Buenos Aires, Argentina
Gustavo Rangel
AWS Solutions Architect Professional · Enterprise Cloud Migration · Landing Zones · Terraform · Security & Networking
About
Senior Cloud Architect with hands-on experience designing and delivering enterprise-scale AWS environments across regulated industries (fintech, payments, and energy). Focused on cloud migration, multi-account Landing Zones, hybrid networking, and security posture improvement. Proven track record building production-ready architectures with AWS Control Tower, Transit Gateway, Route 53 Resolver, and Terraform—balancing governance with developer velocity.
AI + Cloud Delivery
I use automation, IaC, and AI-assisted workflows to ship faster—without compromising security. From discovery and dependency mapping to migration waves and remediation at scale.

Certifications
Badges and verified credentials



Selected work
Representative engagements (client names omitted due to NDAs).
Led a complex migration of a SQL Server Enterprise HA environment (~4TB, 30+ databases) to AWS. Designed the target architecture, landing-zone prerequisites, cutover strategy, and operational guardrails.
Designed and deployed a secure multi-account Landing Zone enabling scalable workload onboarding, centralized security, and network segmentation patterns.
Orchestrated remediation across multiple AWS accounts using Security Hub + Inspector + GuardDuty, closing critical exposure paths and establishing repeatable controls.
Built hybrid connectivity and DNS resolution between on‑prem and AWS using Transit Gateway routing domains and Route 53 Resolver endpoints/rules.
Experience
- Lead technical delivery for multi-client AWS programs (landing zones, migrations, security).
- Drive IaC standards (Terraform modules), governance guardrails, and reusable patterns.
- Own stakeholder communication, technical documentation, and delivery planning.
- Designed landing-zone architectures with Control Tower and network segmentation (TGW, inspection VPC).
- Implemented hybrid DNS (Route 53 Resolver) and site-to-site VPN connectivity patterns.
- Delivered security improvements and remediation programs using Security Hub/Inspector/GuardDuty.