About Me
SRE Technical Lead.
Cloud architect.
6 years building, breaking, and fixing cloud infrastructure — from startups to multinational enterprise. I love turning complex cloud challenges into clean, automated solutions.
Background
My Story
I'm Mathew Nnang — an L3 SRE Technical Lead with 6 years of progressive experience architecting, securing, and scaling cloud infrastructure across multinational environments. I currently lead site reliability engineering at Virtasant LLC, where I drive observability, vulnerability remediation, and infrastructure modernisation at enterprise scale.
My career spans the full cloud engineering lifecycle — from building CI/CD pipelines and Kubernetes-orchestrated workloads at Tek Experts (Microsoft) to designing Azure Landing Zones, orchestrating multi-cloud patching across 500+ servers, and implementing governance frameworks with Terraform and Azure Policy. I don't just keep systems running; I build the operational foundations that make them resilient by design.
I hold 7+ industry certifications across Azure, AWS, and Linux, and I'm a Microsoft Certified Trainer — because I believe the best engineers invest as much in elevating their teams as in their own craft. Outside of engineering, I create technical content and video animations that turn complex ideas into clear, compelling communication.
Career
Experience
Where I've built, shipped, and scaled.
L3 SRE Technical Lead
Virtasant LLC · Remote
Observability & Query Optimization
- ▸ Architected Sumo Logic log infrastructure with partitioning and query tuning; migrated persistent queries storing 250+ TB from the default partition into multiple breakout partitions, improving query performance and delivering proportional cost savings per new partition.
- ▸ Led collector and endpoint remediation to restore full observability coverage across all critical multi-cloud assets.
Vulnerability Remediation & Patching at Scale
- ▸ Directed vulnerability remediation and structured patching across 500+ servers (Azure Linux, Red Hat, VMware), reducing fixable vulnerabilities from six-digit counts to ~8,000.
- ▸ Managed Azure Kubernetes upgrades and node pool updates to maintain secure, compliant cluster posture.
Azure Cloud Infrastructure & Landing Zone
- ▸ Contributed to the design, development, and deployment of a modern Azure Landing Zone using Terraform; planned and executed migration of Blob Storage accounts from V1 to General-Purpose v2.
- ▸ Implemented Azure Policy-as-Code for governance, ensured Recovery Services Vault backup coverage with proactive failure monitoring, and supported Private DNS resolver cutover from legacy domain-controller DNS.
Security & Compliance Engineering
- ▸ Supported LDAP to Microsoft Entra DS migration with extensive pre- and post-cutover load testing to validate scalability and reliability.
- ▸ Led TLS protocol upgrades across the estate — migrating resources from versions <1.0 to ≥1.2 — and coordinated annual TLS/SSL certificate renewals across servers, gateways, and load balancers to maintain compliance.
Reliability Engineering & Incident Response
- ▸ Improved resilience with proactive Azure Resource Health alerting and automated health checks to accelerate detection of service degradation.
- ▸ Leveraged CrowdStrike for vulnerability management and PagerDuty for incident alerting, accelerating triage and minimising downtime during high-impact events.
SRE Process Leadership & Knowledge Enablement
- ▸ Established an operational Server/Application Maintenance Calendar to coordinate patching cadence and reduce change collisions.
- ▸ Designed a two-phase Application Runbook program for cross-team training and implemented automated runbook execution via Azure Automation Accounts to eliminate manual toil and shorten resolution time.
Cloud Support Engineer (L3)
Tek Experts (Microsoft) · EMEA Remote
- ▸ Designed and implemented cloud infrastructure with Terraform — provisioning Windows servers, virtual networks, databases and storage, reducing human error by 90% and cutting infra costs by 20%.
- ▸ Engineered CI/CD pipelines with Azure DevOps, Jenkins, and CircleCI — achieving 40% earlier error detection and 30%+ improved deployment reliability.
- ▸ Maintained 98%+ CSAT across 25+ premier tickets monthly, generating an estimated $13,000 in vendor incentives.
- ▸ Mentored new hires in Prometheus, AWS, Docker, and Kubernetes — achieving 20%+ monthly satisfaction improvement for mentored engineers.
Cloud Support Engineer (L2)
Tek Experts (Microsoft) · EMEA Remote
- ▸ Delivered Azure cloud solutions — API Management, Batch, Cloud Services, Policy, ARM/IaC — achieving a 96% success rate across 1,000+ service requests.
- ▸ Built a production-ready pipeline deploying .NET apps to AKS via Azure Container Registry — 98% automated, reducing human effort and error by 90%.
- ▸ Centralised API management through APIM Gateways, boosting efficiency by 85%.
- ▸ Served as escalation point for complex issues, boosting team performance by 40% and cutting resolution time by 50%.
Full Stack Developer
Solvernet Inc. · Nigeria
- ▸ Developed a full-stack house rental management system in Angular.js, Node.js, and MongoDB — boosting property listings visibility by 50%.
- ▸ Implemented CircleCI pipelines reducing release human effort by 95%.
- ▸ Containerised apps with Docker and Kubernetes — achieving 99% portability.
- ▸ Monitored 99% uptime using Prometheus, Grafana, and Azure Application Insights.
Expertise
Core Competencies
A deep toolkit across the full cloud engineering lifecycle.
DevOps & CI/CD
Azure DevOps, GitHub Actions, Jenkins, CircleCI, AWS CodePipeline, Azure Automation.
Cloud Platforms
Azure (AKS, API Management, Functions, Policy, Landing Zone), AWS (EC2, S3, VPC, Route 53, CloudFormation).
Linux & Systems
Red Hat, Ubuntu, VMware — file systems, networking (TCP/IP, DNS, DHCP), patching at scale, user management.
Containerisation
Docker, Kubernetes, AKS, Azure Container Registry, Helm, Docker Hub.
Monitoring & Observability
Sumo Logic, Prometheus, Grafana, Azure Monitor, DataDog, PagerDuty, CrowdStrike, Application Insights.
IaC & Scripting
Terraform, Bicep, ARM Templates, Ansible, CloudFormation, Python, Bash, PowerShell.
Security & Compliance
Azure Policy-as-Code, Microsoft Entra ID, TLS/SSL lifecycle, vulnerability remediation, CrowdStrike.
Site Reliability Engineering
Incident response, runbook automation, SLO/SLA management, chaos engineering, Azure Resource Health alerting.
Academic
Education
BSc Computer Science
University of Calabar, Nigeria
Nanodegree — Cloud DevOps
Udacity
Credentials
Certifications
Beyond the Terminal
Content Creator
In addition to cloud engineering, I do content creation and video animation as a hobby — combining technical depth with clear visual storytelling. The video above is one such piece on Digital Citizenship.
I'm open to DevOps and SRE conversations — roles, collaborations, or just a good technical discussion. Reach out through the contact page to start a conversation.
Let's Talk