Aaron Dsilva

Aaron Dsilva

Hands-On CTO | Shipping Secure, AI-Powered Systems | Healthcare, E-commerce, Security

Download PDF

CTO and Technical Lead with 8 years building secure, AI-powered production systems across healthcare (100+ hospitals, HIPAA/FDA/SOC2), e-commerce platforms, and security architecture. Currently CTO at Aplify® (e-commerce) and Co-Founder at The Lean Product Studio. Hands-on full-stack engineering combined with strategic leadership: shipping code, architecting cloud infrastructure, and leading distributed teams.

Proven track record: $1M+ AWS cost savings (33% reduction), 99.9% uptime serving 100+ organizations, zero security incidents across FDA/HIPAA/SOC2/ISO 27001 audits. Specialized in AI/RAG systems (Neo4j, Pinecone, Claude API), security remediation (implementing pen test fixes in production code), and compliance-first architecture for regulated industries.

Clients include King's College London, Johnson & Johnson, and European hospital networks. AWS Solutions Architect - Associate and Professional Scrum Master I certified. Based in Pune, India, serving global clients across US, Europe, UK, and Africa markets.

Key Achievements

  • $1M+ Cost Savings: Reduced AWS infrastructure costs by 33% for healthcare client through architecture optimization and right-sizing
  • Healthcare Scale: 100+ hospitals serving 1000s of healthcare professionals across US and India with 99.9% uptime, zero security incidents, FDA/HIPAA/SOC2/ISO 27001 compliance
  • E-commerce Recovery: Rebuilt failing multi-vendor marketplace (constant crashes, broken UI) from scratch to 100% uptime and modern Flutter/Node architecture
  • AI/RAG Production Systems: Shipped 4+ healthcare AI systems including ambient clinical listening (AWS Comprehend Medical + Claude + Neo4j), MCP research servers, and HIPAA-compliant RAG pipelines for King's College London and European hospitals
  • Security Leadership: Led pen testing remediation implementing all security fixes in production code (React Native/Flask), built ISO 27001 pen testing platform, passed every audit (FDA/HIPAA/SOC2/GDPR)
  • Team Leadership: Built and led distributed team of 10 engineers across time zones, shipped 6 products to production spanning healthcare, e-commerce, security, and research tools

Experience

Chief Technology Officer (CTO)

Aplify®

Remote

Sep 2025 - Present

Leading technology strategy and engineering for e-commerce SaaS platform. Architecting multi-vendor marketplace infrastructure, building distributed engineering team, and driving product roadmap from technical perspective. Full-stack development, cloud architecture, and operational excellence across entire engineering organization.

  • Architect scalable e-commerce platform infrastructure supporting multi-vendor marketplace model with real-time inventory, payments, and vendor management systems
  • Lead technical roadmap and engineering team structure, establishing development processes, CI/CD pipelines, and quality assurance standards
  • Build cloud-native architecture on AWS with focus on cost optimization, security, and 99.9% uptime SLA for mission-critical e-commerce operations
  • Drive technical decision-making for mobile (React Native/Flutter), backend (Node.js), database (MongoDB/PostgreSQL), and cloud infrastructure choices
React Native Flutter Node.js MongoDB PostgreSQL AWS CI/CD

Domain: E-commerce SaaS | Architecture: Multi-vendor marketplace, real-time systems | Leadership: CTO-level strategic + hands-on execution

Co-Founder and Technical Lead

The Lean Product Studio

Pune, Maharashtra, India

Jan 2024 - Present

Co-founded product development studio building secure, AI-powered systems for healthcare, e-commerce, and security clients. Lead distributed team of 10 engineers across time zones. Hands-on development across mobile, backend, cloud infrastructure, and AI/RAG systems. Shipped 6 products to production spanning healthcare (King's College London, European hospitals), e-commerce (multi-vendor marketplace), security (ISO 27001 pen testing platform), and research tools.

  • Achieved $1M+ annual AWS cost savings (33% reduction) for healthcare client through architecture optimization: right-sizing EC2 instances, implementing auto-scaling, optimizing RDS usage, and eliminating unused resources
  • Built HIPAA-compliant AI ambient listening system for clinical documentation: AWS Comprehend Medical for PHI extraction/anonymization, Claude API for summarization, Neo4j knowledge graphs for relationship mapping, deployed to hospitals across US and Europe
  • Rebuilt failing multi-vendor e-commerce marketplace from constant crashes to 100% uptime: complete Flutter mobile app rewrite, Node.js backend with MongoDB, vendor management dashboards, real-time inventory sync
  • Developed ISO 27001-compliant pen testing workflow platform connecting security testers to development teams: NestJS backend, centralized vulnerability tracking, regression testing, remediation verification for enterprise clients
  • Created MCP (Model Context Protocol) server for healthcare research enabling no-code data access for researchers at King's College London and European hospital networks: real-time analytics, HIPAA-compliant data handling, GDPR consent management
  • Rebuilt women's health platform V2 (UK/Africa markets) in Flutter: cycle tracking, telemedicine provider connections, multi-language support (English, French, Swahili), GDPR compliance with right-to-be-forgotten implementation
Flutter Node.js NestJS Python AWS Comprehend Medical Claude API Neo4j Pinecone MCP MongoDB PostgreSQL AWS

Domains: Healthcare AI, E-commerce, Security/SaaS, Research Tools | Compliance: HIPAA, GDPR, ISO 27001 | Clients: King's College London, European hospital networks | Markets: US, UK, Europe, Africa, India

Senior Full-Stack Developer

OpsFuse Technologies Pvt. Ltd.

