Technology, innovation and entrepreneurship enthusiast with more than 10 years of experience in IT, Security and Compliance.
Overview
10
10
years of professional experience
2
2
years of post-secondary education
1
1
Certification
Work history
Sr. Cloud Infrastructure Engineer
Insulet
Mexico City
2024.12 - 2026.02
Assist in the operational support of multiple global multi-tenant cloud-based applications.
The role requires you to keep vitally important IT systems up and running by overseeing
Day-to-day monitoring and response to alarms, fault and performance management activities.
Proactively monitor systems, networks, and applications to provide input in improving the stability, security, efficiency, and scalability of systems
Collaborates with stakeholders to ensure the success of cloud infrastructure operations, implementations, and infrastructure automation strategies throughout the organization
Helps establish and improve engineering best practices, concepts, and patterns with peers and the business.
Closely collaborate with software development leads to understand workload requirements and guide them to the best leverage of cloud services, optimizing for performance, security, and architectural flexibility.
Leads analysis of end-to-end system failures to identify opportunities across multiple systems.
Participate in incident reviews to create improved supportability documentation, diagnostics, tooling, error messages and automation
Manage the secure, scalable and resilient hosting of numerous applications in a regulated (HIPAA) environment that improves the lives of thousands of people on a daily basis.
Implement monitoring and security controls across various platforms.
Collaborate closely with the multiple technology and cross-functional groups within the organization.
Proven experience to analyze and run audit forensics, trend analysis and cloud data reporting
Manage ticket assignments, documentation and escalations for thorough and timely outcomes
Sr. Cloud Security Engineer
Temenos
México City
2023.08 - 2024.12
Development of standards and procedures for AWS and Azure environments based on the MCSB framework. (Microsoft Cloud Security Benchmark)
Review and validation of cloud security controls across public and private infrastructure including Azure and AWS.
Contribute to cloud security architecture and design patterns.
Responsible for security solution advisory and consulting (e.g., integration with 3rd party systems, architecture reviews, documentation of security processes).
Regulatory compliance of cloud infrastructure with PCI-DSS.
Support Cloud security operations including security alerts, incidents, change control, and reporting, aligning to Temenos SOC activities.
Handling the security assurance - vulnerability management, application security/cloud infrastructure and managing associated remediation plans.
Responsible for the technical aspects of cloud security services - network and storage encryption, key management, tokenization, API security, microservices, firewalls, application gateways, network security groups, web security, and identity and access management.
Support internal and external audits, risk, and compliance initiatives.
Support the delivery of client projects in the region and collaborate on planning and execution activities requiring cloud security involvement.
Documentation and maintenance of cloud security standards and processes.
Cloud Security & Compliance Manager
TelevisaUnivision
Mexico City
2022.09 - 2023.08
Evaluate new solutions and tools in AWS and Azure, and develop security frameworks to introduce these technologies in a secure manner.
Develop and implement the financial strategy within the AWS and Azure cloud services, achieving the best cost optimization in the use of services.
Execution of Well-Architected Framework - Cost Optimization and Security on AWS.
Implement and maintain information security controls.
Datadog administration. Monitoring tool used to monitor multicloud services.
Collaborate on the implementation and improvement of continuous integration, test, delivery and deployment pipelines to keep the flow secure.
Work closely with Product, DevOps, Development, and other areas to ensure that security and privacy requirements are met in the development of the product and in the implementation of the infrastructure that supports the product.
Implementation of vulnerability management and hardening of the container image repository, instances and other cloud services.
Development of policies and procedures based in security standards.
Sr. Infrastructure & Compliance Engineer
Diverza
Mexico City
2022.03 - 2022.10
Administration of +60 physical and virtual servers with Linux OS, including installation, configuration and maintenance of operating systems and applications.
Administration of servers in the AWS cloud, guaranteeing their availability, security and optimal performance.
Development and execution of monthly patch plan for on-premises infrastructure.
