Sergio Francisco, Developer in Rio de Janeiro - State of Rio de Janeiro, Brazil
Sergio is available for hire
Hire Sergio

Sergio Francisco

Verified Expert  in Engineering

Cloud Architecture Developer

Rio de Janeiro - State of Rio de Janeiro, Brazil

Toptal member since July 17, 2019

Bio

Sergio is a cloud architect and engineer with over 15 years of experience delivering infrastructure services for companies of different industries and sizes. He designs and deploys highly available, cost-effective, scalable infrastructure on AWS or GCP. Sergio is also known for his strong communication and collaboration abilities. He works closely with developers, project managers, and stakeholders to ensure that infrastructure is delivered according to each project's specific needs.

Portfolio

Colgate-Palmolive
Google Cloud Platform (GCP), Amazon Web Services (AWS), Terraform, Python...
4 Elements Music
Terraform, Docker, Amazon Web Services (AWS), DevOps...
CoinList Services
Docker, Terraform, Ruby on Rails (RoR), Amazon Elastic Container Service (ECS)...

Experience

  • Cloud Architecture - 8 years
  • Docker - 7 years
  • Amazon Web Services (AWS) - 7 years
  • Terraform - 5 years
  • GitLab CI/CD - 5 years
  • Ansible - 5 years
  • Kubernetes - 2 years
  • Google Cloud - 2 years

Availability

Part-time

Preferred Environment

Docker, Terraform, Google Cloud, Amazon Web Services (AWS), Kubernetes, CI/CD Pipelines, Amazon Elastic Container Service (ECS), Ansible, GitHub Actions

The most amazing...

...project I worked on was CoinList's infrastructure and DevOps modernization, which resulted in an 87.5% reduction in costs using containers and ECS Fargate.

Work Experience

AWS/GCP Cloud Engineer

2024 - 2025
Colgate-Palmolive
  • Reviewed a codebase containing over 40 Python functions deployed on Cloud Functions that performed operations in Colgate-Palmolive's GCP Infrastructure, which were not documented.
  • Created comprehensive documents with diagrams designed using Mermaid and Lucidchart to assist the Colgate-Palmolive engineering team in understanding and enhancing their infrastructure operations.
  • Worked on this review and documentation, which led to significant improvements in the reliability of the infrastructure.
Technologies: Google Cloud Platform (GCP), Amazon Web Services (AWS), Terraform, Python, Lucidchart, Flow Diagrams, Documentation

Senior DevOps Engineer

2024 - 2024
4 Elements Music
  • Implemented a complete CI/CD pipeline using GitHub Actions and AWS CodeDeploy to improve operational efficiency by adopting CI/CD pipelines to release software faster and securely.
  • Architected and implemented a new solid platform to run a containerized Python/Django application on AWS using ECS and Fargate.
  • Implemented all infrastructure resources on AWS and CloudFlare using Terraform and Terraform Cloud.
  • Deployed a GitHub Actions CI/CD pipeline to automate software delivery (test, build, and deploy applications using Blue/Green as release model) on top of AWS ECS and Fargate.
  • Created Terraform modules from scratch and published them in HCP Terraform (formerly known as Terraform Cloud) to manage infrastructure.
  • Deployed Cloudflare to protect their API from bots and other basic attacks. It included migrating the 4elementsmusic.com zone from Amazon Route 53 to Cloudflare.
Technologies: Terraform, Docker, Amazon Web Services (AWS), DevOps, Continuous Integration (CI), Continuous Delivery (CD), Cloud Architecture, Containers, Docker Compose

Senior Infrastructure Engineer

2023 - 2024
CoinList Services
  • Modernized CoinList's infrastructure operations by migrating their workloads from virtual servers (EC2) to containers (ECS). This project reduced infrastructure costs by 87.5% (from $4/hour to $0.5/hour).
  • Reduced main application scaling process time by 88% (from 45 minutes to approximately 5 minutes), a significant efficiency improvement that increased the confidence level in the deployment process.
  • Migrated CI/CD pipelines from Jenkins to GitHub Actions, which standardized and sped up CoinList's software delivery process, improved the engineering team's efficiency, and simplified workflow operations.
Technologies: Docker, Terraform, Ruby on Rails (RoR), Amazon Elastic Container Service (ECS), AWS Fargate, GitHub Actions, GitHub, GitOps, Docker Compose, Terraform Cloud, Containers

