

Projects

Click on project cards to view detailed architecture diagrams and documentation

Internet Payment Gateway Systems (IPG)

AWS Cloud - High Available

Designed and deployed AWS infrastructure with VPC, EC2, RDS, S3, etc.. Established Site-to-Site VPN connections with multiple banks. Click to view all IPG projects.

VPC EC2 VPN RDS EKS S3 Cloudfront Route53 API Gateway WAF ACM ECR Code Pipeline Code Deploy Code Build SFS Lambda IAM Cost Explorer ALB/NLB Cloudwatch Cloudtrail Guard Duty Secrets Manager Parameter Store KMS
Click to expand all IPG projects

Mobile Banking(APP) | Web Portals(Admin) | Internet Banking

AWS, Huawei Cloud and Orel Cloud

Built high-availability mobile banking and internet banking solutions across multiple cloud platforms. Click to expand all Mobile Banking projects.

Huawei ECS Huawei WAF Huawei VPN-Classic Cloud Eye Orel ECS Orel ELB Orel VPN IAM
Click to expand all Mobile Banking projects

Work Experience

March 2024 - Present

PayMedia Private Limited

Associate System Support Engineer

  • Administered, maintained, and configured mission-critical AWS infrastructure including EC2, S3, RDS, VPC, and EKS clusters, ensuring high availability and scalability for payment systems.
  • Provisioned and configured Linux-based servers, and automated deployment processes using Git, AWS CodeDeploy, CodePipeline, and GitHub Actions for streamlined CI/CD workflows.
  • Designed and managed AWS Site-to-Site VPN and Opensource (libreswan,Openswan,Wireguard)connections between AWS and partner financial institutions (Amana Bank, Cargills, DFCC, NTB, NSB, HNB Assurance, Mobile, CEB) to ensure secure data exchange.
  • Deployed and optimized cloud-native architectures with a focus on cost efficiency, security compliance (PCI DSS, ISO 27001), and high availability.
  • Implemented and maintained containerized environments using Docker, and orchestrated containers with AWS EKS and local development tools like Kind and Docker Desktop.
  • Developed automation scripts in shell for infrastructure tasks and integrated Terraform for IaC-based provisioning.
  • Monitored system performance using CloudWatch,Zabbix configured alerts, and performed root-cause analysis for cloud services and networking issues and Wazuh,AWS Guard Duty for treat&Vulnerability Detection
  • Collaborated with senior engineers and third-party vendors to implement secure integrations, maintaining 99.9% uptime for critical payment platforms
  • Assisted in building and managing CI/CD pipelines using AWS CodeBuild, CodePipeline, and GitHub Actions to support rapid and reliable application deployments.
  • Conducted server hardening based on CIS benchmarks and managed user access, encryption (KMS), and network security policies.
  • Provided technical coordination between clients, banking partners, and vendors for seamless system integration and operational support.
Sep 2023 - March 2024

PayMedia Private Limited

Technical Support Intern

Certifications

AWS Cloud Practitioner

2025-2028

Validation: AWS Certified

Oracle Cloud Infrastructure

2025

Foundation Associate

Huawei Cloud Tech Essentials

2025-2028

HCCDA Certified

Cisco CCNA

2021

University of Moratuwa

Education

Bachelor of Information Communication Technology (Honors)

Rajarata University of Sri Lanka

2019 - 2024

2nd Upper Class Honors

Contact

Get In Touch

rash.haluwana@gmail.com

+97171 80703

Available for Remote & On-site Opportunities