Administration of Alert Logic and Qualys for scanning and remediation of vulnerabilities, as well as compliance with security standards.
Supervision of data backup and recovery processes to guarantee the availability and integrity of critical data.
Development and execution of a hardening plan based on CIS.
Management with the Data Center Rackspace provider for the coordination of new projects, migrations and technical problems.
Development and updating of security policies and procedures to comply with the standards of the SAT PCCFDI certification based on ISO 27001.
Monitoring and troubleshooting infrastructure performance through Grafana.
Infrastructure Manager
Broxel
Mexico City
2020.10 - 2022.03
Administration of +180 physical and virtual servers with Windows and Linux OS, including installation, configuration and maintenance of operating systems and applications.
Coordination and execution of the monthly patching on the servers.
Administration of servers in the Azure and GCP cloud, guaranteeing their availability, security and optimal performance.
Design and implementation of Azure cloud solutions, including virtual machines, web applications, containers and network services.
Administration of Qualys for scanning and remediation of vulnerabilities, as well as compliance with security standards.
Management with the Data Center Rackspace provider for the coordination of new projects, migrations and technical problems.
Implementation of security policies based on the best security practices of CIS.
Monitoring and troubleshooting performance through tools such as PRTG and Dynatrace.
Supervision of data backup and recovery processes to guarantee the availability and integrity of critical data.
Migration of on-premise infrastructure to Google Cloud.
Implementation of virtualization solutions to improve efficiency and reduce costs.
Management and remediation of vulnerabilities in operating systems.
Documentation of server administration procedures and creation of user manuals to improve the efficiency of technical support processes.
Assurance of normative and regulatory compliance in the field of information security, including ISO 27001, PCI-DSS, among others.
AchievementsComplete hardening of the server infrastructure.
Technical compliance with PCI DSS and ISO 27001 regulations.
Migration of the on-premise PCI DSS infrastructure to GCP.
Implementation of Dynatrace, tool for detection and monitoring for workloads and infrastructure.
Improvement in the process of applying patches to servers, making it more agile and more efficient.
Improvement in the management of users and permissions on servers.
Mitigation of more than 20,000 vulnerabilities in the infrastructure.
Infrastructure Analyst
Grupo Aries
Tijuana
2019.09 - 2020.02
Complete management of the business network.
Installation, Configuration and Administration of Servers, Routers, Switches, Access Points.
Installation of Structured Cabling and Configuration of Voice and Data
Installation, Configuration and Administration of IP Telephony (Based on Asterisk)
Configuration and Administration of NAS Servers
Active Directory management (Users, permissions, folders, inventory)
Installation, Configuration and Administration of Security Equipment Electronics (Access Control and Intrusion Alarm)
ZOHO and Jira Ticket System Administration
Installation and Configuration of Analog and IP Video Surveillance (CCTV)
Administration of Emails and Domains in GoDaddy Configuring Sophos Firewall Policies
Microsoft 365 Administration (User and permissions management)
Inventory Management in ZOHO Platform (CMDB)
Direct deal with equipment and licensing providers.
Technical Support Engineer
Insidi
Tijuana
2015.10 - 2019.09
Network administration with UniFi, Grandstream and TP-Link equipment. (Routers, Switches, Access Point)
Electronic Security Administration (CCTV, Access Control and Alarm)
Firewall Administration (Ubiquiti, Microtik and TP-Link).
Customer service and Technical Support via telephone, remote or in place.
Administration of Windows Server servers.
Management of Synology NAS servers.
Design and implementation of Networking, WiFi and Servers projects.
Monthly preventive and corrective maintenance to computer equipment and electronic security.
Active Directory Administration.
Participation in design and implementation of IT projects.
Direct deal with suppliers.
Inventory management.
Education
Online Higher University Technician - Computer Security
Vice President, Enterprise Architecture, Cloud Solutions and Data Analytics at Pulte Financial ServicesVice President, Enterprise Architecture, Cloud Solutions and Data Analytics at Pulte Financial Services