Cloud Architect

2022 - 2023
Caylent
  • Delivered projects for six clients: EVgo, Art of Problem Solving (AoPS), Whatnot, Web 3 Pro, TeleTracking and PlanetDDS.
  • Deployed Sagemaker training pipelines and model-serving infrastructure to assist the client's migration of their Recommendation Engine from SpellML to support their MLOps practice.
  • Designed a hub-and-spoke networking architecture that centralized ingress and egress networking access across three regions (the US and Europe) using services such as Transit Gateway AWS WAF and Load Balancers.
  • Migrated workloads from Rackspace to AWS EKS using the lift-and-reshape migration method.
  • Deployed AWS Control Tower for Terraform to create and customize new accounts complying with the client's organization's security guidelines.
  • Delivered a PoC to showcase how the client's application could be modernized using ECS Fargate, CircleCI, and GitHub.
  • Adopted Datadog for centralized logging, providing a unified view of products (Denticon, Apteryx, Legwork, Cloud 9) across AWS, GCP, Azure, and on-premises datacenter.
Technologies: Amazon Web Services (AWS), CI/CD Pipelines, Terraform, Architecture, GitLab CI/CD, GitHub, Amazon EKS, Docker, Bitbucket, Jira, CircleCI, Amazon Elastic Container Registry (ECR), Amazon Elastic Container Service (ECS), Amazon RDS, Amazon API Gateway, AWS Lambda, AWS IAM, DevOps, Amazon Virtual Private Cloud (VPC), Datadog, AWS Cloud Architecture, Amazon S3 (AWS S3), Amazon SageMaker, Amazon EC2, GitLab, GitHub Actions, Cloud Architecture, Containers, Docker Compose, GitOps, Kubernetes

Lead Site Reliability Engineer

2020 - 2021
ETUS Media Holding
  • Discovered, planned, and migrated all company services from Digital Ocean and an on-premises data center in the USA to Google Cloud, enhancing our reliability, including uptime, security, capacity, and performance.
  • Re-architected and optimized the infrastructure of the company's main application and improved its reliability to handle tens of thousands of simultaneous clients using Google Cloud-managed services.
  • Modernized applications by implementing containerization, deploying them on GCP Cloud Run, and setting up streamlined CI/CD pipelines.
  • Implemented an observability solution using Google Cloud Operations Suite.
Technologies: Google Cloud, Google Cloud Storage, Google Compute Engine (GCE), Google Cloud SQL, MySQL, PostgreSQL, Google Kubernetes Engine (GKE), Content Delivery Networks (CDN), Redis, Logging, GitLab CI/CD, NGINX, Gunicorn, Laravel, Node.js, Docker, Terraform, Ansible, DevOps, SQL, Git, Kubernetes, Data Center Migration, Continuous Delivery (CD), Shell Scripting, Monitoring, Documentation, NFS, Continuous Integration (CI), Iptables, Grafana, Linux, Google Cloud Platform (GCP), CI/CD Pipelines, Datadog, GitLab, Cloud Architecture, Containers, Docker Compose, DigitalOcean, Sentry

