Graeme Hendry

Certified Solutions Architect Associate with experience in web design and serverless architectures

Visitors:
Get In Touch

About Me

I am a cloud infrastructure engineer with over eight years of hands-on experience designing and operating large-scale distributed systems on AWS. My background spans financial services, SaaS platforms, and government cloud migration programmes, giving me practical exposure to the full spectrum of enterprise requirements from cost optimisation and security compliance to multi-region resilience and zero-downtime deployment strategies. I am passionate about infrastructure-as-code, treating every system as a product that must be reliable, observable, and maintainable by the teams who depend on it.

Core Competencies

Cloud Infrastructure

Expert-level automation using AWS CloudFormation, Terraform, and advanced architecture patterns focused on scalability and security boundaries.

Data Engineering

Designing robust ETL data pipelines, processing large-scale analytical workloads utilising modern distributed framework engines and relational layers.

DevOps Systems

Implementing programmatic CI/CD pipelines, configuration management, containerised clusters, and unified infrastructure observability and monitoring.

Projects

Multi-Region Active-Active API Platform

Architected and delivered a fully automated, multi-region active-active API platform on AWS using Route 53 latency-based routing, ECS Fargate, and Aurora Global Database. Achieved 99.99% availability SLA with automated failover completing in under thirty seconds, supporting peak throughput of twelve thousand requests per second.

Enterprise Data Lake & Analytics Pipeline

Designed and built a centralised data lake on Amazon S3 with automated ingestion from fifteen upstream source systems using AWS Glue, Apache Spark, and Lake Formation row-level security. Delivered a self-service analytics layer via Athena and QuickSight, reducing average time-to-insight from days to minutes for the business intelligence team.

Zero-Trust Network Re-Architecture

Led the re-architecture of a legacy flat-network AWS environment to a zero-trust model using AWS Network Firewall, PrivateLink, VPC endpoint policies, and SCPs enforced via AWS Organizations. Passed PCI-DSS Level 1 audit with zero findings following the migration.

Get In Touch