About Me
Software engineer with 7+ years of experience, transitioned from game development into infrastructure, DevOps, and — most recently — security-focused platform engineering. Currently a DevOps Engineer at Bluebik, where my scope has grown from cloud infrastructure and reliability into DevSecOps: building the security controls around the platforms I run, not just the platforms themselves.
I design and manage multi-account AWS infrastructure (dev/sit/uat/prod) as code with Terraform, and build CI/CD pipelines with GitHub Actions, Jenkins, and GitLab CI/CD across those accounts. On the platform side, I run container orchestration with Docker and Kubernetes (EKS), API gateway management with Kong, and identity management with Keycloak, backed by observability through CloudWatch and Grafana.
On the security side, I own WAF rule management, GuardDuty and Security Hub findings, IAM least-privilege design, and Secrets Manager rotation — plus a cross-region disaster recovery architecture (Aurora Global Database, S3 replication, VPC endpoints) so the platform survives a regional failure, not just day-to-day load.
