At Fundwave, I build and operate the AWS infrastructure behind a multi-tenant SaaS fund administration platform, owning Linux systems, networking, storage, TLS, and application delivery across multiple regions.
I've designed CI/CD pipelines with GitHub Actions and Jenkins, plus a webhook-driven provisioning service that creates production-mirroring test environments with compute, DNS, IAM, S3, identity configuration, and monitoring. I also built centralized observability with Grafana and Promtail and serve as a primary escalation point for infrastructure incidents.
I independently led Fundwave's SOC 2 audit from security controls and vendor evaluation through evidence collection and external auditor coordination, achieving certification on the first attempt. I've also hardened production access with AWS ALB, WAF, and Cloudflare Zero Trust while removing publicly exposed SSH across servers and regions.
Outside core infrastructure work, I contribute to open source in Docker, AWS S3, TypeScript, and PocketBase, including fixes that reduced unnecessary S3 transfers and a user-impersonation feature for automated API workflows.

