I will create a cloud architecture specializing in AWS security and engineeiing
Cloud Engineer
About this Gig
Live E-Commerce Platform on AWS. Built and deployed a fully operational e-commerce website on AWS from scratch.
Infrastructure includes VPC, Subnets, Internet Gateway (IGW), NAT Gateway, Route Tables, Security Groups, and NACLs.
Compute layer built using EC2, Nginx reverse proxy, Node.js backend, pm2.
High availability setup using Application Load Balancer, Target Groups, HTTPS, Auto Scaling Group, Launch Templates, AMI baking (CI/CD).
Database architecture includes RDS MySQL, KMS (CMK encryption), Secrets Manager, Read Replica.
Storage configured using S3 (versioning, lifecycle, encryption, policies).
Monitoring using CloudWatch dashboards, alarms, custom metrics, VPC Flow Logs.
Logging via CloudTrail (KMS encrypted, CloudWatch Logs, 5 security alarms).
Security stack includes GuardDuty, Security Hub, AWS Config, IAM (least privilege, MFA, OIDC), Secrets Manager.
Infrastructure as Code using Terraform (9 files, S3 remote state).
CI/CD pipeline using GitHub Actions, SSM, AMI baking, Launch Template updates.
Serverless integrations using Lambda + API Gateway.
CDN and security layer includes CloudFront + WAF.
Performed Red Team and Blue Team attack testing to validate security postur
Cloud provider:
Amazon Web Services
Cloud computing resource:
ELB
•
Route53
•
VPC
•
Security Groups
•
DNS