Infrastructure Architect

2014 - 2019
Dock
  • Architected and implemented a multi-account infrastructure across two regions with multiple VPCs that used a broad range of AWS services such as EC2, S3, Route 53, RDS, ElastiCache, SQS, IAM, CloudTrail, Config, etc.
  • Deployed and architected the infrastructure for a PCI-certified system that processed thousands of financial transactions daily and a microservices infrastructure for tens of RESTFul APIs developed in Java.
  • Participated in recruiting and selecting new senior engineers for the team that I technically led and that migrated several systems and terabytes of data from a traditional data center to the AWS cloud.
  • Developed a CD pipeline to deploy static websites (built using Angular) on AWS using S3 in conjunction with CloudFront. This solution allowed the company to perform more deployments without downtime, at any time, and without manual intervention.
  • Deployed a GitLab autoscaling solution to automatically spin up and down Amazon EC2 Spot instances to process builds immediately and have a cost-effective, flexible/scalable solution.
Technologies: New Relic, Sentry, Docker, Continuous Delivery (CD), Continuous Integration (CI), GitLab, Packer, Ansible, Terraform, Redis, Amazon ElastiCache, MySQL, Amazon CloudFront CDN, Amazon S3 (AWS S3), Amazon EC2, Amazon Web Services (AWS), DevOps, Certified ScrumMaster (CSM), Apache, Apache Tomcat, SQL, Git, Data Center Migration, VMware, Vagrant, GitLab CI/CD, Shell Scripting, Monitoring, PCI DSS, Documentation, NFS, NGINX, Iptables, Grafana, Linux, CI/CD Pipelines, Amazon RDS, Amazon Virtual Private Cloud (VPC), AWS Cloud Architecture, Cloud Architecture, Containers, Docker Compose, RabbitMQ

Linux Support Analyst

2014 - 2014
Huawei Technologies Co.
  • Collaborated during the planning and execution phases of the project that added the 9th digit to the phones of the "Gestor Online" platform with a 9x prefix.
  • Supported, as an app and software engineer, a value-added services platform called "Gestor Online" for the carrier Claro Brazil; it had hundreds of thousands of corporative lines and used to process up to 100 call attempts per second.
  • Installed a rack for the SDU project with two switches, one chassis with 12-blade servers, KVM Raritan, and single storage with four expansions totaling 36 terabytes of storage.
Technologies: Shell Scripting, Linux, SQL, Monitoring, Documentation, NFS, Iptables

Linux Analyst

2013 - 2014
SONDA
  • Managed Unimed Rio Hospital's virtual infrastructure comprising more than five Dell physical servers, Fibre Channel EMC storage, Cisco switches, and 50+ virtual machines.
  • Administered 25+ GNU/Linux servers in six locations, running applications like database clusters, applications servers, and web servers.
  • Handled highly complex requests and incidents requiring in-depth research and scaled for local support teams (Level 1).
Technologies: Apache Tomcat, VMware, SQL, Shell Scripting, Monitoring, Documentation, NFS, Iptables, Linux

Experience

4 Elements Music | Infrastructure and DevOps Modernization

https://sergiofrancisco.com/case-4-elements-music
4 Elements Music, a music platform, hired me to revamp their infrastructure using AWS ECS and Fargate to containerize a Python/Django application on AWS.

The old system lacked scalability and performance. The solution involved containerizing the app with Docker, building a new platform with Terraform, deploying secure networking with VPC, and automating software delivery with CI/CD.

This boosted efficiency and security and laid a solid foundation for the new platform's launch.

CoinList | Infrastructure and DevOps Modernization

https://sergiofrancisco.com/case-coinlist
CoinList modernized its infrastructure by migrating six Ruby on Rails applications from EC2 to AWS ECS Fargate, using Docker for containerization, Terraform for IaC, and GitHub Actions for CI/CD. This significantly reduced costs, improved scalability, and accelerated deployment processes. The new platform is more resilient and efficient, allowing CoinList to handle traffic spikes during token sales and streamline operations.

Check all details of this project by clicking on the case study link.

Web3 Pro | AWS Control Tower Account Factory for Terraform

https://sergiofrancisco.com/case-web3-pro
Web3 Pro, a leading Web3 B2B SaaS platform, faced challenges managing its expanding AWS environment.

To address this, they sought to implement AWS Control Tower and Landing Zones to establish a robust account strategy and enhance security and compliance.

I helped Web3 Pro by conducting a security assessment, designing the AWS Landing Zone, configuring the AWS Control Tower, enrolling existing accounts, and providing training and documentation.

By successfully implementing these solutions, Web3 Pro achieved significant benefits such as enhanced security, improved governance, optimized costs, accelerated innovation, increased scalability, enhanced compliance, competitive advantage, and improved business outcomes.

TeleTracking | Multi-region Hub-and-Spoke Architecture and TCO

https://sergiofrancisco.com/case-teletracking
TeleTracking, a healthcare software company, faced challenges with its Azure infrastructure, including high costs, operational complexity, and scalability limitations. To address these issues, we partnered with them to migrate these workloads to AWS.

I conducted a thorough assessment, developed a TCO, and designed a robust network architecture to optimize their AWS environment. This resulted in significant cost savings, improved operational efficiency, enhanced scalability, and accelerated innovation.

My expertise and AWS's capabilities enabled me to deliver a successful part of the project in just one month, exceeding the client's expectations.

Whatnot | MLOps Migration from SpellML to Amazon Sagemaker

https://sergiofrancisco.com/case-whatnot
Whatnot sought to enhance its recommendation engine's MLOps capabilities by migrating from SpellML to Amazon SageMaker.

Key challenges included scalability, flexibility, and MLOps maturity. The solution involved designing a scalable infrastructure using SageMaker's managed services, creating efficient training pipelines, deploying models as real-time endpoints, and integrating with MLOps tools.

The successful migration enhanced scalability, accelerated development, improved MLOps maturity, and cost optimization.

Art of Problem Solving | Infrastructure Modernization

https://sergiofrancisco.com/case-art-of-problem-solving
Art of Problem Solving (AoPS), a company specializing in math education, sought to modernize its infrastructure to support growth and improve customer experience.

The solution involved migrating to AWS, specifically using ECS and Fargate for container orchestration. This allowed AoPS to focus on application development and improve scalability, reliability, and security.

The project successfully modernized the infrastructure, streamlined customer transitions, and increased operational efficiency, positioning AoPS for future growth and innovation.

EVgo | Migration from Rackspace to AWS EKS and S3 + CloudFront

https://sergiofrancisco.com/case-evgo
EVgo, a leading EV charging network, aimed to migrate three applications from Rackspace to AWS to consolidate workloads and reduce costs. The challenge was to containerize the applications, deploy them on EKS and S3 + CloudFront, and automate the process with minimal downtime.

I conducted a thorough discovery to understand dependencies, then opted for a re-platforming strategy. I improved Dockerfiles, built CI/CD pipelines with Bitbucket Pipelines, configured Kubernetes objects, and migrated traffic during a scheduled maintenance window.

The successful migration resulted in a consolidated AWS environment, reduced infrastructure costs, and improved scalability, reliability, and security. CI/CD automation also significantly enhanced operational efficiency.

Microservices Architecture Using IaC Tools and AWS

The client, a Brazilian fintech company, wanted to modernize their infrastructure to host a set of microservices consumed by their public-facing applications.

As the architect, I reviewed, designed, and implemented a scalable and secure infrastructure on AWS, using Terraform as the Infrastructure-as-Code (IaC) tool. Additionally, I developed CI/CD pipelines that allowed the client's developers to push changes to the production environment more frequently.

This solution reduced the client's operational costs and increased code deployment frequency by enabling developers to change the code in each environment without requiring an operations person to do it manually.

Continuous Delivery pipeline to deploy frontend applications

The client, a Brazilian fintech company, wanted to implement a CI/CD pipeline to allow their developer's team to deploy their code automatically using a GitOps approach.

As the architect, I designed, developed, and implemented a CI/CD pipeline that allowed the client's developers to build the code of their Angular front-end projects and frequently push changes to the production environment running on S3 + AWS CloudFront.

This solution reduced the client's operational costs and increased code deployment frequency by enabling developers to change the code in each environment without requiring an operations person to do it manually.

Muxi 2 Cloud | Infrastructure Migration to AWS

https://br.claranet.com/case-studies/muxi-otimiza-infraestrutura-de-ti-com-cloud-e-managed-services-da-claranet
The client, a Brazilian fintech company, wanted to migrate their infrastructure from an on-premises data center (TIVIT) to a public cloud provider (AWS) using the re-platform migration technique.

