Open to opportunities

Cloud & DevOps
Engineer.

Cloud engineer and automation builder focused on Terraform, CI/CD, serverless, containers, security, and production-style AWS infrastructure.

Aiden Rhaa
Based in
Atlanta Metro, GA
AWS Cloud
Terraform IaC
01 // About

Infrastructure that ships.
Automation that scales.

aiden@cloud ~ whoami
cat professional_summary.txt
Cloud engineer building public AWS projects with Terraform, ECS Fargate,
Lambda, RDS, Cognito, Bedrock, CloudWatch, Docker, and CI.
cat highlights.json | jq '.impact'
"impact": {
  "clearpath": "short-lived AWS ECS Fargate, RDS PostgreSQL, CloudFront, WAF stack",
  "photoscribe": "Bedrock + Cognito governed media platform with operational guardrails",
  "pulpit": "live serverless Bedrock RAG app with auth, audit logs, and CI"
}

I'm a career-changing cloud and DevOps engineer with a business ownership background and recent hands-on AWS builds that are public, documented, and shaped around realistic operating constraints.

My strongest work is in AWS infrastructure and automation: Terraform modules, serverless APIs, ECS Fargate services, Cognito auth, private S3 flows, RDS/PostgreSQL, CloudWatch alarms, CI workflows, and repeatable deployment and teardown paths.

Currently pursuing cloud engineering, DevOps, and infrastructure roles where I can bring technical depth, operational judgment, and business context to teams that need builders who can ship and document real systems.

Location
Atlanta Metropolitan Area, GA
Email
aidenrhaacloud@gmail.com
Credentials
AWS Solutions Architect
AWS Developer Associate
HashiCorp Terraform Associate
Education
Berklee College of Music — Songwriting
Saint Louis University — Engineering Physics
Languages
English & Korean
02 // Skills

Cloud Stack

Grouped by how I use the tools: delivery, data, infrastructure, security, operations, and application code.

Compute & Delivery

Containers, functions, APIs, and CDN-backed frontends across Clearpath, Super Transcriber, Pulpit, and PhotoScribe.

Core
ECS Fargate Lambda API Gateway CloudFront Docker ECR

Also Used
ALB · Cloudflare Pages · Netlify
IaC & CI

Repeatable infrastructure, validation, security scanning, and documented deploy/teardown paths.

Core
Terraform Modules GitHub Actions OIDC Checkov

Also Used
Plan / Apply / Destroy · Runbooks · Remote State Ready
Security & Identity

Auth, secret handling, network boundaries, and edge controls for public AWS projects.

Core
IAM Cognito Secrets Manager WAF SSM

Also Used
KMS · CloudTrail · GuardDuty · Private Subnets
Platform Ops

Event-driven workflows, observability, DNS/TLS, and validated Kubernetes/GitOps infrastructure.

Core
VPC CloudWatch Step Functions SQS EventBridge EKS

Also Used
Route 53 · ACM · Helm · ArgoCD · Prometheus · Grafana
Data & AI Services

Storage, relational data, vector search, OCR, transcription, image matching, and Bedrock-backed workflows.

Core
RDS PostgreSQL RDS Proxy S3 DynamoDB Bedrock S3 Vectors

Also Used
Textract · Rekognition · Transcribe · SQLite · Supabase
Application Code

Backend APIs, serverless handlers, frontend demos, data pipelines, and automation scripts.

Core
Python TypeScript React FastAPI SQL Bash/Shell

Also Used
JavaScript · Flask · YAML · JSON · HTML/CSS
03 // Projects

Built & Shipped

Public cloud projects built around real AWS services, Terraform, CI, architecture docs, runbooks, and working deployment paths.

Featured Project
Clearpath — AWS Fargate Lead Intelligence API
View Repo

Production-pattern FastAPI service for real estate lead intelligence, deployed in a short-lived AWS run and then destroyed cleanly. The stack ran 2 healthy ECS Fargate tasks, ALB routing, CloudFront/WAF, private RDS PostgreSQL, RDS Proxy, CloudWatch alarms, modular Terraform, and a GoHighLevel-compatible webhook receiver path.

