Available for hire — Fort Lauderdale / Remote

Cloud
Security
Specialist

AWS · Cloud Security · Terraform · Linux · Cloud Security Architect track

Operator turned engineer. I scaled a field service company 375% through automation, then decided I wanted to build the infrastructure others depend on. AWS, cloud security, infrastructure as code — production grade.

View Projects → GitHub ↗
375%
Growth via
automation
5
Industry
certifications
M.S.
Cyber Defense
NSU · 2027
SAA
AWS Architect
Associate

Built
different.

Most engineers come up through CS programs. I came up through operations — running IT for a field service business with 35+ technicians and 25 dispatchers across multiple markets, and wiring together the automation that let it scale 375% without scaling headcount.

That taught me something textbooks don't: I know what happens when systems fail at 2am, and I know how to build so they don't. Today I'm a Cybersecurity Analyst (internship) at Broward College's Technology Services, triaging security events, analyzing logs, and documenting incidents in a live enterprise environment.

I'm finishing my B.A.S. in Information Technology (Spring 2027), then starting an M.S. in Cyber Defense at Nova Southeastern University in Summer 2027. Current focus: Terraform, AWS security, and Python — on the way to Cloud Security Architect.

Open to Cloud Infrastructure & Cloud Security roles — Remote | Fort Lauderdale, FL | Relocation Friendly
Nova Southeastern University
M.S. Cyber Defense
Summer 2027
Broward College
B.A.S. Information Technology — Network Systems Analyst
Spring 2027
Broward College
A.S. Network Systems Technology — Cloud Architecture
2025
AWS
Solutions Architect Associate
Earned
AWS
Cloud Practitioner
Earned
CompTIA
CySA+
Earned
CompTIA
Security+
Earned
CompTIA
Security Analytics Professional (CSAP)
Earned
HashiCorp
Terraform Associate
In Progress
AWS
Security – Specialty
Up Next
Broward College
Cloud Engineering · IT Analyst · Network Server Admin · IT Support
×4

Things I've built.

01 / Featured In Progress
↗
DispatchIQ — Multitenant Cancel Recovery Platform
AI-driven cancel recovery SaaS for field service businesses. Built on AWS Bedrock AgentCore and LangGraph with MCP tool integration. Production VPC across multiple AZs, tenant-scoped IAM enforced at the data layer as a non-negotiable constraint. Phase 4 of 7 complete.
AWS Bedrock LangGraph Terraform MCP DynamoDB Multitenant IAM ECS Fargate
02 Complete
↗
Enterprise Active Directory & Identity Governance (DC01)
Windows Server domain controller with AD DS, structured OUs, and secure DNS. Baseline hardening GPOs enforce password complexity, lockout thresholds, and local firewall policy. RBAC and security-group delegation cut lateral movement paths and remove over-privileged admin accounts. Security Event Log analysis (4624, 4625, 4720) to detect brute-force attempts and anomalous privilege escalation.
Windows ServerAD DSGroup PolicyRBACDNSEvent Log Analysis
03 Complete
↗
RHEL Enterprise Systems & OS Hardening Lab
Standalone RHEL environment hardened to CIS Controls. SELinux targeted policies, firewalld zone-based rules, and password SSH disabled in favor of public-key auth. Persistent LVM storage with snapshot recovery, isolated systemd services, and local auditd rules for system activity logging.
RHELSELinuxfirewalldLVMauditdCIS Controls
04 Complete
↗
AWS Vulnerability Management Pipeline
Serverless detection-to-notification pipeline. Inspector feeds EventBridge rules that trigger Lambda for triage and SNS for alerting. SSH exposure eliminated via SSM Session Manager. 100% critical finding remediation at zero monthly cost.
InspectorEventBridgeLambdaSNSSSM
05 Complete
↗
Splunk Cloud SIEM — macOS Security Monitoring
Full detection pipeline ingesting macOS security events via HEC. Dashboards covering event volume, top processes, and recent security events with threshold alerting. End-to-end from data source to alert.
Splunk CloudHECmacOSDetection Engineering
06 Complete
↗
Portfolio Infrastructure — S3 + CloudFront + CI/CD
This site. S3 + CloudFront + Route 53 provisioned entirely with Terraform. GitHub Actions pipeline syncs to S3 and invalidates CloudFront cache on every push to main. ~$2/month running cost.
TerraformS3CloudFrontRoute 53GitHub Actions
07 In Progress
↗
EC2 + NGINX Reverse Proxy
Production-style web server provisioned with Terraform. NGINX reverse proxy in front of a Node.js app — app bound to localhost only, never directly internet-accessible. SSH locked to single IP. systemd auto-restart.
EC2NGINXTerraformLinuxsystemd

