
Terraform AWS Reference Architecture
Progressive Terraform examples from a single EC2 instance to a full VPC with private RDS โ reusable modules, remote state, CI-validated.
AWS Community Builder ยท Founder, NextGen Playground ยท DevOps Educator & Trainer
I'm Durrell Gemuh โ a senior DevOps and Cloud Infrastructure Engineer with 5+ years designing, automating, and operating production-grade infrastructure across AWS, GCP, and Azure. AWS Community Builder, DevOps trainer, and founder of NextGen Playground.

An interlinked ecosystem that composes into one platform lifecycle โ provision, build, deliver, operate, secure.

Progressive Terraform examples from a single EC2 instance to a full VPC with private RDS โ reusable modules, remote state, CI-validated.

Reusable GitHub Actions workflows โ build/test, security scan, build-push-sign (cosign), deploy โ with a sample app that uses them.

Metrics, logs, and traces as code: Prometheus, Grafana, Loki, Tempo, Alertmanager via Docker Compose, plus Helm values for Kubernetes.

ArgoCD app-of-apps delivering a Helm sample app to Kubernetes, with a local kind bootstrap โ Git as the single source of truth.

HashiCorp Vault in HA mode with integrated Raft storage and Kubernetes auth, deployed via Helm, with a secret-injection example.

Drop-in security tooling โ pre-commit, gitleaks, Trivy, tfsec, checkov, hadolint โ wired into one CI pipeline.
Design and build production-grade infrastructure on AWS, GCP, and Azure โ secure, automated, and built to scale.
CI/CD pipelines, Kubernetes platforms, Infrastructure as Code, and cloud cost optimisation for teams of any size.
Hands-on team training and masterclasses on Kubernetes, Terraform, CI/CD, observability, and DevOps practices.
Career guidance and technical mentorship for engineers breaking into or levelling up in DevOps and cloud.
From clients, colleagues, and engineers across different organisations and continents.
โDurrell completely transformed our infrastructure. What used to take our team days to provision now happens in minutes. He hardened everything with Cloudflare โ CDN, WAF, and DDoS protection โ so our sites are fast and available worldwide. The platform he built supports over 5,000 sites today and is load-tested to scale well beyond that.โ
โOne of the most thorough DevOps engineers I've worked with. He didn't just fix the pipeline โ he documented everything, trained the team, and left the system better than he found it.โ
โDurrell's Kubernetes sessions at Liora were the clearest I've seen. He has a rare ability to explain complex infrastructure concepts in a way that actually sticks.โ
โThe observability stack he set up for us cut our incident detection time from 30 minutes to under 2. We went from flying blind to having full visibility overnight.โ
โDurrell built our entire CI/CD pipeline from scratch and mentored two junior engineers through the process. The pipeline has been running without issues for over a year.โ
โWhat impressed me most was how Durrell approached the work โ he asked the right questions before touching anything, understood our constraints, and delivered something we could actually maintain ourselves.โ
If a human is doing it more than twice, a machine should be doing it. Manual processes are technical debt in disguise.
A system you can't observe is a system you can't trust. Metrics, logs, and traces are how you sleep at night.
Infrastructure that can't be version-controlled, reviewed, and reproduced will eventually fail you silently.
Strong engineering cultures are built on documentation and shared learning, not individual heroics.
Open to DevOps & cloud roles, consulting, training, and speaking.