Executive Summary
Cloud Infrastructure and Platform Engineering specialist with 20+ years of experience shipping scalable, secure, and resilient systems across SaaS environments. Passionate about architecting cloud-native platforms, implementing zero trust security, embedding SRE best practices, and modernizing infrastructure to align with business goals. Loves mentoring engineers, leading migrations, and building observability frameworks that actually reveal what's happening. Combines deep technical depth with a collaborative, hands-on mindset that enjoys solving gnarly infrastructure problems and optimizing performance at scale. Currently employed and open to the right opportunity.
Technical Skills & Stack
Cloud Platforms & Architecture
AWS
Azure
GCP
High Availability & Scalability
VPC Design
Infrastructure as Code & Automation
Terraform
Ansible
CloudFormation
AWS CDK
Python
Go
SaltStack
Security & Compliance
Cloud Security
Threat Modeling
Qualys
IAM
SAST/DAST
Splunk (SIEM)
PCI DSS 4.0
SOC2
HIPAA
SRE & DevOps Practices
Site Reliability Engineering (SRE)
CI/CD Pipelines
Observability
Prometheus/Grafana
ELK Stack
Incident Management
SLO/SLA Tracking
GitHub Actions
Containerization & Virtualization
Docker
Kubernetes (EKS/AKS)
Helm
VMware vSphere/vSAN
Professional Experience
- Maintained hands-on technical depth by conducting threat modeling and architectural security reviews for a new internal developer platform, ensuring secure-by-design principles across microservices and cloud-native workloads.
- Applied expertise in Kubernetes, IAM, and CI/CD pipelines to support platform modernization and developer self-service.
- Collaborated with security and engineering teams to implement least-privilege access, encrypted service-to-service communication, and automated compliance checks.
- Managed the full vulnerability lifecycle using Qualys, AWS GuardDuty, and Security Hub to detect, prioritize, and remediate risks across multi-cloud infrastructure.
- Automated security workflows using Terraform, CDK, and Lambda to enforce guardrails and reduce manual intervention.
- Supported audit readiness for PCI DSS 4.0, SOC 2, and HIPAA by generating evidence, writing controls, and collaborating directly with external auditors.
- Led a nine-person infrastructure team, building on-call rotations, incident response playbooks, and runbooks to ensure platform reliability and uptime.
- Designed the security architecture for a Heroku-to-AWS migration, including VPC segmentation, IAM policies, and KMS-based encryption.
- Built observability pipelines using New Relic, ELK, and Prometheus to improve system health visibility and reduce MTTR.
- Partnered with DevOps and engineering teams to embed SRE principles into the SDLC, including SLIs/SLOs, chaos testing, and deployment automation.
- Led systems engineering and production support during a multi-year migration from on-prem to hybrid cloud (AWS/Azure), reducing infrastructure costs by nearly half.
- Deployed centralized identity and access management using Azure AD, Okta, MFA, and SSO for 300+ employees and up to 5,000 sales contractors.
- Hardened Linux and Windows environments using CIS Benchmarks, patch automation, and configuration management with SaltStack, Jamf and Intune.
- Designed and maintained a 500TB+ vSAN storage system for on premise workloads, integrated with AWS Storage Gateway and Veeam; for HA, backup, and disaster recovery.
Additional Professional Experience
IT Architect, Mycore LLC
Sep 2014 – Sep 2017
Senior Systems Engineer, Dynaquest MSP
Apr 2010 – Sep 2014
Senior Network Engineer, Conexus, Inc.
Nov 2008 – Mar 2010
Build/Release Engineer, Bungee Labs, Inc.
Mar 2002 – Sep 2008
QA Engineer, Citrix Systems Inc.
Jul 1997 – Feb 2002
Education & Certifications
Certifications
AWS Certified Solutions Architect – Professional
AWS Certified Security – Specialty
AWS Certified SysOps Administrator
AWS Certified Developer
AWS Certified Solutions Architect – Associate
Okta Certified Professional
GitHub Certified - Actions
VMware Certified Professional (VCP)
Microsoft Certified Systems Engineer (MCSE)
Additional Training
Certified Wilderness First Responder - University of Utah School of Medicine
Military Service
E4, United States Army Reserve, Honorable Discharge