Charles de Freitas

Oxfordshire
UK
Amateur photographer, Badminton, Gaming, Supping + a bit of engineering

Work

  1. Architected multi-tenant AWS foundation with organisational units, OIDC identity workflows, and least-privilege IAM roles with permission boundaries across trading desks.
  2. Implemented Cloud WAN global network architecture with site-to-site VPNs, inbound DNS resolvers, and out-of-band access for hybrid on-premises infrastructure.
  3. Architected and developed declarative CI/CD framework using Python and HCL configuration language, supporting multi-tenant deployments with profile-based execution (Terraform, Docker, Python, C++), target matrix expansion, and dependency orchestration across AWS accounts/regions.
  4. Built framework with advanced capabilities including artifact cross-references between profiles, AWS Organizations integration, variable precedence systems, and promotion workflows with topological dependency resolution for trading system deployments.
  5. Built comprehensive platform services including SSM-managed instances, Session Manager access, managed Kafka, GitHub Actions runners, and Step Functions/ECS workflows.
  6. Established application distribution platform supporting AWS Lambda, container runtimes, and bare-metal deployments with pull-through caching and artifact management for trading systems.
  7. Architected data platform supporting push and pull market data sources using Apache Iceberg storage, AWS Lambda/ECS ETL pipelines, enabling historical dataset provision for quantitative research and ML model training.
  8. Designed zero-trust access control spanning cloud environments, collocated servers, and internal applications using SSO, AWS Session Manager, and Cloudflare Access.
  9. Built and maintained production-grade real-time alerting system for trading platforms (3+ years in production) with advanced routing logic and multi-sink event distribution to Slack and historical analytics.
  10. Implemented comprehensive observability stack with CloudWatch metrics/alarms, Grafana dashboards, and log archiving for SRE operations.
  11. Managed secrets infrastructure across OnePassword and AWS, implementing workload-specific roles for low-latency trading applications.
  12. Migrated legacy Jenkins/Terraform Cloud infrastructure to modern OIDC-based workflows, reducing operational complexity and improving security posture.
  13. Delivered technical compliance for Remote Gambling and Software Technical Standards (RTS) audit.
  1. Developing a SaaS solution - incorporating a Java, Golang and React stack
  2. Designing and implementing CI/CD for all components of the SaaS solution
  1. Delivering training to 500+ 10-17 year olds, introducing them to a range of current cyber-security topics.
  2. Facilitating lab activities and acting as point of contact with guest speakers.

Education

  1. 76% Masters Project - An Extensible Framework For Portable And Distributed Packet Capture
  2. 87% Computer Security
  3. 84% Team Project (Game development)
  4. 74% Mobile and Ubiquitous Computing
  5. 73% Computer Systems and Architecture
  6. 72% Computational Vision
  7. 71% Intelligent Robotics
  1. A Computer Science
  2. A Mathematics
  3. B Further Maths
  4. 9 GCSEs grade A-C, including Maths and English

Volunteer

  1. Helping to plan and organise an in person 24 hour hackathon with 250+ attendees.
  2. In 2020 moving online with over 700 attendees.
  3. Organisation of guest speakers across the extended online event.
  4. Tech lead for software developed to improve engagement at an online event.
  5. Company bookkeeping.
  1. Designed and built a cloud based platform to provide easy access to developer tools.
  2. Gave a workshop on the basics of web scraping.
  1. Developed a suite of bots for Discord to improve management and engagement at an online event.

Skills

Terraform Docker Git Ansible Kubernetes
Golang Java Python
Linux Networking Automation & Provisioning AWS GCP Bash
HTML CSS Javascript React