AWS Architecture
EC2, VPC, S3, RDS, Lambda, Route 53, CloudFront, IAM, WAF and CloudWatch.
AWS CERTIFIED SOLUTIONS ARCHITECT
I’m Benjamin Cooper, an AWS Cloud Engineer focused on Terraform, Infrastructure as Code, CI/CD, cloud security and resilient AWS architecture.
Benjamin Cooper
Cloud Platform EngineerHOW I BUILD
I treat infrastructure like software: define it in code, review it, automate delivery and monitor the result.
$ terraform plan
Plan: 28 to add, 0 to change, 0 to destroy.
$ terraform apply -auto-approve
Apply complete! Resources: 28 added.
$ aws cloudfront create-invalidation
Deployment complete.
ABOUT ME
I design, automate and support AWS infrastructure with a strong focus on security, reliability, cost awareness and maintainability.
My experience spans cloud networking, identity and access management, monitoring, high availability, disaster recovery and CI/CD automation. I enjoy translating business requirements into practical cloud solutions that are well documented and easy for teams to operate.
My biggest asset is perspective most engineers don't have: more than ten years across operations, finance and technology before I moved into the cloud. I connect infrastructure decisions to real business impact, communicate clearly with non-technical stakeholders, and take ownership of a problem from first requirement to running, monitored system.
CORE CAPABILITIES
EC2, VPC, S3, RDS, Lambda, Route 53, CloudFront, IAM, WAF and CloudWatch.
Terraform modules, reusable environments, remote state and version-controlled infrastructure.
GitHub Actions, Jenkins, AWS CodePipeline, CodeBuild, Bash and Python automation.
Least-privilege IAM, AWS WAF, secrets management, encryption and network segmentation.
CloudWatch dashboards, logs, alarms, SNS notifications and operational troubleshooting.
Python, REST APIs, Git/GitHub, GitHub Apps, JWT and event-driven automation.
EXPERIENCE
BKS
PCS
CERTIFICATION
Validated knowledge of secure, resilient, high-performing and cost-optimised AWS architectures.
FEATURED WORK
Work I’m most proud of. Source for these is kept private; a walkthrough or live demo is available on request.
AWS SERVERLESS • SECURITY • TERRAFORM
Replaces long-lived Git credentials with short-lived, repository-scoped access that is requested, evaluated against policy, approved where required, issued, used and revoked. The focus is the control plane around credential issuance: a policy engine, a human-approval step, an auditable grant state machine with replay protection, and a Git gateway that mints and enforces short-lived, repo-scoped GitHub App tokens at clone time. Built entirely on AWS serverless and Terraform, and designed so that AI agents are first-class principals alongside humans.
AWS SERVERLESS • PYTHON • TERRAFORM
A Terraform-built serverless intake pipeline: API Gateway receives POST /intake, a Python Lambda handles the request and writes to RDS MySQL, with Secrets Manager holding the database credentials — no secrets in code.
AWS • SECURITY • TERRAFORM
Locked-down AWS infrastructure as code: CloudFront CDN and AWS WAF in front of the application, least-privilege access throughout, and automation that writes its own incident reports when something breaks — all defined in Terraform.
AWS • NETWORKING • TERRAFORM
A private three-tier stack — VPC → EC2 → RDS — provisioned entirely in Terraform with zero hardcoded credentials: IAM roles instead of static keys, and Secrets Manager for database credentials.
MULTI-REGION • RESILIENCE • TERRAFORM
A production-shaped, multi-region AWS stack (Tokyo and São Paulo) built entirely in Terraform: ALB with real TLS, AWS WAF, CloudFront CDN, and a cross-region Transit Gateway for resilient connectivity.
AWS • STATIC HOSTING • CI/CD
A secure static application delivered through Amazon S3, CloudFront, Route 53 and ACM, with HTTPS delivery and automated cache invalidation on each deploy.
LATEST GITHUB WORK
This section loads my latest eligible public repositories directly from GitHub, so new work appears here without manually editing the website.
LET'S CONNECT
I’m open to remote Cloud Platform, DevOps and Infrastructure Engineering opportunities.