TANGU NKWETAKETU JOSEPH
AWS Architect
SUMMERY:
Experienced AWS Architect with over 6 years of experience with technology consulting, IT management, business development, technical writing, and collaborating with technical teams. Strong analytical skills in assessing business requirements at the enterprise level and designing efficient and effective technology solutions for clients. Current interest is in cloud strategy, cloud migration, and data analytics.
TECHNICAL SKILLS:
AWS: VPC Designing including VPN, EC2/Auto Scaling, S3 Life Cycle, RDS with Multi AZ, Dynamo DB, Aurora, Lambda, API Gateway, SQS, ElasticCache, (Redis & Memcached) Route 53 DNS Designing, IAM policies, JSON, AWS Migration, SNS with CloudWatch alarms, Kinesis, Direct Connect, AWS CodeCommit, AWS Systems Manager, EC2 Lifecycle Manager,Python, AWS Organization,AWS Config,Service, Cloudformation and Terraform
Platforms: AWS, Linux: RHEL; Programming Languages: Bash, JSON.
Configuration Management & DevOps Tools: CodeCommit, Ansible, Jenkins, & GitHub..
CERTIFICATIONS AND EDUCATION:
AWS Certified Solution Architect – Associate, (Expected Fall 2020).
University of Buea, Cameroon, Mathematics and Computer Science, September 2011
PROFESSIONAL EXPERIENCE:
CHAI, Boston, MA May 2018 – Present
AWS Architect
Designed secured, cost optimized, highly available and fault tolerant architecture designs and infrastructure in AWS.
Implemented security best practices in AWS including multi factor authentication, access key rotation, role-based permissions, enforced strong password policy, configured security groups and NACLs, S3 bucket policies and ACLs.
Optimized cost through reserved instances, selection and changing of EC2 instance types based on resource need, S3 storage classes and S3 lifecycle policies, leveraging Autoscaling.
Leveraged EC2 LifeCycle Manager to create snapshots of EBS Volumes on scheduled intervals for backup and define a retention period as a cost saving measure.
In depth understanding of the principles and best practices of Software Configuration
Enabled Logging on S3 bucket access, VPC flow, Cloud trail, AWS config, IAM, AWS inspector, Lambda, RDS, Dynamo DB, Cloud Front, liquid base, AWS API gateway, EC2 Application servers.
Configured CloudWatch alarm rules for operational and performance metrics for our AWS resources and applications.
Leveraged STS to generate and provide temporal credentials to users.
monitoring major services related to Compute, Storage, Network and Security.
Implemented a 'serverless' architecture using API Gateway, Lambda, and Dynamo DB and deployed AWS Lambda and Kinesis code from Amazon S3 buckets. Created a Lambda Deployment function and configured it to receive events from S3 bucket.
Performance tuning on the Aurora PostgreSQL via index modifications.
Setup and configured logs files for detail monitoring and alerts notification.
Configured S3 events to set up automated communication between S3 and other AWS services.
Designed highly available infrastructure using Elastic load balancer and auto-scaling for Web servers which Scale in and Scale out automatically, also isolated environment by having security groups and NACL across subnets for EC2 instances.
Implemented AWS Kinesis Firehose to capture and load streaming data into AWS S3 and Redshift and used Elastic Search to Analyze the data.
Architected and Implemented AWS Cloud cost effective solution for Non-Production environment such as Development, and Test.
Designed templates for AWS Infrastructure as a Code using Cloud Formation to build staging and production environments.
Managed tools like Git,Github, Jenkins and their usage / process ensuring traceability, repeatability, and quality for Pipe line build.
Phone2Action, Arlington, VA May 2016 – May 2018
AWS Systems Administrator/Developer
Designed and implemented Cloud solutions with AWS Virtual private cloud (VPC), Elastic Compute Cloud (EC2), Elastic Load Balancer (ELB), S3, Auto scaling, RDS, Cloud watch, and other AWS services.
Setup and configured Security Groups, NACL for VPC specific to environment.
Created AMI images of critical EC2 instances as backup using AWS CLI and Console.
Created and managed DNS records in AWS Route53.
Used AWS Code Deploy for migrating and automating application deployments to Amazon EC2 instances, on-premises instances, serverless Lambda functions, or Amazon ECS services.
Created SSL/TLS certificate using ACM and implemented the same using ELB and Route53.
Understand security best practices, policies, and standards to design highly secure cloud architectures for internal and external cloud solutions.
Mckinsey, Chicago, IL June 2014 – May 2016
AWS Systems Administrator
Architected a highly secure infrastructure with public and private subnets for multi-tier web applications.
Experienced on AWS compute services (EC2, Lambda, Elastic Beanstalk, autoscaling).
Designed highly scalable resources (horizontal and vertical scaling).
Provision secured resources in VPC subnets with security groups and NACLs.
Architect a secure infrastructure with a NAT Gateway to allow instances in a private subnet to access the internet for updates.
Leveraged data migration services (Snowball, Direct Connect etc.) for data migration.
Created IAM users, roles, and granting required access permissions and privileges to the users.