
Lukket
Slået op
Betales ved levering
We need an experienced AWS specialist to design and harden a brand-new cloud environment where enhanced security is the top priority. AWS Specialist can resolve :- 1. Core VPC Requirements (The "Secure Perimeter") VPC Segmentation: Expertise in designing a dedicated /16 CIDR VPC with 3-tier subnet isolation across 2 Availability Zones (ap-south-1a and 1b). Public Subnets: Strictly for ALBs and NAT Gateways. Private App Subnets: For Go-lang microservices on EC2/Docker and the AI Chatbot. Private Database Subnets: Total isolation for RDS, MongoDB, and Redis with no public [login to view URL] real time ruplication Hybrid Connectivity: Hands-on experience with AWS Transit Gateway and Direct Connect (1 Gbps) to bridge your AWS VPC with the physical bank infrastructure. 2. Load Balancing & Traffic Engineering Application Load Balancer (ALB): Configuring Multi-AZ ALBs to distribute traffic across your [login to view URL] backend fleet. Implementation of Internal ALBs specifically for the AI Chatbot layer to ensure it is never exposed to the internet. Perimeter Protection: Integration of AWS WAF with the ALB to enforce SQL injection (SQLi) and Cross-Site Scripting (XSS) protections and rate-limiting. Enforcing TLS 1.2+ at the ALB level for all encrypted transit. 3. Production Reliability & Monitoring Cost Optimization: Implementing a single NAT Gateway (cost-optimized) while maintaining high availability for the private subnets. 3. Observability: Setting up VPC Flow Logs and CloudWatch metrics to monitor the 100-200+ TPS bursts and ensure the Load Balancer isn't a bottleneck. 4. Caching & Performance (Redis): Setup of AWS ElastiCache (Redis) using `[login to view URL]` nodes. Configuration of 1 Primary + 1 Replica with Multi-AZ enabled for high availability. Implementation of Global Datastore replication to the Hyderabad (ap-south-2) DR region. 5 Serverless Logic (Lambda): Development and deployment of AWS Lambda functions to handle event-driven banking tasks (e.g., notification triggers, file processing). Integrating Lambda with the Go-lang backend and S3 event notifications. 6 Secure Storage (S3): Configuration of specific buckets: `audit-logs`, `app-backups`, and `static-assets`. Enforcement of Server-side encryption (SSE-KMS) and Versioning. Implementation of Lifecycle policies to move data to Glacier after 90 days. 7 Unified Backup & Compliance: Implementation of the 7-day backup retention policy across RDS, MongoDB, Redis, and S3. Management of KMS encryption keys for all storage volumes and snapshots.
Projekt-ID: 40261066
13 forslag
Projekt på afstand
Aktiv 2 dage siden
Fastsæt dit budget og din tidsramme
Bliv betalt for dit arbejde
Oprids dit forslag
Det er gratis at skrive sig op og byde på jobs
13 freelancere byder i gennemsnit ₹5.932 INR på dette job

Hello, I have 10 years of experience in designing and securing AWS network infrastructures. I propose to design and harden your cloud environment with a focus on enhanced security. I will implement VPC segmentation, load balancing, and robust perimeter protection. Observability, cost optimization, and secure data storage will also be top priorities. I am committed to ensuring production reliability and compliance. Regards, VishnuLal NB*
₹5.000 INR på 1 dag
7,7
7,7

Hi there, I have over 10 years work experience with Linux and Server Management as well as AWS (Certified PRO) and I think I can definitely help you out. Ping me! Cheers
₹10.000 INR på 1 dag
6,1
6,1

Hi, With 16+ years of experience in AWS, DevOps, and secure cloud architecture, I can design and harden your AWS environment with security as the top priority especially for banking-grade workloads. I will architect a dedicated /16 VPC with strict 3-tier segmentation across ap-south-1a and 1b: public subnets (ALB/NAT only), private app subnets (Go microservices, Docker, AI chatbot), and fully isolated database subnets (RDS, MongoDB, Redis) with no public exposure and real-time replication. Hybrid connectivity will be implemented using Transit Gateway and 1 Gbps Direct Connect for secure integration with on-prem banking infrastructure. For traffic engineering, I’ll configure Multi-AZ ALBs (including internal ALBs for the chatbot), enforce TLS 1.2+, and integrate WAF for SQLi/XSS protection and rate limiting. Observability will include VPC Flow Logs and CloudWatch metrics to handle 100–200+ TPS bursts. I will deploy ElastiCache Redis (1 primary + 1 replica, Multi-AZ, Global Datastore to ap-south-2 DR), secure S3 buckets with SSE-KMS, lifecycle to Glacier (90 days), 7-day backup retention, and centralized KMS key management. Lambda functions will support secure event-driven workflows. Budget can be finalized based on final complexity and compliance depth. Best regards, SaD
₹18.191 INR på 7 dage
5,2
5,2

