Skip to content

Latest commit

 

History

2 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 

Repository files navigation

avatar

Joseph Kordish

Distinguished Engineer | Platform, Reliability & Security Systems

San Antonio, TX • joe@kordish.rsgithub.com/jkordishlinkedin.com/in/jkordish

Summary

Distinguished engineer with 20+ years in infrastructure and security, including 13+ years across Mandiant, FireEye, and Trellix. Built secure, reliable cloud platforms for security products with deep experience in AWS, Kubernetes (EKS), infrastructure as code, GitOps, observability, resilience engineering, and cloud governance. Strongest where reliability, security, scale, and operational clarity all matter at once.

Skills

  • Cloud & Platform: AWS, Kubernetes (EKS), Lambda, EC2, S3, RDS Serverless, multi-region architecture, IPv6
  • Infrastructure & Delivery: Terraform, Helm, Ansible, Packer, GitHub Actions, GitOps, CI/CD automation
  • Reliability & Observability: SLO/SLI, incident response, postmortems, capacity planning, Prometheus, Grafana, CloudWatch, Fluent Bit, New Relic
  • Languages & Security: Rust, Python, Go, Shell, FedRAMP, PCI DSS, SOC 2, vulnerability assessments, cloud governance

Professional Experience

Continuous progression across Mandiant, FireEye, and Trellix through acquisition and operating-model changes.

Distinguished Engineer, Site Reliability / Platform | Trellix

Jan 2026 - Present

  • Defined reference architectures and operating standards for a multi-region AWS EKS platform supporting multiple product teams.
  • Established SLO/SLI design, alert-quality review, incident-review loops, and automated verification across delivery pipelines.
  • Partnered with security and compliance stakeholders to strengthen cloud governance and FedRAMP-aligned infrastructure controls.
  • Served as a technical escalation point and mentor for senior engineers, raising the bar for architecture review and operational discipline.

Principal Site Reliability Engineer | Trellix

Jan 2022 - Dec 2025

  • Led multi-region AWS EKS platform design using Karpenter and spot-aware capacity strategies to improve scale, resilience, and cost efficiency.
  • Built a multi-cluster regional strategy, including IPv6 support, to improve deployment flexibility and service resilience.
  • Modernized delivery with infrastructure as code and GitOps using Terraform, Helm, and GitHub Actions for repeatable, lower-risk releases.
  • Expanded autoscaling and serverless patterns with HPA/VPA, Lambda, and RDS Serverless to reduce toil and overprovisioning.
  • Improved operational visibility with Prometheus, Grafana, CloudWatch, Fluent Bit, and New Relic.
  • Built Rust-based CLI and Lambda tooling to automate common SRE workflows.

Principal SRE | FireEye / Trellix

Jan 2021 - Dec 2021

  • Owned reliability for AWS production systems spanning container platforms, CI/CD automation, and data pipelines.
  • Reduced incident load through capacity tuning, safer retry behavior, and operational simplification across multi-tier services.

Senior SRE | FireEye

Jan 2018 - Jan 2021

  • Migrated legacy services to Kubernetes (EKS) and improved release safety with immutable deployments and health-based rollout gates.
  • Managed multiple EKS clusters supporting mission-critical services with a strong security and compliance posture.
  • Expanded serverless patterns to reduce operational toil and shrink blast radius for batch and ETL workflows.

SRE | FireEye

Jan 2014 - Jan 2018

  • Rebuilt CI/CD with Ansible, Terraform, Packer, and Consul to make releases consistent and repeatable.
  • Built big-data analytics platforms using EMR, AWS Data Pipeline, and Lambda for large-scale ETL workloads.
  • Authored runbooks, SOPs, and operational documentation to standardize deployment and response.

SRE | Mandiant

Jul 2013 - Dec 2013

  • Built CI/CD with TeamCity and replaced brittle Bash deployments with Ansible-based workflows.

Earlier Experience

Senior Technologist | Trans-Tel Central

Apr 2012 - Jul 2013

  • Led PCI assessments and built repeatable compliance processes across varied client environments.

Technology Consultant III | Hewlett-Packard

Sep 2010 - Mar 2012

  • Managed 1,000+ VMware virtual machines for USAMITC, automated routine operations with PowerCLI, and improved platform uptime and throughput.

Computer Security Engineer | TASC Inc.

Sep 2007 - Sep 2010

  • Designed VMware solutions for the U.S. Air Force, supported early large-scale virtualization, and conducted enterprise vulnerability assessments.

Network Security Analyst | MacAulay Brown

Nov 2006 - Sep 2007

  • Performed real-time monitoring and incident response for the Air Force GIG and partnered with AFCERT on critical incidents.

Information Protection Technician | United States Air Force

Oct 2000 - Oct 2006

  • Led a team of eight delivering boundary protection, vulnerability assessment, and intrusion detection for the largest Air Force communications squadron.

Education

  • M.S., Information Assurance & Security (Network Defense), Capella University, 2016, Summa Cum Laude
  • B.S., Psychology, Capella University, 2015, Summa Cum Laude

Certifications

CISSP • RHCSA • Security+

Open Source / Community

Rust Language Release Team volunteer (2018 - 2020): testing, documentation, and community support.

About

resume

Resources

Stars

0 stars

Watchers

1 watching

Forks

Releases

Packages

Used by

Contributors