Tyler Wengerd
- EN
Senior Cloud Architect I
"Tenacious"
he/him
Cloud Architect with 10+ years of cloud expertise, both on AWS and GCP. Focused on security, networking, and IaC.
When I'm not at work, you might find me riding my bicycle or playing the ukulele (not simultaneously).
- Security
- Networking
- AWS
- GCP
My Certifications
AWS Certified Advanced Networking – Specialty
AWS (last renewed/obtained: Jun 17, 2024)
Expires Jun 17, 2027
AWS Certified Developer – Associate
AWS (last renewed/obtained: Sep 16, 2024)
Expires Sep 16, 2027
AWS Certified DevOps Engineer – Professional
AWS (last renewed/obtained: Sep 16, 2024)
Expires Sep 16, 2027
AWS Certified Security – Specialty
AWS (last renewed/obtained: Apr 15, 2024)
Expires Apr 15, 2027
AWS Certified Solutions Architect - Associate
AWS (last renewed/obtained: Jul 9, 2026)
Expires Jul 9, 2029
AWS Certified Solutions Architect - Professional
AWS (last renewed/obtained: Jul 9, 2026)
Expires Jul 9, 2029
AWS Certified SysOps Administrator - Associate
AWS (last renewed/obtained: Sep 16, 2024)
Expires Sep 16, 2027
AWS Partner: Accreditation (Technical)
AWS (last renewed/obtained: Aug 25, 2025)
Expires Aug 25, 2028
Google Cloud Professional Cloud Architect
Google (last renewed/obtained: Dec 5, 2025)
Expires Dec 5, 2027
Google Cloud Professional Cloud Security Engineer
Google (last renewed/obtained: Sep 26, 2025)
Expires Sep 26, 2027
Hashicorp Certified Terraform Associate
Hashicorp (last renewed/obtained: Feb 21, 2025)
Expires Feb 21, 2027
Hashicorp Certified Terraform Authoring and Operations Professional
Hashicorp (last renewed/obtained: Feb 21, 2025)
Expires Feb 21, 2027
What my customers say
Tyler Wengerd was awesome. He took the time to understand my use case to make the cloudflow solution fit. A big thank you to Tyler.
camunda.com · Jun 2026
What I'm writing
JA3 and JA4 Fingerprints in AWS WAF and Beyond
DoiT CREs dive into some of the latest client fingerprinting techniques with a focus on using them alongside AWS WAF
Sharing Secrets in AWS Parameter Store
Best practices for sharing secrets using AWS Parameter Store, and when does using AWS Secrets Manager makes more sense
Frequently asked
questions
What do you do at DoiT?
- - Run security assessments
- - Triage security incident investigations
- - Architect network and DNS designs
- - Troubleshoot permissions issues
- - Test out new features and services
Overall, though, I'm here because I like working with people and I like solving problems. If you're a person with a problem (who isn't?), maybe I can help.
I want to improve my security in AWS. Where do I start?
Want to learn more? We do security assessments all the time for DoiT customers, and I'd be happy to help you out. We also can automatically generate security insights for you!
I'm used to AWS (or GCP) and I'm trying to learn GCP (or AWS). What are some big differences?
- - AWS IAM roles are similar to Google Cloud's Service accounts. Google's service accounts and AWS IAM role can both be assigned to resources to give them permissions.
- - Google IAM roles are sets of permissions, similar to AWS IAM policies
- - If you need external access to AWS from a service, traditionally you created an IAM user with an access key. Google allows you to create keys for service accounts. These days, IAM Roles Anywhere are recommended, instead of IAM users, to allow external service access to AWS.
I might add a non-network/security answer here eventually. Keep an eye out!
What is a JA4 fingerprint?
Terraform? CloudFormation? Something else?
Disagree? That's okay – different strokes for different folks
Do you like dogs?
I love dogs! (See the GIF FAQ below.) I also love cats. Most animals, really. Snakes and lizards are cool and I enjoy seeing them in the wild and in my yard. Goats seem like a lot of fun, but they need way more space than I have right now. But yeah, uh, dogs! Dogs are great.
What's your favorite GIF?