With over 5 years of experience in AWS, securing cloud infrastructures is my forté. I commend the forethought to prioritize your network security, and I assure you that no stone will be left unturned in safeguarding your AWS environment from threats. Proficient in designing core VPC requirements, I know how to finely segment your VPC with 3-tier subnet isolation across AZs, allocating public, private app-, and database- subnets with strict access controls. As far as secure storage is concerned, I am well-adept with S3 configurations concerning server-side encryption (SSE-KMS), versioning, and proper bucket organization for audit logs, app backups, and static assets. To ensure complete disaster recovery preparedness along with unified backups, my strategy includes implementing Replication policies between DR sites
₹1.500 INR på 7 dage
4,7
4,7

As an experienced AWS specialist, I have a comprehensive understanding and hands-on expertise on various components of AWS that your project demands. From VPC segmentation to hybrid connectivity with Direct Connect, I can design and harden your cloud environment, ensuring enhanced security is always maintained. With regards to traffic engineering, I can implement multi-AZ ALBs for load balancing and integrate AWS WAF for perimeter protection, enforcing rate-limiting and necessary encryption protocols for optimal security. Evidently, I carry a strong background optimizing production reliability and monitoring server performance through cost-effective solutions like implementing single NAT Gateway while maintaining high availability and setting up appropriate task monitoring through VPC Flow Logs and CloudWatch metrics . My expertise also extends to efficient storage management using S3 including setting up necessary bucket configurations, implementing encryption protocols and lifecycle policies to manage data effectively. Overall, hiring me would mean trusting your AWS infrastructure in the hands of a skilled professional
₹1.050 INR på 7 dage
4,1
4,1

Hello, I bring 15+ years of experience designing and hardening production-grade AWS environments, including financial and high-compliance infrastructures. I have implemented secure 3-tier VPC architectures with strict subnet isolation, Transit Gateway + Direct Connect hybrid connectivity, Multi-AZ ALBs with WAF protection, and fully private database layers (RDS, Redis, MongoDB) with real-time replication and DR strategy. I can architect your environment with least-privilege IAM, TLS 1.2+ enforcement, SSE-KMS encryption, centralized logging, VPC Flow Logs, and cost-optimized NAT design while maintaining high availability for 100–200+ TPS workloads. I’ve also deployed ElastiCache Global Datastore, Lambda-driven event workflows, and structured S3 lifecycle + backup compliance frameworks. My approach prioritizes security-first architecture, resilience, and audit readiness from day one. I’m happy to provide a structured implementation plan with phased delivery and clear timelines. Best regards,
₹7.000 INR på 7 dage
1,5
1,5

Hi! I'm a DevOps and cloud infrastructure specialist with hands-on experience deploying secure AWS environments using VPC, EC2, Docker, RDS, Redis, Lambda, and S3. I can architect and implement the full secure perimeter you've described: - VPC with /16 CIDR and 3-tier subnet isolation (public/private app/private DB) - Multi-AZ ALB with WAF (SQLi, XSS protection) and TLS 1.2+ enforcement - ElastiCache Redis (Primary + Replica, Multi-AZ) - Lambda functions for event-driven tasks integrated with Go-lang backend - S3 with SSE-KMS encryption, versioning, and Glacier lifecycle policies - CloudWatch monitoring + VPC Flow Logs for 100-200 TPS traffic - 7-day backup retention for RDS, MongoDB, Redis, and S3 I work with Docker containers and microservices regularly, and I'm familiar with AWS Transit Gateway configurations. I'll deliver a fully documented, production-ready infrastructure. Let's discuss to finalize the scope. Ready to start immediately.
₹1.200 INR på 3 dage
0,0
0,0

I am a DevOps Engineer with over 8 years of experience designing and maintaining robust CI/CD pipelines, managing large-scale Kubernetes environments, and automating cloud infrastructure across Azure and AWS. I have strong expertise in Infrastructure as Code using Terraform, containerization with Docker, and Kubernetes orchestration. My focus is on optimizing deployment workflows, improving system reliability and scalability, and driving continuous improvement through automation and best practices. Happy to discuss further or explore potential collaboration.
₹1.050 INR på 7 dage
0,0
0,0

