C

Craig A Gonzales

CTO

United Kingdom22 yrs 5 mos experience
Highly StableAI Enabled

Key Highlights

  • Led Amazon's Autonomous Security Execution team.
  • Built AI agents for automated security engineering.
  • Developed vulnerability management solutions at scale.
Stackforce AI infers this person is a Cyber Security leader with extensive experience in SaaS and enterprise security solutions.

Contact

Skills

Core Skills

Information SecurityLeadershipCyber SecurityAiPenetration TestingSolution ArchitectureSecurity DesignArchitecture

Other Skills

Vulnerability AssessmentAutomationApplication SecurityGenAIComputer SecurityStrategyNetwork SecurityStart-upsCloud ComputingPayment Card Industry Data Security Standard (PCI DSS)ManagementPublic SpeakingTrainingSecurity ControlsSecurity Policy

About

I lead security engineering technology at G-Research.

Experience

G-research

Head of Security Engineering

Jan 2026Present · 3 mos · London Area, United Kingdom · On-site

  • I am Head of Security Engineering at G-Research.
Information SecurityLeadershipCyber Security

Amazon

Senior Manager, Security Engineering

May 2025Dec 2025 · 7 mos · London Area, United Kingdom · On-site

  • I led Amazon’s Autonomous Security Execution team. Our global team of software and security engineers, TPMs, and applied scientists built AI agents to automate and augment security engineering.
  • Our auto-remediation team reduced builder churn by providing vulnerability remediation recommendations. Our pentest team built an effective automated DAST product. Our AppSec team build a code audit product and a resource enumeration product.
  • Combined, we built the framework for Amazon’s autonomous security engineering capability.
Cyber SecurityLeadershipVulnerability AssessmentPenetration Testing

Amazon web services (aws)

2 roles

Senior Manager, Security Engineering

Promoted

Apr 2024May 2025 · 1 yr 1 mo

  • I lead a global team of security and software engineers. We reduce risk at Amazon scale.
Information SecurityLeadership

Manager, Security Engineering

Jun 2020Apr 2024 · 3 yrs 10 mos

  • I built and now lead a global team of security engineers and software developers.
  • I own a team responsible for both testing AWS services in production & building the the tools that will enable us to scale.
  • I’ve successfully built leaders within the org and consistently reduce customer risk.
Information SecurityLeadership

Bt

3 roles

Head of Ethical Hacking

Promoted

Aug 2017Jun 2020 · 2 yrs 10 mos

  • I led a commercial penetration testing team in UK and AMEA. We deliver vulnerability management and consulting, including red team, web application, mobile, networked, and IOT pen testing, source code review, policy review, and research.
  • I lead an internal, remote vulnerability assessment and penetration team as well. We handle compliance-based vulnerability management and remote web application and network penetration testing.
Penetration TestingVulnerability AssessmentCyber Security

Cyber Security Technical Consultant

Jul 2016Aug 2017 · 1 yr 1 mo

  • I was a pre-sales technical consultant for BT's Cyber Security Platform. I perform business development, demos, RFI and RFP response, pre-sales cyber security consulting, and solution architecture during bid.
  • I work with multinational customers to consult, design and support their cyber intelligence platform and operations. We provide real-time threat monitoring and management and deploy machine learning analytics engines and global threat intelligence to prevent attacks in real time.
  • Key success: helped re-define the product proposition and led the effort to make this product ready for enterprise deployment; succeeded and was able to sell and deliver to European customers.
Cyber SecuritySolution Architecture

Security Technical Design and Architecture

Sep 2014Jul 2016 · 1 yr 10 mos

  • Security projects designer for FTSE 100 bank and technical designer for multinational pharmaceutical company. Experience in Blue Coat Proxy, Palo Alto Firewall, Cisco Router/Switch
  • Experience with Fortinet Firewall, Check Point Firewall, Juniper Firewall, Secunia vulnerability management, McAfee SIEM, Cyberark, incident management, change management, Imperva WAF, F5 load balancing, management controls, security asset management, and complex project design.
Security DesignArchitecture

Princeton review / self

Various

Oct 2003Sep 2014 · 10 yrs 11 mos · USA - Thailand - Singapore

  • Developed, sold, and delivered study plans for international secondary and graduate students. Focused on math, science, engineering, business, and literature.
  • Was employed and self-employed for the 11 years I pursued education as a career. From 2003 until 2007 I was a tutor for the Princeton Review. From 2007 until 2009 I was operations director for The Princeton Review South Texas. From 2009 to 2010 I was Country Director for Thailand at The Princeton Review. After 2010 I was self-employed in education consulting.
  • I learned an incredible amount about building small international businesses, managing large and diverse teams, and operations management, people management, sales and marketing, and content creation.
  • In 2012 I decided to pursue cyber security as my career and passion and set about closing my concerns in international education.
  • Key success: Released 3 courses online and expanded my small business to deliver online service to people in Japan, Thailand, Singapore, Malaysia, Jakarta, India, and Europe.

Education

Trinity University

BA — Finance and Philosophy

Jan 2001Jan 2005

Cardiff University / Prifysgol Caerdydd

MSc — Computer and Information Systems Security/Information Assurance

Jan 2013Jan 2015

Texas A&M University

MA — Philosophy

Jan 2005Jan 2007

Stackforce found 100+ more professionals with Information Security & Leadership

Explore similar profiles based on matching skills and experience