Cloud, DevOps & Security engineer based in Costa Rica. I build and operate cloud infrastructure, and secure it at the same layer I build it pipelines, images, IaC, and runtime. Heading toward DevSecOps / Platform Security Engineering.
Currently going deeper on AI/LLM security: threat modeling for AI-backed applications, and how the existing AppSec toolchain has to change when the thing you're securing is non-deterministic.
| Cloud | AWS · Azure |
| Containers & Orchestration | Kubernetes · Docker · Docker Swarm · Podman · containerd |
| Infrastructure & Configuration as Code | Terraform · Ansible · ARM Templates |
| CI/CD | GitHub Actions · Azure DevOps · Argo CD |
| Observability | Prometheus · Grafana · Dynatrace |
| AppSec | SAST · DAST · SCA · Image scanning · IaC scanning · Secret scanning · SBOM · Artifact signing · Threat modeling |
| AI Security | LLM threat modeling · Prompt injection & jailbreak testing · Model & data supply chain · Guardrails & output validation |
| Networking | Firewalls · WAF · TCP/IP · DNS · VPN |
| Languages | Python · Bash · Rust · Ruby |
| Operating Systems | Linux (Ubuntu, Debian, Kali) · Windows 11 · macOS |
- B.Sc. Computer Engineering
- Technical Degree in Cybersecurity and Information Security
- Certified: AWS Certified Cloud Practitioner · Microsoft Azure Fundamentals (AZ-900) · CCNAv7
- In progress: CKA · CompTIA Security+
I contribute to open source and I'm looking for more of it, especially anything in the Kubernetes, IaC, CI/CD, observability, or security tooling space. If you maintain something there and need hands, open an issue on one of my repos or write me.
Automate everything. Build to last. Secure by default. Measure to improve.