Hi, I reviewed your project "Secure AWS Network Infrastructure freelancer" and can deliver exactly what you need. I specialize in Python, APIs, automation, and full-stack development with 10+ years of experience building production systems. Key strengths relevant to this project: - Expert in web scraping (Selenium, Playwright, BeautifulSoup), API development, and data pipelines - Clean, documented, tested code with clear communication throughout - Fast turnaround with milestone-based delivery I'd like to discuss the specifics and share relevant examples from similar work. Available to start immediately. Best regards
₹1.230 INR på 7 dage
0,0
0,0

Solution approach: In one of our previous environments, we designed a multi-AZ VPC with strict tier separation, internal-only services behind private load balancers, centralized KMS control, and proper logging visibility to satisfy security reviews. For your requirement, we will build a clean /16 VPC with proper 3-tier segmentation across ap-south-1a and 1b. Public subnets will only contain ALB and NAT. Application services and the AI Chatbot will run fully private. Database subnets will have no public endpoints at all. Transit Gateway and Direct Connect will be configured securely to integrate with your on-prem banking infrastructure. WAF will be attached to ALB with SQLi/XSS protection and TLS 1.2+ enforcement. Redis will be deployed with Multi-AZ (1 Primary + 1 Replica) and DR replication to ap-south-2. All S3 buckets will use SSE-KMS, versioning, lifecycle to Glacier, and centralized backup retention policy. Deliverables: • Fully segmented 3-tier VPC architecture • Secure ALB + WAF configuration • Hybrid connectivity (TGW + DX) integration • Multi-AZ Redis with DR replication • Hardened S3 with encryption & lifecycle • Unified backup and KMS governance • Observability setup with logs & metrics Value added solution: • As additional security strengthening, we will implement layered Defense-in-Depth controls including tightened AWS security services like WAF, Guardduty etc. • Pre-production security review before go-live • DR failover validation guidance
₹850 INR på 3 dage
0,0
0,0

Hello, I am a Principal Cloud Architect with 14 years of specialized experience in cloud consulting and solutining, designing DevOps and data platform, Infrastructure automation and full stack development. I am also an AWS Ambassador and a certified AWS network specialist. I have led numerous digital transformation and infrastructure hardening projects for global enterprises, ensuring they meet the highest standards of security and reliability. Your project requires more than just a setup; it requires a "security-by-design" architecture that can handle 200+ TPS while maintaining banking-grade isolation. My background in architecting large-scale integration platforms and high-compliance environments makes me the ideal partner for this delivery.
₹25.000 INR på 7 dage
0,0
0,0

Hi! I'm Balaji, a DevOps Engineer with hands-on experience in AWS, Docker, Jenkins, Kubernetes, and CI/CD pipeline automation. I have already built and deployed a complete end-to-end CI/CD master project on GitHub that includes: ✅ Jenkins + GitHub Actions Pipeline ✅ Docker multi-stage builds ✅ Kubernetes (K8s/K3s) deployment with HPA ✅ Prometheus + Grafana monitoring ✅ ELK Stack for centralized logging ✅ Zabbix for infrastructure monitoring ✅ AWS EC2 deployment with automated scripts For your AWS DevOps project, I can deliver: ? Full CI/CD pipeline setup on AWS ? Dockerized application deployment ? Monitoring & alerting configuration ? Security best practices (IAM, secrets management) ⚡ Auto-scaling with load balancing I am available immediately and can start today. I will provide clean documentation and regular updates throughout the project. Let's discuss your requirements — I'm confident I can deliver exactly what you need! Best regards, Balaji Thakor DevOps Engineer | AWS | Docker | Kubernetes
₹1.050 INR på 7 dage
0,0
0,0

Mumbai, India
Medlem siden sep. 4, 2025
$30-250 USD
$30-250 USD
$100-200 CAD
₹37500-75000 INR
$30-250 USD
£20-250 GBP
$750-1500 USD
₹600-1500 INR
$2-8 USD / time
$750-1500 AUD
₹37500-75000 INR
₹12500-37500 INR
$30-250 USD
$15-25 USD / time
₹12500-37500 INR
₹600-1500 INR
min $50 USD / time
$5000-10000 USD
₹12500-37500 INR
₹12500-37500 INR