Based in Hyderabad, India

Prashanth
Katkam

Senior Cloud Engineer

Senior Cloud Engineer with 5+ years of experience excelling in architecting, provisioning, and administrating cloud environments. Focus on delivering high availability, maintaining a robust security posture, and ensuring continuous cost efficiency across all deployed services.

Prashanth Katkam

01. About Me

I am a Senior Oracle Cloud Infrastructure & DevOps Engineer with 5+ years of experience specializing in the Planning, Architecting, Provisioning, and Administration of enterprise solutions on Oracle Cloud Infrastructure. I leverage a strong DevOps toolkit including Linux, Terraform, Ansible, Docker, Git, GitHub, Nagios, Splunk, Grafana and other DevOps Tools to engineer scalable, high-performance, and automated cloud solutions.

My expertise focuses on optimizing cloud workloads for cost efficiency, high availability, and performance while maintaining a robust security posture by following Cloud Architecture and Security Standards.

Senior Cloud Engineer Professional Overview

Overview of the Implementations

5+

Years Experience

~ 15+

Cloud Certifications

$643

Annual Cost Savings

94%

Security Compliance Score

Hub and Spoke Network Topology

Implemented OCI Hub and Spoke Architecture with native firewalls for secure, centralized VCN traffic management.

Oracle Cloud Infrastructure Firewalls & Policies

Implemented OCI Firewalls, Firewall Policies, ensuring robust security and controlled network access.

Cloud Security & Compliance

Drove cloud governance and security compliance by implementing controls derived from CIS Benchmarks, NCA standards, and the OCI Well-Architected Framework Assessment.

Cloud Monitoring, Third Party SIEM, and Alerts

Implemented cloud monitoring, notifications, configured event rules, and integrated OCI Streaming for third-party SIEM observability.

Infrastructure as Code

Used Terraform to automate and manage the provisioning of a secure, compliant, and scalable landing zone infrastructures.

Cost Optimization and Governance

Reduced costs by analyzing right-sizing services, and implemented cloud advisor recommendations

Identity Access Management and Policies

Integrated Microsoft AD with OCI IAM for centralized SSO, enforcing least privilege using IAM policies and Identity security.

OCI Network Architecture Migration

Migrated OCI flat network VCNs to Hub and Spoke architecture, enhancing security and centralized traffic governance.

Proven Impact

17+
Projects
42%
Cost Reduction
Zero
Downtime Migrations
2x
Deployment IaaC Efficiency

02. Certified Professional

03. Technical Arsenal

Oracle Cloud Infrastructure

Amazon Web Services

Microsoft Azure

Terraform

Docker

Ansible

Linux Administration

Git

GitHub

Splunk

Nagios

Grafana

04. Professional Journey

Senior Cloud Engineer

LTIMindtree Dec 2022 - Present Hyderabad, India
  • Designed and provisioned a secure Hub-and-Spoke network topology in OCI, establishing a central Hub VCN for unified traffic governance and isolated Spoke VCN communications.
  • Established a robust security posture by implementing OCI network firewalls for both east-west and north-south traffic, leveraging policies to meticulously control and filter network communication.
  • Automated infrastructure provisioning using OCI Resource Manager with Terraform to dramatically reduce manual effort, ensure configuration consistency, and accelerate deployment cycles.
  • Achieved cost savings of approximately $643 annually by right-sizing compute/database instances, migrating data to OCI Archive Storage, and consolidating underutilized resources.
  • Planned and executed full-stack Disaster Recovery (DR) utilizing Oracle ATP with Data Guard and Volume Group CRR, ensuring automatic failover and minimal downtime.
  • Managed complex cloud migration, moving the JD Edwards Application and database data from on-premises to Oracle Autonomous Database using Oracle Data Pump, Buckets, and GoldenGate.
  • Integrated Microsoft AD with OCI IAM to enable centralized identity management, configuring and enabling Single Sign-On (SSO) across OCI resources.
  • Enhanced observability by integrating OCI Logging and OCI Streaming with the SIEM tool IBM QRadar to centralize log data, facilitating real-time threat analysis.
  • Enforced cloud security best practices by adhering to CIS Benchmarks, National Cyber Security standards, and recommendations from OCI Cloud Guard/Advisor.
  • Governed and optimized OCI Autonomous Databases, MySQL Heat Wave, and Base DB instances, implementing regular backups and patch management.
  • Configured and supervised OCI Fast Connect and Site-to-Site VPN connections to establish secure, high-performance connectivity between on-premises and OCI.
  • Developed and maintained High-Level and Low-Level Designs (HLD/LLD) with packet flow diagrams, guaranteeing OCI tenancy architecture delivered scalability, security, and optimized performance.
  • Implemented IAM policies and structured compartments based on environment and application types to enforce security and the principle of least privilege.
  • Supported the configuration and troubleshooting of applications like FortiGate, Infoblox, Tenable, Veeam, Seclore, ELK, Splunk, Nagios, and Microsoft AD into the OCI environment.

