Senior DevOps / DevSecOps Engineer — 10+ years designing cloud-native infrastructure, automating CI/CD, and hardening application security across AWS, GCP, and Azure.
Based in Chile 🇨🇱 · Spanish (native) · English (advanced)
I build and operate infrastructure that scales without babysitting: Kubernetes clusters, IaC pipelines, and the CI/CD plumbing behind them — with security baked in from the first Terraform plan, not bolted on after a scan finds something. Recent work spans multi-tenant hosting platforms, GKE cluster health automation, and DevSecOps tooling (CIS/NIST-aligned checks, container image scanning).
Certifications: AWS SysOps Administrator Associate · AWS Certified Cloud Practitioner · HashiCorp Terraform Associate · GCP Associate Cloud Engineer
| Cloud | AWS · GCP · Azure |
| Containers & Orchestration | Kubernetes · Docker · Karpenter |
| IaC & Automation | Terraform · Ansible |
| CI/CD | GitHub Actions · GitLab CI/CD |
| Languages | Python · Go |
- gonzaloseriche.rocks — Personal site on Hugo, deployed via S3 + CloudFront, secured with Cloudflare, fully provisioned with Terraform.
- iac-eks-karpenter — VPC + EKS + Karpenter, terraformed for fast, repeatable cluster provisioning.
- grafana-dash-migration — Automates migrating Grafana dashboards and folders between instances.
- SafeLock-CSV — Lightweight tool for encrypting/protecting sensitive CSV data at rest.
Also contributing to: k8s-cookbook and lsst-control — Kubernetes best practices and IaC/CI-CD automation for the LSST (Vera C. Rubin Observatory) project.
Open to talking DevOps/DevSecOps architecture, infra cost optimization, or Kubernetes at scale.



