Faith Ntundi
DevSecOps Engineer
10+ years of experience in Linux system administration, DevOps automation, CI/CD pipeline development, and AWS cloud infrastructure with a focus on security, automation, and scalability.
Education & Certifications
Bachelor of Science, Biology
James Madison University
Minor in Philosophy • Harrisonburg, VA • May 2014
Professional Certifications
- AWS Certified Solutions Architect – Associate (2020-2023)
- Red Hat® Certified Engineer (RHCE) (2023-2026)
- Red Hat® Certified System Administrator (RHCSA) (2019-2022)
Key Competencies
Senior technical leadership on enterprise AI/ML platforms in federal environments
Leadership and collaboration to design and implement DevOps solutions
Containerization, automation, monitoring, and issue resolution for applications
Training and support for developers, engineers, and leadership
Agile Scrum methodology and sprint planning
Infrastructure as Code (IaC) and Configuration as Code
Zero trust RBAC and cloud operations and security
Building, optimizing, and leveraging AI agents and workflows to increase productivity
Professional Experience
Sr. DevOps Engineer
Skyward IT Solutions, LLC — Centers for Medicare & Medicaid Services (CMS)
March 2026 – Present
- •Senior DevOps Engineer supporting 4 workstreams/applications at CMS, including an enterprise generative AI platform, architecting secure AWS infrastructure (EKS, VPC, IAM, KMS) for high-availability AI workloads
- •Designing and enforcing Infrastructure as Code strategies (Terraform, CloudFormation) and CI/CD pipelines with automated security scanning, quality gates, and policy enforcement
- •Embedding DevSecOps principles across the SDLC — SAST/DAST, container scanning, secrets management, and compliance automation in a federally regulated environment
- •Leading Kubernetes/EKS orchestration strategy with Helm chart management and cluster optimization for production AI workloads
- •Build, optimize, and leverage AI agents and automated workflows to increase developer productivity, streamline operations, and accelerate delivery across workstreams
- •Setup and maintain automated testing with modular Jenkins shared library pipelines
- •Leveraged Playwright for UI and API testing across the platform's test suites
- •Leveraged Locust for performance testing to validate scalability of AI workloads
- •Leveraged ZAP and SonarQube for security scans and code quality analysis
- •Automated artifact and release page generation in Confluence for test results
- •Mentoring engineers and driving automation-first culture, documentation excellence, and self-service developer enablement
Lead DevSecOps Engineer
Skyward IT Solutions, LLC — Small Business Administration (SBA)
September 2022 – March 2026
- •Containerized SBA CAFS application and automated deployment to Amazon EKS using GitHub Actions, Helm, and Helmfiles
- •Partnered with principal engineer James Edmundson to design and implement a Dynatrace observability configuration-as-code pipeline across AWS, Azure, and GCP using Monaco and Terraform, delivering fully automated, drift-free configuration management at scale
- •Engineered a GitHub Actions pipeline that provisions Dynatrace IAM credentials via Terraform, deploys Monaco configurations, and validates with smoke tests — eliminating manual intervention and enabling self-service observability onboarding across cloud tenants
- •Built audience-driven management zones, dashboards, and auto-tagging strategies for Project Managers, DevOps Engineers, RHEL/Windows Admins, and Product Owners, meaningfully reducing mean time to detect and resolve incidents
- •Integrated Dynatrace with Jira to automate incident routing and problem management, reducing alert-to-ticket response time and improving cross-team accountability
- •Automated recurring Operations activities with Ansible playbooks (AAP) and coached 40+ developers on DevOps best practices
Sr. Systems Engineer
Skyward IT Solutions, LLC — Small Business Administration (SBA)
July 2020 – September 2022
- •Expanded application performance monitoring across enterprise systems using SolarWinds APM/NPM and Dynatrace to improve visibility and reduce mean time to resolve
- •Implemented GitHub Enterprise to centralize source control and enable secure, collaborative development workflows
- •Provided DevOps training and mentorship to 40+ developers, promoting automation-first practices and CI/CD adoption
- •Designed documentation standards to ensure consistent, repeatable operational runbooks and knowledge transfer
- •Worked within Agile Scrum framework, participating in sprint planning, backlog grooming, and cross-functional delivery
Linux Security Administrator
Qivliq Federal Group LLC — Bureau of Indian Affairs (BIA)
September 2019 – July 2020
- •Administered Red Hat Enterprise Linux systems with a focus on security monitoring, system hardening, and patch management
- •Configured and maintained Snort intrusion detection sensors for continuous network security monitoring
- •Maintained authentication baselines and enforced STIG compliance across Linux infrastructure
- •Conducted vulnerability assessments and applied security patches to mitigate emerging threats
Red Hat Systems Administrator
Beyond Technologies LLC
July 2015 – September 2019
- •Managed VMware ESXi virtualization infrastructure, provisioning and maintaining virtual machines for enterprise workloads
- •Automated recurring administrative tasks with Ansible playbooks and Bash scripting to reduce manual overhead
- •Maintained Red Hat servers with regular security patching, configuration management, and backup procedures
- •Administered Red Hat Satellite for patch management and configuration deployment across the server fleet
Technical Skills & Proficiency
Expert
Advanced
Intermediate
Currently Developing
DevOps & Automation
GitHub Actions
95%expert
Ansible Automation Platform
90%expert
Docker
90%expert
Terraform
85%advanced
Jenkins
80%advanced
Bamboo
75%advanced
Podman
70%intermediate
Cloud & Infrastructure
AWS (EC2, EKS, S3, CloudWatch)
90%expert
Kubernetes
85%advanced
Helm
85%advanced
VMware ESXi
80%advanced
Red Hat KVM
75%advanced
Security & Compliance
DevSecOps Practices
90%expert
Zero Trust RBAC
85%advanced
STIG Compliance
85%advanced
System Hardening
85%advanced
NIST 800-53/800-171
80%advanced
CodeQL / SAST/DAST
75%advanced
Testing & Quality Assurance
Jenkins Shared Libraries
85%advanced
Playwright (UI & API)
80%advanced
Locust (Performance)
75%advanced
OWASP ZAP (DAST)
75%advanced
SonarQube (Code Quality)
80%advanced
Monitoring & Observability
DynaTrace
85%advanced
CloudWatch
85%advanced
SolarWinds NPM
80%advanced
SolarWinds APM
75%advanced
SolarWinds DPA
75%advanced
Zabbix
80%advanced
Prometheus
70%intermediate
Grafana
70%intermediate
Systems & Platforms
Red Hat Linux (RHEL 7/8)
95%expert
CentOS / Ubuntu
85%advanced
LDAP/FreeIPA
80%advanced
Atlassian Suite
85%advanced
Red Hat Satellite
80%advanced
Languages & Scripting
Bash
90%expert
Python
75%advanced
YAML / JSON
90%expert
Groovy
65%intermediate
SQL
70%intermediate
Emerging Technologies
Generative AI / AWS Bedrock
70%intermediate
AI/ML Workflow Automation
70%intermediate
LLM Integration (Claude, GPT)
65%intermediate
GitOps Methodologies
70%intermediate
Service Mesh (Istio)
40%developing