
Cloud security · Engineering
Marek Kuczynski
cloud security @wiz-sec
Career
Work Experience
- Jun2026

Product Technical Expert, CTO Office
- Continued my Wiz role after Wiz was acquired by Google and joined Google Cloud
- Support Engineering and PM with product development within the CTO Office
- Work on UVM, external exposure, and product integrations
- Oct2022

Product Technical Expert, CTO Office
- Support Engineering and PM with product development within the Wiz CTO Office
- Work predominantly on Cloud Connector infrastructure and Outpost, helped launch DSPM
- Drive UVM and Wiz product integrations since 2025
- Provide expertise on cloud-native security across AWS, Azure, GCP, OCI, Alibaba Cloud and Kubernetes
- Sep2021

Software Engineer, Stedi Cloud
- Developed serverless applications using AWS Lambda, Step Functions, and EventBridge
- Built scalable EDI (Electronic Data Interchange) processing pipelines
- Contributed to core platform features for B2B data exchange infrastructure
- Implemented infrastructure as code using AWS CDK and TypeScript
- Feb2021

Strategic Accounts Solutions Architect
- Advised Fortune 50 companies on cloud architecture and migration strategies
- Designed scalable, secure, and cost-optimized solutions for enterprise workloads
- Led technical workshops and architecture reviews for strategic accounts
- Oct2019

Serverless Specialist Solutions Architect
- Served as subject matter expert for AWS serverless technologies (Lambda, API Gateway, DynamoDB)
- Helped customers adopt event-driven architectures reducing operational overhead by up to 70%
- Developed reference architectures and best practices for serverless adoption
- Delivered technical talks at Serverless meetups and AWS community events (speakerdeck.com/marekq)
- Jan2019

Startup Solutions Architect
- Supported high-growth startups in scaling their infrastructure on AWS
- Provided architectural guidance to accelerate product development cycles
- Mentored startup CTOs on cloud best practices and cost optimization
- Oct2016

Enterprise Solutions Architect
- Designed and implemented cloud solutions for enterprise clients across multiple industries
- Led migration projects moving legacy systems to AWS cloud infrastructure
- Conducted Well-Architected Framework reviews to optimize security and performance
- Built proof-of-concept implementations demonstrating AWS capabilities
- Jan2013

Threat and Vulnerability Analyst, CyberDefence
- Performed penetration tests and improved security monitoring strategy for global IT infrastructure
- Worked within the Threat and Vulnerability Management team alongside IRM analysts and Internal Audit
- Improved AWS cloud security from a technical perspective during the last two years at the company
- Collaborated with internal IT teams to remediate security issues and implement automated compliance fixes on AWS
- Dec2011

Ethical Hacker, Security Advisory
- Conducted penetration testing and security assessments for enterprise clients
- Identified and documented security vulnerabilities in web applications and networks
- Delivered security recommendations and remediation guidance to stakeholders
Foundation
Education
Master of Science - System and Network Engineering
2010 - 2011
Bachelor of Science - Network Infrastructure Design
2006 - 2010
Open source
GitHub Repositories
Selected publications
Papers & Research
- 01
A Mapping Library for the Locator/ID Separation Protocol (LISP)
Developed an open-source Python library for LISP control-plane operations. LISP separates network location from endpoint identity, enabling more flexible routing architectures.
- 02
Entry Point Distribution in Overlay Networks
Proposed methods for distributing anonymity network entry points to prevent censorship. Designed a personalized distribution system making complete enumeration of entry nodes impossible.
- 03
Synergy of Social Networks Defeats Online Privacy
Examined privacy risks from cross-platform social network profiling. Demonstrated how combining data from multiple networks enables detailed user profiling through web crawling.
- 04
Beating Metasploit with Snort
Automated the conversion of Metasploit exploit modules to Snort IDS rules, significantly improving detection rates for known attack payloads.
- 05
Managing IPv6 Address Assignment in Large Scale Networks
Investigated IPv6 address management in virtualized data centers. Compared stateful and stateless approaches and proposed a new framework for address transitions.