Jose
Caicedo
Cloud & DevSecOps Engineer · 12+ years
I design, automate, and secure cloud and on-premise infrastructure. I embed security at every stage of the lifecycle —from code to deployment— turning complex environments into reliable, measurable, and compliant systems.
Certified · Security+ · Network+ · Linux+
// what i do
Services
End-to-end capabilities, from architecture to production.
Architecture design
Design of scalable, cloud-native systems — infrastructure, data flow, multi-tenant architecture — built to grow without falling over.
View service Architecture designArtificial Intelligence
Integrating AI into products and workflows where it earns its place — from smarter tooling to assisted experiences.
View service Artificial IntelligenceAutomation
CI/CD pipelines and infrastructure as code that remove manual toil and make every deploy boring, repeatable and safe.
View service AutomationCybersecurity
Securing applications and pipelines end to end — DevSecOps practices, automated scanning, and compliance baked into delivery.
View service Cybersecurity// about me
About me
I’m a Cloud & DevSecOps engineer with over 12 years of experience, at the intersection of cloud, automation, and security. My path runs from on-premise systems and networking to large-scale cloud environments, and includes front-end development and custom WordPress solutions —large sites and projects, plus published plugins— giving me a complete view of how technology supports the business.
I’ve led migrations, CI/CD pipelines, and DevSecOps practices that build security in from the start (shift-left), improving the scalability, reliability, and compliance of critical systems. I hold the CompTIA Security+, Network+, and Linux+ certifications, and I see security as a shared responsibility across the entire lifecycle, not a final stage.
I contribute to open-source communities such as Red Hat and WordPress, and I’m currently building SAFE-PIPE, my own static code analysis tool that brings AI into scanning and testing, designed to run inside deployment pipelines (in beta).
2022 — 2025
Cloud Engineer & DevSecOps Specialist — Payvalida
Payvalida
Led cloud security architecture for a multi-region payments platform on AWS — full PCI-DSS / SOC 2 compliance automation, hardened CI/CD across 200+ services, and −90% critical pipeline vulnerabilities.
2015 — 2021
IT Infrastructure, Networks & DevOps Lead
End-to-end IT ownership for a firm serving 250+ client companies — from structured cabling and Windows/Linux servers to AWS migration, GitLab CI/CD, and network security.
2010 — 2016
IT Infrastructure & Systems Engineer — Nexsys
Nexsys
On-premise infrastructure for clinical and corporate sites — virtualized Windows/Linux servers, LAN/WAN and firewalls, structured cabling, and DR policies (−40% network incidents).
2009 — 2016
Freelance Web Developer and CMS Specialist
Designed and built client websites on WordPress, Joomla, and Flash — full delivery ownership from FTP/server setup to launch.
2009 — 2009
Data Analyst and Database Administrator — Deceval
Deceval
Managed databases and server configuration for data storage and retrieval; built PHP platforms for real-time economic data.
2007 — 2008
Junior Data Analyst — Correval S.A.
Correval S.A.
Data extraction, transformation, and reporting in support of decision-making; visualizations and analytics on large data sets.
2006 — 2007
Data Analyst and Business Intelligence Assistant — Harinera del Valle S.A.
Harinera del Valle S.A.
Supported BI and analytics — data collection, analysis, and reporting to drive business-process decisions.
2005 — 2006
Economic Data Analyst Intern — Correval S.A.
Correval S.A.
Collected, organized, and analyzed economic data; conducted research and built reports supporting decision-making.
0216 — Present
Independent IT & Cybersecurity Consultant
Technology consulting practice for SMBs — cloud migrations (AWS/GCP), network and perimeter security, IaC/CI/CD, and automation across multiple active clients.
WordPress (sites and plugins)
Front-end development and custom WordPress solutions — large sites and projects, including this one — plus published plugins, focused on performance and maintainable code.
View project WordPress (sites and plugins)DevSecOps Pipeline
Secure CI/CD pipelines on Azure DevOps with automated scanning (SAST/SCA), IaC validation, and PCI DSS compliance.
View project DevSecOps PipelineMy Appointment
Scheduling SaaS platform for professionals: cloud-native on GCP with Terraform and Cloud Build, integrated AI, and a multi-tenant architecture.
View project My AppointmentSAFE-PIPE Project
An open-source static code analysis tool that brings AI into scanning and testing, designed to run inside CI/CD pipelines and catch insecure code before it ships. In active beta.
View project SAFE-PIPE Project// contact
Shall we build something secure and well-made?
Tell me about your project — architecture, automation, AI, or security, in the cloud or on-premise. I respond quickly.