Open to opportunities

Hey! I'm Souradeep

Backend Engineer — Cloud

souradeep photo

About Me

I'm a Backend Engineer specializing in Cloud & Serverless who ships production systems end-to-end. Currently at Cloudain Pvt. Ltd. (Kolkata, India) as Backend Engineer — Cloud, and previously at Cloudain LLC (California, USA) as Software Engineer — Cloud & Backend. Across both roles I've owned backend services, authentication, and production infrastructure on AWS Lambda, API Gateway, DynamoDB, Cognito, IAM, S3, and SES.

I build event-driven, serverless architectures that scale securely — OTP-based auth on Cognito, Stripe payment integrations, per-tenant data isolation on DynamoDB, and structured logging for queryable audit trails. I've also shipped Securitain, an AWS-first multi-tenant cloud security platform, built conversational flows with Amazon Lex and Amazon Bedrock, and implemented secure cross-account access using AWS STS AssumeRole.

Beyond the cloud, I've delivered 35+ production websites in Next.js with optimized Core Web Vitals, plus internal admin consoles with role-based access control (RBAC). My engineering mindset is sharpened by 1500+ DSA problems across LeetCode, GeeksforGeeks, and Coding Ninjas — I've worked directly with founders and CEOs to translate priorities into shipped features across frontend, backend, and cloud deployment.

Open to Backend Engineer, Cloud Engineer, and SaaS Platform Engineer roles where I can help teams ship reliable, scalable software.

Journey

Education & Experience

My academic and professional journey

Total Professional Experience

Jul 2025 — Present

1 yr 2 mos& growing
Experience< 1 mo· Present

Backend Engineer — Cloud

Cloudain Pvt. Ltd.

Sep 2026 — PresentKolkata, India · Hybrid
  • Architected and owned a multi-tenant SaaS platform end-to-end on AWS serverless — Lambda, API Gateway, DynamoDB, Cognito, IAM, S3, SES — delivering backend services, auth, and production infrastructure as a core backend engineer.
  • Built OTP-based signup, login, and password-reset flows on AWS Cognito and integrated Stripe Checkout, enabling secure tenant onboarding and revenue collection without a dedicated auth or payments team.
  • Developed event-driven serverless REST APIs for contact forms and user workflows, with structured logging and DynamoDB-backed audit trails that gave the team queryable incident triage and monitoring.
  • Built an internal admin and product console with role-based access control (RBAC) and tenant-isolated data handling in Next.js + TypeScript, giving the team safe, audited control over customer data across tenants.
  • Designed multi-tenant data isolation patterns on DynamoDB (per-tenant partitioning + scoped IAM access) to keep customer data strictly separated as new tenants onboarded.
  • Configured custom-domain transactional email via AWS SES with Cloudflare DNS (SPF, DKIM, DMARC), keeping deliverability and tenant branding consistent across the platform.
  • Hardened the platform's security posture with least-privilege IAM roles, Cognito-issued JWT authorizers on API Gateway, and S3 bucket policies scoped per tenant.
  • Used AI-assisted development tools to accelerate engineering delivery while reviewing generated code, validating architecture, debugging integrations, and maintaining responsibility for production quality.
AWS LambdaAPI GatewayDynamoDBCognitoIAMS3SESNext.jsTypeScriptStripeServerlessRBAC
Experience1 yr 1 mo

Software Engineer — Cloud & Backend

Cloudain LLC

Jul 2025 — Aug 2026California, USA · Remote
  • Built and shipped three production-grade SaaS products across client onboarding, cloud security, and AI-powered customer engagement — contributing across requirements gathering, solution architecture, backend APIs, AWS integrations, database design, authentication, and deployment.
  • Developed the Cloudain/Growain Client Onboarding Platform, enabling clients to submit project requirements, timelines, budgets, deliverables, and onboarding information through structured digital workflows.
  • Implemented integrated payment and backend workflows within the onboarding platform to support customer registration, project initiation, payment processing, onboarding tracking, and end-to-end client lifecycle management.
  • Contributed to Securitain, an AWS-first multi-tenant cloud security platform designed to help organizations analyze cloud identity, access, permissions, exposure, findings, and compliance-related evidence.
  • Implemented secure AWS account onboarding for Securitain using customer-controlled, read-only IAM roles, unique External IDs, AWS STS AssumeRole, and short-lived temporary credentials.
  • Integrated AWS STS AssumeRole workflows to securely obtain temporary Access Key IDs, Secret Access Keys, and Session Tokens without storing long-lived customer AWS credentials.
  • Designed serverless AWS architectures using Lambda, API Gateway, DynamoDB, S3, SES, Cognito, IAM, and CloudFormation, owning infrastructure definition and deployment end-to-end.
  • Built conversational applications using Amazon Lex and Amazon Bedrock, integrating natural-language interactions with backend APIs and business workflows.
  • Delivered 35+ production marketing websites using Next.js, building responsive, high-performance interfaces with Three.js, Shadcn/UI, Tailwind CSS, and Framer Motion.
AWS LambdaAPI GatewayDynamoDBCognitoIAMSTSS3SESCloudFormationAmazon LexAmazon BedrockServerlessNext.jsTypeScript
Education

B.Tech in Electronics and Communication Engineering

Narula Institute of Technology, MAKAUT

Aug 2021 — Jun 2025
Kolkata, India

Graduated with CGPA 8.3 / 10. Strong foundation in electronics, communications, and software development.

