About me
Senior Infrastructure, Cloud and Automation Architect with 14+ years' experience delivering complex enterprise technology outcomes across government, public-safety, managed services, healthcare and cloud environments. I specialise in stabilising and delivering inherited programmes where legacy infrastructure, limited documentation, operational risk or resource constraints have slowed progress.
Day role: technical lead and principal engineer for a multi-domain technology refresh in the Queensland Government public-safety sector, leading the Terraform and Ansible automation team across a 1600+ server estate. In parallel: founder of an AI and automation practice (founded January 2026), with four automation-led ventures currently in trial, plus Cartograph, a self-hosted CMDB with a sandboxed on-prem AI agent. Personal AWS estate operated end-to-end as Claude-Code-driven Terraform; this portfolio site itself ships under that pattern.
Career highlights
- Technical lead and principal engineer for a mission-critical real-time systems technology refresh in the Queensland Government public-safety sector, currently in delivery.
- Founder of Cartograph, a self-hosted CMDB with a sandboxed on-prem AI agent (nine-tool code-enforced allowlist, internal-only Docker network, no external AI dependency, human review before write actions). Currently in trial.
- Operator of four automation-led ventures currently in trial, where LLM-driven workflows reduce manual effort and automate knowledge-work processes.
- Identified $200k AUD/month, around $2.4M/year, in AWS storage cost reduction at a previous client during a 45-account audit. Plan was scoped end-to-end but not adopted before contract end.
- Restored full phone-system functionality on Microsoft Teams Phone within 48 hours during the Queensland floods at QTAC, after the on-premises PBX became unavailable and no current documentation existed.
Technical experience
Cloud and DevOps
- AWS (VPC, EC2, serverless, RDS, S3, IAM, cost optimisation)
- Azure (Entra ID, landing zones)
- Terraform, Ansible, AWS CloudFormation, GitLab CI
- LLM integration, AI agent design, sandboxing, Claude Code as IaC partner
Networking and security
- CCNP-level R&S, EIGRP, OSPF, BGP, VPN, LAN/WAN
- Cisco, HP, Sophos UTM/XG, Barracuda
- ASD Essential 8, ACSC ISM, CIS Benchmark Levels 1-2
- CrowdStrike, Splunk, Sophos AV, hardening
Microsoft 365 and identity
- M365 administration and migrations, Exchange Online, SharePoint, OneDrive, Teams
- Active Directory, Entra ID / Azure AD, Conditional Access
- Intune, Autopilot, certificate-based local auth
Server, voice and tooling
- Windows Server, Linux, VMware, Hyper-V, Veeam, SCCM, SCOM
- 3CX (Advanced cert), Cisco CUCM/CME, FreePBX, Microsoft Teams Phone
- PowerShell, Python, Bash, JavaScript, C#
- Atlassian (Jira, Confluence), ServiceNow, Zabbix
Employment history
Independent practice running four automation-led ventures currently in trial, plus Cartograph: a self-hosted CMDB with multi-source discovery (14+ ingest sources), SQL Server temporal-table audit, ServiceNow-integrated RFC workflow, SIEM alerting for unsanctioned change, and a sandboxed on-prem AI agent (nine-tool allowlist, internal-only Docker network, no external AI dependency, human review before write actions). Three surfaces: admin web app, end-user portal, MAUI mobile app. Personal AWS estate operated end-to-end as Claude-Code-driven Terraform; this portfolio site itself ships under that pattern.
Technical lead and principal engineer on a multi-domain technology refresh, leading an 8-person Terraform and Ansible automation team inside a 30-strong infrastructure group. Estate of 1600+ servers across two data centres and three domains, serving approximately 60k public servants and a large volunteer workforce; around 50% of the estate retired through SaaS, rationalisation and platform moves. Architect of record for Essential 8, ACSC ISM and CIS Level 2 compliance across new and uplifted components.
Contracted into a security-overhaul programme focused on hardening the CS Energy domain environment against ACSC ISM, ASD Essential 8 and CIS Benchmark requirements across new and uplifted platform components. IT infrastructure scope only, no OT or SCADA. Implementation paused mid-flight when the contract was not renewed.
Stepped into the AWS estate after the previous engineer left, taking on a leading role across the work. Aggregated logs and config from 45 AWS accounts into a single logging account through CloudWatch and Splunk into ServiceNow, providing security and operations teams with their first consolidated cross-account view. During a full cost review I scoped a $200k AUD/month AWS storage reduction plan with a documented six-phase rollout. Plan was not adopted before contract end.
Hired into a DevOps role; the entire 6-person IT team had departed in the week between interview and start. Sole technical lead on the full Microsoft 365 programme: ~100 mailboxes migrated, AD to Azure AD with Conditional Access, SharePoint and OneDrive moves covering ~2 TB, CrowdStrike across ~100 endpoints, Intune and Autopilot. Restored Microsoft Teams Phone within 48 hours during the Queensland floods after the on-premises PBX became unavailable.
Senior escalation point across approximately 200 customers (5-user sites to 30-site enterprises), for complex technical issues requiring cross-domain troubleshooting, design input or non-standard remediation. Delivered numerous FreePBX systems with advanced configurations beyond GUI configuration. Built and migrated multiple Sophos XG and Barracuda firewall environments. Maintained a wide Citrix XenApp and Desktop fleet. Authored PowerShell automation for repeat work and shifted suitable cases to the service desk through documentation and training.
Helpdesk Team Leader and Systems Engineer at Network First (escalation point, ticket flow and SLA, documentation tooling). Technical Services Officer at Sonic Healthcare (L2-L3 escalations in a large healthcare SOE, RFCs, knowledgebase, PowerShell maintenance scripts). Foundation L1 and L2 support across hardware, MSP and onsite/remote roles, including Green Triangle Electronics.
References
Available on request. Current and previous managers contactable, including Tech Lead, Cloud & Automation Services (current contract) and Infrastructure Manager, Service Stream (previous engagement).