Kelvin Joson's Curriculum Vitae⚑
Contact Information⚑
- Name: Kelvin Joson
- Role: Software Engineer (Python) | Principal Architect & Full-Stack Resilience Engineer
- Email: kelvin@kelvinjoson.com
- LinkedIn: linkedin.com/in/kelvinjoson
- GitHub: github.com/kelvinjoson
- Website: www.kelvinjoson.com
- Location: Pampanga, Philippines | Available: WFH / Makati Onsite
Professional Summary⚑
Python engineer and AI-First practitioner with 19+ years of experience architecting production-grade software across cloud-native platforms, enterprise API ecosystems, and AI-powered backend systems.
Deep expertise in Hexagonal Architecture, multi-tenant security patterns (3-Factor Identity), and resilience engineering (Circuit Breaker state machines achieving ~40% cascading failure reduction). Demonstrated track record of delivering high-quality, audit-ready features in Agile environments — from designing and deploying FastAPI applications on GKE to architecting framework-agnostic domain cores with zero technical debt.
Core Competencies⚑
- Architectural Patterns: Hexagonal Architecture (Ports & Adapters), Dependency Injection, Domain-Driven Design (DDD), Framework-Agnostic Core Isolation, SOLID.
- Python Engineering: FastAPI, Pytest (BDD/TDD), Playwright, Pandas, NumPy, Matplotlib, Pydantic, Strongly-typed Python (frozen dataclasses).
- Resilience & Fault Tolerance: Circuit Breaker state machines (CLOSED → OPEN → HALF_OPEN), Exponential Backoff with Jitter, Cascading Failure Mitigation.
- Security & Identity Governance: 3-Factor Multi-tenant Isolation (JWT + Header + Infrastructure), Zero-Trust Architecture, Okta SAML/OIDC Federation.
- AI-First Development: GitHub Copilot (Certified), Google AI Professional (Feb 2026), GCP ADK, LLM-assisted engineering workflows, Prompt Injection Threat Modeling.
- Cloud & Deployment: Google Cloud Platform (Professional Architect), GKE Autopilot, Cloud Run, AWS Migration, Terraform/Terragrunt, GitHub Actions.
Professional Experience⚑
Aumovio (Formerly Continental) | Taguig City, Philippines⚑
Lead Developer (Platform Architecture Scope) | Jul 2025 – Present⚑
- AI-Powered Feature Delivery (Python/FastAPI): Designed and deployed a Secure FastAPI Broker on GKE as a multi-protocol reverse proxy for Okta-integrated applications, enabling centralized inspection of OIDC, SAML, and OAuth2 flows.
- AI-First Engineering Practice: Championed AI-augmented engineering workflows using GitHub Copilot and Google AI tooling; led LLM-assisted engineering pilots that accelerated internal platform development velocity.
- AEC AI Agent (GCP Vertex AI / ADK): Built a production AI agent orchestrating Jira, Gitea, and GCP Secret Manager via FastMCP; enforced multi-tenant security via Okta Private Key JWT and prefix-scoped Secret Manager access.
- Cloud-Native Deployment & CI/CD: Provisioned and automated GCP/AWS environments using Terraform and GKE Autopilot; led ground-up GCP rebuild delivery for legacy AWS platform capabilities.
- AI Agent Architecture & Quality Governance: Designed and validated an Okta-governed, identity-centric AI agent architecture for GCP ADK; evaluated threat mitigations including prompt injection and data exfiltration.
Senior Consultant – MES Integration & Product Owner | Jul 2014 – Jun 2025⚑
- Python Automation Framework: Architected and delivered a Python-based BDD automated testing framework (Playwright/Pytest) enforcing data contract validation; delivered an 80% reduction in manual QA labor.
- Agile Product Delivery at Scale: Led SAFe 6 Product Ownership for Core MES modules across APAC/EMEA/NAFTA; managed backlogs and PI Planning across global Agile Release Trains.
- Parallel Platform Engineering: Managed functional parity of application modules across VM and Kubernetes-based environments during a high-stakes migration; enforced zero data-loss standards.
- Data Analysis & Reporting (Python): Leveraged Python (Pandas, NumPy, Matplotlib) and Power BI to produce operational quality dashboards and compliance reports.
Manufacturing Application Integration Consultant | May 2010 – Jun 2014⚑
- API & Interface Engineering (C#, SQL, TCP/IP): Developed critical system interfaces bridging shop-floor equipment with enterprise data layers, establishing end-to-end traceability.
- Regional Platform Standardization: Led migration of APAC pilot production lines to standardized MES platform across a distributed multi-site environment.
Texas Instruments | Baguio City, Philippines⚑
Test Product Engineer | Nov 2005 – Apr 2010⚑
- Improved manufacturing yield by 6% and operational efficiency by 5% by developing a real-time IDDQ monitoring and thermal runaway prevention tool (Perl, SQL/Oracle).
- Accelerated production ramp-up for new semiconductor devices by optimizing test programs and conducting rigorous Gauge R&R studies.
Selected Projects⚑
Hardened Architecture & Multi-Tenant Security⚑
Stack: Django 5.x, Next.js 14, PostgreSQL, TypeScript, PlantUML
- Framework-Agnostic Core Domain: Isolated 100% of business logic into a
core/package with zero framework imports; decoupled domain models via Dependency Injection. - 3-Factor Multi-Tenant Isolation: Implemented strongly-typed tenant identity validation with fail-closed enforcement; zero violations across full test suite.
- Circuit Breaker State Machine: Designed a full state machine (CLOSED → OPEN → HALF_OPEN) reducing cascading failures by approximately 40%.
- PlantUML Architectural Documentation: Produced high-fidelity diagrams for Hexagonal Architecture, 3-Factor security, and Circuit Breaker patterns.
AI-Powered Identity Broker (Personal Python Project)⚑
Stack: FastAPI, Okta, OpenTelemetry, Docker
- Built a FastAPI multi-protocol identity broker intercepting Okta OIE OIDC (PKCE, JWKS verification) and SAML flows; exposes data to AI agents via FastMCP.
Certifications & Training⚑
- Google AI Professional, Google (2026)
- Professional Cloud Architect, Google Cloud (2026)
- Certified SAFe® 6 DevOps Practitioner, Scaled Agile (2024)
- Certified SAFe® 6 Product Owner / Product Manager, Scaled Agile (2023)
- Certified in Cybersecurity (CC), ISC2 (2023)
- Playwright with Python for Web Automation Testing, Udemy
- Python for Everybody Specialization, University of Michigan
Education⚑
- Master in Information Technology (18 units) | University of the Cordilleras
- BS Electronics & Communications Engineering | Bulacan State University
- Registered Electronics Engineer | Professional Regulation Commission, Philippines