Guillermo Lam Top-Executive
Cloud Platform, DevSecOps and Cloud and AI Security Engineer with 15+ years of experience across AWS, Kubernetes, Linux/SysOps, SRE, platform engineering, identity, observability, compliance automation and cybersecurity.Today I design and operate secure, scalable and observable platforms using AWS, Terraform, Terramate, Kubernetes/EKS, Helm, ArgoCD, GitLab CI, GitHub Actions, CloudWatch, CloudTrail, AWS Config, GuardDuty, Inspector2, Security Hub, Macie, Athena, QuickSight, Prometheus, Grafana, OpenTelemetry, SIEM/SOAR workflows and CNCF ecosystem tools.A recent example: building ISO 27001 audit evidence flows in AWS by collecting signals from CloudTrail, AWS Config, GuardDuty, Inspector2, Security Hub, IAM, EKS, CI/CD pipelines, SBOM tooling, asset inventories and vulnerability reports into S3-backed datasets, querying them through Athena, and exposing them through QuickSight for auditors and stakeholders.My SRE mindset comes from years of enterprise architecture, DevOps, Lean/Agile transformation, mission-critical systems and regulated environments. I work with SLAs, SLOs, uptime, throughput, latency, capacity, MTTR, MTTD, RCA, DORA metrics, Lean flow metrics, CVSS, EPSS, vulnerability exposure windows and operational dashboards.Work deeply across software supply chain and platform security: SBOMs, signed artifacts, SLSA controls, GHAS, policy-as-code, container image hardening, distroless/secure base images, runtime security, Kubernetes admission control, vulnerability management and CI/CD security gates.I also work across Zero Trust, offensive validation, CNCF security and AI security: Teleport, Twingate, AWS IAM, AWS Identity Center, OIDC federation, secrets/key lifecycle patterns, SSRF testing, metadata exposure checks, IAM boundary validation, WAF testing, RBAC review, Kubernetes, Istio, Cilium, Falco, Kyverno, Gatekeeper, Trivy, Syft, Grype, prompt injection risks, agentic workflows and AI workload security.I bring strong enterprise integration experience across IAM, SSO, OIDC, SAML, OAuth2, Keycloak, Entra ID, API platforms, SaaS integrations and hybrid cloud connectivity.My background spans insurance, banking, public sector, aviation, healthcare, AI and HPC environments, including Mapfre, Santander, BBVA, European Commission DIGIT B2, Gov. of Gibraltar, Skyguide, Savana, Ciklum and Multiverse Computing.Core areas:AWS · Kubernetes · DevSecOps · Cloud Security · SRE · Linux · Platform Engineering · IAM · Zero Trust · Observability · SIEM/SOAR · ISO 27001 · SOC 2 · NIS2 · DORA · Software Supply Chain Security · Purple Team · AI Security
