josh@fechner:~$ whoami_

Josh Fechner

Sr. DevOps & Cloud Engineer

Hands-on DevOps engineer with 12+ years supporting enterprise systems and applications. Formerly 5x AWS certified, including Solutions Architect Professional and DevOps Engineer Professional. I design, build, and operate cloud platforms and the paved roads teams ship on.

location Minneapolis, MN focus AWS / Terraform / Kubernetes / CI-CD status open to opportunities
$cat

about.md

// 01

I have spent the last decade building and operating cloud infrastructure on AWS, and the decade before that as an electrical engineer and systems administrator. That path shows up in how I work: I like understanding a system end to end, from the hardware and the network up through the pipelines and the paved-road patterns product teams actually use.

Most of my recent work is platform and DevOps engineering: multi-account, multi-region AWS foundations (account provisioning, identity, and networking), internal developer platforms on EKS, infrastructure as code with Terraform, CI/CD, observability, and carrying the pager for what I build. I care about reliability, sensible guardrails, and keeping things simple enough to reason about.

AWS Terraform Kubernetes Go Docker CI/CD Observability Platform Engineering
$git log

--experience

// 02

Principal DevOps Engineer @ Cargill

Feb 2023 - Present
  • Designed and built a multi-account, multi-region AWS architecture, including account provisioning and bootstrapping, identity, and networking with AWS Cloud WAN.
  • Engineered and operated Cargill's internal cloud platform (CPI) on AWS EKS, giving product teams a paved-road path to ship containerized services; core platform written in Go with Docker.
  • Carried the platform on-call rotation, resolving production incidents and driving follow-up reliability improvements.

Sr. DevOps Engineer / Director of DevOps @ FOXO Technologies

Feb 2021 - Feb 2023
  • Greenfield development of a new life insurance application, including CI/CD pipelines and all infrastructure as code using Terraform.
  • Developed CI/CD pipelines for infrastructure and application code using GitHub Actions, Checkov, Yor, and Snyk.
  • Built out a multi-account cloud architecture, including accounts used as development sandboxes.
  • Implemented Datadog for observability into logs and metrics.
  • Built up a team of high-performing DevOps engineers to support our development efforts.
  • Worked with the security team to address compliance requirements (SOC 2).

Sr. DevOps Engineer @ Federal Reserve Bank of Minneapolis

Jun 2019 - Feb 2021
  • Led the initial PoC and greenfield development of a new application.
  • Developed initial CI/CD pipelines for infrastructure and application code.
  • Integrated code scanning tools into application CI/CD pipelines (Fortify, NexusIQ, SonarQube).
  • Worked with architecture and application development teams to design solutions to fit business requirements.
  • Migrated source control and CI/CD from Bitbucket/Bamboo to GitLab.
  • Developed CDK patterns for application teams to consume for serverless infrastructure.
  • Wrote Terraform to provision an entire ingress architecture for an application behind a private API Gateway.

Earlier - Electrical Engineering & Systems Administration

$ls

skills/

// 03

cloud / aws

  • EC2
  • EKS
  • Lambda
  • S3
  • RDS
  • DynamoDB
  • VPC
  • Route 53
  • IAM
  • API Gateway
  • CloudFront
  • ELB
  • SQS
  • SNS
  • SES
  • Elastic Beanstalk
  • Config

iac / provisioning

  • Terraform
  • AWS CDK
  • CloudFormation
  • Serverless Framework

containers / orchestration

  • Docker
  • Kubernetes
  • Amazon EKS

ci / cd

  • GitHub Actions
  • GitLab CI
  • Jenkins
  • Bitbucket Pipelines
  • Checkov
  • Snyk
  • Yor

languages

  • Go
  • Python
  • Bash
  • Ruby
  • C

observability

  • Datadog
  • New Relic
  • SumoLogic

systems / web / data

  • Linux
  • VMware ESXi
  • Windows
  • Nginx
  • Apache
  • Tomcat
  • WebSphere
  • PostgreSQL
  • MySQL

education

  • BS Electrical Engineering, Iowa State University (2000-2005)
$tree

architecture/

// 04

Diagrams for infrastructure I have designed or run. This site itself is one of them: a private S3 bucket served through CloudFront with Origin Access Control, DNS and TLS via Route 53 and ACM, provisioned with OpenTofu and deployed by a GitHub Actions pipeline that authenticates to AWS with OIDC (no static keys).

$./contact.sh

// 05
githubphekno
linkedinjoshua-fechner
locationMinneapolis, MN