Summary
David Gouveia is a cloud security architect with over a decade of hands-on experience building secure, scalable cloud infrastructures and automating security at scale. He specializes in Linux security, DevSecOps, and infrastructure as code, using AWS, Terraform/Terragrunt, AWS CDK, Kubernetes, and a broad toolchain (Vault, Consul, OpenSearch, Prometheus, Elastic, Grafana) to enforce security across complex environments. In his current role at the European Commission he designs security microservices, conducts threat modelling, and develops tools in Python/TypeScript to integrate with Cortex XSOAR, Falco, Cloud Custodian, and other security tooling, while guiding CI/CD with GitHub Actions and a GitOps mindset. He has previously led red teams and security testing at Cobalt.io and driven automation and security tooling at ModusBox, Voith Digital, and Jumia Porto Tech Center, blending operations, development, and security. Based in Porto, Portugal, he holds a Master’s in Networks and Distributed Systems and a Bachelor in Computer Science Engineering, and is known for remote-first collaboration and delivering auditable, high-confidence security outcomes across multi-region deployments.
11 years of coding experience
12 years of employment as a software developer
Master's Degree Networks and Distributed Systems, Master's Degree Networks and Distributed Systems at Instituto Superior de Engenharia do Porto
English, Portuguese