Skip to main content
Secure Multi-Cloud & Migration Expert · CKA Certified

Suraj Kumar Sah

7+ years architecting secure, zero-downtime cloud migrations across AWS, Azure & GCP — specializing in multi-cloud security hardening, CKA-certified Kubernetes, and SOC 2 compliance automation.

About Me

Who am I professionally?

0
Years of Experience

I'm Suraj Kumar Sah, a Secure Multi-Cloud & Migration Expert with 7+ years of hands-on experience across AWS, Azure, and GCP, and a Certified Kubernetes Administrator (CKA).

I specialize in designing and executing secure, zero-downtime cloud migrations — lifting legacy workloads to modern multi-cloud architectures while enforcing security best practices, compliance frameworks (SOC 2, CIS benchmarks), and infrastructure-as-code across every layer. I have driven end-to-end migration projects spanning on-premise to cloud, cloud-to-cloud re-platforming, and Kubernetes-native transformations at scale.

Beyond migrations, I actively contribute to cloud security research and have 2 years of teaching experience. I'm passionate about sharing knowledge through community initiatives and open-source contributions.

Research Papers

Published & Upcoming Work

Research Papers

Blogs

Loading blog posts...

Resume

My Professional Journey

Chronicles of My Professional Path

Lead DevOps Engineer,

Soliish/KYXStart/ArimaHealth/Sleep Clinics of America

Aug 2024 - Present
  • Architected and executed a full cross-tenant Microsoft 365 migration (Sleep Clinics of America → Arima Health) covering email, calendar, contacts, tasks, mailbox rules, OneDrive, and SharePoint; employed CTMM (Cross-Tenant Mailbox Migration) for compatible users and Microsoft Purview PST export/import for users blocked by unresolvable MAPI named properties; orchestrated SharePoint migration via SPMT, OneDrive via UDM cross-tenant tooling, and completed DNS cutover (MX, Autodiscover, SPF, DKIM, DMARC) with zero data loss.
  • Led organization-wide attainment of SOC 2 Type II certification by designing and implementing robust security controls, continuous monitoring, alerting mechanisms, and compliance automation across cloud and endpoint environments, ensuring regulatory adherence and enhanced organizational security posture.
  • Directed deployment of Wazuh for comprehensive compliance monitoring aligned with SOC 2 requirements, incorporating real-time alerting for suspicious activities and proactive vulnerability tracking to maintain a resilient and secure infrastructure.

DevOps Engineer,

12iD Pvt. Ltd.

Feb 2023- Aug 2024
  • GitHub Actions with GitHub workflows implemented for CICD to GKE
  • Multiple clients product deployment across the world with proper communications and documentations
  • Setup a proper environment versioning system and also store all the configuration to the GCP Secret Manager.

DevOps Engineer,

Grepsr Pvt. Ltd.

Apr 2021 - Jan 2023
  • Set up Development, Staging, and Production servers for moving all the applications and services to AWS Elastic Kubernetes Service(EKS) via Terraform, Ansible, Drone CI, and ArgoCD with Istio-Service-Mesh enabled.
  • Manage every AWS Service through Terraform Cloud and Applications with version control to Bitbucket.
  • Setup Staging & Development Kubernetes Cluster from scratch; moved all the applications and services to Kubernetes with Istio-Service-Mesh enabled on-premise with the help of Helm charts.

Get in Touch

Let's Connect

I'm currently available to take on new projects, so feel free to send me a message about anything that you want to run past me. You can contact anytime at 24/7.