Herman Wong
DevOps Engineer with 7+ years in IT, coming from the Ops side. I focus on eliminating manual work through infrastructure automation - turning multi-week manual efforts into repeatable, version-controlled pipelines you can run with a single click.
Most of my recent work has been Terraform and Ansible on AWS. I've built everything from multi-cloud VPN connectivity (AWS-to-Azure, dual tunnels with BGP) to fully automated Splunk HA cluster deployments that cut provisioning from 153 hours to under 5. I write CI/CD pipelines in GitLab CI and GitHub Actions, build hardened container images, and use Ansible Molecule for testing infrastructure code locally before it touches a cloud account.
I also integrate AI tooling (GitHub Copilot, Claude) into infrastructure workflows - not as a gimmick, but to speed up the write-test-fix loop on Ansible roles and Terraform modules.
Key Areas of Expertise:
- Cloud Infrastructure: AWS (EC2, VPC, EKS, Transit Gateway, IAM, S3, RDS, KMS), Azure (VPN Gateway, Entra ID), multi-cloud connectivity
- Infrastructure as Code: Terraform, Terragrunt, Ansible (roles, collections, Molecule testing), Packer AMI/container builds
- CI/CD & Automation: GitLab CI, GitHub Actions, container image pipelines with Trivy scanning, automated deployment orchestration
- Monitoring & Observability: Splunk HA clusters, Elasticsearch, Prometheus, Grafana, vRealize Operations
- Scripting: Python, PowerShell, Bash, Golang (practical modifications to existing tools)
- AI-Augmented Workflows: Claude Code, GitHub Copilot, MCP integrations (Firecrawl, Chrome DevTools), orchestrator-agent patterns for token-aware automation
This website is a static site hosted in an AWS S3 bucket behind a CloudFront CDN. Changes are made in VSCode, sync'd to GitHub, and then deployed to AWS via a simple CI/CD pipeline with GitHub Actions.
- Front-end (S3 bucket, GitHub Actions CI/CD to sync main branch with S3)
- Infrastructure (backend in Terraform)
Visits: