a
andresoms

Andres O.

@andresoms

Senior DevOps and Cloud Security Engineer, AWS, GCP, Azure, Kubernetes

Spanje
Spaans, Engels, Catalaans
Sommige informatie wordt in het Engels weergegeven.
Over mij
Senior DevOps & Cloud Security Engineer and software architect. 8+ years on AWS, Google Cloud and Azure, Tech Lead of a 20-person IT team in banking & insurance. DevOps: I automate everything between your code and production. Infrastructure as code with Terraform, Kubernetes, CI/CD pipelines and releases with no downtime. Cloud security: I lock that infrastructure down. Least-privilege access, hardening, secrets, monitoring, scanning inside the pipeline and ISO 27001 readiness. Backend: microservices in Go and TypeScript. Clear scope, documented deliverables, no surprises.... Lees meer

Skills

a
andresoms
Andres O.
offline • 
Gemiddelde reactietijd: 1 uur

Bekijk mijn diensten

CI/CD
I will set up gitops ci cd pipelines with kubernetes and argocd
Cloudbeheer
I will build your AWS infrastructure with terraform production ready

Portfolio

Werkervaring

GrupoHorreols

Senior DevOps and Cloud Security Engineer / Tech Lead

GrupoHorreols • Fulltime

Mar 2019 - Present7 yrs 6 mos

Tech Lead of a 20-person IT department in the banking and insurance sector. I own the whole path from code to production, working as a DevOps and cloud security engineer as well as a software architect. DEVOPS - I design, build and run the infrastructure our products live on: AWS, Google Cloud and Azure in a hybrid setup, defined 100% as code with Terraform so every environment is reproducible. I build the CI/CD pipelines the teams ship with (GitHub Actions, GitOps with ArgoCD on Kubernetes), automate provisioning, releases and rollbacks (canary and blue-green, no downtime), and keep systems reliable and observable with centralized logging, Grafana dashboards, SLOs, alerting and DORA metrics. Cost is part of the design: I adapt the architecture to the department budget. CLOUD SECURITY - I secure those platforms end to end: least-privilege IAM and MFA, network segmentation with private-by-default architectures, secrets management with Vault and KMS, encryption at rest and in transit, centralized detection and incident response. Security is built into the pipeline instead of bolted on afterwards: SAST, dependency and IaC scanning, signed container images and policy as code stop vulnerabilities before they reach production. I also run internal security audits and lead ISO/IEC 27001 readiness, automating evidence collection from the cloud. ARCHITECTURE AND DEVELOPMENT - microservices in Go and TypeScript (NestJS) with Docker and serverless, migration of monoliths to containers and Kubernetes without stopping the business, and applied AI tools for specific problems. Agile-Scrum, working directly with business stakeholders and turning their goals into technical decisions.

Hit_Systems

Software Developer and Systems Administrator

Hit Systems • Fulltime

Feb 2017 - Mar 20192 yrs 1 mo

IoT and retail solutions for clients across Spain. I developed web and Android applications in TypeScript, Node.js, Go and Python, and owned new projects end to end, from requirements to delivery. On the operations side I administered the Linux servers those solutions ran on, handled deployments and scheduled maintenance, monitored availability and resolved production incidents, and started moving workloads to AWS: the beginning of the DevOps work I do today. I also gave technical support to clients, which taught me to explain technical problems in plain language.