Senior DevSecOps Cloud Engineer building secure, automated infrastructure across AWS and GCP, with security built into every Terraform module and CI/CD pipeline from day one.
The site you're reading, built as a production-style platform: dev, test, and prod environments on S3 and CloudFront, each with its own domain, ACM certificate, and a TLS 1.2 minimum. Pull requests get read-only Terraform plans; merges promote dev → test automatically, and prod waits for manual approval.
Security is built in: short-lived GitHub OIDC roles per environment, scoped to their own buckets and domain names with no IAM permissions, plus Gitleaks, Checkov, Trivy (pinned by commit SHA), and an ephemeral SonarQube server on every change.
Security orchestration agent built on Amazon Bedrock that analyzes AWS WAF findings, assesses threat severity, and orchestrates response actions. Designed to expand to additional security data sources.
Amazon Web Services
HashiCorp
GitHub: github.com/jhuntersr1-first