Skip to content

Andrés Estupiñán

Senior Cloud Platform Engineer (AWS) | AI and Data Infrastructure

M.Sc. Information Systems Management, TU Berlin · AWS Certified GenAI Developer, Professional

Berlin, Germany | Colombian / German dual national

Andrés Estupiñán
Spanish Native
English C1, IELTS 7.5
German B2
Italian B1

Summary

Cloud platform engineer, 18 years from bare-metal datacenters to production AI infrastructure. Worked for startups, SMEs and large corporations, on projects in seven countries across Latin America, Europe, the Middle East and the United States, in three different languages. Former AWS Professional Services, delivering for regulated industry: automotive, logistics, pharmaceutical, chemical and rail. Currently running platform engineering across six AWS projects, entirely in Terraform.

Experience

- Present

Rackspace Technology

Senior AWS DevOps Engineer

Berlin, Germany

  • Terraform
  • Terragrunt
  • Amazon Bedrock
  • Apache Iceberg
  • AWS Glue
  • PySpark
  • Amazon Athena
  • AWS Lake Formation
  • Transit Gateway
  • GitLab CI/CD
  • GitHub Actions
  • Grafana

Project Overview

Delivery engineering for enterprise AWS estates in automotive, and in logistics and shipping under KRITIS regulation.

Results & Impact

  • Run platform engineering across six AWS projects for an automotive group, entirely in Terraform pipelines running on GitLab/GitHub. Supported the migration of the workloads from GitLab to GitHub and built a unified Grafana dashboard aggregating metrics from all six, including a Bedrock AI RAG system. Also delivered security-posture work with the client security team to bring two projects from DEV to PROD.
  • Built an end-to-end GenAI data platform for a premium automotive manufacturer: a Glue and PySpark ETL pipeline consolidating production-line data into an Apache Iceberg lakehouse, fronted by an agentic assistant on Amazon Bedrock querying Athena through a Converse API. Production-line staff who write no code now ask in natural language instead of queueing behind the one engineer who could query the underlying Oracle database. The assistant returns the SQL it generated, so a harder question can be passed straight to an engineer to extend. Engagement delivered entirely in German.
  • Migrated 42 of a logistics and shipping enterprise's most critical AWS accounts to a standardized Terragrunt and GitLab CI/CD model in a KRITIS-regulated environment, including the Shared Transit Gateway that all ~350 accounts in the estate route through.
  • Ran DevOps for a commercial-vehicle manufacturer's hub-and-spoke data lake and RAG platform: AWS CDK and GitLab CI/CD, Lake Formation cross-account data sharing, and clearing every AWS Security Hub finding on the hosting account of a vLLM-based Retrieval-Augmented Generation (RAG) workload.
-

MHP - A Porsche Company

Senior AWS Consultant

Berlin, Germany

  • Terraform
  • ECS Fargate
  • Trino / Starburst
  • Flask
  • Kubernetes
  • ArgoCD
  • GitHub Actions

Results & Impact

  • Designed and deployed secure AWS middleware for querying Starburst data: a Flask API handling OAuth2 authentication over Trino with mTLS and IAM, running on ECS Fargate behind an Application Load Balancer, with ECR, VPC endpoints and KMS-encrypted Secrets Manager, all provisioned in Terraform. Delivered query-indexing recommendations and load testing for large datasets.
  • Migrated a manually managed Kubernetes cluster to Terraform and implemented GitOps CI/CD with GitHub Actions and ArgoCD.
-

AWS Professional Services

DevOps Consultant

Berlin, Germany

  • AWS CDK
  • Python
  • Terraform
  • Amazon SageMaker
  • Redshift Serverless
  • MLflow
  • AWS Glue
  • PySpark
  • Apache Iceberg
  • EKS on Fargate
  • Helm
  • TFSec

Project Overview

Delivery across regulated industry for named enterprise clients, two of whose platforms AWS later published as customer case studies.

Results & Impact

  • Boehringer Ingelheim, Dataland (approx. one year). GxP-regulated enterprise data platform on AWS, later published by AWS as a customer case study. Deployed AWS Professional Services' data.all data marketplace in AWS CDK and Python: inter-region VPC peering, Amazon SageMaker, Redshift Serverless and MLflow.
  • In this project also led the AWS Professional Services delivery team for the final three months of the engagement: client sprint reviews, task prioritisation across the AWS team, and the technical bridge between AWS and the client on the project's progress.
  • Covestro Deutschland AG. Data Architect on the Serverless Data Lake Framework (SDLF), migrating Tableau prep-flows to AWS Glue (PySpark). AWS later published the DataZone data mesh built on that foundation as a customer case study.
  • Built a GitLab pipeline for an ML-powered document and order-processing workload for a company in the Chemicals Manufacturing sector.
  • acierto.com (Spain). Built a Terraform observability stack for EKS on Fargate: ADOT, kube metrics and events, X-Ray, and CloudWatch dashboards generated in Python. Presented the project outcomes on site in Barcelona at the clients' biannual on-site meeting.
  • Built Terraform pipelines for EKS with security scanning (TFSec) in CodeBuild for a mobile bank in Abu Dhabi, and automated cluster tooling installation with Helm charts.
  • Built multi-account VPC and Transit Gateway automation with advanced AWS CDK configurations for a telecommunications client in Israel.
-

