About Me

Cloud Engineer with hands-on experience resolving 400+ production incidents for Fortune 500 companies across AWS networking infrastructure. Reduced customer costs by $28K+ annually through architectural optimizations. Built training curriculum adopted by 10+ engineers.

Certifications

  • AWS Solutions Architect Associate
  • AWS Cloud Practitioner

Technical Expertise

Cloud & InfrastructureNetworking & SecurityDevelopment
AWS (VPC, EC2, Lambda, EKS, S3, RDS, CloudFormation)Transit Gateway, Network Firewall, NAT GatewayPython, Bash, JavaScript, C++
Route 53, WAF, Direct Connect, PrivateLinkTCP/IP, DNS, BGP, VPN, SSL/TLSTerraform, Docker, Kubernetes
CloudWatch, IAM, Fault Injection SimulatorWireshark, tcpdump, VPC Flow LogsGit, CI/CD, REST APIs

Education

University of Michigan, Ann Arbor - B.S. Computer Science (May 2025)
Coursework: Computer Networks, Distributed Systems, Operating Systems, Machine Learning, Database Systems

Experience

Amazon Web Services

Cloud Engineer - Networking | June 2025 - Present

92% five-star CSAT | 159% resolution targets

  • Architected hub-and-spoke solution implementing centralized Network Firewall inspection; configured Transit Gateway appliance mode, stateful rule groups with Suricata syntax, and symmetric routing across 3 AZs
  • Identified $2,400/month cost savings by analyzing VPC Flow Logs to trace 1.2TB/day NAT Gateway traffic; recommended PrivateLink architecture reducing cross-AZ data transfer
  • Led Sev1 incident response for EKS cluster connectivity failure; correlated CloudWatch Logs with VPC Flow Logs to isolate Network Firewall drop action within 45 minutes
  • Created WAF training labs for SQLi tuning, rate-based rules, and bot mitigation; curriculum adopted by 10+ engineers reducing onboarding time 30%
  • Authored 15+ knowledge base articles on Network Firewall rule evaluation, NAT Gateway optimization, and Transit Gateway routing

Cloud Engineer Intern - Analytics | Summer 2023

  • Resolved production cases for Athena, Glue, and Cognito - query optimization (45min to 3min), ETL memory allocation, cross-account IAM trust policies
  • Deployed multi-region 3-tier application with Route 53 health checks, Auto Scaling, RDS Multi-AZ; validated 15-minute RTO using Fault Injection Simulator
  • Built serverless text-to-speech app using Lambda, API Gateway, DynamoDB, SNS with X-Ray tracing

Becht Engineering

Software Engineering Intern | Summer 2022

  • Rebuilt analytics platform for 15+ refinery sites; optimized LINQ queries reducing page load from 8s to 1.2s for 500+ concurrent users
  • Delivered 73% traffic increase via ASP.NET Core dashboards with drill-down filtering

Projects

This site runs on a multi-tier AWS architecture with 6 Route 53 routing policies, CloudFront, ALB, WAF, and S3 failover.
View the full architecture breakdown →

🏗️ This Site: AWS Architecture

Personal Project | 2025

Multi-tier architecture: CloudFront → ALB → EC2 with S3 failover origin, WAF protection, CloudWatch alarms + SNS alerts, and all 6 Route 53 routing policies. Over-engineered for learning enterprise patterns.


SmartDose IoT Platform

Project Lead - University of Michigan | 2023-2024

1 of 10 projects selected for $15K funding from 50+ submissions. React Native + Node.js + DynamoDB + ESP32 achieving <500ms BLE latency.

AI/ML Governance Research

Operator ICT - Prague | Summer 2024

Governance framework for City of Prague analyzing 12 smart city implementations. $200K-$1.2M roadmaps presented to city CTO.

Wine Price Predictor

Machine Learning | Spring 2024

CatBoost model on 130K reviews achieving 98% accuracy. SHAP analysis + Streamlit deployment.