Selected engineering work
Production-grade case studies
Each project is documented with architecture decisions, trade-offs, delivery workflow, and operational design — not just code.
01 / Project↗
Cloud-Native Static Platform on AWS
Private S3 origin with CloudFront CDN, Origin Access Control, ACM HTTPS, and Route 53 DNS. Fully provisioned with Terraform and deployed via GitHub Actions.
AWS S3CloudFrontTerraformRoute 53ACMNext.js
02 / Project↗
Kubernetes Delivery Platform
Containerised application delivery using Deployments, Services, Ingress, health probes, and Helm packaging. Second deployment track running parallel to the AWS static path.
KubernetesDockerHelmIngressCI/CD
03 / Project↗
Dual-Track CI/CD Delivery Pipeline
GitHub Actions workflow with lint, type-check, test, security scan, and two deploy paths: S3/CloudFront and Kubernetes. IAM OIDC for keyless AWS authentication.
GitHub ActionsIAM OIDCAWSDockerTypeScript
Core capabilities
A practical toolset built across cloud, security, and platform engineering
The full stack from IAM policies to ingress controllers.
Cloud & Infrastructure
AWS EC2S3CloudFrontIAMRoute 53ACMGuardDutySecurity HubAzure
Infrastructure as Code
TerraformModular ArchitectureState ManagementEnv Separation
Containers & Orchestration
DockerKubernetesDeploymentsServicesIngressHelmHealth Probes
CI/CD & Automation
GitHub ActionsJenkinsAWS CodePipelineCodeBuildIAM OIDCBuild PipelinesQuality GatesBashPowerShell
Security & Compliance
IAM OIDCOACZero TrustTenable.ioMicrosoft SentinelMITRE ATT&CKCIS BenchmarksISO 27001GDPR
Systems & Platform
Linux (Ubuntu, CentOS)Next.jsTypeScriptAnsibleKQLMaven
Architecture snapshot
Two deployment tracks, one platform
The primary path uses AWS static delivery for efficiency. The second path is Kubernetes-based to demonstrate orchestration and platform operations.
2Deployment tracks
0Stored credentials
1Unified pipeline
5Quality gates
Writing
Engineering reasoning, documented
Short notes on the architectural decisions made while building this platform — not documentation summaries, but implementation experience.
Security · IAM · 7 min readUsing GitHub OIDC with AWS for keyless deployment security
→AWS · Architecture · 5 min readWhy I used S3 + CloudFront over traditional hosting
→Kubernetes · Reliability · 5 min readReadiness vs liveness probes in Kubernetes — what I learned
→Kubernetes · Architecture · 6 min readWhy Kubernetes is a second deployment track, not the primary one
→CV / Résumé
Platform & DevOps Engineer · Cloud Security Specialist
5+ years · AWS · Terraform · Kubernetes · GitHub Actions · Security
PDF · Updated May 2026