Got 53 minutes? Check out this episode of DoiT's Cloud Masters podcast:
pro tip: it's only 35 1⁄3 minutes if you do 1.5x speedTime zone not a fit?
I'm on US Eastern time, but sometimes you need someone closer. That's fine, everyone needs to sleep. Here are my esteemed colleagues across plenty of timezones, so you can find one who works with your schedule.
- UTC-86 FDEsAWS Core Services×3AWS DevOps×3Amazon EC2×2
- UTC-75 FDEsAmazon AppStream 2.0×2Amazon EC2×2Amazon Elastic Block Store (EBS)×2
- UTC-66 FDEsAWS Core Services×2AWS DevOps×2AWS Kubernetes×2
- UTC-525 FDEsAWS Core Services×6AWS DevOps×6AWS Security and Identity×6



+20
- UTC10 FDEsAWS Core Services×4AWS Networking×4AWS Security and Identity×2
- UTC+121 FDEsAWS Kubernetes×3AWS Security and Identity×3BigQuery×3
- UTC+213 FDEsAWS Core Services×4AWS Databases×4AWS Networking×4



+8
- UTC+82 FDEsAmazon Aurora×1Amazon Bedrock×1Amazon RDS×1
- UTC+92 FDEsAWS Core Services×2AWS DevOps×1AWS Networking×1


- UTC+102 FDEsAWS Kubernetes×1AWS Serverless×1Google Cloud DevOps×1
- UTC+114 FDEsAWS Core Services×2AWS Databases×2AWS AI/ML×1
We do awesome work!
Check our our stats.
Updated Sep 9, 2026, 7:00 AM
What customers are saying
Very helpful and committed support specialist that really deep dived into both my insights and Google's until we finally got an answer. Perfect
Today
Matt was very quick and helpful with upgrading the repo to fix CVEs.
Today
AWS team was very slow for a response, we were told it would take a few hours but instead it took several days and it affected our production workloads
Today
Fast and efficient service.
Today
fast, professional and to the point.
Today
The support offered was valid, extensive and supportive. With the help of athena + s3 queries we were able to troubleshoot the issue.
Today
Excellent help, as always. Thank you!
Today
all great like always
Today
DAniel was incredibly helpful. He validated my research in no time and went through a several weeks process with AWS to get us a refund. Unfortunately, AWS didn't refund us, but the process proved Daniel commitment to help us however he could. Thanks Daniel!
Today
We received prompt and accurate support from doit. They're always up to the expectations.
Today
detailed quick response from DoIT. Thanks for that! Bit disappointed in the AWS service Inspector. Will probably stop using.
Today
I requested support at 3:08 pm ET on a Friday afternoon of Jonathan Payne via Slack, who happened to be on vacation and yet responded to me right away and connected me with Tamara who opened my case. In less than an hour, I had the information I needed (thanks to David Aulick) so that our Security and IT teams could take appropriate steps on a security inquiry. Amazing service!
Today
As always, top quality support from DoiT specialists. Thanks very much
Today
The first answer from Steve was honestly bad, it was a pure AI-generated content which didn't help at all. However, after mentioning this, Steve gave me extremely valuable inputs, and taught me quite a few things about vLLM and GPU scaling in general.
Today
Great feedback pushing me to logs where i saw - Error: InvalidSignatureException: Signature not yet current: 20260826T120506Z is still later than 20260826T120051Z (20260826T115551Z + 5 min.) Then i noticed the time was out by 9mins. I will investigate the NTP issue now. Thank you.
Today
The support from Matt was great. In general though, it's frustrating that Google has features that they don't expose to end users then gate access to those behind support contracts.
Today
Response was swift and answered all of the questions Very good service!
Today
Working with Nikhil on this issue was very easy, he promptly raised the bug to AWS, and AWS quickly fixed the issue. No complaints at all.
Today
The experience with DoIT was amazing on this issue, got a very clear explanation and a very detailed root cause analysis.
Today
Thank you for the detailed response!
Today
