AboutAll Blogs
Marek Kuczynski

Marek Kuczynski

cloud security @wiz-sec

marek@coldstart.dev

LinkedIn

GitHub

Twitter

Career

Work Experience

  • Jun2026
    Google logo

    Product Technical Expert, CTO Office

    Google
    • Continued my Wiz role after Wiz was acquired by Google and joined Google Cloud
    • Support Engineering and PM with product development within the CTO Office
    • Work on UVM, external exposure, and product integrations
  • Oct2022
    Wiz logo

    Product Technical Expert, CTO Office

    • Support Engineering and PM with product development within the Wiz CTO Office
    • Work predominantly on Cloud Connector infrastructure and Outpost, helped launch DSPM
    • Drive UVM and Wiz product integrations since 2025
    • Provide expertise on cloud-native security across AWS, Azure, GCP, OCI, Alibaba Cloud and Kubernetes
  • Sep2021
    Stedi logo

    Software Engineer, Stedi Cloud

    • Developed serverless applications using AWS Lambda, Step Functions, and EventBridge
    • Built scalable EDI (Electronic Data Interchange) processing pipelines
    • Contributed to core platform features for B2B data exchange infrastructure
    • Implemented infrastructure as code using AWS CDK and TypeScript
  • Feb2021
    Amazon Web Services logo

    Strategic Accounts Solutions Architect

    • Advised Fortune 50 companies on cloud architecture and migration strategies
    • Designed scalable, secure, and cost-optimized solutions for enterprise workloads
    • Led technical workshops and architecture reviews for strategic accounts
  • Oct2019
    Amazon Web Services logo

    Serverless Specialist Solutions Architect

    • Served as subject matter expert for AWS serverless technologies (Lambda, API Gateway, DynamoDB)
    • Helped customers adopt event-driven architectures reducing operational overhead by up to 70%
    • Developed reference architectures and best practices for serverless adoption
    • Delivered technical talks at Serverless meetups and AWS community events (speakerdeck.com/marekq)
  • Jan2019
    Amazon Web Services logo

    Startup Solutions Architect

    • Supported high-growth startups in scaling their infrastructure on AWS
    • Provided architectural guidance to accelerate product development cycles
    • Mentored startup CTOs on cloud best practices and cost optimization
  • Oct2016
    Amazon Web Services logo

    Enterprise Solutions Architect

    • Designed and implemented cloud solutions for enterprise clients across multiple industries
    • Led migration projects moving legacy systems to AWS cloud infrastructure
    • Conducted Well-Architected Framework reviews to optimize security and performance
    • Built proof-of-concept implementations demonstrating AWS capabilities
  • Jan2013
    Royal Dutch Shell logo

    Threat and Vulnerability Analyst, CyberDefence

    • Performed penetration tests and improved security monitoring strategy for global IT infrastructure
    • Worked within the Threat and Vulnerability Management team alongside IRM analysts and Internal Audit
    • Improved AWS cloud security from a technical perspective during the last two years at the company
    • Collaborated with internal IT teams to remediate security issues and implement automated compliance fixes on AWS
  • Dec2011
    KPMG logo

    Ethical Hacker, Security Advisory

    • Conducted penetration testing and security assessments for enterprise clients
    • Identified and documented security vulnerabilities in web applications and networks
    • Delivered security recommendations and remediation guidance to stakeholders

Foundation

Education

Master of Science - System and Network Engineering

University of Amsterdam

2010 - 2011

Bachelor of Science - Network Infrastructure Design

Zuyd University of Applied Sciences

2006 - 2010

Selected work

Papers & Research

A Mapping Library for the Locator/ID Separation Protocol (LISP)

Developed an open-source Python library for LISP control-plane operations. LISP separates network location from endpoint identity, enabling more flexible routing architectures.

Entry Point Distribution in Overlay Networks

Proposed methods for distributing anonymity network entry points to prevent censorship. Designed a personalized distribution system making complete enumeration of entry nodes impossible.

Synergy of Social Networks Defeats Online Privacy

Examined privacy risks from cross-platform social network profiling. Demonstrated how combining data from multiple networks enables detailed user profiling through web crawling.

Beating Metasploit with Snort

Automated the conversion of Metasploit exploit modules to Snort IDS rules, significantly improving detection rates for known attack payloads.

Managing IPv6 Address Assignment in Large Scale Networks

Investigated IPv6 address management in virtualized data centers. Compared stateful and stateless approaches and proposed a new framework for address transitions.

Open source

GitHub Repositories

Loading repositories...