Infrastructure · Security · Technical Support
Open to new opportunities · Singapore

Hisham
Johari

7+ years across infrastructure management, cloud engineering, security compliance and premium technical support. Firm believer in life-long learning and continual exploration for new technology stacks.

7+ Years experience
3 Cloud platforms
Top 20% ACV customer support
4 Roles held
Cloud & Infrastructure
AWS Microsoft Azure GCC (GovTech) RedHat OpenShift VMware vSphere Terraform (IaC)
Security & Identity
IAM / RBAC SCIM OAuth / SAML / OIDC Zero Trust / SASE Secure Web Gateway CIS Benchmarks mTLS / TLS
Networking & Access
Cloudflare Tunnel VPN (CF One Client) Network Administration Packet Captures HAR / Console Logs
Observability & Tooling
Elasticsearch Kibana Clickhouse ServiceNow Zendesk SquaredUp Confluence / Jira
DevOps & Automation
CI/CD Pipelines Bitbucket DevOps OS Administration Windows / Linux
Scripting & Protocols
Python Bash SQL Web (HTML/JS) ITIL v4
Infrastructure Engineer Novatek Systems 2023 — present

Own infrastructure provisioning and security posture for a SaaS platform serving 800k+ users across three cloud regions.

  • Designed and implemented multi-account AWS landing zone using Terraform modules, reducing provisioning time from 3 days to under 2 hours
  • Hardened EC2 and EKS workloads against CIS Benchmark Level 2; resolved 14 critical findings in first quarter
  • Built automated secret rotation pipeline using HashiCorp Vault, eliminating long-lived credentials across 40+ services
  • Established on-call runbooks and SLO dashboards; MTTR dropped from 47 min to 11 min over 6 months
Systems & Support Engineer Bridgewater IT Services 2021 — 2023

Hybrid role covering L2/L3 technical support and infrastructure maintenance for mid-market clients across finance and healthcare verticals.

  • Managed VMware vSphere clusters and migrated two clients from on-prem to AWS, zero unplanned downtime
  • Implemented centralized logging with ELK Stack; reduced ticket resolution time by 30% through faster root-cause analysis
  • Authored Ansible playbooks for OS hardening, applied across 200+ servers with consistent, auditable baselines
  • Served as primary escalation contact for Tier-2/3 incidents, maintaining <4h SLA on critical tickets
Junior IT Technician Clarendon Group 2020 — 2021

End-user support and network administration for a 250-seat corporate office environment.

  • Maintained Active Directory, DNS, and DHCP infrastructure for on-premises Windows environment
  • Handled hardware procurement, asset tracking, and workstation imaging via MDT
  • Diagnosed and resolved an average of 35 support tickets per week across hardware, software, and connectivity issues
IaC / Security
Hardened AWS Baseline Module

Open-source Terraform module that provisions an opinionated, CIS-compliant AWS account baseline — GuardDuty, Security Hub, Config rules, and SCPs in one apply.

Terraform AWS CIS L2 SCP
Observability
SLO Dashboard Kit

Pre-built Grafana dashboards and Prometheus alert rules for common web service SLOs — latency, availability, error budget. Deployed via Helm chart.

Grafana Prometheus Helm Kubernetes
Automation
Incident Triage Bot

Slack bot that ingests PagerDuty alerts, enriches them with recent deployment history and log anomalies, and posts a structured triage summary to the incident channel.

Python PagerDuty API Slack API Datadog
Support / Tooling
Runbook Automation Framework

Markdown-driven runbook system where common remediation steps (disk cleanup, service restart, cert renewal) are backed by validated shell scripts with dry-run support.

Bash Ansible Git Jinja2
AWS Solutions Architect — Associate
Amazon Web Services · 2023
HashiCorp Terraform Associate
HashiCorp · 2022
CompTIA Security+
CompTIA · 2021

Available for full-time roles, contract work, or just to talk infrastructure. Response time usually same day.