Skip to content
View bertrandmbanwi's full-sized avatar

Block or report bertrandmbanwi

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
bertrandmbanwi/README.md

Bertrand Mbanwi

Cloud Engineer ・ DevOps Architect ・ Security-First Builder

I design, build, and operate production-grade cloud infrastructure - from zero to scale.

Email


What I Do

I architect cloud platforms that teams can trust in production. My work sits at the intersection of infrastructure, automation, and security - building systems that are observable, self-healing, and engineered to last.

Right now, I'm focused on:

  • Platform Production Kubernetes clusters, service meshes, and internal developer platforms
  • Security Secret scanning pipelines, compliance-as-code, and SOC monitoring stacks
  • Observability Full-stack monitoring with Grafana, Prometheus, Loki, and custom synthetic checks
  • CI/CD GitHub Actions workflows, self-hosted runners, and deployment automation
  • AI LLM-driven code review, security analysis, and developer workflow automation

Tech Stack

Cloud Platforms

AWS Azure GCP

Infrastructure & Orchestration

Terraform Kubernetes Docker Helm

CI/CD & Automation

GitHub Actions ArgoCD Jenkins

Monitoring & Observability

Grafana Prometheus Loki

Languages & Scripting

Python JavaScript Bash HCL


Featured Work

Open Source

Project What It Does
codeguard AI-powered code review CLI + GitHub Action - security, bugs, and performance analysis using LLMs (OpenAI, Anthropic, Ollama) with CWE/OWASP knowledge base and SARIF output
infraguard Infrastructure security CLI - Terraform plan risk scoring, AWS tag auditing, and IAM policy analysis in one tool
github-actions Composite GitHub Actions library - SSH deploy, Python CI, multi-channel notify, SARIF reporting
renovatebot Production-ready centralized Renovate template for org-wide dependency management

Production Systems

Some of my production work lives under the CaeliCode organization.

Project What It Does
secret-scanner Enterprise secret scanning pipeline with Gitleaks & TruffleHog
soc-monitoring-stack Containerized SOC monitoring - Grafana, Prometheus, Loki, Alertmanager
status-page Config-driven uptime monitoring with Grafana SM + Atlassian Statuspage
github-user-management Centralized GitHub org user & repo governance automation
runner-infrastructure Self-hosted GitHub Actions runner fleet management

GitHub Activity

Streak

Activity Graph


Building infrastructure that engineers trust and operators sleep through.

Pinned Loading

  1. codeguard codeguard Public

    AI-powered code review CLI + GitHub Action — security, bugs, and performance analysis using LLMs

    Python

  2. grafana-poc grafana-poc Public

    Shell 1

  3. github-actions github-actions Public

    Production-grade composite GitHub Actions for CI/CD, deployments, and infrastructure automation

    Python

  4. infraguard infraguard Public

    Infrastructure guardrails for teams that ship fast — Terraform risk scoring, AWS tag auditing, and IAM policy analysis in one CLI.

    Python

  5. renovatebot renovatebot Public

    Reusable template for centralized Renovate dependency management across a GitHub organization

    JavaScript

  6. status-page status-page Public

    Python