Initializing Infrastructure...
0%

$ whoami

jomaire-zaspa

|

Cloud Infrastructure Specialist with 5 years of experience designing, securing, and optimizing AWS environments — focused on high availability, security hardening, and cost-effective cloud solutions.

5+ Years Experience
20+ Staff Upskilled
AWS Certified
Jomaire Zaspa JZ

// About Me

A results-driven AWS Server Specialist & Cloud Infrastructure Engineer passionate about building secure, scalable, and cost-optimized cloud environments.

I specialize in designing and securing AWS environments — from EC2, VPC, and IAM to CodePipeline, ECS, and CloudFront — with a strong emphasis on security hardening, disaster recovery, and operational efficiency.

Beyond infrastructure, I'm committed to knowledge-sharing: I've developed and delivered internal AWS training programs that upskilled 20+ staff, and I actively support sales teams with technical solution briefs and pricing estimates.

Cebu, Philippines
jomaire@cloudfabrics.dev
Open to Opportunities

AWS Infrastructure

EC2, VPC, IAM, S3, RDS, ECS, CloudFront, Route 53 and more — optimized for uptime and cost

Security & Compliance

IAM hardening, KMS encryption, WAF, security groups, and quarterly vulnerability assessments

CI/CD Pipelines

AWS CodePipeline, CodeBuild, CodeDeploy, and GitHub Actions for automated delivery

Monitoring

Prometheus, Grafana, CloudWatch, Mackerel & PagerDuty for real-time observability

Projects

Live & Running
StoreMe
Live
StoreMe preview

StoreMe

A production-ready, self-hosted file storage platform deployed on a K3s cluster provisioned on AWS EC2 with Terraform, backed by EBS persistent volumes. Built with Go and Vue.js, it enforces per-user isolated directories, configurable storage quotas, and role-based access control with a real-time admin console. Container images are built and pushed to ECR via a GitHub Actions CI/CD pipeline using OIDC authentication, deployed through AWS SSM RunCommand, and served over HTTPS via Traefik with automatic Let's Encrypt certificates.

VPC K3s Lambda GitHub Actions AMI DynamoDB S3 EC2 API Gateway
Vyzor
Under Construction
Vyzor preview

Vyzor

A centralized observability platform deployed on EC2, orchestrating Prometheus and Grafana via K3s for high availability and security hardening. It aggregates metrics across a multi-application environment, delivering real-time visibility through unified dashboards — with AWS SNS-powered alerting that triggers instant notifications on critical threshold breaches.

Prometheus Grafana EC2 CloudWatch AWS SNS API Gateway S3 K3s Lambda GitHub Actions AMI
Under Construction
DeployBoard preview

DeployBoard

A secure CI/CD visibility platform with an authenticated login interface for tracking real-time deployment status across services. Built on ECS Fargate for containerized workloads, with API Gateway and Lambda powering the backend — delivering pipeline metrics and deployment history through a clean, role-based dashboard.

ECS Fargate VPC Lambda API Gateway

// Technical Skills

AWS Services

EC2 S3 VPC IAM CloudWatch AWS Backup ECS Lambda Route 53 CloudFront Systems Manager WAF EKS Certificate Manager Config Compute Optimizer RDS PostgreSQL DynamoDB Billing & Cost Mgmt

CI/CD & Automation

AWS CodePipeline AWS CodeBuild AWS CodeDeploy GitHub Actions Terraform

Containers & Orchestration

Docker microk8s K3s Kubernetes

Monitoring & Alerting

Prometheus Grafana Mackerel PagerDuty AWS CloudWatch Shelty JP1 Job Management

Infrastructure & Networking

VMware vSphere IBM WebSphere Network & Firewall SSL & DNS PfSense Office 365 / Azure AD Google Workspace

Tools & Languages

Python Git / Tortoise SVN MongoDB MS SQL Server IIS Apache Superset Tableau Fresh Desk Teamwork Desk

AI & Agentic Tools

MCP (Model Context Protocol) Claude AI Prompt Engineering LLM Integration AI Agent Workflows RAG Pipelines
Proficiency: Expert Advanced Intermediate

// Experience

AWS Server Specialist

Cody Web Development · Client: World-Leading Music & Audio Manufacturer

Jun 2024 – Present
  • Monitored AWS server infrastructure across multiple accounts, ensuring high uptime and optimizing performance through resource right-sizing, autoscaling strategies, and proactive maintenance (patching, updates, and optimization)
  • Assessed, designed, and implemented security improvements by hardening IAM policies, optimizing security groups, enforcing KMS encryption, and integrating basic intrusion detection systems
  • Conducted quarterly security audits and vulnerability assessments, proactively identifying and mitigating risks
  • Implemented AWS Backup solutions for EC2 and S3, achieving daily snapshot backups and enforcing disaster recovery retention policies
  • Developed and delivered internal training programs on AWS services (EC2, S3, IAM, VPC), upskilling 20+ staff on cloud best practices
  • Designed cost-effective, scalable cloud architectures for client projects, focusing on high availability, security, and optimization
  • Supported the Sales Team by preparing AWS pricing estimates and solution briefs for potential clients, contributing to improved technical win rates
EC2S3IAMVPCKMSAWS BackupCloudWatchWAF

Systems Administrator

CoinOp Group

May 2021 – Mar 2024
  • Managed AWS environments (Linux/Windows), SSL certificates, DNS, and cloud infrastructure to ensure secure, high-availability systems
  • Administered Office 365 and Google Workspace platforms, overseeing user access, compliance, and service continuity
  • Led onboarding and offboarding processes, provisioning and revoking system access with strong security compliance
  • Monitored and maintained on-prem servers, storage health, and network infrastructure (PfSense), improving system uptime and stability
  • Centralized credential management and implemented secure access auditing practices across all systems
  • Handled procurement of IT hardware, licenses, and cloud services, optimizing costs and vendor relationships
AWSOffice 365Google WorkspaceSSL/DNSPfSenseVMware vSphere

// Certifications

AWS Certified Solutions Architect – Associate

Amazon Web Services

AWS Certified

AI Agent

Anthropic

Introduction to Agent Skills

Introduction to Model Context Protocol

Anthropic

AI & Agentic Tools Competency

Model Context Protocol – Advanced Topics

Anthropic

AI & Agentic Tools Competency

AI Fluency Framework Foundations

Anthropic

AI & Generative AI Competency

K3s Fundamentals

Rancher Academy

Container Orchestration Competency

K8s Fundamentals

Rancher Academy

Container Orchestration Competency

K3s Networking

Rancher Academy

Container Orchestration Competency

YAML Fundamentals

Rancher Academy

Container Orchestration Competency

// Personal Strengths

Collaboration & Communication

Experienced in working cross-functionally with development, operations, and sales teams — translating complex cloud concepts into clear business value for non-technical stakeholders.

Critical Thinking & Problem Solving

Approach infrastructure challenges analytically — from root-cause diagnosis on production incidents to designing security architectures that proactively eliminate risk before it surfaces.

Adaptability & Growth Mindset

Thrive in fast-moving environments and consistently pursue growth — from staying current with AWS service releases to upskilling colleagues through internal training programs.

Ethics & Professional Standards

Committed to maintaining the highest standards of data security, access control compliance, and responsible cloud governance across every engagement.

Time Management & Flexibility

Skilled at managing multiple concurrent infrastructure workloads, balancing strategic projects with reactive operational demands without losing quality or focus.

// Education

Bachelor's Degree

Cebu Institute of Technology - University

2015 - 2020

// Let's Connect

Whether you have a cloud project, opportunity, or just want to talk AWS & infrastructure — my inbox is always open.