Gerardo Lucero
@gerardolucero
DevSecOps engineer specializing in secure CI/CD and container security for regulated industries.
What I'm looking for
I’m a DevSecOps Engineer with 7+ years in software engineering and 2+ years designing secure CI/CD infrastructure for regulated financial institutions at scale. I standardized security pipelines across 1,200+ repositories and 3,000+ build artifacts spanning 15+ stacks, shifting security left through reusable pipeline libraries.
My focus is secure delivery by combining SAST, DAST, policy-as-code, container hardening, and secret management—plus SBOM and dependency scanning—to enforce CNBV/Banxico requirements with automated audit evidence generation. Beyond DevSecOps, I’ve led architecture and platform efforts (Internal Developer Platform on Kubernetes with golden paths, self-service deployments, and integrated security controls) and improved reliability via observability and proactive incident detection.
Experience
Work history, roles, and key accomplishments
DevSecOps Engineer
Consubanco México
Jan 2024 - Present (2 years 5 months)
Standardized secure CI/CD across 1,200+ repositories and 3,000+ build artifacts across 15+ stacks, using reusable GitHub Actions libraries with SAST, DAST, policy-as-code, and secret management. Implemented container hardening, dependency scanning, and golden path templates to support CNBV/Banxico regulatory requirements and automated audit evidence generation.
Solutions Architect /
Círculo de Crédito
Jan 2024 - Jan 2026 (2 years)
Founded an architecture and security governance model with a 5-level maturity matrix (8 dimensions) adopted by 7+ engineering teams. Built a Kubernetes Internal Developer Platform with golden paths, self-service deployments, and integrated security controls, and led an OpenShift migration while coaching 7+ teams.
Solutions Architect / Tech Lead
Petco México
Jan 2023 - Jan 2024 (1 year)
Coordinated 3 squads delivering customer-facing and internal systems across 100+ retail stores. Implemented Grafana observability to shift incident detection from reactive to proactive and reduce critical recovery time.
Technical Product Manager
Grupo Findep
Jan 2020 - Jan 2023 (3 years)
Developed an event-driven credit origination platform on Kafka with state machines across 3 business applications, processing 200M payment transactions in a quarter. Optimized collections with Spark + Python to run 1M batch jobs in 40 seconds (replacing an 8-hour manual overnight process) and supported payment flows including Oxxo, OpenPay, card, STP, and 1B+ MXN direct debits.
Tech Lead Engineer
Microsistemas
Jan 2017 - Jan 2019 (2 years)
Built and led development of a real-time car rental and reservation system with dynamic pricing and payment workflows. Managed delivery from requirements through implementation and supported end-to-end system behavior for real-time transactions.
Education
Degrees, certifications, and relevant coursework
Universidad del Valle de México
Diploma in Artificial Intelligence, Artificial Intelligence
2022 - 2023
Completed a Diploma in Artificial Intelligence at Universidad del Valle de México from 2022 to 2023.
Instituto Tecnológico de La Paz
Bachelor of Science in Computer Systems Engineering, Computer Systems Engineering
2012 - 2017
Earned a B.S. in Computer Systems Engineering at Instituto Tecnológico de La Paz from 2012 to 2017.
Confluent (Kafka Summit)
DevSecOps with Solutions Architecture (Kafka Summit program), DevSecOps & Solutions Architecture
2023 -
Completed Kafka Summit 2023 focused on DevSecOps with solutions architecture in London with Confluent.
Availability
Location
Authorized to work in
Website
gerardolucero.github.ioPortfolio
gerardolucero.github.ioJob categories
Skills
Interested in hiring Gerardo?
You can contact Gerardo and 90k+ other talented remote workers on Himalayas.
Message GerardoFind your dream job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