What I work with.

☁
Cloud & IaC
AWS EC2 VPC IAM S3 CloudFront Route 53 Lambda EventBridge Terraform AWS CLI
🐧
Linux & Systems
RHEL 9/10 systemd SELinux LVM firewalld Bash UTM / VMs aarch64
🔐
Security
IAM Policy Design AWS Inspector Splunk SIEM SSM Session Manager SIEM / EDR Triage GuardDuty CloudTrail Wazuh Vulnerability Mgmt NIST Frameworks Security Groups NACLs
🌐
Networking
VLANs Subnetting Inter-VLAN Routing DNS DHCP NAT Packet Tracer
⚙
Dev & Tooling
Git GitHub Actions Python NGINX Node.js Zapier VS Code
⊞
Microsoft & Identity
Windows Server 2022 Active Directory DS Group Policy (GPO) Microsoft Entra ID Microsoft Azure
📖
Currently Learning
Terraform Associate AWS Security – Specialty Python (100 Days of Code) Azure Administration (AZ-104)

Where I've worked.

Aug 2026 – Present
Internship
Cybersecurity Analyst
Broward College — North Broward Technology Services
  • Triage security events and analyze log data across campus endpoints to detect anomalous network and authentication behaviors
  • Execute threat detection and mitigation workflows alongside senior security staff using defensive toolchains and ticket escalation paths
  • Document incident findings, root cause analyses, and indicators of compromise (IOCs) to support SOC response procedures
Mar 2020 – Present
Operations
IT Operations Manager
Diehard Business LLC
  • Sole IT resource engineering resilient cloud-hosted systems and dispatch infrastructure supporting 60+ distributed personnel (35 technicians, 25 dispatchers) across multi-market operations
  • Architected and deployed cloud automation workflows scaling operations 375% while resolving API latency, retry storms, and communications routing failures under high transaction volumes
  • Built automated operational pipelines and recovery systems, recovering lost revenue and reducing workload 40% through centralized health monitoring and automated remediation
  • Manage user access, onboarding, and account provisioning across business systems for a distributed team, including an offshore dispatch team
  • Author standard operating procedures (SOPs), knowledge base runbooks, and disaster recovery plans
Apr 2025 – Feb 2026
Contract
Technical Instructor
Cre8tive Devs Software
  • Delivered technical training on CompTIA Security+ and AWS curricula, covering network protocols (TCP/IP, DNS, ports), perimeter firewalls, and defense-in-depth principles
  • Built isolated virtual labs and AWS sandbox environments for student practice with vulnerability scanning, OS configuration, and incident remediation
  • Mentored adult cohorts through hands-on packet analysis, Linux system configurations, and security audit scenarios
Nov 2017 – Mar 2020
Operations
Operations Manager
LHS IP Network
  • Supervised technical operations staff supporting a 24/7 multi-tenant VoIP/SIP telecom network environment
  • Managed operational escalations, coordinated incident triage during service outages, and led post-incident root cause analysis (RCA) reporting

Let's build
something.

Open to Cloud Infrastructure & Cloud Security roles — Remote | Fort Lauderdale, FL | Relocation Friendly. Also available for independent security consulting.

Send an Email →