About Me
Architecting AWS landing zones, global networks, and GPU-accelerated AI platforms from the ground up
Hello, I'm Vitale Mazo
I'm a Senior Cloud Platform Engineer with over 19 years of hands-on experience in enterprise IT, specializing in architecting AWS platforms and landing zones from the ground up. My focus is on building standardized, policy‑compliant cloud foundations using AWS Control Tower, Account Factory for Terraform (AFT), Service Catalog, CloudFormation, and Terraform.
I bring deep expertise in designing multi‑account AWS architectures, automating platform provisioning with CodeBuild and CodePipeline, and orchestrating hybrid environments across AWS, Azure, and GCP. I enable development teams to rapidly deliver value through self‑service infrastructure, GitOps workflows (FluxCD, ArgoCD), and robust governance with guardrails and observability built in.
Most recently, my work centers on the newest layer of the stack: designing global enterprise networks on AWS Cloud WAN, running GPU-accelerated AI training and inference on Amazon EKS with NVIDIA compute and Karpenter, and building intelligent automation into the platform itself with AI agents, MCP, Amazon Bedrock, and n8n. I hold current AI certifications from AWS (Generative AI Developer – Professional), NVIDIA (Agentic AI Professional), Google Cloud (ML Engineer), and Microsoft (Azure AI Engineer).
I hold a Master's Degree in Network & Communications Management with a focus on Information Security, and a Bachelor of Science in Computer Science with a concentration in Computer Forensics.
Senior Cloud Platform Engineer Profile
Senior Cloud Platform Engineer with 19+ years across AWS, Azure, and GCP. I architect AWS landing zones and platform foundations with Control Tower, Account Factory for Terraform (AFT), and Service Catalog, and design global enterprise networks on AWS Cloud WAN. Today my focus is GPU-accelerated AI infrastructure — running NVIDIA-powered training and inference workloads on Amazon EKS with Karpenter — and intelligent automation with AI agents, MCP, and Amazon Bedrock. I implement DevSecOps and SRE practices to deliver reliability, performance, and security at enterprise scale, and I scale developer teams through self-service platform engineering.
Core Competencies
Cloud & DevOps
Networking & Security
Automation & Scripting
AI & GPU Infrastructure
Infrastructure
Compliance & Standards
Contact Information
vitalemazo@gmail.com
+1-718-790-1150
Austin, Texas, U.S.A
Languages
Professional Experience
Sr Cloud Platform Engineer
Confidential — Fortune 500 Financial Services
Austin, TX • January 2026 — Present
Architect the enterprise’s global network on AWS Cloud WAN and scale GPU-accelerated AI workloads on Amazon EKS with NVIDIA compute. Drive multi-account vending at scale with Control Tower and Account Factory for Terraform (AFT), and scale developer teams through self-service platform engineering, golden-path IaC, and paved-road pipelines.
- Global AWS Cloud WAN core network — policy as code, segmented routing, multi-Region edges
- Cloud WAN service insertion with centralized inspection & egress (AWS Network Firewall)
- GPU-accelerated AI on EKS — NVIDIA GPU Operator, MIG/time-slicing, Karpenter auto-provisioning
- GitOps-driven account vending with Control Tower + AFT and SCP guardrail baselines
- Golden-path Terraform modules, Helm charts, and paved-road pipelines for developer scaling
Sr Cloud Platform Engineer
COUNTRY Financial
Austin, TX • July 2023 — January 2026
Architect and deploy AWS landing zones using Control Tower, Account Factory for Terraform (AFT), and Service Catalog to provision standardized, policy‑compliant accounts at scale. Build multi‑cloud platform foundations (Azure/AWS) with Terraform, CloudFormation, and Kubernetes. Automate infrastructure pipelines via CodeBuild/CodePipeline and GitLab CI/CD, integrating DevSecOps with SRE best practices and zero‑trust networking.
- Designed AWS landing zone architecture with Control Tower and AFT for multi‑account governance
- Built Service Catalog portfolios and CloudFormation templates for self‑service provisioning
- Automated platform pipelines using CodeBuild, CodePipeline, and GitLab CI/CD
- Standardized Terraform modules and platform patterns across environments
- Implemented shift‑left security, SRE observability baselines, and zero‑trust controls
Sr Cloud Platform Engineer
Bright Health
Austin, TX • January 2020 — June 2023
Built AWS platform foundations with CloudFormation and Terraform for healthcare analytics workloads. Designed multi‑account strategies using AWS Organizations and Service Catalog. Deployed Docker/Kubernetes microservices on EKS, automated CI/CD with CodeBuild and GitHub Actions, and modernized monoliths into containerized services.
- Established AWS multi‑account governance with Organizations and CloudFormation StackSets
- Automated infrastructure pipelines with Terraform, CodeBuild, and GitHub Actions
- Delivered container platforms on EKS for healthcare analytics
- Enabled advanced data ingestion and AI/ML pipelines (SageMaker, Azure ML)
Sr Cloud Platform Engineer
U.S. Department of Veterans Affairs
Austin, TX / Remote • April 2019 — August 2020
Architected secure AWS GovCloud landing zones and Azure.GOV platform foundations with CloudFormation, Terraform, and Jenkins for FedRAMP‑regulated workloads. Deployed HPC clusters to support AI‑driven modules and enhanced multi‑region failover with identity‑based security.
- Designed AWS GovCloud landing zone patterns with CloudFormation and Terraform
- Delivered FedRAMP/NIST‑aligned hybrid cloud platform architectures
- Built HPC clusters to support AI workloads at scale
- Reduced operational overhead via IaC and automated provisioning pipelines
Sr Systems Architect / Engineer
Novus Partners / SEI
New York, NY • March 2014 — March 2020
Implemented Docker/Kubernetes in AWS/Azure for high‑volume financial analytics. Orchestrated DR strategies with VMware ESXi and SAN replication. Provisioned HPC resources to accelerate risk analysis and historical analytics.
- Production‑grade Kubernetes on AWS/Azure
- VMware ESXi + SAN replication DR designs
- Scaled big‑data workflows for analytics
- Hardened multi‑cloud routing and continuity
Sr Network Infrastructure Administrator
National Bank of Kuwait (NBK)
New York, NY • November 2012 — March 2014
Deployed VMware ESXi, SAN storage, and advanced network security for datacenter consolidation. Implemented Cisco WAN/VPN/firewall policies to safeguard core banking apps; designed HA for critical workloads.
- Datacenter consolidation with VMware ESXi & SAN
- Cisco‑based WAN/VPN/firewall hardening
- High‑availability blueprints for core banking
- Hybrid datacenter/cloud platform enablement
Education & Certifications
Education
Master of Network & Communications Management
Graduate School of Management
2013
Information Security (Honors)
Bachelor of Computer Science
University of Computer Science
2012
Computer Systems Forensics (Summa cum laude)
Certifications
34 total across 9 vendors
Active
Previously Held
+ 10 more expired certifications