Messy workflow
Identify what is manual, risky, unclear, duplicated, slow, or dependent on tribal knowledge.
Aiden Rhaa
Product-Minded AWS Infrastructure EngineerAWS Cloud Engineer · Infrastructure Automation · Platform Engineering
I design secure AWS infrastructure, automation, and internal platforms that reduce manual work, improve reliability, and turn messy operational problems into production-style systems.
Public portfolio includes deployed systems across Terraform, ECS Fargate, EKS/GitOps, Lambda/serverless, CloudOps governance, and business workflow automation.
AWS Cloud Engineer · Cloud Infrastructure · Platform · DevOps
Public repos · live demos · tests · ADRs · teardown docs
Business workflows translated into reviewable cloud systems
Operating Model
Cloud systems should be judged by how well they reduce operational drag, make change safer, and give teams better control.
Owner's Lens
What needs to be requested, approved, released, observed, audited, recovered, or handed off determines the architecture.
Identify what is manual, risky, unclear, duplicated, slow, or dependent on tribal knowledge.
Define what needs governance, rollback, observability, least-privilege access, cost controls, and auditability.
Leave behind infrastructure as code, policy checks, logs, runbooks, ADRs, teardown notes, and documented tradeoffs.
What This Produces
Terraform plan review, policy checks, blast-radius analysis, GitHub Actions, approval gates, and audit trails before apply.
CloudOps control planes, observability, audit logging, request replay, answer provenance, dashboards, and cost review.
ECS Fargate, EKS/GitOps, Lambda/serverless, private networking, RDS, Cognito, WAF, CloudFront, and CloudWatch.
Lead intake, public-record research, CRM/API workflows, document processing, AI-assisted workflows, and structured data handoff.
Proof Systems
Each project shows how messy workflow pressure becomes architecture, controls, and reviewable operating evidence.
A production-style ECS Fargate lead-intelligence API built around lead intake, source quality, county resolution, and acquisition workflows.
Event-driven incentive screening workflow with API Gateway, Lambda, SQS/DLQ, DynamoDB, S3 source catalog, scheduled refresh, CloudWatch/X-Ray, and Terraform.
GitHubGovCon capture workspace with SAM.gov opportunity scoring, async Bedrock proposal drafting, RDS/pgvector, and Terraform-backed workflow infrastructure.
GitHubOperational systems across ECS/RDS reconciliation, e-invoicing validation, audit paths, and structured handoff.
GitHub profileServerless media search, transcription workflows, OCR/document processing, and AI-assisted structured data workflows.
GitHub profile
Operator Lens
My engineering path started by building systems I needed to run real businesses: lead intake, public-record research, CRM/API workflows, client-facing websites, automation, and structured data handoff. That experience now informs how I design cloud systems: practical, reliable, cost-aware, and built around actual workflows.
Founder / Automation & Systems Lead at Clearpath Property Group / Boston Probate Solutions.
Owned web properties, DNS, SSL/TLS, Cloudflare, hosting, GitHub-based deployments, Supabase/Netlify, and WordPress administration.
Built Python ingestion workflows, CRM/API automation, AI prompt orchestration, and structured handoff paths for real operations.
Capabilities Underneath
Tools and certifications matter here as validation, not as the brand. They are the materials used to build safer workflows and production-style systems.
VPC, IAM, ECS Fargate, EKS, Lambda, API Gateway, Step Functions, S3, DynamoDB, RDS PostgreSQL, RDS Proxy, Bedrock, Textract, Cognito, CloudFront, WAF, ALB, ECR, SQS, EventBridge, CloudWatch, CloudTrail, Secrets Manager, SSM, Cost Explorer.
Terraform, modular IaC, Terraform plan review, GitHub Actions, OIDC role assumption, Docker, Docker Compose, Cloudflare Pages, Checkov, TFLint, runbooks, ADRs.
Kubernetes, Amazon EKS, Helm, ArgoCD, IRSA, External Secrets, Prometheus, Grafana, GitOps patterns, ALB ingress.
Python, TypeScript, JavaScript, React, Next.js, FastAPI, PostgreSQL, SQL, Bash, REST APIs, data pipelines.
Least-privilege IAM, private subnets, security groups, OPA/Rego, JWT/Cognito auth, presigned S3 URLs, WAF/rate limiting, secrets management, audit logging, OpenTelemetry, approval gates, CloudWatch alarms, cost controls.
Certifications: AWS Certified Solutions Architect Associate, AWS Certified Developer Associate, HashiCorp Terraform Associate.
Next Step
I am open to cloud infrastructure, platform engineering, DevOps, and AWS engineering roles where ownership, reliability, automation, and business context matter.