Cassio Moretto

I design AWS platforms that hold under real load, pass the audit, and cost less to run.

DevSecOps & Cloud Architect. 16 years across US SaaS, fintech and healthtech, from 22 hour load tests at 5,500 requests per minute to zero downtime cloud migrations.

ref. architecture / multi tenant saas / awsrev 07
throughput
5,410 req/min
p95 latency
176 ms
tasks
3 running

Selected work

Three engagements that show how I reason: find the real bottleneck, change the architecture, prove it with numbers.

VioletX

Staff DevSecOps & Cloud Architect2023 to now

Through VioletX I work directly inside customers' engineering teams. Cases I executed: a 22 hour production like load test at about 5,500 requests per minute for MD Integrations, where I traced the latency ceiling to PHP FPM worker saturation rather than CPU and moved ECS Fargate to latency driven autoscaling. A two year engagement with Ampliwork building the AWS foundation and DevSecOps practice. A CI/CD redesign on Docker and CircleCI with pull request preview environments. A cloud vulnerability scanning platform aligned to SOC 2, HIPAA, ISO 27001 and DISA STIG, and technical readiness work that took audit timelines from months to weeks.

30 to 40%lower cloud spend
3 h to 20 mindeploy time
4 d to 4 henvironment provisioning
100+customers reaching compliance
finding: the ceiling was the worker pool, not the cpu. scaling rule changed to p95 latency.

ClickFunnels

Senior Platform Engineer2022 to 2023

Led the migration from GCP to AWS on EKS, Terraform and Helm with zero downtime across development, staging and production, on a platform serving more than 5 million requests a day. Deployments moved to GitOps with ArgoCD reconciling every environment from git, and Terraform became the shared way the engineering teams managed infrastructure.

5M+requests per day
0downtime across three environments
EKSTerraform, Helm, ArgoCD
three environments moved in lockstep, argocd reconciling from git.

Conta Azul

Senior Site Reliability Engineer2019 to 2020

Deploying to production was a ticket with a two day SLA: a request to the infrastructure team, a manual change, a wait. I rebuilt the delivery path as a pipeline on CircleCI with infrastructure defined in Terraform, so a merge reached production in about ten minutes without anyone touching a server. The same estate served more than 10,000 active users and millions of daily requests, and the pipeline became the standard for 200 plus developers across the company.

2 days to 10 minmerge to production
200+developers on the pipeline
10,000+active users served
the change was not a faster team, it was removing the human handoff.

Earlier: Qwire (New York), UpHealth (Florida, healthcare under regulatory constraints), Clevertech (New York), Coya AG (Berlin, cloud native insurance), TOTVS (SRE and software engineer, Joinville), HunterCo (hands on CTO), and the Paraná State Government FERA project (database administration).

Startups

Products I have built or co built as a founder, outside client work. Infrastructure people rarely ship product; I do both.

current · founder, developer and product owner

JurisCorp

Legal process management for Brazilian law firms. An executive dashboard shows case counts, financial exposure, probability of success and portfolio composition so partners see risk before it lands.

co founder · decommissioned, source owned

Vocely

A web app for doctors that recorded the consultation and turned it into structured documentation, with a dashboard of consultations per weekday, monthly totals and the time each doctor got back. The product is no longer running; I own the project and its code.

Talks

Public sessions on infrastructure as code and recovery at scale.

Oct 2020
HashiConf Lightning Talks | Infrastructure as Code at Conta Azul: using Terraform to provision our workload infrastructure
How Conta Azul provisioned workload infrastructure with Terraform, Vault and GitHub across a large AWS estate.
Nov 2019
TDC Conference - Recife | Infrastructure as Code at Scale
The Developer's Conference. Speaker and technical author. Infrastructure as code and disaster recovery strategies: provisioning and recovering full cloud environments with Terraform, and real world approaches to improving RTO and RPO in cloud native systems.

Community

Docker Brasil group
Community contributor (SRE), 2017 to present. Supporting developers adopting Docker and container based architectures.
CovidZero
Volunteer SRE, 2020 to 2021. Rapid deployment of a health application during the COVID 19 crisis.
AWS Meetup Joinville
Technical lead for the live broadcast and streaming infrastructure, 2017.

Open source

terraform-helpers
Small utilities for daily Terraform work. Shell.
aws-ssm-param-migrator
Move AWS SSM parameters between paths and accounts. Python.
export-gh-issues-to-jira-cloud
Export GitHub issues into Jira Cloud. Python.
All 36 repositories

About

I am Cassio, a DevSecOps & Cloud Architect based in Santa Catarina, Brazil. Sixteen years in, across Joinville, Berlin and US based teams, I moved from backend engineering to SRE to architecture. I work in Portuguese, English and Spanish.

I care about trade offs more than tools: the right design for the risk, the scale and the budget in front of me. Most of my work sits where engineering, security and business impact overlap, on systems that keep serving under sustained traffic and still pass the audit.

NowStaff DevSecOps & Cloud Architect at VioletX, serving US SaaS companies
CompanyFounder, JurisCorp
EducationBachelor in Information Systems, UNIPAR. MBA in Software Project Management, PUC PR
BaseBrazil. Remote in US hours

Start a conversation

Tell me what you are building and where it hurts. Send me a message on LinkedIn and I reply within two business days.