Herman Wong
DevOps Engineer with 7+ years in IT, coming from the Ops side. I focus on eliminating manual work through infrastructure automation - turning multi-week manual efforts into repeatable, version-controlled pipelines you can run with a single click.
Most of my recent work has been Terraform and Ansible on AWS. I cut Splunk cluster deployments from 153 hours of manual work to under 5, built CI/CD pipelines that deploy full environments on a single button push in roughly 45 minutes, and resolved a multi-week AWS-to-Azure VPN deadlock in two days by capturing both ends in Terraform. I also test infrastructure code locally in containers (Ansible Molecule) so configuration errors surface before anything touches a cloud account.
I also integrate AI tooling (GitHub Copilot, Claude) into infrastructure workflows - not as a gimmick, but to speed up the write-test-fix loop on Ansible roles and Terraform modules.
Key Areas of Expertise:
- Cloud Infrastructure: AWS (EC2, VPC, EKS, Transit Gateway, IAM, S3, RDS, KMS), Azure (VPN Gateway, Entra ID), multi-cloud connectivity
- Infrastructure as Code: Terraform, Terragrunt, Ansible (roles, collections, Molecule testing), Packer AMI/container builds
- CI/CD & Automation: GitLab CI, GitHub Actions, container image pipelines with Trivy scanning, automated deployment orchestration
- Monitoring & Observability: Splunk HA clusters, Elasticsearch, Prometheus, Grafana, vRealize Operations
- Scripting: Python, PowerShell, Bash, Golang (practical modifications to existing tools)
- AI-Augmented Workflows: Claude Code, GitHub Copilot, MCP integrations (Firecrawl, Chrome DevTools), orchestrator-agent patterns for token-aware automation
This website is a static site hosted in an AWS S3 bucket behind a CloudFront CDN. Changes are made in VSCode, sync'd to GitHub, and then deployed to AWS via a simple CI/CD pipeline with GitHub Actions.
- Front-end (S3 bucket, GitHub Actions CI/CD to sync main branch with S3)
- Infrastructure (backend in Terraform)
Visits: