- Platform engineering on HIPAA regulated AWS infrastructure handling PHI for a US telenutrition company.
Akhil Adarsh
Suryapagula
Senior Platform Engineer · regulated AWS infrastructure. Eight years keeping HIPAA regulated platforms alive: connected dialysis devices at Baxter, telenutrition at Foodsmart. Terraform · EKS · IAM governance · 2x Chairman's Award.
Downtime measured in patients, not pages.
The short version of eight years on regulated AWS.
I spent seven years at Baxter International keeping AWS infrastructure alive for home dialysis devices in 500+ US hospitals, then built and led the 13 engineer platform team that ran it.
My instinct is to pave roads, not blaze trails: IAM permission boundaries before someone escalates privileges, CloudTrail wired into Splunk before someone asks for an audit trail, Terraform modules before someone deploys by hand.
Today I do the same work at Foodsmart, a US telenutrition platform, on HIPAA regulated AWS infrastructure handling PHI, while publishing regulated cloud reference architectures in the open.
git log --follow career
Nine years, one discipline: every release shipped to regulated healthcare. Tap a commit to expand.
- Deliberate break after seven years and a corporate spin off, used to move from a managerial seat back to hands on depth.
- Translated production AWS patterns into Terraform: module composition, remote state, multi account structure.
- Modernised the pipeline toolkit around GitHub Actions: OIDC to IAM trust chains, environment promotion gates, Checkov and Trivy as blocking CI gates.
- Studied EU regulatory frameworks (NIS2, DORA) and how they map to concrete platform controls.
- Grew the platform team from 3 to 13 engineers across SRE, security, and IaC. Rebuilt on call so no engineer was paged twice in the same week.
- Maintained 99.99% uptime on HIPAA regulated AWS serving dialysis devices in 500+ US hospitals.
- Led the EC2 to EKS migration of the Sharesource dialysis platform on Helm, zero customer facing downtime. Chairman's Award 2023.
- Established DevSecOps as standard: Checkov CI gates, Trivy image scanning, Falco and OPA Gatekeeper runtime and admission control on EKS.
- Mandated IAM permission boundaries across all accounts; standardised access via Okta SSO. Zero privilege escalation incidents for the entire tenure.
- Stewarded SOC2 Type II and annual HIPAA audits; automated evidence collection turned audit prep from fire drill into routine.
- Built Baxter's AWS healthcare platform from day zero: CloudFormation IaC, CodePipeline CI/CD, CIS hardened RHEL golden AMIs via Packer.
- Wrote the Python/boto3 automation validating GxP / FDA IQ-OQ compliance, turning a multi week paperwork exercise into a repeatable one button job.
- Stood up Splunk + Dynatrace observability; wired CloudTrail into Kinesis for real time security event streaming.
- Chairman's Award 2019 for infrastructure on the Homechoice Claria peritoneal dialysis device, enabling remote patient monitoring at scale.
- Joined a greenfield AWS engagement with no prior cloud maturity; built the IaC, CI/CD, and monitoring foundations everything else ran on for seven years.
- Delivery quality led to direct conversion to a permanent role, bypassing the external hiring loop.
Built in the open.
Reference architectures for regulated cloud. Production patterns, published with working code.
Regulated AWS landing zone
A multi account AWS organisation in Terraform, built the way a HIPAA auditor wants to find it: SCPs, centralised CloudTrail, KMS baselines, IAM permission boundaries, Config rules. Every control mapped in the README to the regulation it satisfies.
EKS platform reference
A production shaped Kubernetes platform: EKS provisioned in Terraform, GitOps delivery with ArgoCD, policy enforcement with Kyverno, Prometheus and Grafana observability. The operating model I ran for dialysis devices, distilled into something you can clone.
$ git log --follow · the commit history is the point. Watch the work happen, not just the result.
Tools I actually reach for.
Amber pills are daily drivers. The rest I'm fluent in and use situationally.
Certifications, earned.
Two in flight for 2026, chosen because the exam maps onto production work, not the other way round.
HashiCorp Terraform Associate
hashicorp · 003 · target aug 2026Certified Kubernetes Administrator
cncf · cka · target dec 2026AWS Solutions Architect · Associate
amazon web servicesAWS Amazon EKS Accreditation
amazon web servicesGenerative AI Fundamentals
aws academyAI Fluency · Framework & Foundations
anthropic · 2026Sharesource Modernisation ★ chairman's award
Led the AWS migration of critical home dialysis infrastructure, EC2 to EKS on Helm, zero customer facing downtime. Managed a 13 engineer team through a complex cutover in a fully regulated environment.
Homechoice Claria Sharesource ★ chairman's award
Infrastructure for the Homechoice Claria peritoneal dialysis device, enabling remote patient monitoring at scale. Built from greenfield in the first year of my Baxter tenure.
Building something regulated?
Platform and Platform Lead roles. Netherlands, Germany, Ireland. Full relocation.