Deutsche Bahn

AWS Cloud Administrator

Berlin, Germany

  • AWS EC2
  • Auto Scaling
  • RDS
  • CloudWatch
  • Packer
  • GitLab CI/CD
  • Windows Server

Results & Impact

  • Implemented an automated AMI customization pipeline for Windows Server with Packer and GitLab, after solving the Packer-to-Windows-EC2 connection problem that had blocked this automation for the team. This served as a foundation for an article written later for the AWS Blog Post.
  • Responsible for the production and new releases via GitLab of the AWS backend (EC2, Auto Scaling, ELB, RDS, CloudWatch) of the point-of-sale system running on mobile devices across the entire ICE high-speed train fleet.
  • Supported release roll-outs across test and production environments via GitLab for different projects. Engagement delivered in German and participated in on-call rotation.

Earlier Career

-
Automation Engineer (Working Student) · FlixBus Berlin, Germany

Automated internal processes and built data-synchronization scripts (PowerShell, SQLite); integrated external SaaS systems via their APIs.

-
Systems Administrator (Working Student) · bonify Berlin, Germany

Active Directory, Windows Server, and pfSense administration; on-premises server virtualization with Hyper-V. Implemented the Microsoft BI stack (Power BI cloud service + Power BI Gateway + on-premises MSSQL/SSIS).

-
Software Implementation Specialist · Naviga Bogotá and Mexico City

Deployed an advertising software suite on customer infrastructure (Windows, IIS, SQL Server) across Colombia and Mexico. Travelled with the pre-sales team ahead of the engagement to run live product demonstrations for prospects, then delivered the implementation that followed.

-
Technical Support Analyst · Banco de Bogotá Bogotá, Colombia

Domain administration (Active Directory, Windows Server, Exchange, VMware); Level-2 24/7 support; HP ProLiant and IBM server administration in the production datacenter.

Projects

  • KubunDictate: Self-hosted speech-to-text service. Whisper stays resident in GPU VRAM on a home server, and any client on the local network transcribes against it. Replaced a paid SaaS subscription.
  • Kubun Notes: Android app for taking notes from physical books without marking them: photograph a page, OCR turns it into selectable text. Dictation runs on whisper.cpp entirely on the device, so audio never leaves the phone. Currently in closed testing.
  • Kubun Translate: Prototype for face-to-face translation. The screen splits in two with the far half rotated 180 degrees, so the person opposite reads upright. Chains Deepgram speech-to-text, DeepL translation and InWorld speech synthesis.

Education

-
M.Sc. Information Systems Management · Technische Universität Berlin Berlin, Germany

Thesis: Analysis of modern blockchain networks using graph databases. Cited in two peer-reviewed works, including the 2022 IEEE International Conference on Blockchain.

-
Specialist, IT Project Management · Universidad Distrital Francisco José de Caldas Bogotá, Colombia
-
B.Sc. Computer Science · Universidad Industrial de Santander Bucaramanga, Colombia

Certifications

Skills

Cloud and Infrastructure as Code

  • AWS
  • Terraform
  • Terragrunt
  • AWS CDK
  • Amazon Bedrock
  • Amazon SageMaker
  • EKS
  • ECS
  • AWS Fargate
  • Lambda
  • AWS Glue
  • Amazon Athena
  • AWS Lake Formation
  • Amazon Redshift Serverless
  • Transit Gateway
  • VPC
  • IAM
  • Amazon S3
  • KMS

CI/CD and GitOps

  • GitLab CI/CD
  • GitHub Actions
  • ArgoCD
  • AWS CodePipeline
  • AWS CodeBuild
  • Packer
  • TFSec
  • Kubernetes
  • Helm
  • Python
  • Bash
  • PowerShell
  • SQL
  • API Integration

Data and AI

  • PySpark
  • Apache Iceberg
  • Retrieval-Augmented Generation (RAG)
  • Whisper / whisper.cpp
  • Speech-to-Text (STT)
  • Text-to-Speech (TTS)
  • vLLM
  • MLflow
  • Blockchain
  • Ethereum
  • Neo4j
  • JanusGraph
  • Grafana
  • AWS Budgets and Cost Explorer