Sebastian – AWS, AI agent development, Python, experts in Lemon.io

Sebastian

From Spain (UTC+2)flag

Site Reliability Engineer|Middle-to-senior
DevOps|Middle-to-senior

Sebastian – AWS, AI agent development, Python

Sebastian is a DevOps/Platform Engineer and technical leader with strong expertise in cloud architecture, DevSecOps, security, and infrastructure automation. His experience spans AWS, Azure, GCP, Kubernetes, Docker, Terraform, CI/CD, and Python, with hands-on ownership of cloud migrations, platform modernization, and security-focused engineering initiatives. He brings CTO/CISO-level experience combining hands-on technical work with architecture ownership and engineering leadership. Sebastian demonstrates strong commercial awareness and effectively translates business and customer requirements into pragmatic technical solutions.

11 years of commercial experience in
AI
Cloud computing
Cryptocurrency
Data analytics
Fintech
B2B
B2B2C
B2C
Enterprise software
SaaS
Software development
Main technologies
AWS
10 years
AI agent development
3 years
Python
20 years
Kubernetes
8 years
Terraform
7.5 years
GCP
8 years
Microsoft Azure
9 years
Additional skills
Node.js
Typescript
Cyber security
Docker
Linux
CI/CD
Direct hire
Possible
Ready to get matched with vetted developers fast?
Let’s get started today!

Experience Highlights

Chief Technology Officer (CTO + CISO)
Dec 2021 - Ongoing4 years 8 months
Project Overview

Payment infrastructure platform enabling businesses to integrate and manage payment operations through a unified API, with a focus on scalability, resilience, security, and regulatory compliance.

Responsibilities:
  • Led the transformation from a monolithic architecture to secure, isolated microservices, improving scalability, resilience and reducing blast radius;
  • Architected and operated a multi-cloud Kubernetes platform across AWS, GCP, and on-premise infrastructure;
  • Led a distributed engineering team and embedded security-by-design practices throughout the SDLC;
  • Designed the DevSecOps strategy, integrating security gates, container scanning, secrets management and automated security controls into CI/CD pipelines;
  • Built multi-layered security monitoring and threat detection using ELK, Suricata, Sysdig/Falco and AWS Security Hub;
  • Conducted penetration testing and security assessments across application and infrastructure environments and led vulnerability remediation;
  • Developed incident-response runbooks, threat-detection dashboards and escalation procedures;
  • Translated DORA, MiCA, SOC 2 and ISO 27001 requirements into engineering controls and audit-ready processes.
Project Tech stack:
.NET
Python
Node.js
React
Typescript
Cyber security
AWS
GCP
Terraform
Docker
Kubernetes
GitHub Actions
GitHub
Pulumi
Ansible
Fractional VP of Security & Infrastructure
Apr 2025 - Jun 20261 year 2 months
Project Overview

Infrastructure modernization and cloud migration program for a legacy enterprise application estate, involving the migration of production systems to AWS and the transition of development and staging environments to a new data center.

Responsibilities:
  • Assessed legacy infrastructure and applications, defining the target hybrid-cloud architecture and migration strategy;
  • Led the migration of production workloads from on-premises infrastructure to AWS while maintaining service availability and data integrity;
  • Designed secure AWS infrastructure using VPC, IAM, EC2, RDS, S3, and container services, with appropriate network segmentation, access controls, logging, and monitoring;
  • Re-architected selected legacy workloads using cloud-native services to improve scalability and maintainability;
  • Led the migration of development and staging infrastructure to a new on-premises data center;
  • Introduced Infrastructure as Code and automated deployment workflows to improve infrastructure consistency and release reliability;
  • Modernized legacy systems through patching, upgrades, vulnerability remediation, and improved backup and disaster-recovery practices;
  • Established company-wide security governance, risk-management processes, policies, and infrastructure security standards.
Project Tech stack:
.NET
AWS
Amazon RDS
Linux
Windows
.NET Core
CI
CD
Networking
Cyber security
Kubernetes
Terraform
Pulumi
Docker
Python
Ansible
GitHub
Bitbucket
GitHub Actions
Typescript
Cursor
Head of Engineering / Fractional Co-CTO
Mar 2024 - Dec 20249 months
Project Overview

Fintech and digital-assets platform undergoing a major architectural and product transformation, including a transition toward microservices, integration with a new cryptocurrency exchange platform, and modernization of engineering and delivery practices.

Responsibilities:
  • Led the engineering organization and technical direction across product development, architecture, infrastructure, and application security;
  • Directed the transformation of the existing platform toward a microservices architecture;
  • Led the technical integration between the existing platform and a new cryptocurrency exchange;
  • Translated product outcomes and business requirements into architecture, technical specifications, work breakdowns, and engineering deliverables;
  • Oversaw backend development using .NET and Node.js/TypeScript and frontend development using React and Angular;
  • Established engineering standards for code reviews, automated testing, documentation, maintainability, performance, and scalability;
  • Led the DevSecOps strategy, integrating automated security testing and vulnerability scanning into CI/CD processes;
  • Established security monitoring, risk-management, and incident-response practices, advising senior management on technology and security risks;
  • Mentored engineers and facilitated collaboration across development, operations, security, and product teams.
Project Tech stack:
.NET
AWS
Microsoft Azure
Python
Node.js
REST API
Typescript
CI
CD
Kubernetes
Cyber security
Angular
Microservices
Senior DevSecOps Engineer
Nov 2021 - Dec 20211 month
Project Overview

Cloud-native data platform with security embedded across infrastructure, CI/CD, and software development processes, operating within a SOC 2 compliance environment.

Responsibilities:
  • Embedded security controls into CI/CD pipelines, cloud infrastructure and containerised application environments;
  • Designed automated security monitoring and alerting capabilities for early detection of application and infrastructure threats;
  • Migrated legacy Terraform infrastructure toward a Kubernetes API-based approach and introduced Pulumi for Infrastructure as Code automation;
  • Led engineering activities supporting SOC 2 Type II compliance, including evidence collection, control implementation and remediation;
  • Conducted web-application and infrastructure penetration testing using Burp Suite, Wireshark and OWASP methodologies;
  • Triaged security findings by severity and worked directly with engineering teams to drive remediation;
  • Served as an incident-response lead and delivered security-awareness and secure-coding training to senior engineers;
  • Designed and built an internal microservices-based security dashboard that automated vulnerability-scan management and improved finding prioritisation.
Project Tech stack:
.NET
Python
SQL
Cyber security
AWS
Kubernetes
Docker
Terraform
GitHub Actions
Typescript
Node.js
Angular
Ansible
Datadog

Education

2008
Systems Engineering
Engineer (Bsc + Msc)
2022
Cybersecurity
Msc Cybersecurity
2026
Cybersecurity
PhD (candidate)

Languages

English
Advanced

Hire Sebastian or someone with similar qualifications in days
All developers are ready for interview and are are just waiting for your requestdream dev illustration
Copyright © 2026 lemon.io. All rights reserved.