I'm a Backend Engineer specializing in Cloud & Serverless who ships production systems end-to-end. Currently at Cloudain Pvt. Ltd. (Kolkata, India) as Backend Engineer — Cloud, and previously at Cloudain LLC (California, USA) as Software Engineer — Cloud & Backend. Across both roles I've owned backend services, authentication, and production infrastructure on AWS Lambda, API Gateway, DynamoDB, Cognito, IAM, S3, and SES.
I build event-driven, serverless architectures that scale securely — OTP-based auth on Cognito, Stripe payment integrations, per-tenant data isolation on DynamoDB, and structured logging for queryable audit trails. I've also shipped Securitain, an AWS-first multi-tenant cloud security platform, built conversational flows with Amazon Lex and Amazon Bedrock, and implemented secure cross-account access using AWS STS AssumeRole.
Beyond the cloud, I've delivered 35+ production websites in Next.js with optimized Core Web Vitals, plus internal admin consoles with role-based access control (RBAC). My engineering mindset is sharpened by 1500+ DSA problems across LeetCode, GeeksforGeeks, and Coding Ninjas — I've worked directly with founders and CEOs to translate priorities into shipped features across frontend, backend, and cloud deployment.
Open to Backend Engineer, Cloud Engineer, and SaaS Platform Engineer roles where I can help teams ship reliable, scalable software.
My academic and professional journey
Total Professional Experience
Jul 2025 — Present
Cloudain Pvt. Ltd.
Cloudain LLC
Narula Institute of Technology, MAKAUT
Graduated with CGPA 8.3 / 10. Strong foundation in electronics, communications, and software development.
Milestones along the way
Awarded by Cloudain (Kolkata, IndiaA) for outstanding contributions to Cloud & AI R&D, and for driving key initiatives such as HealthZee (healthcare) and LaInland (community).
Designed and shipped a lead-generation website for the Inland Empire (California) community — recognized and appreciated by local residents and businesses for its usability and real-world impact on their outreach.
Secured a Top 5 rank in the coding competition organized by the Coding Club during Kritanj ’23 tech fest.
LeetCode (800+) · GeeksforGeeks (450+, rank #25/2500+) · Coding Ninjas (250+) — relentless practice across arrays, graphs, DP, and system design fundamentals.
My competitive programming journey
$ leetcode --profile souradeep [ OK ] 800+ problems solved[ OK ] 365-day daily streak$ cat about.txt Strong record across arrays, graphs, DP, and system design fundamentals — consistency turned into reflex.
$ gfg --profile souradeep [ OK ] 450+ problems solved[ OK ] rank #25 / 2500+ peers$ cat about.txt Ranked 25th out of 2500+ college peers on the institute leaderboard — consistently among the top performers in complex DSA challenges.
$ code360 --profile souradeep [ OK ] 250+ problems solved[ OK ] advanced dsa tracks$ cat about.txt Solved 250+ problems on Code360, tackling advanced tracks across recursion, trees, graphs, and dynamic programming.
A multi-tenant cloud security platform that connects AWS accounts, continuously scans IAM posture, and turns findings into audit-ready evidence.
AWS IAM security posture management · built at Cloudain
Multi-tenant AWS onboarding
Secure cross-account connection through a CloudFormation audit role using a unique external ID and STS AssumeRole — read-only and least-privilege by default, with capability validation before the first scan.
IAM posture scanning
A scan engine collects users, roles, groups, policies, access keys, credential reports and resource policies across an account, then risk-scores every identity with a transparent reason trail.
Evidence-backed findings
Generates stable, deduplicated findings for admin access, wildcard policies, missing MFA, external trust, public resource policies and privilege-escalation paths — each with severity, evidence and remediation guidance.
Compliance & audit exports
Maps findings to SOC 2, ISO 27001, NIST 800-53, CIS AWS Benchmark and HIPAA, with evidence management and attestation packages that make audit prep repeatable.
Governed remediation
Human-approved remediation workflow with dry-run safety gates and a full activity timeline of every status change, plus an exception / risk-acceptance flow so nothing is silently deleted.
Secure SaaS foundation
Strict tenant isolation enforced at both the route and query layers, JWT auth with RBAC, and Stripe-based billing with plan / entitlement gating.
Technologies and tools I work with