Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Add copy buttons to all
 blocks
(function() {
function addCopyButtons() {
document.querySelectorAll('pre code').forEach(function(codeBlock) {
if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;
codeBlock.parentElement.setAttribute('data-copy-added', 'true');
var btn = document.createElement('button');
btn.textContent = 'Copy';
btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';
btn.onmouseover = function() { this.style.opacity = '1'; };
btn.onmouseout = function() { this.style.opacity = '0.7'; };
btn.onclick = function() {
navigator.clipboard.writeText(codeBlock.textContent).then(function() {
btn.textContent = 'Copied!';
setTimeout(function() { btn.textContent = 'Copy'; }, 1500);
});
};
codeBlock.parentElement.style.position = 'relative';
codeBlock.parentElement.appendChild(btn);
});
}
addCopyButtons();
// Re-run on dynamic content
var observer = new MutationObserver(addCopyButtons);
observer.observe(document.body, { childList: true, subtree: true });
})();
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Force GitHub README to respect dark mode (function() { var style = document.createElement('style'); style.textContent = ' .markdown-body { color-scheme: dark light; } .markdown-body pre { background: #161b22 !important; } .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; } .markdown-body table th, .markdown-body table td { border-color: #30363d !important; } .markdown-body img { background: #0d1117; } .markdown-body blockquote { border-left-color: #8b949e; } .markdown-body hr { border-color: #30363d; } '; document.head.appendChild(style); })(); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Highlight search terms from Google/DuckDuckGo/Bing referrer (function() { var ref = document.referrer; var terms = []; if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) { var url = new URL(ref); var q = url.searchParams.get('q') || url.searchParams.get('p'); if (q) { terms = q.split(/\s+/).filter(function(t) { return t.length > 2; }); } } if (terms.length === 0) return; var style = document.createElement('style'); style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }'; document.head.appendChild(style); function highlight(node) { if (node.nodeType === 3) { // text node var text = node.textContent; var found = false; terms.forEach(function(term) { var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\]\\]/g, '\\') + ')', 'gi'); if (regex.test(text)) { found = true; var frag = document.createDocumentFragment(); var parts = text.split(regex); parts.forEach(function(part, i) { if (i % 2 === 0) { frag.appendChild(document.createTextNode(part)); } else { var span = document.createElement('span'); span.className = 'userscript-highlight'; span.textContent = part; frag.appendChild(span); } }); node.parentNode.replaceChild(frag, node); } }); } else if (node.nodeType === 1 && node.childNodes) { // element var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT']; if (!skipTags.includes(node.tagName)) { Array.from(node.childNodes).forEach(highlight); } } } highlight(document.body); // Re-highlight on dynamic content var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1 || node.nodeType === 3) highlight(node); }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Strip utm_, fbclid, gclid, etc. from all links on page (function() { var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content', 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid', 'ref', 'ref_src', 'source', 'medium', 'campaign']; function cleanUrl(url) { try { var u = new URL(url, window.location.origin); var changed = false; trackingParams.forEach(function(p) { if (u.searchParams.has(p)) { u.searchParams.delete(p); changed = true; } }); return changed ? u.toString() : url; } catch (e) { return url; } } function cleanLinks() { document.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } cleanLinks(); var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1) { if (node.tagName === 'A') cleanLinks(); node.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + ' devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Auto-enable theater mode on YouTube (function() { function tryTheater() { var btn = document.querySelector('button[aria-label="Theater mode"], ytd-player #player button[title="Theater mode"]'); if (btn && !btn.classList.contains('activated')) { btn.click(); } } // Try immediately tryTheater(); // Try after navigation (SPA) var lastUrl = location.href; setInterval(function() { if (location.href !== lastUrl) { lastUrl = location.href; setTimeout(tryTheater, 500); } }, 1000); // Also try on player load var observer = new MutationObserver(tryTheater); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Remove or un-stick sticky/fixed headers that block content (function() { function unstick() { document.querySelectorAll('header, nav, [role="banner"], .header, .navbar, .sticky, .fixed-top, [style*="position: fixed"], [style*="position:sticky"]').forEach(function(el) { if (el.style.position === 'fixed' || el.style.position === 'sticky' || getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') { el.style.position = 'static'; el.style.top = 'auto'; el.style.zIndex = 'auto'; } }); } unstick(); var observer = new MutationObserver(unstick); observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] }); })(); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…

, 'i'); if (__m === '*' || __re.test(location.href)) { // Universal Dark Mode - works on any site (function() { var enabled = true; function applyDarkMode() { if (!enabled) return; // Create style element if it doesn't exist var style = document.getElementById('universal-dark-mode-style'); if (!style) { style = document.createElement('style'); style.id = 'universal-dark-mode-style'; document.head.appendChild(style); } // Dark mode CSS - inverts colors but preserves images/video style.textContent = ' /* Invert everything except media */ html { filter: invert(1) hue-rotate(180deg) !important; background: #1a1a2e !important; } /* Restore images, videos, iframes, canvas */ img, video, iframe, canvas, svg, picture, [style*="background-image"] { filter: invert(1) hue-rotate(180deg) !important; } /* Preserve specific elements that should not be inverted */ .no-dark-mode, .no-dark-mode *, [data-theme="light"], [data-theme="light"], .ace_editor, .ace_editor *, .CodeMirror, .CodeMirror *, .monaco-editor, .monaco-editor *, .markdown-body pre, .markdown-body pre *, .highlight, .highlight *, pre code, pre code * { filter: none !important; } /* Fix common UI elements */ .modal, .popup, .dropdown-menu, .tooltip, .popover { filter: invert(1) hue-rotate(180deg) !important; background: #2d2d44 !important; border-color: #444 !important; } /* Scrollbars */ ::-webkit-scrollbar { background: #1a1a2e !important; } ::-webkit-scrollbar-thumb { background: #444 !important; } ::-webkit-scrollbar-thumb:hover { background: #555 !important; } /* Selection */ ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; } ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; } '; } function removeDarkMode() { var style = document.getElementById('universal-dark-mode-style'); if (style) style.remove(); } // Toggle with Alt+Shift+D document.addEventListener('keydown', function(e) { if (e.altKey && e.shiftKey && e.key === 'D') { e.preventDefault(); enabled = !enabled; if (enabled) { applyDarkMode(); console.log('[Universal Dark Mode] Enabled'); } else { removeDarkMode(); console.log('[Universal Dark Mode] Disabled'); } } }); // Apply on load applyDarkMode(); // Re-apply on dynamic content var observer = new MutationObserver(function(mutations) { if (enabled && !document.getElementById('universal-dark-mode-style')) { applyDarkMode(); } }); observer.observe(document.head, { childList: true }); console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle'); })(); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })(); devsocket (Sudheer Kumar ) · GitHub
Skip to content
View devsocket's full-sized avatar

Block or report devsocket

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devsocket/README.md

Venkata Sudheer Kumar — @devsocket

Solutions Architect · Azure · Distributed Systems

I work on cloud platforms — mostly on Azure — where things need to actually run, scale, and stay manageable over time.

Over the last 10+ years, I’ve moved from backend engineering into architecture, and these days I spend most of my time designing systems, making trade-offs, and helping teams build things that don’t fall apart in production.

I am based in Canada(🇨🇦)

Open to Senior / Principal Solutions Architect roles


What I focus on

A lot of my work is around Azure-based platform architecture — especially for systems that need:

  • clear separation between environments (dev / prod)
  • strong identity and security boundaries
  • predictable cost
  • and infrastructure that teams can actually work with

In practice, that means:

  • designing landing zones and platform foundations
  • deciding between options like hub-spoke vs Virtual WAN, or simple vs “enterprise” setups
  • building reusable Terraform modules so teams don’t reinvent everything
  • helping teams move from legacy setups to something more cloud-native (without breaking everything)

I care quite a bit about keeping things simple where possible, and only adding complexity when there’s a real reason.


Featured projects

terraform-landing-zone-demo

A full Azure landing zone built with Terraform and deployed end-to-end.

This isn’t just a diagram — it’s something I’ve actually run and validated.

Includes:

  • Management groups and multi-subscription setup (platform, connectivity, shared, dev, prod)
  • Hub-spoke networking with centralized DNS
  • Shared services (ACR, Key Vault, Storage, Log Analytics)
  • AKS behind Application Gateway (WAF + AGIC)
  • GitHub Actions with OIDC (no stored credentials)
  • Workload identity on AKS (no secrets in pods)

I’ve also documented the reasoning behind the setup — things like why I chose hub-spoke over Virtual WAN, why I didn’t include Azure Firewall, and how state is structured in Terraform.


terraform-common-modules

A set of reusable Terraform modules for Azure.

Built this mainly to avoid copying the same infrastructure code across environments and projects.

Modules include:

  • hub and spoke VNets
  • private DNS
  • ACR, Key Vault, Log Analytics

Design choices are opinionated:

  • private endpoints by default
  • RBAC instead of access policies
  • consistent inputs/outputs

spring-boot-ecommerce

A backend microservices project using:

  • Spring Boot
  • Kafka
  • PostgreSQL
  • Kubernetes

Includes Terraform and CI/CD as well — mainly something I built to experiment with event-driven patterns and deployment setups.


Certifications

  • Azure Solutions Architect Expert (AZ-305)
  • Azure Administrator (AZ-104)

Background

11+ years in software engineering and cloud, mostly in backend and distributed systems.

Recently worked on a large-scale platform modernization in Canada — moving a legacy system to Azure (AKS, Kafka, Terraform, Cosmos DB), where the focus was less on “greenfield perfection” and more on making things work under real constraints.


Tech I work with

Cloud & Architecture Azure · Landing Zones · System Design · Distributed Systems

Infrastructure Terraform · Kubernetes · AKS · Helm · GitHub Actions · OIDC

Application Java · Spring Boot · Kafka · PostgreSQL · Cosmos DB · REST APIs · OAuth2


Connect

LinkedIn: https://linkedin.com/in/sudheer44 GitHub: https://github.com/devsocket

Canada PR holder

Popular repositories Loading

  1. ecommerce ecommercePublic

    E-commerce platform with microservices(Springboot, Kafka, Postgres) and full CI/CD on Kubernetes using GitHub Actions

    Java 2 1

  2. terraform-landing-zone-demo terraform-landing-zone-demoPublic

    HCL 1

  3. terraform-common-modules terraform-common-modulesPublic

    HCL 1

  4. GitPiletProject GitPiletProjectPublic

    Testing Git Initial Settings

  5. devsocket devsocketPublic

    Software Architect & DevOps Enthusiast building scalable systems with Java, Spring Boot, Kafka, and Kubernetes. Passionate about cloud-native design, Infrastructure as Code (Terraform, Helm), Agent…