Compute
2 healthy Fargate tasks · FastAPI · Docker · ECR · ALB target groups
Network & Security
VPC · private subnets · CloudFront · WAF · Secrets Manager
Data Layer
RDS PostgreSQL · RDS Proxy · private database tier
Operations
Live AWS run notes · troubleshooting notes · 93-resource teardown
Terraform ECS Fargate Docker ALB CloudFront WAF RDS PostgreSQL RDS Proxy CloudWatch GitHub Actions Checkov
PhotoScribe AI — Governed Media Search
Serverless media asset platform using Bedrock Nova/Titan, S3 Vectors, Lambda, API Gateway, role-based Cognito groups, S3, DynamoDB policy/audit records, SQS ingest, and Terraform-managed observability.
⚡ Role-based Cognito groups · SQS DLQ · CloudWatch alarms
Pulpit — Serverless Bedrock RAG
Live bilingual sermon search app with Cloudflare Pages frontend and a low-idle-cost AWS backend. Cognito protects query routes, Lambda performs retrieval and answer generation, DynamoDB stores cache/audit records, and S3 holds the transcript index.
⚡ Live demo · Bedrock Nova/Titan · low-idle-cost architecture
FaceID — Serverless Photo Matching
Photo sorting app connected to a Terraform-managed AWS backend with Cognito JWT auth, API Gateway, Python Lambda, private S3 presigned uploads/previews, Rekognition face comparison, owner-scoped DynamoDB records, and CloudWatch alarms.
⚡ Private S3 · presigned uploads/previews · owner-scoped records
Super Transcriber — Async Transcription Pipeline
Cost-aware transcription app with custom Cognito auth, direct browser-to-S3 uploads, Lambda/API Gateway backend, Amazon Transcribe async jobs, EventBridge completion handler, DynamoDB job tracking, and Cloudflare Pages frontend.
⚡ S3 upload · Transcribe job · EventBridge completion · no always-on compute
DocuFlow OCR — Serverless Invoice Processing
Accounts payable OCR workflow with presigned S3 intake, API Gateway, Step Functions, Textract async document analysis, Python Lambda parsing, DynamoDB job/audit tables, review APIs, SQS DLQ, CloudWatch alarms, and Terraform.
⚡ Step Functions · Textract · review queue · SQS DLQ
Pulpit V2 — EKS Platform Migration
Deployed and documented EKS/GitOps platform track extending the live Pulpit serverless app with Terraform EKS modules, ECR, Helm charts, tenant namespaces, ArgoCD app-of-apps manifests, IRSA-ready service accounts, ServiceMonitor starters, and Grafana dashboard artifacts. Destroyed after validation to avoid ongoing cluster costs.
⚡ Deployed then destroyed · EKS · Helm · ArgoCD · Prometheus/Grafana
Market Scout — Static Data Pipeline
Real estate market analytics tool that transforms Redfin public market data into compact static JSON artifacts for city, ZIP, and county comparison. Migrated from a local Flask app to a Cloudflare Pages deployment path with GitHub Actions scheduled rebuilds.
⚡ Python build pipeline · scheduled rebuilds · low-cost static hosting
⚙️
AegisDesk — CloudOps Control Plane
Policy-aware AI cloud operations demo with a FastAPI gateway, Next.js frontend, OPA/Rego policy checks, signed demo auth tokens, redaction/model routing, mock MCP-style tools, audit events, OpenTelemetry, Docker Compose, CI, and plan-only AWS Terraform.
⚡ AI gateway · policy enforcement · audit trail · local runnable demo
04 // Experience

Where I've Built

Business ownership and client delivery experience translated into cloud infrastructure, automation, and operational workflows.

Business ownership background with hands-on technical responsibility across automation, web infrastructure, CRM/API workflows, and operational systems.
Founder / Automation & Systems Lead
Dec 2016 – Present
Clearpath Property Group / Boston Probate Solutions · Atlanta Metropolitan Area
  • Own real estate acquisition workflows and technical automation for lead intake, public records research, market data, CRM integration, and seller communication
  • Engineered Python-based data ingestion workflows to scrape, aggregate, normalize, and export public county records and property documents for acquisition research
  • Designed webhook-driven API workflows between CRM platforms, AI inference prompts, communication tools, and lead qualification processes
  • Implemented API-driven voice AI workflows with contextual prompting, guardrails, intent capture, transcript summaries, and follow-up data handoff
  • Built and documented the Clearpath Lead Intelligence API as a public cloud engineering project tied to real business workflow requirements, including live AWS run notes and teardown workflow
Creative Director / Operations
Oct 2010 – Present
Aiden Rhaa Photography / Visual Impact Studios · Atlanta Metropolitan Area
  • Managed client-facing web properties, DNS records, SSL/TLS certificates, Cloudflare configuration, hosting, GitHub-based deployments, Supabase/Netlify workflows, cPanel, SFTP/SSH access, and WordPress administration
  • Directed cross-functional creative, technical, and contractor workflows for deadline-driven client projects with high service expectations
  • Built, rebuilt, or maintained static and CMS websites with focus on performance, SEO, image optimization, mobile responsiveness, and low operating cost
  • Translated client and business requirements into working web infrastructure, publishing workflows, and operational processes
  • Delivered 200+ client projects across a 15-year service business, balancing technical execution, vendor coordination, customer communication, and budget constraints
Multimedia Producer / Technical Workflow Lead
May 2009 – Dec 2016
ProMedia Productions · Boston, MA
  • Managed full project lifecycle for audio and video productions across small business, corporate, and education sectors
  • Built a macOS Automator workflow to bulk sort and rename thousands of media files by structured naming conventions, reducing manual file-management work
  • Designed custom recording studio configurations including acoustic treatment planning, noise reduction analysis, and equipment layout
  • Sourced and coordinated per-project freelance crews across diverse production scopes
05 // Contact

Open To Cloud Engineering Roles

I am pursuing AWS-focused roles where Terraform, CI/CD, serverless, containers, security, and clear operational documentation matter.

AWS Cloud Engineer Cloud DevOps Engineer Cloud Infrastructure Engineer Platform Engineer
Best fit: teams that value practical builders who can connect business requirements to AWS architecture, automation, runbooks, and working deployments.