
Sergio Francisco
Verified Expert in Engineering
Cloud Architecture Developer
Rio de Janeiro - State of Rio de Janeiro, Brazil
Toptal member since July 17, 2019
Sergio is a cloud architect and engineer with over 15 years of experience delivering infrastructure services for companies of different industries and sizes. He designs and deploys highly available, cost-effective, scalable infrastructure on AWS or GCP. Sergio is also known for his strong communication and collaboration abilities. He works closely with developers, project managers, and stakeholders to ensure that infrastructure is delivered according to each project's specific needs.
Portfolio
Experience
- Cloud Architecture - 8 years
- Docker - 7 years
- Amazon Web Services (AWS) - 7 years
- Terraform - 5 years
- GitLab CI/CD - 5 years
- Ansible - 5 years
- Kubernetes - 2 years
- Google Cloud - 2 years
Availability
Preferred Environment
Docker, Terraform, Google Cloud, Amazon Web Services (AWS), Kubernetes, CI/CD Pipelines, Amazon Elastic Container Service (ECS), Ansible, GitHub Actions
The most amazing...
...project I worked on was CoinList's infrastructure and DevOps modernization, which resulted in an 87.5% reduction in costs using containers and ECS Fargate.
Work Experience
AWS/GCP Cloud Engineer
Colgate-Palmolive
- Reviewed a codebase containing over 40 Python functions deployed on Cloud Functions that performed operations in Colgate-Palmolive's GCP Infrastructure, which were not documented.
- Created comprehensive documents with diagrams designed using Mermaid and Lucidchart to assist the Colgate-Palmolive engineering team in understanding and enhancing their infrastructure operations.
- Worked on this review and documentation, which led to significant improvements in the reliability of the infrastructure.
Senior DevOps Engineer
4 Elements Music
- Implemented a complete CI/CD pipeline using GitHub Actions and AWS CodeDeploy to improve operational efficiency by adopting CI/CD pipelines to release software faster and securely.
- Architected and implemented a new solid platform to run a containerized Python/Django application on AWS using ECS and Fargate.
- Implemented all infrastructure resources on AWS and CloudFlare using Terraform and Terraform Cloud.
- Deployed a GitHub Actions CI/CD pipeline to automate software delivery (test, build, and deploy applications using Blue/Green as release model) on top of AWS ECS and Fargate.
- Created Terraform modules from scratch and published them in HCP Terraform (formerly known as Terraform Cloud) to manage infrastructure.
- Deployed Cloudflare to protect their API from bots and other basic attacks. It included migrating the 4elementsmusic.com zone from Amazon Route 53 to Cloudflare.
Senior Infrastructure Engineer
CoinList Services
- Modernized CoinList's infrastructure operations by migrating their workloads from virtual servers (EC2) to containers (ECS). This project reduced infrastructure costs by 87.5% (from $4/hour to $0.5/hour).
- Reduced main application scaling process time by 88% (from 45 minutes to approximately 5 minutes), a significant efficiency improvement that increased the confidence level in the deployment process.
- Migrated CI/CD pipelines from Jenkins to GitHub Actions, which standardized and sped up CoinList's software delivery process, improved the engineering team's efficiency, and simplified workflow operations.
Cloud Architect
Caylent
- Delivered projects for six clients: EVgo, Art of Problem Solving (AoPS), Whatnot, Web 3 Pro, TeleTracking and PlanetDDS.
- Deployed Sagemaker training pipelines and model-serving infrastructure to assist the client's migration of their Recommendation Engine from SpellML to support their MLOps practice.
- Designed a hub-and-spoke networking architecture that centralized ingress and egress networking access across three regions (the US and Europe) using services such as Transit Gateway AWS WAF and Load Balancers.
- Migrated workloads from Rackspace to AWS EKS using the lift-and-reshape migration method.
- Deployed AWS Control Tower for Terraform to create and customize new accounts complying with the client's organization's security guidelines.
- Delivered a PoC to showcase how the client's application could be modernized using ECS Fargate, CircleCI, and GitHub.
- Adopted Datadog for centralized logging, providing a unified view of products (Denticon, Apteryx, Legwork, Cloud 9) across AWS, GCP, Azure, and on-premises datacenter.
Lead Site Reliability Engineer
ETUS Media Holding
- Discovered, planned, and migrated all company services from Digital Ocean and an on-premises data center in the USA to Google Cloud, enhancing our reliability, including uptime, security, capacity, and performance.
- Re-architected and optimized the infrastructure of the company's main application and improved its reliability to handle tens of thousands of simultaneous clients using Google Cloud-managed services.
- Modernized applications by implementing containerization, deploying them on GCP Cloud Run, and setting up streamlined CI/CD pipelines.
