LORENZO DURAN
Senior Software Engineer
**************.*******@*****.***
https://www.linkedin.com/in/lduran46/
Laredo, Texas
I BELIEVE CODE IS THE POETRY OF MIND
Summary
Senior Software Engineer with over 13 years of hands-on experience building scalable applications, passionate about writing clean, efficient code and solving real-world problems. I'm an experienced full-stack engineer with a focus on Typescript/JavaScript, Web & Mobile development with Node.js (MERN stack), and Python, Java. Over the years, I've spearheaded and actively developed projects like healthcare, fintech, SaaS, gaming, e-commerce platforms, and microservices. Additionally, I handle DevOps, SysAdmin tasks, and database Administration, ensuring the smooth operation and scalability of the systems I work on.
Having spent almost six years at Infosys in a fast-paced production environment, I gained hands-on experience solving diverse challenges from image capture in the studio to uploading assets on the website. I collaborated closely with production engineering, postproduction, IT, and quality control teams, applying my skills to tackle complex problems. I’m comfortable taking on roles as a lead developer, team member, or solo programmer, adapting to any work environment. My deep understanding of real-world production environments allows me to design, deploy, and develop tools and integrations that enhance infrastructure, asset management, automation, and scripting.
Experience
Senior Software Engineer Infosys 04/2020 - 04/2025 Project Early Life
Designed and implemented end-to-end hospital systems using React.js, Next.js, Node.js, Express.js, and TypeScript to manage newborn care, prenatal assessments, vaccination, and postnatal follow-up.
Integrated APGAR score recording into the newborn registration workflow, allowing clinicians to input Appearance, Pulse, Grimace, Activity, and Respiration scores directly into the system — visualized in real-time within NICU dashboards.
Delivered dynamic gestational age calculators based on EDD and screening data; high-risk pregnancies (preterm <37 weeks) were flagged for extra fetal monitoring via a rules engine.
Utilized Next.js server-side rendering (SSR) and Incremental Static Regeneration (ISR) to ensure rapid page loads in low-bandwidth clinics, reducing page latency for NICU monitoring and vaccination data entry interfaces.
Delivered dynamic gestational age calculators by computing weeks of gestation from EDD and last menstrual period (LMP) inputs; implemented using utility functions in both client and server with Zod validation and TypeScript guards.
Built a CPAP monitoring module that visualized neonatal vitals (SpO, respiration rate) streamed from IoT devices; configured WebSocket data ingestion on the backend with Express and frontend live rendering using Zustand and Recharts.
Integrated vaccination tracking workflows - starting with Hepatitis B-via FHIR-compliant APIs and auto-generated reminder events; designed parent notification scheduling using cron jobs and Firebase Cloud Messaging.
Created reusable forms for bilirubin and weight monitoring, storing readings in PostgreSQL and displaying percentile growth charts built with Chart.js and D3.js.
Ensured security and compliance via JWT-based authentication, role-based access control
(RBAC) middleware, and encryption of protected health information (PHI) at rest and in transit using PostgreSQL’s pgcrypto and AWS KMS.
Normalized core schemas to handle newborn profiles, maternal screenings, vitals, interventions, and immunizations across 8+ district hospitals.
Implemented multi-indexed PostgreSQL views and materialized summaries to support NICU reporting, weekly birth outcome audits, and gestational health tracking.
Integrated MongoDB Atlas to store flexible telemetry from CPAP and fetal monitors; used TTL indexes and deviceID-based sharding to optimize reads for each facility.
Deployed and monitored production services on Google Cloud Platform (GCP) using Cloud Run, Cloud Functions, and Pub/Sub for event-driven processing.
Leveraged Cloud Logging, Cloud Monitoring, and Cloud Scheduler to ensure reliability, observability, and automated maintenance tasks across services.
Used GCP Secret Manager and IAM policies to manage secure access to API credentials and environment configurations in compliance with HIPAA.
Containerized microservices with Docker and deployed them using Artifact Registry and Cloud Build for CI/CD pipelines integrated with GitHub.
Designed and deployed scalable workflows using Workflows and Cloud Tasks to manage background processing and decoupled service interactions.
Configured Cloud Armor for edge-level protection against common web threats and integrated Cloud CDN to accelerate content delivery across regional services.
