AI Solutions & Technical Systems Engineer — M.S. in Artificial Intelligence, Ph.D. in progress. I build operational AI, secure integrations, and automation for real systems, and I've spent 8+ years supporting users, networks, and infrastructure. My strength is the intersection: taking a vague operational problem all the way to a working, deployed, observable system. Targeting AI solutions, customer/technical-solutions, and forward-deployed engineering.
- Operational AI — incident triage, multi-agent tooling, local LLMs (Ollama), RAG, evaluations
- Networking & support — TCP/IP, DNS, DHCP, IPv4/IPv6, packet analysis, root-cause analysis, incident ownership
- Secure integrations & automation — APIs, webhooks, pipelines, policy-as-code, regulated environments
- Cloud & platform — AWS, Terraform, Docker, Kubernetes, Prometheus / observability
- AI for security & compliance (developing specialization)
| Project | What it demonstrates | Stack |
|---|---|---|
| AIOps Incident Copilot | Correlates logs, metrics, and alerts into ranked, evidence-cited root causes with next steps — health checks, Prometheus metrics, JSON logs, Docker Compose, and Kubernetes manifests | FastAPI, Docker, K8s, Prometheus |
| DNS/DHCP Lab | Authoritative + recursive DNS (CoreDNS) and a DHCP scope (dnsmasq) in Docker Compose, a validated zone, a Python validator, and dig/nslookup troubleshooting walkthroughs | CoreDNS, dnsmasq, Docker |
| Security RAG Assistant | Cited answers over MITRE ATT&CK / NIST / GDPR / PCI — runs offline with no models, or on a local Ollama backend; CLI + API, tested | Python, RAG, Ollama, FastAPI |
| AI Council | Agentic security & compliance auditor — a multi-agent chain on local LLMs maps findings to MITRE ATT&CK, reasons about GDPR/PCI risk, and writes remediation. M.S. AI capstone | Python, Ollama, LangChain |
| Secure City Analytics | Role-based public-safety analytics — React 18 + TypeScript (strict), 3-role access control, 19 tests, CI/CD to a live demo | React, TypeScript, Vite |
| AWS Terraform Lab | Full AWS environment as code — refuses 0.0.0.0/0 SSH, IMDSv2 required, least-privilege IAM, tfsec in CI |
Terraform, AWS, tfsec |
More on gomeztech.dev and in the pinned repositories — including net-diag-toolkit, uptime-sentinel, alert-router, sigma-detection-lab, ipv6-rca-case-study, and the IT Helpdesk / Windows Server lab.
Languages: Python, TypeScript, JavaScript, SQL, PowerShell, Bash
AI: local LLMs (Ollama), multi-agent orchestration, RAG, structured/JSON outputs, evaluations, MCP, FastAPI, LangChain
Cloud & platform: AWS (VPC, EC2, S3, IAM), Terraform, Docker, Kubernetes, Prometheus, GitHub Actions CI
Networks & systems: TCP/IP, DNS, DHCP, IPv4/IPv6, VLANs, packet analysis (Wireshark), Windows Server, Active Directory, Entra ID, Hyper-V, Tailscale
Practice: unit testing, CLI/API design, README-first documentation, least-privilege and observability by default
- Ph.D. Artificial Intelligence (in progress) — Capitol Technology University
- M.S. Artificial Intelligence — Colorado State University Global
- B.S. Computer Science — Southern New Hampshire University
- Google IT Support Professional Certificate
- FAA Part 107 Remote Pilot Certificate
- Portfolio: gomeztech.dev
- GitHub: @ArmandoSNHU
- Location: Remote / Laredo, TX