Twelve years building and deploying enterprise infrastructure for classified DoD missions, from servers and networks to cloud, applications, and virtualization. I focus on understanding what the mission needs, delivering it reliably, and seeing the hard problems through.
Senior Cloud Engineer and Solutions Architect with 12 years architecting, deploying, and supporting enterprise infrastructure end to end, from system and server components up to full network stacks, across on-prem, hybrid, and Azure environments that support classified DoD missions. I'm just as comfortable building and deploying applications, running virtualization platforms, and administering the Microsoft 365 suite. At my core I'm a builder and problem solver: I work to understand what the mission needs, deliver it reliably, and see complex problems through.
What I bring to every engagement, across infrastructure, networking, cloud, virtualization, and the Microsoft ecosystem.
Click any role to explore it. Use ← → arrow keys to navigate.
Earlier: Computer Technician at TigerDirect (2014 to 2015) · IT Consultant at CompuPlanet (2014)
Personal testing environments I started building because of my work, sandboxes where I get hands-on with the technologies I use professionally and try things I can't touch in a live environment. These are learning labs, not production, and they don't mirror any production system.
A self-hosted Linux services lab I started because of my work, a Docker-orchestrated host running Grafana, Matrix/Element, Wiki.js, Zammad, and MobSF behind a Traefik reverse proxy with custom bots on a shared PostgreSQL backend. A personal sandbox for getting hands-on with containerized services and the full database and service lifecycle, a test environment, not production, and not a copy of one.
View on GitHub →This very site. A framework-free static portfolio engineered for armandorodriguez.cloud, with Cloudflare DNS and email routing and a deploy pipeline to Azure Static Web Apps. Hand-built UI, version-controlled on GitHub, shipping on the platform I specialize in.
View on GitHub →Claude wired into local tools and data through custom Model Context Protocol (MCP) servers, automating research, file operations, and reporting workflows. A practical exploration of applied AI and agent integration in a real toolchain.
View on GitHub →A library of PowerShell tools built on the Microsoft Graph API to automate Microsoft 365 and Intune lifecycle tasks like user provisioning, license assignment, and compliance reporting, replacing repetitive manual admin with repeatable, auditable scripts.
View on GitHub →Monitoring platform for the homelab, with Prometheus scraping metrics across hosts and containers, Grafana dashboards for health and capacity, and alerting that fires on service degradation. Full visibility into every node and service.
View on GitHub →Security-operations lab built on Wazuh, with agents shipping logs from Windows and Linux hosts, custom detection rules, file-integrity monitoring, and alerting dashboards to practice threat detection and incident response end to end.
View on GitHub →Home lab modeling enterprise hybrid identity: on-prem Active Directory (AD DS, DNS, GPO) synced to Entra ID via Entra Connect, with ADFS federation and conditional-access policies. Used to validate identity and authentication flows before production change.
View on GitHub →Segmented home network engineered around an OPNsense firewall, with VLAN isolation for trusted, IoT, and lab zones, a WireGuard VPN for remote access, and Suricata IDS/IPS inspecting traffic. Hands-on routing, NAT, and policy design backing the CCNA.
View on GitHub →Resilience lab built on Proxmox Backup Server and Veeam, with scheduled, deduplicated backups across VMs and containers, automated restore testing, and tiered retention. Proves recoverability with regular point-in-time restore drills.
View on GitHub →Idempotent Ansible playbooks and roles that provision, patch, and harden the homelab fleet from a single control node, version-controlled in Git, turning manual server setup into repeatable, declarative automation.
View on GitHub →Self-hosted Jellyfin media platform on Linux with hardware-accelerated transcoding, organized libraries, and secure remote access fronted by Cloudflare. A hands-on exercise in storage, networking, reverse proxying, and service hardening.
View on GitHub →Multi-host VMware lab with ESXi hosts under vCenter running HA, DRS, and vMotion, segmented virtual networking, and shared storage. A sandbox for testing infrastructure designs, snapshots, and recovery scenarios safely before they touch production.
View on GitHub →Formal grounding in network architecture, system design, and the physics behind the hardware.
Microsoft, Cisco, CompTIA, AWS, and Linux.
The stuff that keeps me balanced (and a little competitive).
Open to senior cloud, infrastructure, and solutions architect roles. Cleared and ready.