Skip to main content
MF

Software Engineering Leader

Marlow Fernandez

Software Engineering Leader

AI Engineering

Since January 2026 I've been building an AI governance practice through Vynkor: the controls, review standards, and evaluation work a team needs before putting models anywhere near regulated systems. The proving ground is a set of running proofs of concept rather than a whitepaper.

Day to day that means a self-hosted stack. OpenClaw as the agent runtime in Docker, LiteLLM as the gateway in front of every model call, and MCP for the tool surface an agent is allowed to touch. The gateway is where most of the interesting work lives: capability-tier routing so the runtime never names a vendor, virtual keys with per-workload budget caps and spend attribution, and prompt payloads kept out of proxy logs and third-party integrations. Models run both ways, frontier APIs through the gateway and local inference on llama.cpp and Ollama, currently Qwen3.8-27B and Muse Glimmer 30B on my own hardware behind a Cloudflare tunnel, presented to callers as ordinary OpenAI-compatible endpoints. Terraform, Docker Compose and GitHub Actions hold it together, including an automated PR review that runs through that same gateway on a cost-capped key.

The pattern I keep coming back to is removing capability rather than restricting it. The agent in the current POC has three typed tools and no shell, so the things it must not do have no function to call rather than a rule to break. The other half is verification: checking the running instance rather than the committed config, after finding more than once that a green test suite was answering a different question than it appeared to. Both lessons came from breaking the thing myself, which is the argument for proofs of concept over slide decks.

Experience

  1. Apr 2022 – Present

    Point & Pay

    Team Lead II, Software Engineer (previously Senior Software Engineer, April 2022 – 2024)

    PaymentsNACHAPCI DSSAWS

    Also builds AI-engineering side projects under Vynkor.

    $50M+annual ACH and card transactions supported

    1. Lead a development team managing payment processing infrastructure supporting over $50 million in annual ACH and card transactions.
    2. Established an AI governance framework and engineering best practices. Led cross-team discussions to develop a Code of Conduct for responsible AI tool usage, including security protocols, data privacy guidelines, and ethical standards for AI-assisted development. Also implemented and demonstrated the benefits of the AI-DLC methodology.
    3. Architected and delivered a NACHA-compliant file generation system, reducing processing time and eliminating manual intervention for thousands of daily transactions
    4. Implemented a security-first architecture and trained the team on PCI DSS compliance requirements, resulting in successful audit certification. Experienced in PCI audit preparation and presentation.
    5. Resolved critical production issues with the EPX payment provider that affected credit and debit card processing, recovering significant revenue per transaction. Led efforts to revamp the entire debit card processing system.
    6. Serve as the technical escalation point for critical production incidents, diagnosing and resolving complex system failures through rapid code analysis, real-time debugging, and log forensics. Minimize downtime and ensure system reliability during high-stakes scenarios.
    7. Lead a team of four developers and three QA members, conducting code reviews and establishing engineering best practices.
    8. Increased team productivity by implementing sprint tracking, backlog, and sprint planning, and points-per-sprint analysis.
    9. Established fraud detection protocols in response to coordinated cyberattacks, preventing thousands of fraudulent transactions and securing customer data
    10. Led an enterprise-wide code refactoring initiative to resolve financial precision issues by migrating from floating-point arithmetic to BigDecimal and Money objects across payment processing systems. Eliminated rounding errors and scientific notation defects to support high-value transaction formats.
    11. Championed QA infrastructure modernization by developing a comprehensive business case using the 5 W’s framework. Secured stakeholder buy-in to implement end-to-end SSIS/SSRS reporting in the QA environment, enabling early detection of reporting and transaction defects previously only found in production and significantly reducing post-deployment incidents.
    12. Led enterprise CI/CD transformation from Bamboo to Jenkins, then to a modern GitLab pipeline architecture with Infrastructure as Code. Integrated SonarQube for automated code quality analysis and security scanning.
    13. Championed the hiring of the organization’s first dedicated DevOps engineer, providing technical mentorship and establishing best practices that reduced deployment cycles and improved code quality metrics across all teams.
    14. Designed and implemented a complete ledger accounting system using double-entry accounting practices, Micronaut, and Postgres. Delivered the project under high pressure within two months, compared to the initial six-month timeline for system creation and Salesforce integration.
    15. Managed AWS infrastructure including EC2 provisioning and automated backups, IAM-based access controls, VPC security group configuration for inbound/outbound traffic, and CloudTrail auditing to support security and compliance forensics.

  2. Nov 2019 – Apr 2022

    HII Technical Solutions (Department of Defense - DoD)

    Software Design Engineer (Secret Clearance)

    1. Led enterprise software migration from legacy systems to Java Spring Boot microservices architecture for Department of Defense (Navy) clients
    2. Directed on-site training program for naval base operators at SCTTR and TTGP, ensuring successful adoption of mission-critical communication systems. Became a go-to contact for software questions.
    3. Architected a security framework using Spring Security ACL, protecting classified entities with role-based access control across distributed systems
    4. Orchestrated database upgrade from Postgres 9.6 to 13 with zero downtime for production systems, including custom migration of Serial to Identity types
    5. Implemented containerization strategy using Docker/Docker-compose, reducing deployment time and improving environment consistency
    6. Designed and delivered VoIP services integration with Cisco IP Phones using XML/JAXB, enabling secure communications for naval operations
    7. Established local Trust-CA certificate infrastructure for Postgres 13, ensuring secure client/server communications in a classified environment
    8. Collaborated with cross-functional teams using Agile/Scrum methodology. RHEL 7.9 Linux development environment

  3. Jan 2019 – Apr 2019

    Syzygy Integration (Department of Homeland Security Contract)

    Associate Software Engineer

    1. Designed and implemented an Android mobile application for DHS field operations, delivering initial software architecture and feature set
    2. Modernized legacy codebase for compatibility with current Gradle and Android SDK versions, extending application lifecycle by 3+ years
    3. Built React/Redux web applications for homeland security field operations, implementing centralized Redux state management for predictable data flow across multi-step operational workflows.
    4. Created comprehensive software setup documentation, enabling faster onboarding for future development teams

  4. Jul 2016 – Jan 2019

    Palm Coast Data

    Internet Programmer & Programmer/Data Analyst

    1. Re-architected backend/frontend systems for the BASS Pro fishing tournament platform, increasing client revenue through streamlined operations
    2. Led project planning and documentation initiatives, improving team coordination and delivery timelines
    3. Automated reporting processes with custom .EXE programs (VB.NET) and PL/SQL stored procedures, saving many hours per week for account managers
    4. Optimized Oracle database performance through strategic query optimization and procedure refinement
    5. Established version control best practices using SVN, reducing code conflicts and improving team velocity

Education & Certification

  • 2017

    Bachelor of Science, Mobile Development

    Full Sail University

    GPA 3.4 · Salutatorian Honors

  • 2021

    Security+

    CompTIA

    July 2021 · Verification: GET0SGFF7HRQQPWC