I build CI/CD pipelines, containerized deployments, and cloud infrastructure that are fast, secure, and repeatable.
I'm passionate about DevSecOps, cloud automation, and shifting security left β so bugs never reach production.
π BS Information Technology β BZU Multan Β |Β π Lahore, Pakistan Β |Β πΌ Open to opportunities
π‘ Self-taught in Docker, Jenkins, GitHub Actions, AWS & Terraform β applied in real production deployments.
π Always exploring how IaC + DevSecOps + Kubernetes can make delivery pipelines bulletproof.
Two-Workflow DevSecOps Pipeline on Oracle Cloud VM
- Personal finance app with signup/login, income & expense tracking with categories, RBAC, and live PKR/USD currency conversion
- Interactive dashboard with Chart.js category breakdown, current balance, and filtering by month, category, type, and date
- Full CRUD on transaction records β add, edit, update, and delete entries
- 2-workflow chained GitHub Actions pipeline:
CIβ flake8, bandit, gitleaks, pip-audit, pytestCDβ hadolint, pip-audit, Trivy image scan, DockerHub push, deploy via SSH
Stack: Python Β· Flask Β· PostgreSQL Β· Docker Compose Β· GitHub Actions Β· Oracle Cloud Β· Chart.js Β· Trivy Β· Bandit Β· Gitleaks Β· Hadolint Β· pip-audit Β· DockerHub
Three-Stage DevSecOps Pipeline on AWS EC2
- Hotel booking platform with user auth, RBAC, property listings, and booking management
- Remediated HIGH CVEs in Flask & Werkzeug; branch protection with required status checks on
main - 3-stage chained GitHub Actions pipeline:
CIβ flake8, bandit, pytest, gitleaksDocker Securityβ hadolint, pip-audit, Trivy, DockerHub pushDeployβ SSH to EC2, docker pull & compose up
Stack: Python Β· Flask Β· PostgreSQL Β· Docker Compose Β· GitHub Actions Β· AWS EC2 Β· SonarQube Β· Trivy Β· Bandit Β· Gitleaks Β· Hadolint Β· pip-audit Β· DockerHub
End-to-End Jenkins CI/CD on AWS EC2
- URL shortener with user auth, 3-char short code generation, and click analytics dashboard
- RBAC with Admin & User roles; PostgreSQL with full CRUD and health-checked Docker Compose setup
- Jenkins pipeline stages:
Checkout SCMβSonarQube AnalysisβTrivy ScanOWASP CheckβDeploy to StagingβVerifyβPost Actions
Stack: Python Β· Flask Β· PostgreSQL Β· Docker Compose Β· Jenkins Β· AWS EC2 Β· SonarQube Β· Trivy Β· OWASP
Code Push βββΊ GitHub Actions CI βββΊ Docker Security Scan βββΊ Deploy to AWS EC2
β β β
flake8/bandit hadolint/pip-audit SSH β docker pull
pytest/gitleaks Trivy CVE scan docker compose up
β β
β Fail = Block PR β Fail = Block Push
No vulnerable code reaches production. Ever.
| Badge | Certification | Platform |
|---|---|---|
| π | Advanced Jenkins | KodeKloud |
| π | Jenkins Pipelines | KodeKloud |
| π | Docker for Absolute Beginners | KodeKloud |
| π | Kubernetes Hands-On Tutorial | KodeKloud |
| π | AWS Basics Crash Course | KodeKloud |
| π | Git for Beginners | KodeKloud |
| π | Claude Code in Action | Anthropic |
π‘ Open to DevOps Engineer & DevOps Internship opportunities.
Feel free to reach out β let's build something reliable together.
"Automate everything. Secure everything. Ship with confidence."


