Secure AWS Application Platform
↗A production-minded AWS foundation built with Terraform: private workloads, layered ingress security, centralized observability, and tested incident workflows.
The challenge
Expose an application safely while keeping compute and data private—and make the platform operable when something fails.
What I built
- Route 53, ACM, ALB and AWS WAF at the public edge
- Private EC2 and RDS with SSM access and VPC endpoints
- CloudWatch telemetry, ALB/WAF logs and alerting
- Lambda, S3, SNS and Bedrock-assisted incident reporting