Sebastian
From Spain (UTC+2)
Sebastian – AWS, AI agent development, Python
Sebastian is a DevOps/Platform Engineer and technical leader with strong expertise in cloud architecture, DevSecOps, security, and infrastructure automation. His experience spans AWS, Azure, GCP, Kubernetes, Docker, Terraform, CI/CD, and Python, with hands-on ownership of cloud migrations, platform modernization, and security-focused engineering initiatives. He brings CTO/CISO-level experience combining hands-on technical work with architecture ownership and engineering leadership. Sebastian demonstrates strong commercial awareness and effectively translates business and customer requirements into pragmatic technical solutions.
11 years of commercial experience in
Main technologies
Additional skills
Direct hire
PossibleReady to get matched with vetted developers fast?
Let’s get started today!Experience Highlights
Chief Technology Officer (CTO + CISO)
Payment infrastructure platform enabling businesses to integrate and manage payment operations through a unified API, with a focus on scalability, resilience, security, and regulatory compliance.
- Led the transformation from a monolithic architecture to secure, isolated microservices, improving scalability, resilience and reducing blast radius;
- Architected and operated a multi-cloud Kubernetes platform across AWS, GCP, and on-premise infrastructure;
- Led a distributed engineering team and embedded security-by-design practices throughout the SDLC;
- Designed the DevSecOps strategy, integrating security gates, container scanning, secrets management and automated security controls into CI/CD pipelines;
- Built multi-layered security monitoring and threat detection using ELK, Suricata, Sysdig/Falco and AWS Security Hub;
- Conducted penetration testing and security assessments across application and infrastructure environments and led vulnerability remediation;
- Developed incident-response runbooks, threat-detection dashboards and escalation procedures;
- Translated DORA, MiCA, SOC 2 and ISO 27001 requirements into engineering controls and audit-ready processes.
Fractional VP of Security & Infrastructure
Infrastructure modernization and cloud migration program for a legacy enterprise application estate, involving the migration of production systems to AWS and the transition of development and staging environments to a new data center.
- Assessed legacy infrastructure and applications, defining the target hybrid-cloud architecture and migration strategy;
- Led the migration of production workloads from on-premises infrastructure to AWS while maintaining service availability and data integrity;
- Designed secure AWS infrastructure using VPC, IAM, EC2, RDS, S3, and container services, with appropriate network segmentation, access controls, logging, and monitoring;
- Re-architected selected legacy workloads using cloud-native services to improve scalability and maintainability;
- Led the migration of development and staging infrastructure to a new on-premises data center;
- Introduced Infrastructure as Code and automated deployment workflows to improve infrastructure consistency and release reliability;
- Modernized legacy systems through patching, upgrades, vulnerability remediation, and improved backup and disaster-recovery practices;
- Established company-wide security governance, risk-management processes, policies, and infrastructure security standards.
Head of Engineering / Fractional Co-CTO
Fintech and digital-assets platform undergoing a major architectural and product transformation, including a transition toward microservices, integration with a new cryptocurrency exchange platform, and modernization of engineering and delivery practices.
- Led the engineering organization and technical direction across product development, architecture, infrastructure, and application security;
- Directed the transformation of the existing platform toward a microservices architecture;
- Led the technical integration between the existing platform and a new cryptocurrency exchange;
- Translated product outcomes and business requirements into architecture, technical specifications, work breakdowns, and engineering deliverables;
- Oversaw backend development using .NET and Node.js/TypeScript and frontend development using React and Angular;
- Established engineering standards for code reviews, automated testing, documentation, maintainability, performance, and scalability;
- Led the DevSecOps strategy, integrating automated security testing and vulnerability scanning into CI/CD processes;
- Established security monitoring, risk-management, and incident-response practices, advising senior management on technology and security risks;
- Mentored engineers and facilitated collaboration across development, operations, security, and product teams.
Senior DevSecOps Engineer
Cloud-native data platform with security embedded across infrastructure, CI/CD, and software development processes, operating within a SOC 2 compliance environment.
- Embedded security controls into CI/CD pipelines, cloud infrastructure and containerised application environments;
- Designed automated security monitoring and alerting capabilities for early detection of application and infrastructure threats;
- Migrated legacy Terraform infrastructure toward a Kubernetes API-based approach and introduced Pulumi for Infrastructure as Code automation;
- Led engineering activities supporting SOC 2 Type II compliance, including evidence collection, control implementation and remediation;
- Conducted web-application and infrastructure penetration testing using Burp Suite, Wireshark and OWASP methodologies;
- Triaged security findings by severity and worked directly with engineering teams to drive remediation;
- Served as an incident-response lead and delivered security-awareness and secure-coding training to senior engineers;
- Designed and built an internal microservices-based security dashboard that automated vulnerability-scan management and improved finding prioritisation.