Available for hire & freelance

Leonardo
Marques Lima
Cloud Engineer

I build production-grade infrastructure on AWS with Terraform — networks, containers, CI/CD pipelines, serverless backends.

Leonardo Marques Lima

Who I am

My background is in networking — CCNA-certified — which gave me a deep foundation in how traffic actually flows between environments. I've taken that into the cloud, where I now design and ship AWS infrastructure end-to-end with Terraform.

I care about the parts of cloud work that are easy to skip: solid CI/CD with PR reviews, OIDC instead of long-lived keys, security scanning in the pipeline, and READMEs that someone other than me can actually follow.

I'm currently looking for a full-time Cloud / DevOps Engineer role and take on freelance infrastructure projects on the side. If you're a small team that needs a Terraform foundation laid down properly — that's exactly the work I love doing.


Tools I reach for

Day-to-day, production-tested.

Terraform
AWS
VPC / Networking
ECS Fargate
RDS
S3 + CloudFront
Lambda
API Gateway
DynamoDB
IAM / OIDC
Route 53 + ACM
GitHub Actions
Checkov
Linux
Bash / Python

Featured Projects

All Terraform. All on AWS. Full READMEs and architecture diagrams in every repo.

Hub-and-spoke network architecture on AWS. Centralized hub VPC with multiple spoke VPCs connected via Transit Gateway — the standard enterprise pattern for isolated workloads that share egress, DNS, and on-prem connectivity through a single point.

Terraform Transit Gateway VPC Networking Multi-account ready

Static website with full CI/CD pipeline. S3 + CloudFront + Route 53 + ACM managed by Terraform. GitHub Actions runs terraform plan on every PR and apply on merge. OIDC auth — zero long-lived secrets. Serverless contact form via Lambda + API Gateway + DynamoDB.

Terraform S3 CloudFront Lambda API Gateway DynamoDB GitHub Actions OIDC

Three-tier application on ECS Fargate + RDS. Serverless containers behind an Application Load Balancer, talking to a private RDS database in a multi-AZ VPC. Public, app, and data subnets cleanly separated — exactly the layered design you'd run in production.

Terraform ECS Fargate RDS ALB VPC Multi-AZ

All repositories →


Let's work together

Available for short and medium-term cloud infrastructure projects. If you need Terraform laid down properly the first time — or someone to clean up infrastructure that grew faster than the docs did — I'd love to help.

AWS Foundations

Greenfield setup: VPCs, IAM, state backend, environments. Done right from day one.

CI/CD Pipelines

GitHub Actions + OIDC, PR-based plan/apply, security scanning. No manual applies.

Container Workloads

ECS Fargate or EKS, ALB, autoscaling, RDS — production-ready, multi-AZ.

Network Architecture

Hub-and-spoke, Transit Gateway, VPC peering, hybrid connectivity.

Serverless Backends

Lambda + API Gateway + DynamoDB. Contact forms, webhooks, event-driven pipelines.

Code & Cost Review

Audit your Terraform, tighten IAM, find drift, surface unused resources.

Get in touch →

Let's build
something

Hiring for a Cloud / DevOps role, or have a project that needs Terraform on AWS? Drop me a message.