Cloud Engineer

Larsen and Toubro Infotech Oct 2020 - Dec 2022
  • Designed and implemented cloud infrastructure, leading the management of scalable, secure, and high-availability cloud solutions using Oracle Cloud Infrastructure services, including compute, networking, storage, and security.
  • Configured and managed OCI Virtual Cloud Networks, including subnets, route tables, and network security groups, ensuring seamless network communication.
  • Deployed OCI compute instances, established auto-scaling groups and load balancing to ensure performance and fault tolerance.
  • Enacted OCI block storage, object storage for large-scale data management, and file storage for shared file systems, optimizing cost and performance based on workload requirements.
  • Implemented OCI security best practices by enabling encryption at rest and in transit.
  • Configured Web Application Firewalls (WAFs) for Load Balancers to secure applications and mitigate common web attacks.
  • Implemented OCI IAM policies, users, groups, and compartments to ensure secure access control, adhering to the principle of least privilege.
  • Developed and implemented automation scripts to manage file and data operations, including deleting and downloading objects from OCI buckets, optimizing storage and reducing manual work.
  • Implemented comprehensive cloud monitoring by setting up alarms, notifications, and event rules to ensure timely and proactive response to performance, security, and utilization issues.
  • Provisioned and managed Oracle Integration Cloud instances, monitoring workflows and ensuring seamless connectivity between cloud and on-premises applications.
  • Deployed structured OSMS patching schedule for instances, ensuring timely application of security patches and updates, and developed rollback plans for system recovery.

05. OCI Architectures Implemented

Hub and Spoke Architecture Diagram
View Topology

Hub and Spoke Network Topology

OCI Network Firewall Architecture Diagram
View Security Flow

Hub and Spoke Network Firewall Packet Flow Architecture

Disaster Recovery Architecture Diagram
View DR Plan

OCI Streaming Integration with External SIEM

06. Key Implementations

Hub and Spoke Network Topology and Network Firewall Implementation

Designed a robust Hub-and-Spoke network topology in OCI. Implemented native network firewalls to strictly control traffic between VCNs.

OnPremise JDE Application Migration to OCI

Led the migration of JD Edwards Application to OCI. Migrated on-prem databases to Oracle Autonomous Database utilizing Oracle Data Pump.

Cloud Security Governance and Compliance

Implemented cloud security best practices by following CIS Benchmarks, National Cyber Security standards, Cloud Guard and Advisor recommendations, and controls from the OCI Well-Architecture Assessment.

Oracle Cloud Infrastucture Cost Optimization

Analyzed resource utilization and implemented rightsizing strategies. Consolidated underutilized instances, resulting in $643 annual savings.

Enforcement of Security with IAM and Compartments

Implemented IAM Groups, IAM Ppolicies, and structured compartments based on environment and application types to enforce security and the principle of least privilege.

Web Application Firewall Implementation

Configured Web Application Firewalls (WAF) for Load Balancers to secure applications and mitigate common web attacks.

Get In Touch

Ready to optimize your cloud infrastructure? Let's discuss how we can build scalable, secure, and cost-effective solutions together.