Multicloud landing zone
Designed and deployed a multi-account landing zone across AWS and GCP using Terraform and Control Tower. Includes IAM baselines, SCPs, VPC templates, and centralized logging.
D. AguirrePlatform blueprintPlatforms, pipelines, and governance I have designed and shipped.
Designed and deployed a multi-account landing zone across AWS and GCP using Terraform and Control Tower. Includes IAM baselines, SCPs, VPC templates, and centralized logging.
Reusable GitHub Actions workflow library with embedded security stages: Trivy container scanning, Checkov IaC linting, Gitleaks secret detection, and DAST via OWASP ZAP.
Opinionated Helm chart collection to bootstrap a production-ready Kubernetes cluster: cert-manager, external-secrets, kube-prometheus-stack, Loki, and OPA Gatekeeper policies.
Azure Policy, RBAC, and Management Group structure defined as Terraform modules. Enforces tagging, allowed regions, SKU restrictions, and diagnostic settings org-wide.
Internal documentation and automation for rolling out GitHub Copilot at scale: license provisioning scripts, prompt engineering guidelines, usage metrics dashboards, and security policy templates.
Open-source contribution to Microcks: GitHub Actions composite action for API contract testing in CI pipelines. Supports OpenAPI, AsyncAPI, and gRPC specifications.
Nothing under this filter yet.