About

Hernán Fernández

Hernán Fernández

Sr. Technical Account Manager at AWS · GenAI & Security · Santiago, Chile

I’ve spent 20+ years in technology, and most of that time I’ve been the person sitting between complex systems and the people who depend on them. Today I’m a Senior Technical Account Manager at AWS, where I’m the trusted technical advisor for some of Chile’s largest enterprises — helping them adopt the cloud and, lately, Generative AI, without losing sleep over security or cost.

I like building as much as advising. When I see a problem show up again and again with customers, I tend to build something to fix it. That’s how I ended up authoring an open-source GenAI assistant for least-privilege IAM policies on the official AWS Samples organization, and a handful of other tools I keep maintaining.

My path hasn’t been a straight line: I started as a developer, spent years running Linux infrastructure for an astronomical observatory in the Atacama desert and for one of the world’s largest mining operations, supported Fortune 500 customers on big-data platforms, and eventually landed at AWS. The common thread is that I enjoy systems where reliability actually matters — and I enjoy explaining them to people in plain language.

I write here about cloud, security, IAM, and AI agents — mostly hard-won lessons, in production.

From the observatory

Experience

  • 2020 — present
    Sr. Technical Account Manager (Sr. Enterprise Account Engineer)
    Amazon Web Services
  • 2017 — 2020
    Staff Customer Operations Engineer
    Cloudera (formerly Hortonworks)
  • 2014 — 2017
    Systems Engineer / Linux SRE
    Sonda
  • 2011 — 2014
    Professional Services Engineer
    Sonda
  • 2006 — 2011
    Linux Systems Administrator
    European Southern Observatory
  • 2005 — 2006
    Software Developer
    Universidad de las Américas

Tech stack

AI & GenAI

  • Amazon Bedrock
  • Claude
  • AI Agents
  • MCP
  • IAM Access Analyzer
  • Prompt Engineering

Security & Cloud

  • AWS IAM (least privilege)
  • Cloud security
  • FinOps
  • Serverless (Lambda)
  • EventBridge
  • CDK

Foundations

  • Linux/Unix
  • Distributed systems
  • Incident management
  • Python
  • TypeScript

Certifications

Languages