Cloud Security · Automation · Infrastructure as Code

Jerome Hunter

Senior DevSecOps Cloud Engineer building secure, automated infrastructure across AWS and GCP, with security built into every Terraform module and CI/CD pipeline from day one.

Core Stack

AWSAmazon Bedrock GCPTerraform DockerJenkins GitHub ActionsGitLab CI PythonBash LinuxGroovy SonarQubeSnyk KubernetesArgoCD GitleaksTruffleHog Prowler

Projects

Cloud Portfolio Platform (this site)

The site you're reading, built as a production-style platform: dev, test, and prod environments on S3 and CloudFront, each with its own domain, ACM certificate, and a TLS 1.2 minimum. Pull requests get read-only Terraform plans; merges promote dev → test automatically, and prod waits for manual approval.

Security is built in: short-lived GitHub OIDC roles per environment, scoped to their own buckets and domain names with no IAM permissions, plus Gitleaks, Checkov, Trivy (pinned by commit SHA), and an ephemeral SonarQube server on every change.

Terraform · GitHub Actions · OIDC · CloudFront · ACM · Route 53 · View the code →

AI-Powered SOAR Agent

Security orchestration agent built on Amazon Bedrock that analyzes AWS WAF findings, assesses threat severity, and orchestrates response actions. Designed to expand to additional security data sources.

Amazon Bedrock · AWS WAF · Security Automation

Certifications

AWS Solutions Architect – Associate

Amazon Web Services

Terraform Associate

HashiCorp

Contact

GitHub: github.com/jhuntersr1-first