JL·OPS Hire me

SYSTEMS ONLINE · OPEN TO SENIOR CLOUD / AI ROLES

I build systems
that run themselves.

Platform engineer at AWS Professional Services. I build cloud platforms, AI agents, and automation that run without me. The terminal below is live. This page shipped itself.

  • Ashburn, VA
  • Platform Engineer · Cloud + AI Infrastructure
  • Download CV ↓
scroll

// the operator

Before I ran production,
I ran the table.

For years I dealt poker for a living. Real money, real tempers, no pause button. It taught me the job underneath the job: read the room, manage risk in real time, and stay calm while everything moves at once.

Today the table is a multi-account AWS estate and the chips are production traffic. The skill is identical: keep the game running, no matter what gets dealt.

// live proof

The console is real.

Every command runs on live Lambda, API Gateway, and DynamoDB in us-east-1. Infrastructure I wrote, terraformed, and shipped through CI/CD. Don't take my word for it. Type help, agents, or status.

joe@josephaleto.io:~$ LIVE
joe@josephaleto.io:~$

backend: api gateway → lambda → dynamodb · latency

// self-shipping

This site deploys itself.

Push to main and the pipeline takes over: tests, S3 sync, CloudFront invalidation. No humans in the deploy path. The page you're reading shipped exactly this way.

git push feature → main actions lint · test · audit s3 sync website/ → bucket cloudfront invalidate /* you reading it live

// capabilities

Three systems, one operator.

01 Cloud Platforms

Multi-account AWS for organizations that can't afford surprises. Landing zones, networking, and guardrails built so the right way is the only easy way.

  • Terraform + StackSets provisioning
  • Network Firewall and Transit Gateway in production
  • Patterns architects and security both sign off on

02 AI Agents

Self-hosted agents that do real work: research, operations, and deployments, with scoped credentials and a human on the loop.

  • Always-on agent gateway, self-hosted
  • Driven from chat, accountable in logs
  • Least-privilege access to live APIs

03 Automation

If it happens twice, it gets a pipeline. Security feedback on every change, gates that block risk without blocking people.

  • Scanners wired into CI/CD
  • Deployment gates and release governance
  • n8n pipelines for everything else

// trajectory

Experience & impact.

Jan 2026 → Now

Software Development Engineer · AWS Professional Services

Chantilly, VA · platform engineering: cloud + AI infrastructure · client-facing delivery

  • Lead delivery of a cloud platform that automates security scanning and release governance across four environments
  • Shipped a React console that consolidates findings, surfaces fixes, and re-runs pipelines in one place
  • Wired four automated scanners into CI/CD so every change gets security feedback before it reaches production
  • Built deployment gates that block risky releases automatically, plus Keycloak RBAC, compliance dashboards, and audit exports

Jul 2025 → Jan 2026

Cloud Platform Engineer · COSMOS

Strategic Business Systems · enterprise AWS

  • Standardized landing zones across 64+ AWS accounts with Terraform and StackSets, cutting provisioning time by roughly 40%
  • Built production Network Firewall policies covering 500+ approved ranges
  • Aligned architects, app teams, and security on one set of AWS patterns that actually scaled
  • Validated every Transit Gateway attachment for reliable enterprise network operations

Certifications

AWS Solutions Architect, Associate · 2025 AWS Cloud Practitioner · 2023

// selected work

Built. Shipped. Running.

running on this page

Cloud Resume Terminal

This site. A production AWS stack behind an interactive terminal: Lambda, API Gateway, S3, CloudFront, and DynamoDB, all Terraform-managed and deployed by CI/CD on every merge.

enterprise aws

Enterprise Multi-Account Platform

Three-tier architecture across multiple VPCs with centralized Transit Gateway routing, repeatable Terraform/CloudFormation provisioning, and automated misconfiguration checks.

secure delivery

Security & Release Governance Platform

Automated security scanning and release governance with deployment gates, RBAC, and audit exports. Security feedback on every change, before it ships.

always-on · self-hosted

Agentic Ops Stack

A self-hosted AI agent gateway on a hardened VPS plus n8n automation pipelines. Discord-driven research, scheduled jobs, and server operations with memory and least-privilege tooling.

// stack

The operating stack.

platform / sre

GitHub ActionsDockerEKS HelmTerraformCloudFormation StackSetsZero-downtime deploys

cloud / security

OrganizationsControl TowerVPC Transit GatewayIAMLambda S3RDSRoute 53 Policy as codeLeast privilege

observability

PrometheusGrafanaCloudWatch Structured loggingBlameless postmortems

ai / automation

AI agent gatewaysn8nLLM tooling PythonBashGo Boto3

SYSTEM STATUS: AVAILABLE · SENIOR CLOUD · AI AGENTS · AUTOMATION

Let's build systems
that don't blink.

You just watched my work run, deploy, and prove itself. If your team needs infrastructure that holds under pressure, that's the whole job for me. One email and we're talking.

senior platform engineer · ai infrastructure · solutions architect · automation lead

joe@josephaleto.io copied ✓