Staff Security Engineer
2022-03-01 - present
Gijón Area, Spain
  • Engineered a security pipeline that identified and mitigated vulnerabilities, resulting in a 20% reduction in overall security risks.
  • Developed comprehensive threat models for all major applications, which led to the implementation of enhanced security controls and a more robust security posture.
  • Deployed, configured, and managed Stackrox Advanced Security Center, achieving a 30% improvement in container and Kubernetes security.
  • Led a 'Shift-Left' initiative that integrated security into the development process, improving code quality and security by 15%.
  • Spearheaded a 'Security Champions' program that trained 10 team members in security best practices, thereby enhancing the company's internal security culture.
  • Drafted, reviewed, and maintained internal security policies to ensure compliance with industry standards and regulations.
  • Successfully implemented the OWASP Software Assurance Maturity Model (SAMM), leading to key improvements in the organization's security posture.
Senior DevOps Engineer
2020-01-01 - 2022-02-28
Gijón Area, Spain
  • Designed and implemented resilient networking architectures on AWS and GCP, resulting in 99.9% uptime.
  • Administered AWS Role-Based Access Control (RBAC), enhancing organizational security by implementing the principle of least privilege
  • Spearheaded the creation and management of multiple Kubernetes clusters on GCP and AWS, serving over 50 microservices.
  • Led continuous delivery pipeline improvements using ArgoCD and Helm, reducing deployment time by more than half.
  • Implemented comprehensive monitoring solutions using the Prometheus stack, increasing system observability and reducing incident response time by 25%.
  • Oversaw FinOps strategies for Kubernetes workloads, resulting in a 20% reduction in monthly cloud costs.
  • Authored Infrastructure-as-Code (IaC) configurations using Terraform and Ansible, automating 80% of routine DevOps tasks.
  • Maintained multiple Elasticsearch clusters, optimizing performance and scalability.
DevOps Engineer
2019-01-31 - 2019-12-31
Lausanne Area, Switzerland
  • Developed custom tooling that increased developer productivity and optimized the development cycle.
  • Architected, implemented, and maintained multiple Jenkins-based continuous integration pipelines
  • Administered and optimized the entire infrastructure stack using Terraform, resulting in a 25% reduction in resource usage.
  • Managed multiple Kubernetes clusters in GCP and Azure
  • Implemented and managed WireGuard VPN to enhance network security and privacy for remote access.
  • Designed and set up a Demilitarized Zone (DMZ) infrastructure for both Google Cloud Platform (GCP) and Azure, improving system isolation and security.
  • Administered Bitcoin and Ethereum nodes, ensuring high availability and robust security measures.
Devops Engineer
2016-09-30 - 2018-12-31
Zürich Area, Switzerland
  • I have participated in the migration from bare metal infrastructure to cloud (aws + kubernetes)
  • I have maintained a mongo cluster.
  • I have participated in the creation and maintenance of several kubernetes cluster.
  • I have worked heavily with Ansible.
  • I have used Prometheus and Grafana for monitoring.
  • I have worked heavily with aws using infrastructure as code (Ansible).
  • I had configured a logging system with ELK stack for monitoring and business statistics.
Freelancer
2016-02-28 - 2016-08-31
Zürich Area, Switzerland
  • I have develop an IOS and Android application for restaurant recipes classification with the ionic framework.
  • I have participate in the creation of the the website https://www.wonowo.com:
  • implementing continuous integration pipeline to accelerate the software cycle.
  • creating the server's infrastructure.
  • configuring the website over https.
IT Engineering
2015-06-30 - 2016-02-28
Zürich Area, Switzerland
  • I have implemented with Nodejs and Elasticsearch a fulltext search web service.
  • - I have configured and maintain an elasticsearch cluster.
  • - I have configured and maintain a Continuos delivery pipeline with docker, jenkins, rancher.io and some crazy shell scripts.
  • - I have configured and maintain a cluster of production servers and prepare the system to scale in case of a increase of traffic. For that task I have use docker and rancher.io, base on the master thesis that I wrote about the topic. All this cluster was hosted in the cloud.
  • - I have configure and automatize all the routing and load balancers.
  • - I have configure a logging system with the ELK stack, for monitoring and business statistics.
  • - I have worked as a backend developer in the implementation of a Warehouse Management Software using Nodejs and the framework Loopback with MongoDB.
Devops
2014-09-30 - 2015-05-31
Zürich Area, Switzerland
  • I had worked with RabbitMQ configuring queues and sholves.
  • I was the responsible of the scrum team releases.
  • I had to manage and maintain all the team environments.
  • I created several dashboards to monitor the software quality and production services.
  • I participate in the implementation of a continuous delivery pipeline with Jenkins, mesos and marathon.
Software Developer
2014-04-30 - 2015-05-31
Zürich Area, Switzerland

Scala, java, elasticsearch, maven, mongodb, backend developer, git, RabbitMQ, Akka System, Web applications, github, dev ops, chef, vagrant, docker, tomcat, jenkins, rabbitMq, Continuos deployment,

Junior Software Developer
2013-01-31 - 2014-06-30
Zürich Area, Switzerland

Scala, java, elasticsearch, maven, mongodb, backend developer, git, RabbitMQ, Akka System, Web applications, github

intern
2012-12-31 - 2012-12-31
Zürich Area, Switzerland

Use Spring Framework. Use Apache software (Tomcat, Maven, Solr). Java developer. Worked with Scrum Agile Develpment.

Internship
2011-07-31 - 2011-08-31
Millenium Software
Madrid

Migrating a management software from .Net to Java. Developing a library for an abstraction between the Oracle Database and the Business Layer. Design and development of the Oracle Data base using the standard Oracle 11g Object-relational.

Internship
2010-07-31 - 2010-09-30
Hertz
Madrid
  • Network maintenance.
  • Equipment maintenance.
  • VBS Script development for automation.
  • Active Directory Manager.
  • User support