Buenos Aires, Argentina
Gustavo Rangel
Enterprise Cloud Migration · Landing Zones · Hybrid Networking · Security · FinOps · Terraform
About
Cloud Engineer Lead / Solutions Architect with 4+ years designing and delivering enterprise-scale AWS environments for LATAM clients across regulated industries and the public sector (fintech, payments, energy, and government). Certified AWS Solutions Architect Professional and AWS Security Specialty. I combine multi-account Landing Zone architecture, hybrid networking, security remediation, FinOps, and large-scale migrations with Infrastructure as Code (Terraform) and automation — leading multi-client technical teams at CloudHesive LATAM.
AI + Cloud Delivery
I use automation, IaC, and AI-assisted workflows to ship faster—without compromising security. From discovery and dependency mapping to migration waves and remediation at scale.

Certifications
Badges and verified credentials




Tech stack
Tools and services I work with day to day
Selected work
Representative engagements (client names omitted due to NDAs).
Investigated a discrepancy between the cost reported by MontyCloud and actual AWS billing, isolating the root cause to Savings Plans discount netting at the payer level through CUR analysis.
Led a complex migration of a SQL Server Enterprise HA environment (~4TB, 30+ databases) to AWS. Designed the target architecture, landing-zone prerequisites, cutover strategy, and operational guardrails.
Designed a Landing Zone with Control Tower for scalable workload onboarding, and rolled out a 19-tag standard across an 18-account AWS organization using Terraform and CloudFormation StackSets.
Centralized inspection architecture with SonicWall NSv + Transit Gateway, and hybrid on-premises/AWS DNS resolution with Route 53 Resolver, including flow troubleshooting with VPC Flow Logs.
Experience
- Lead technical delivery for multi-client programs (FinOps, migration, networking, and security) for enterprise and public-sector clients across LATAM.
- Resolved an AWS billing discrepancy through CUR and MontyCloud data analysis, identifying the root cause in Savings Plans netting at the payer level.
- Designed the VPC subnet migration scheme (ILBS) and led AWS WAF/ALB troubleshooting for a Chilean government system.
- Performed feasibility analysis for a public tender (2 AZs in Chile), concluding a well-founded no-go based on AWS regional infrastructure constraints.
- Designed landing-zone architectures with Control Tower and network segmentation (Transit Gateway, inspection VPC) for multi-account environments.
- Implemented hybrid DNS (Route 53 Resolver) and Site-to-Site VPN connectivity between on-premises and AWS.
- Led tagging governance (19 tags) across an 18-account AWS organization, using Terraform and CloudFormation StackSets.
- Co-presented with AWS spokespeople the webinar "Low Latency Cloud: Real-time innovation with AWS Local Zones".
Talks & Community
Public speaking and community engagement