cloud platform engineer

I build the platforms
other teams build on.

AWS at organisation scale, infrastructure as code, and CI/CD that teams actually want to use. I treat reliability, access, and developer experience as one problem.

platform

Multi-account AWS Organisations with AFT, golden paths, and guardrails that scale across teams.

delivery

Shared GitLab CI/CD templates and IaC pipelines that make the safe path the easy path.

access

Privileged access tooling and migrations done without downtime or surprises.

selected work

all case studies →

the brewerton platform

A homelab run like production.

A modular, IaC-first platform at home — the proving ground for ideas before they touch work. Proxmox, containers, GitOps DNS, and an Entra identity layer, all documented and version-controlled.

Hosted on Cloudflare, written up here, kept honest by running it 24/7.

  • Compute — Proxmox cluster migrated from ESXi/vCenter live
  • Networking — VLANs, public /29 WireGuard VPN to edge live
  • DNS — PowerDNS, git-backed GitOps zone management live
  • Identity — M365 Entra ID SSO into various systems live
  • Observability in progress building