As the architect, I first evaluated the technical and financial aspects of several cloud vendors and ultimately chose AWS as the platform. Next, I reviewed their entire legacy infrastructure, designed a multi-account/region/VPC architecture, and collaborated with the engineering team to migrate a set of systems that processed millions of financial transactions daily.

This migration brought order to the client's infrastructure architecture and operations, previously in a state of chaos. As a result of this project, I received an invitation from AWS and Claranet, an AWS partner, to present the migration case at AWS Summit Sao Paulo 2017.

Education

2007 - 2010

Bachelor's Degree in Information Systems

Faculdade de Informática Lemos de Castro - Rio de Janeiro, Brazil

Certifications

OCTOBER 2024 - OCTOBER 2026

KCNA: Kubernetes and Cloud Native Associate

The Linux Foundation

AUGUST 2022 - AUGUST 2024

HashiCorp Certified: Terraform Associate (002)

Hashicorp

JANUARY 2022 - JANUARY 2025

AWS Solutions Architect Associate

Amazon Web Services

MAY 2021 - MAY 2023

Google Cloud Certified Associate Cloud Engineer

Google Cloud

OCTOBER 2017 - OCTOBER 2019

Certified Scrum Master (CSM) I

Scrum Alliance

JUNE 2016 - JUNE 2019

Red Hat Certified Engineer (RHCE)

Red Hat

MARCH 2016 - MARCH 2019

Red Hat Certified Systems Administrator (RHCSA)

Red Hat

SEPTEMBER 2013 - SEPTEMBER 2016

CompTIA Network+ (N10-005)

CompTIA

Skills

Libraries/APIs

Node.js

Tools

VMware, Ansible, Terraform, GitLab CI/CD, Vagrant, Amazon Virtual Private Cloud (VPC), Docker Compose, Apache Tomcat, Packer, Apache, NGINX, Grafana, Jira, GitLab, Git, Iptables, RabbitMQ, Sentry, Google Compute Engine (GCE), Google Kubernetes Engine (GKE), Logging, GitHub, Amazon EKS, Bitbucket, CircleCI, Amazon Elastic Container Registry (ECR), Amazon Elastic Container Service (ECS), AWS IAM, Amazon SageMaker, Amazon CloudFront CDN, AWS Fargate, Amazon ElastiCache, Artillery, Amazon Firewall, AWS Directory Service, Lucidchart

Paradigms

DevOps, Continuous Delivery (CD), Continuous Integration (CI)

Platforms

Docker, Amazon Web Services (AWS), Linux, Google Cloud Platform (GCP), Amazon EC2, DigitalOcean, New Relic, Kubernetes, AWS Lambda

Storage

Google Cloud, Amazon S3 (AWS S3), MySQL, Redis, Google Cloud Storage, Google Cloud SQL, PostgreSQL, Google Cloud Datastore, Datadog

Languages

SQL, Python

Frameworks

Laravel, Ruby on Rails (RoR)

Other

Certified ScrumMaster (CSM), Documentation, Data Center Migration, AWS Cloud Architecture, Containers, Cloud Architecture, Shell Scripting, Monitoring, CI/CD Pipelines, Amazon RDS, GitHub Actions, GitOps, PCI DSS, NFS, Content Delivery Networks (CDN), Gunicorn, Google BigQuery, Information Systems, Architecture, Amazon API Gateway, Networking, DNS, Terraform Cloud, Elastic Load Balancers, Cloud9, AWS Transit Gateway, Web Application Firewall (WAF), AWS Control Tower, AWS Organizations, Flow Diagrams

Collaboration That Works

How to Work with Toptal

Toptal matches you directly with global industry experts from our network in hours—not weeks or months.

1

Share your needs

Discuss your requirements and refine your scope in a call with a Toptal domain expert.
2

Choose your talent

Get a short list of expertly matched talent within 24 hours to review, interview, and choose from.
3

Start your risk-free talent trial

Work with your chosen talent on a trial basis for up to two weeks. Pay only if you decide to hire them.

Top talent is in high demand.

Start hiring