all skills

Networking

advanced · production-tested

“Packets, prefixes and zero-trust boundaries.”

How I work with it

Cloud networking is the foundation everything else stands on. I design segmented VPCs, central inspection, private-by-default endpoints and DNS layouts that don't surprise anyone at scale.

When things break, I read packet flows and route tables for sport — tcpdump, VPC flow logs and a healthy suspicion of overlapping CIDRs.

Knowledge areas

  • VPC segmentation, Transit Gateway hub-and-spoke, GWLB inspection
  • DNS architecture — Route53, private hosted zones, split-horizon
  • Load balancing layers: NLB vs ALB vs CloudFront edge caching
  • TLS everywhere, security groups as code, least-privilege egress

knowledge shown honestly — no percentages, no infographics.
want the deep-dive version? ask me