- Implemented an observability solution using Google Cloud Operations Suite.
Infrastructure Architect
Dock
- Architected and implemented a multi-account infrastructure across two regions with multiple VPCs that used a broad range of AWS services such as EC2, S3, Route 53, RDS, ElastiCache, SQS, IAM, CloudTrail, Config, etc.
- Deployed and architected the infrastructure for a PCI-certified system that processed thousands of financial transactions daily and a microservices infrastructure for tens of RESTFul APIs developed in Java.
- Participated in recruiting and selecting new senior engineers for the team that I technically led and that migrated several systems and terabytes of data from a traditional data center to the AWS cloud.
- Developed a CD pipeline to deploy static websites (built using Angular) on AWS using S3 in conjunction with CloudFront. This solution allowed the company to perform more deployments without downtime, at any time, and without manual intervention.
- Deployed a GitLab autoscaling solution to automatically spin up and down Amazon EC2 Spot instances to process builds immediately and have a cost-effective, flexible/scalable solution.
Linux Support Analyst
Huawei Technologies Co.
- Collaborated during the planning and execution phases of the project that added the 9th digit to the phones of the "Gestor Online" platform with a 9x prefix.
- Supported, as an app and software engineer, a value-added services platform called "Gestor Online" for the carrier Claro Brazil; it had hundreds of thousands of corporative lines and used to process up to 100 call attempts per second.
- Installed a rack for the SDU project with two switches, one chassis with 12-blade servers, KVM Raritan, and single storage with four expansions totaling 36 terabytes of storage.
Linux Analyst
SONDA
- Managed Unimed Rio Hospital's virtual infrastructure comprising more than five Dell physical servers, Fibre Channel EMC storage, Cisco switches, and 50+ virtual machines.
- Administered 25+ GNU/Linux servers in six locations, running applications like database clusters, applications servers, and web servers.
- Handled highly complex requests and incidents requiring in-depth research and scaled for local support teams (Level 1).
Experience
4 Elements Music | Infrastructure and DevOps Modernization
https://sergiofrancisco.com/case-4-elements-musicThe old system lacked scalability and performance. The solution involved containerizing the app with Docker, building a new platform with Terraform, deploying secure networking with VPC, and automating software delivery with CI/CD.
This boosted efficiency and security and laid a solid foundation for the new platform's launch.
CoinList | Infrastructure and DevOps Modernization
https://sergiofrancisco.com/case-coinlistCheck all details of this project by clicking on the case study link.
Web3 Pro | AWS Control Tower Account Factory for Terraform
https://sergiofrancisco.com/case-web3-proTo address this, they sought to implement AWS Control Tower and Landing Zones to establish a robust account strategy and enhance security and compliance.
I helped Web3 Pro by conducting a security assessment, designing the AWS Landing Zone, configuring the AWS Control Tower, enrolling existing accounts, and providing training and documentation.
By successfully implementing these solutions, Web3 Pro achieved significant benefits such as enhanced security, improved governance, optimized costs, accelerated innovation, increased scalability, enhanced compliance, competitive advantage, and improved business outcomes.
TeleTracking | Multi-region Hub-and-Spoke Architecture and TCO
https://sergiofrancisco.com/case-teletrackingI conducted a thorough assessment, developed a TCO, and designed a robust network architecture to optimize their AWS environment. This resulted in significant cost savings, improved operational efficiency, enhanced scalability, and accelerated innovation.
My expertise and AWS's capabilities enabled me to deliver a successful part of the project in just one month, exceeding the client's expectations.
Whatnot | MLOps Migration from SpellML to Amazon Sagemaker
https://sergiofrancisco.com/case-whatnotKey challenges included scalability, flexibility, and MLOps maturity. The solution involved designing a scalable infrastructure using SageMaker's managed services, creating efficient training pipelines, deploying models as real-time endpoints, and integrating with MLOps tools.
The successful migration enhanced scalability, accelerated development, improved MLOps maturity, and cost optimization.
Art of Problem Solving | Infrastructure Modernization
https://sergiofrancisco.com/case-art-of-problem-solvingThe solution involved migrating to AWS, specifically using ECS and Fargate for container orchestration. This allowed AoPS to focus on application development and improve scalability, reliability, and security.
The project successfully modernized the infrastructure, streamlined customer transitions, and increased operational efficiency, positioning AoPS for future growth and innovation.
EVgo | Migration from Rackspace to AWS EKS and S3 + CloudFront
https://sergiofrancisco.com/case-evgoI conducted a thorough discovery to understand dependencies, then opted for a re-platforming strategy. I improved Dockerfiles, built CI/CD pipelines with Bitbucket Pipelines, configured Kubernetes objects, and migrated traffic during a scheduled maintenance window.
