How I work with it
Cloud networking is the foundation everything else stands on. I design segmented VPCs, central inspection, private-by-default endpoints and DNS layouts that don't surprise anyone at scale.
When things break, I read packet flows and route tables for sport — tcpdump, VPC flow logs and a healthy suspicion of overlapping CIDRs.
Knowledge areas
- VPC segmentation, Transit Gateway hub-and-spoke, GWLB inspection
- DNS architecture — Route53, private hosted zones, split-horizon
- Load balancing layers: NLB vs ALB vs CloudFront edge caching
- TLS everywhere, security groups as code, least-privilege egress
knowledge shown honestly — no percentages, no infographics.
want the deep-dive version? ask me