About Me

I'm a platform and DevSecOps engineer currently interning at TD Bank, where I work across cloud and container security and platform engineering. My focus is securing Kubernetes in production — admission control, policy enforcement, and compliance — for one of Canada's largest banks.

I'm also a Computer Science student at Sheridan College. I like working at the seam between platform engineering and security: DevSecOps, governance and compliance, and policy-as-code.

Platform EngineeringDevSecOpsKubernetes SecurityGRC / Compliance

What I Do

  • Secure Kubernetes and cloud infrastructure in production
  • Enforce policy and admission control across clusters
  • Automate governance and compliance (policy / compliance as code)
  • Work at the intersection of platform engineering and security

Professional Experience

TD Bank — Security Compliance & Operations Management, Global Security & Defence

Cybersecurity Intern

TD Bank

Security Compliance & Operations Management, Global Security & Defence

May 2026 – Present
KubernetesCloud SecurityVulnerability DetectionWizPolicy

Key Achievements:

  • Support cloud and Kubernetes security posture across the enterprise within TD's Global Security & Defence organization
  • Perform vulnerability detection and security policy validation on containerized workloads
  • Partner with platform engineering teams to keep secure-by-default guardrails enforced as the environment scales
TD Bank — Containers, Platform & Cloud Engineering · Toronto, ON

Cloud & DevOps Engineer Intern

TD Bank

Containers, Platform & Cloud Engineering · Toronto, ON

Jan. 2026 – May 2026
KubernetesWizPythonAdmission ControlKSPM

Key Achievements:

  • Built a Python tool to verify correct rollout of a security DaemonSet across production Kubernetes clusters, replacing manual spot checks
  • Validated Wiz admission controller policies against production workloads to confirm enforcement before clusters went live
  • Contributed to KSPM and cloud compliance workflows, surfacing drift between intended and actual cluster security posture
  • Worked within the Platform & Cloud Engineering team's cluster configuration and delivery workflows

Cloud Engineer Intern

Learning Mode AI

Toronto, ON (Remote)

Jan. 2025 – Aug. 2025
AWSTerraformGitHub ActionsCloudWatchEC2SREDevOps

Key Achievements:

  • Led DevOps and SRE initiatives to modernize AWS infrastructure, architecting a Terraform-based staging environment for four microservices running on a single EC2 instance, improving environment consistency and reducing infrastructure costs by 40%
  • Implemented CI/CD pipelines using GitHub Actions for automated Terraform validation and service deployments, automating most infrastructure provisioning tasks and reducing deployment time by 70%
  • Built centralized logging and alerting using AWS CloudWatch and Slack API, cutting troubleshooting time from hours to minutes and improving system visibility across all services
  • Reduced Mean Time to Detection (MTTD) of production incidents by 80% through proactive monitoring and real-time alerts integrated with CloudWatch metrics
  • Collaborated with a cross-functional developer team to standardize Infrastructure-as-Code practices, improving deployment reliability and scalability across environments that supported over 200 active users

Frontend Developer Intern

Prabbis Consulting

Halifax, NS (Remote)

Jan. 2024 – May 2024
Next.jsTailwind CSSTypeScriptJiraAgile

Key Achievements:

  • Developed and deployed responsive frontend pages using Next.js, Tailwind CSS, and TypeScript, including secure authentication flows
  • Improved reusability and responsiveness across mobile, tablet, and desktop platforms
  • Collaborated with mentor and team using Jira within Agile sprints

Skills & Expertise

Cloud & Kubernetes

  • AWS (EC2, S3, IAM, Lambda, CloudWatch)
  • Kubernetes (AKS, GKE, K3s, Helm)
  • Containers (Docker)
  • Linux server administration (Debian, Ubuntu)

Security & Compliance

  • Wiz (CSPM & admission control)
  • Kubernetes policy enforcement & admission control
  • Cloud compliance & governance (GRC)
  • Policy-as-code / Compliance-as-code

IaC & Automation

  • Terraform
  • CI/CD Pipelines (GitHub Actions)
  • Git
  • Bash / Shell scripting

Programming

  • Python
  • Go

Monitoring & Observability

  • Splunk
  • Dynatrace
  • Wiz

Certifications

  • AWS Certified Cloud PractitionerCompleted
  • Certified Kubernetes Administrator (CKA)In Progress

Workshops & Training

Amazon Bedrock AgentCore Workshop

Learning case study following AWS HQ workshop demonstration on Bedrock AgentCore. Implemented dual-agent approach with Bedrock integration and fallback mechanisms, focusing on environmental tools like air quality, trip emissions, and wildfire alerts.

Presenters:

Jane Shen, AWS

Date:

August 21, 2025

AWS User Group Toronto

Building a Secure EKS Framework for Financial Services

Comprehensive workshop on building secure Amazon Elastic Kubernetes Service (EKS) frameworks specifically designed for financial services. Covered security best practices, compliance requirements, and implementation strategies for containerized applications in regulated environments.

Presenters:

Raj Bagwe, AWS Preetam Rebello, AWS

Date:

September 4, 2025

AWS Summit 2025

An AWS Guide for VMware Administrators

Interactive chalk talk designed for VMware administrators embarking on their AWS migration journey. Explored Amazon Elastic VMware Service (Amazon EVS) and AWS Transform for VMware, covering technical capabilities, use cases, and integration into overall migration strategies. Bridged knowledge between familiar VMware environments and AWS cloud services.

Presenters:

David Piet, AWS Simon Vaillancourt, AWS

Date:

September 4, 2025

AWS Summit 2025

Building and Deploying a Containerized Application with Amazon Elastic Kubernetes Service

Self-paced lab covering the complete process of building, containerizing, and deploying applications using Amazon EKS. Learned container orchestration, service mesh implementation, and best practices for managing containerized workloads at scale in production environments.

Presenters:

Self-Paced Lab

Date:

September 4, 2025

AWS Summit 2025

Projects

Pi Homelab

In Progress

Designed and deployed a multi-tenant Kubernetes homelab on Raspberry Pi 5 with Docker, K3s, and ingress. Configured workload isolation, pod sharing, and role-based access controls to ensure secure multi-user environments. Added Prometheus + Grafana monitoring to track performance and optimize resource utilization.

Deployed on:

Local Network

Technologies:

KubernetesDockerK3sIngressGrafanaPrometheus

Get In Touch

I'm always open to discussing new opportunities, collaborations, or just having a chat about cloud infrastructure and DevOps.

Feel free to reach out through any of the channels below.

Schedule a Chat

Book a call

Location

Toronto, ON, Canada

Looking for a platform & security engineer? Let's connect.