Automated infrastructure provisioning and environment setup using Deployment Manager, ensuring consistency across development and production environments.
Enabled detailed usage tracking and billing insights using BigQuery and Cloud Billing export, supporting operational cost analysis and optimization.
Enabled high-speed access using Redis caching for master data (hospital units, vaccine schedules) and APGAR/gestational lookups used by analytics teams.
Used DataLoader in Express.js to reduce redundant DB queries when fetching neonatal alert summaries across NICU beds.
Developed ML-based neonatal health scoring using TensorFlow, PyTorch, and FastAPI, using APGAR scores, gestational age, bilirubin levels, and vitals as features.
Streamlined patient admission workflows by using Kafka topics to decouple microservices responsible for identity verification, insurance validation, and care routing.
Built daily batch job pipelines in Python (pandas, SQLAlchemy) to retrain or evaluate models on newly ingested patient data.
Tracked model metrics in MLflow and used TensorBoard visualizations during weekly performance evaluations with clinical leads.
Deployed full-stack services using Docker, Kubernetes (EKS), and AWS ECS, achieving 99.99% uptime for NICU and maternity modules across 8 districts.
Built CI/CD pipelines using GitHub Actions with auto-deploy on PR merge for React frontend, Express APIs, and FastAPI model servers.
Managed infrastructure with Terraform, including VPC setup, RDS (PostgreSQL), S3 document storage, ECR for container images, and CloudWatch alarms for health tracking.
Designed a graceful fallback layer to local storage in CHW mobile modules to ensure APGAR/gestational data could be entered and synced offline. Next-Gen Lending Platform
Designed and implemented scalable microservices using Django and FastAPI, exposing GraphQL and RESTful APIs for core systems including Loan Origination (LOS), Loan Management (LMS), and Credit Decision Engine.
Integrated AI/ML-based credit scoring models using Scikit-learn and XGBoost, deployed via Azure ML, to enable real-time credit risk assessments based on FICO and alternative data sources.
Developed asynchronous workflows using Azure Functions to handle events such as KYC completion, loan status updates, and payment webhooks.
Maintained secure API integrations with TransUnion, Experian, Plaid, Stripe, LexisNexis, and Socure, handling tokenization and encrypted data exchange.
Stored structured data in PostgreSQL and Azure SQL, and used MongoDB/Cosmos DB for semi-structured data like document uploads and audit logs.
Led development of feature-rich portals (Customer, Merchant, Admin) using Vue with Composition API and TypeScript for new components, and supported migration from legacy AngularJS modules.
Applied modern state management with Pinia, along with Vue Router for dynamic route handling and Axios for secure API communication.
Refactored AngularJS services and controllers into reusable, testable components, gradually migrating the codebase to Vue.js with minimal disruption.
Improved UI responsiveness and load performance through lazy loading, code splitting, and Webpack optimization, resulting in a 38% faster time-to-interactive.
Built custom dynamic forms and onboarding flows using schema-driven rendering logic, significantly reducing manual code updates for new merchant or loan products.
Ensured consistent UX across all portals using shared design tokens, global theming utilities, and component libraries like Vuetify and Bootstrap.
Deployed all services and UIs using Azure App Services, managing environment configurations and builds via Azure Pipelines and GitHub Actions.
Managed secrets and credentials securely with Azure Key Vault, applying RBAC and environment-specific access control.
Monitored system health and performance using Azure Monitor and Application Insights, proactively resolving bottlenecks and errors with alerting and telemetry data.
Developed extensive unit and integration test coverage using Vue Test Utils, Karma/Jasmine, Pytest, and Postman collections for API testing.
Enforced SOC2 and PCI-DSS compliance through role-based access control (RBAC), secure authentication flows, and encrypted data transmission.
Collaborated closely with product, compliance, and risk teams in agile sprints; led code reviews, knowledge sharing, and architecture sessions across globally distributed teams. Software Engineer Cognizant 04/2017 - 03/2020
TriZetto® Facets® Cloud Modernization
Designed the high-level architecture for modularizing legacy claims and enrollment processes into stateless, reusable Spring Boot microservices, adhering to domain-driven design and clean architecture principles.