CGPA 8.3/10ElectronicsCommunicationsSoftware
Recognition

Achievements

Milestones along the way

Recognition

Letter of Appreciation — Cloudain

Awarded by Cloudain (Kolkata, IndiaA) for outstanding contributions to Cloud & AI R&D, and for driving key initiatives such as HealthZee (healthcare) and LaInland (community).

December 2025
Community Impact

Inland Empire — Lead-Generation Platform

Designed and shipped a lead-generation website for the Inland Empire (California) community — recognized and appreciated by local residents and businesses for its usability and real-world impact on their outreach.

Cloudain
Top 5

Kritanj ’23 Coding Competition — Top 5

Secured a Top 5 rank in the coding competition organized by the Coding Club during Kritanj ’23 tech fest.

Tech Fest
1500+

1500+ DSA Problems Solved

LeetCode (800+) · GeeksforGeeks (450+, rank #25/2500+) · Coding Ninjas (250+) — relentless practice across arrays, graphs, DP, and system design fundamentals.

Across 3 platforms

Coding Profiles

My competitive programming journey

$ leetcode --profile souradeep
[ OK ] 800+ problems solved[ OK ] 365-day daily streak$ cat about.txt
Strong record across arrays, graphs, DP, and system design fundamentals — consistency turned into reflex.  
LeetCode800+ ProblemsVisit
$ gfg --profile souradeep
[ OK ] 450+ problems solved[ OK ] rank #25 / 2500+ peers$ cat about.txt
Ranked 25th out of 2500+ college peers on the institute leaderboard — consistently among the top performers in complex DSA challenges.  
GeeksforGeeksRank #25 / 2500+Visit
$ code360 --profile souradeep
[ OK ] 250+ problems solved[ OK ] advanced dsa tracks$ cat about.txt
Solved 250+ problems on Code360, tackling advanced tracks across recursion, trees, graphs, and dynamic programming.  
Coding Ninjas250+ ProblemsVisit
Featured Project

Securitain

A multi-tenant cloud security platform that connects AWS accounts, continuously scans IAM posture, and turns findings into audit-ready evidence.

Securitain logo

Securitain — A Cloud Security Platform

AWS IAM security posture management · built at Cloudain

Multi-tenant AWS onboarding

Secure cross-account connection through a CloudFormation audit role using a unique external ID and STS AssumeRole — read-only and least-privilege by default, with capability validation before the first scan.

IAM posture scanning

A scan engine collects users, roles, groups, policies, access keys, credential reports and resource policies across an account, then risk-scores every identity with a transparent reason trail.

Evidence-backed findings

Generates stable, deduplicated findings for admin access, wildcard policies, missing MFA, external trust, public resource policies and privilege-escalation paths — each with severity, evidence and remediation guidance.

Compliance & audit exports

Maps findings to SOC 2, ISO 27001, NIST 800-53, CIS AWS Benchmark and HIPAA, with evidence management and attestation packages that make audit prep repeatable.

Governed remediation

Human-approved remediation workflow with dry-run safety gates and a full activity timeline of every status change, plus an exception / risk-acceptance flow so nothing is silently deleted.

Secure SaaS foundation

Strict tenant isolation enforced at both the route and query layers, JWT auth with RBAC, and Stripe-based billing with plan / entitlement gating.

ReactViteTypeScriptFastAPISQLAlchemyPostgreSQLBoto3AWS STSAWS IAMIAM Identity CenterAWS Organizations / SCPsPermission BoundariesLeast-Privilege PoliciesExternal IDCredential ReportsResource PoliciesCloudFormationCloudTrailAWS KMSAmazon S3JWT AuthorizersStripe

Tech Stack

Technologies and tools I work with

Languages

JavaScript
TypeScript
Python
C++

Frontend

React.js
Next.js
Redux
TailwindCSS
HTML
CSS

Backend

Node.js
REST APIs
Serverless Architecture

Database

DynamoDB
PostgreSQL
MongoDB
MySQL

Cloud (AWS / Cloudflare)

AWS Lambda
API Gateway
DynamoDB
Cognito
S3
SES
Amplify
Cloudflare

Authentication

JWT
OTP-based Auth (Cognito)
Clerk

Payments

Stripe
Razorpay

Tools

Git
GitHub
VS Code
Postman
"Arise, awake, and stop not until the goal is reached"
- Swami Vivekananda
Souradeep profile

Souradeep Ghosh

Software Engineer — Cloud & Backend

Copyright © 2026 Souradeep Ghosh. All rights reserved.