The successful migration resulted in a consolidated AWS environment, reduced infrastructure costs, and improved scalability, reliability, and security. CI/CD automation also significantly enhanced operational efficiency.
Microservices Architecture Using IaC Tools and AWS
As the architect, I reviewed, designed, and implemented a scalable and secure infrastructure on AWS, using Terraform as the Infrastructure-as-Code (IaC) tool. Additionally, I developed CI/CD pipelines that allowed the client's developers to push changes to the production environment more frequently.
This solution reduced the client's operational costs and increased code deployment frequency by enabling developers to change the code in each environment without requiring an operations person to do it manually.
Continuous Delivery pipeline to deploy frontend applications
As the architect, I designed, developed, and implemented a CI/CD pipeline that allowed the client's developers to build the code of their Angular front-end projects and frequently push changes to the production environment running on S3 + AWS CloudFront.
This solution reduced the client's operational costs and increased code deployment frequency by enabling developers to change the code in each environment without requiring an operations person to do it manually.
Muxi 2 Cloud | Infrastructure Migration to AWS
https://br.claranet.com/case-studies/muxi-otimiza-infraestrutura-de-ti-com-cloud-e-managed-services-da-claranetAs the architect, I first evaluated the technical and financial aspects of several cloud vendors and ultimately chose AWS as the platform. Next, I reviewed their entire legacy infrastructure, designed a multi-account/region/VPC architecture, and collaborated with the engineering team to migrate a set of systems that processed millions of financial transactions daily.
This migration brought order to the client's infrastructure architecture and operations, previously in a state of chaos. As a result of this project, I received an invitation from AWS and Claranet, an AWS partner, to present the migration case at AWS Summit Sao Paulo 2017.
Education
Bachelor's Degree in Information Systems
Faculdade de Informática Lemos de Castro - Rio de Janeiro, Brazil
Certifications
KCNA: Kubernetes and Cloud Native Associate
The Linux Foundation
HashiCorp Certified: Terraform Associate (002)
Hashicorp
AWS Solutions Architect Associate
Amazon Web Services
Google Cloud Certified Associate Cloud Engineer
Google Cloud
Certified Scrum Master (CSM) I
Scrum Alliance
Red Hat Certified Engineer (RHCE)
Red Hat
Red Hat Certified Systems Administrator (RHCSA)
Red Hat
CompTIA Network+ (N10-005)
CompTIA
Skills
Libraries/APIs
Node.js
Tools
VMware, Ansible, Terraform, GitLab CI/CD, Vagrant, Amazon Virtual Private Cloud (VPC), Docker Compose, Apache Tomcat, Packer, Apache, NGINX, Grafana, Jira, GitLab, Git, Iptables, RabbitMQ, Sentry, Google Compute Engine (GCE), Google Kubernetes Engine (GKE), Logging, GitHub, Amazon EKS, Bitbucket, CircleCI, Amazon Elastic Container Registry (ECR), Amazon Elastic Container Service (ECS), AWS IAM, Amazon SageMaker, Amazon CloudFront CDN, AWS Fargate, Amazon ElastiCache, Artillery, Amazon Firewall, AWS Directory Service, Lucidchart
Paradigms
DevOps, Continuous Delivery (CD), Continuous Integration (CI)
Platforms
Docker, Amazon Web Services (AWS), Linux, Google Cloud Platform (GCP), Amazon EC2, DigitalOcean, New Relic, Kubernetes, AWS Lambda
Storage
Google Cloud, Amazon S3 (AWS S3), MySQL, Redis, Google Cloud Storage, Google Cloud SQL, PostgreSQL, Google Cloud Datastore, Datadog
Languages
SQL, Python
Frameworks
Laravel, Ruby on Rails (RoR)
Other
Certified ScrumMaster (CSM), Documentation, Data Center Migration, AWS Cloud Architecture, Containers, Cloud Architecture, Shell Scripting, Monitoring, CI/CD Pipelines, Amazon RDS, GitHub Actions, GitOps, PCI DSS, NFS, Content Delivery Networks (CDN), Gunicorn, Google BigQuery, Information Systems, Architecture, Amazon API Gateway, Networking, DNS, Terraform Cloud, Elastic Load Balancers, Cloud9, AWS Transit Gateway, Web Application Firewall (WAF), AWS Control Tower, AWS Organizations, Flow Diagrams
How to Work with Toptal
Toptal matches you directly with global industry experts from our network in hours—not weeks or months.
Share your needs
Choose your talent
Start your risk-free talent trial
Top talent is in high demand.
Start hiring