Defined integration patterns and interface contracts for real-time interactions between microservices, Facets® APIs, and external EDI systems using REST, SOAP, and Kafka-based messaging.
Developed and maintained Java Spring Boot microservices to wrap and extend TriZetto Facets® functionalities such as claims intake, member eligibility checks, and provider data synchronization.
Deployed services on Amazon EKS (Elastic Kubernetes Service) using Helm for packaging and rollout strategy, leveraging ConfigMaps, Secrets, and PodDisruptionBudgets for resilient, environment-specific configurations.
Implemented AWS S3 for storing batch-processed EDI files (835/837/834), integrating with TriZetto’s file-based interfaces and triggering AWS Lambda functions for post-processing and alerting via SNS.
Used Amazon RDS (Oracle Engine) for transactional persistence, handling direct reads from legacy Facets® schemas with version-controlled schema sync and rollback protocols.
Integrated Apache Kafka (MSK on AWS) for asynchronous, event-driven communication between claim processors, eligibility validators, and auditing services, decoupling business logic and improving throughput.
Built secure RESTful APIs using Spring MVC and Spring Cloud Gateway, designed API documentation in OpenAPI (Swagger), and enforced security and rate limits for external partners and providers.
Applied OAuth 2.0 / OpenID Connect via AWS Cognito and Spring Security, designing a role- based access control model tailored to internal operations teams (claims analysts, billing ops, QA, provider admins).
Designed and implemented claims validation pipelines using Spring Batch and Quartz Scheduler, integrated with AWS EventBridge to automate nightly processing and error alerting.
Supported FHIR and HL7 integration through custom parsers and adapters that translated TriZetto data models to standardized healthcare interoperability schemas in real time.
Configured and monitored services using AWS CloudWatch, X-Ray, Prometheus, and Grafana, with dashboards for health checks, latency metrics, and SLO monitoring.
Led CI/CD automation using Jenkins, GitLab CI, and SonarQube, introducing code quality gates, static analysis (PMD, Checkstyle), and secure Helm-based deployment pipelines with blue/green strategies.
Mentored offshore engineering teams and coordinated system design documentation via Confluence, managing sprint-level architectural discussions and providing detailed design specs for all backend interfaces.
Actively collaborated with Cognizant’s enterprise architects to refactor monolithic VB/.NET workflows into audit-compliant, scalable service layers deployed as part of Cognizant’s BPaaS
(Business Process as a Service) model.
Mobile Banking Platform
Collaborated with product stakeholders and compliance teams to translate complex banking requirement such as KYC, AML, and PCI DSS into scalable mobile features aligned with financial regulations and internal risk policies.
Architected and implemented a cross-platform mobile banking app using React Native CLI to ensure consistency and feature parity across iOS and Android, reducing development effort by 40% and meeting multi-channel accessibility goals.
Developed secure account registration, login, and multi-factor authentication flows using JWT, OTP, and biometrics (Face ID, Touch ID), aligning with financial industry standards for user authentication and access control.
Integrated device-level encryption, secure credential storage (react-native-keychain), and TLS/SSL communication via Axios and Apollo GraphQL to enforce end-to-end encryption and safeguard PII and PCI data per GDPR and CCPA requirements.
Implemented features for account management, including real-time balance display, account opening/closure workflows, and user profile management, ensuring seamless self-service aligned with core banking functionality.
Enabled full transaction capabilities, allowing users to view history, categorize expenses, and download statements securely, while backend auditing ensured traceability for compliance and fraud analysis.
Built internal and external funds transfer modules, supporting same-bank transfers and third- party payments using secure APIs, tokenized routing, and retry-safe queues for reliability under variable connectivity.
Developed mobile check deposit functionality by integrating the camera module via the native bridge, applying KYC-compliant workflows, and triggering verification queues for back-office review.
Engineered debit/credit card management tools that allowed customers to freeze/unfreeze cards, view transaction limits, and request replacements, reducing support load and improving customer satisfaction.
Implemented Redux Toolkit with Redux-Saga for transactional state consistency, supporting offline mode with queue-and-sync behavior, and allowing users to complete actions with feedback—even during network interruptions.
Enhanced accessibility with WCAG-compliant interfaces using semantic labels, TalkBack/VoiceOver testing, dynamic font scaling, and react-native-responsive-dimensions for inclusive UX across device types and demographics.
Designed responsive dashboards and personalized notifications via push/SMS/email to alert users about transactions, suspicious activity, and spending limits, increasing transparency and engagement.
Integrated third-party financial services including Plaid (bank linking), Zelle (P2P payments), and Equifax (credit scoring), using OAuth 2.0 and secure sandboxed flows, fulfilling Open Banking and ecosystem interoperability goals.
Enabled support for card and ACH payment gateways (Visa, Stripe), and tied these into CRM- based workflows for tracking customer interactions, refunds, and verifications within internal ops tools.
Implemented deep linking and guarded navigation in React Navigation v6 to enforce contextual access restrictions based on user roles (admin, customer, CSR) and account-level permissions.
Built automated testing coverage with Jest, React Native Testing Library, and Detox, ensuring functional integrity for critical flows like payments and deposits, and validating them in CI pipelines using GitHub Actions.
Delivered seamless over-the-air (OTA) updates with CodePush for time-sensitive patches (e.g., fraud updates, rate adjustments) without requiring app store resubmissions, increasing release agility and uptime.
Designed normalized PostgreSQL schemas for user data, transactions, audit logs, and security events, incorporating pgcrypto for field-level encryption of sensitive customer data.
Used MongoDB to track biometric validation attempts, session history, and mobile device telemetry for fraud detection and behavior analysis.
Leveraged Redis to cache OTPs, session tokens, and biometric challenge states for low-latency operations like login, transfer, and approval flows.
Created backend data access layers with TypeORM and Mongoose, abstracting business logic and enforcing schema consistency across RESTful and GraphQL services.
Provided admin tools for support agents to track user activity, manage fraud escalations, and generate compliance reports using internal analytics dashboards integrated into the back-office portal.
Software Developer Optum 04/2012 - 03/2017
Preventive Services Platform
Led full-stack development of a HIPAA-compliant healthcare platform using Vue.js and Node.js/Express.js, delivering preventive services across patient demographics.
Built responsive and accessible UIs using Composition API, Pinia for centralized state, Vue Router for dynamic navigation, and Vuetify for Material Design consistency.
Developed schema-driven forms with Vuelidate, applying real-time validations and accessibility enhancements to support WCAG 2.1 compliance.
Optimized frontend performance with lazy loading, code splitting, and async components, reducing mobile load time by 33%.
Encapsulated reusable logic with Vue.js composables, improving code maintainability and reducing duplication across views and components.
Utilized Vue’s provide/inject API to simplify complex component trees and reduce prop drilling in deeply nested layouts.
Applied custom directives for auto-focus, scroll locking, and input formatting to enhance UX and streamline form workflows.
Leveraged watchEffect and Vue’s reactivity system to power real-time updates in patient dashboards and live data modules.
Migrated a legacy jQuery UI system to Vue.js, decreasing frontend bug rates by 40% and improving long-term maintainability.
Integrated Axios with global error interceptors and token refresh flows to maintain stable and secure communication with backend services.
Used Storybook to document components and support UI/UX collaboration and QA testing in isolation.
Wrote unit and integration tests using Vue Test Utils and Jest, achieving high test coverage across all major UI modules.
Structured backend services with Express.js, implementing route-level middleware, parameterized routing, and centralized async error handling for clean separation of concerns.
Integrated external EHR systems (Epic, Cerner) via FHIR-compliant REST APIs and OAuth 2.0, ensuring secure and standards-based clinical data exchange.
Implemented Redis for secure session management and endpoint caching; applied express- rate-limit to protect public-facing APIs from abuse.
Used BullMQ with Redis to manage background job queues for appointment reminders, health alerts, and transactional messaging (Twilio/email).
Created and maintained internal Swagger (OpenAPI 3) documentation to support API contracts across frontend and backend teams.
Delivered robust backend test coverage using Jest and Supertest, integrated into CI/CD pipelines to ensure test-driven releases.
Built internal developer tools and CLI scaffolds using Plop.js, standardizing project structure and reducing boilerplate for new modules.
Mentored team members on Vue.js best practices, Express service structuring, and testing strategy, leading to improved onboarding efficiency and code quality. Education
Texas Tech University
Bachelor’s degree in computer science 04/2008 - 09/2013