Pune, Maharashtra, India

Feb 2023 - Present

Full-stack development for HIPAA-compliant healthcare SaaS platform serving 100+ hospital organizations across US and India. Led security remediation implementing all pen testing fixes in production code (React Native mobile, Flask backend). Built AWS infrastructure with PostgreSQL Row-Level Security (RLS) for multi-organization data isolation. Maintained 99.9% uptime with zero security incidents while passing FDA, HIPAA, SOC2, and ISO 27001 audits.

  • Led pen testing remediation across entire codebase: identified and fixed security vulnerabilities in React Native mobile app and Flask backend, implemented all recommendations from third-party security audits, passed FDA/HIPAA/SOC2 compliance audits with zero critical findings
  • Architected AWS infrastructure for secure multi-tenant SaaS: PostgreSQL with Row-Level Security (RLS) for organization data isolation, encrypted data at rest and in transit, implemented role-based access control (RBAC), audit logging for compliance
  • Achieved and maintained 99.9% uptime serving 100+ healthcare organizations processing thousands of daily transactions: built monitoring and alerting systems, implemented disaster recovery procedures, automated backups with point-in-time recovery
  • Built HIPAA compliance into every layer: PHI encryption (AES-256), access controls, audit trails, disaster recovery, data retention policies, and incident response procedures passing SOC2 Type II and ISO 27001 audits
  • Developed mission-critical features for hospital workflows: offline-first mobile architecture for unreliable hospital networks, real-time data sync, patient data management, reporting dashboards, and administrative tools
React Native Flask (Python) PostgreSQL (RLS) AWS (EC2, RDS, S3) Pen Testing Remediation Offline-First Architecture

Domain: Healthcare SaaS | Compliance: FDA, HIPAA, SOC2, ISO 27001 | Scale: 100+ organizations, 99.9% uptime, zero security incidents | Markets: US, India

Mobile Developer

Avegen

Pune, Maharashtra, India

Jun 2021 - Feb 2023

Built GDPR-compliant mobile healthcare applications for European and US markets. Designed and implemented multi-tenant SaaS architecture serving multiple healthcare organizations on shared codebase with complete data isolation. Full-stack development (React Native mobile, Ruby on Rails backend, PostgreSQL, AWS) with emphasis on privacy, internationalization, and white-label customization.

  • Architected multi-tenant SaaS platform: complete data isolation between organizations, white-label customization through admin dashboards (logos, colors, features), zero-code configuration for new clients reducing onboarding from weeks to hours
  • Implemented GDPR compliance controls: data encryption at rest and in transit, user consent management, right-to-be-forgotten workflows, data portability (export user data), privacy-by-design architecture passing European regulatory requirements
  • Built internationalization (i18n) framework supporting 10+ languages for European markets: English, German, French, Spanish, Italian, with right-to-left (RTL) support for Arabic, dynamic content translation, locale-specific date/time/currency formatting
  • Led full product development lifecycle: requirements gathering with European healthcare clients, technical architecture design, React Native mobile development, Ruby on Rails API backend, PostgreSQL database design, AWS deployment, production monitoring
React Native Ruby on Rails PostgreSQL AWS i18n (10+ languages)

Domain: Healthcare SaaS | Compliance: GDPR | Architecture: Multi-tenant, white-label, internationalized | Markets: Europe (Germany, France, Spain, Italy), US

Earlier Experience (2016-2021)

Full Stack Engineer — Kalyani Studio (Mar 2020 - Jun 2021)

Developed web and mobile applications using Laravel, PHP, and JavaScript frameworks

Technology Engineer — Kalyani Studio (Jan 2020 - Mar 2020)

Full-stack development with Laravel and IoT integrations

Technical Development Engineer — SENSE IT OUT INTELLIGENT SOLUTIONS (Aug 2018 - Jan 2020)

Built IoT solutions and web applications using PHP, Laravel, and cloud platforms

Intern — SENSE IT OUT TECHNOLOGIES (Aug 2016 - May 2018)

Contributed to web development projects and learned full-stack engineering fundamentals

Selected Projects

AI Clinical Documentation System (Healthcare AI + HIPAA)

King's College London, European Hospital Networks | 2024

Built HIPAA-compliant AI ambient listening system for clinical documentation used by healthcare professionals across US and European hospitals. Processes physician-patient conversations in real-time to generate clinical notes while maintaining patient privacy.

  • Technical Stack: AWS Comprehend Medical (PHI extraction/anonymization), Claude API (summarization), Neo4j (knowledge graphs), Python, HIPAA-compliant AWS architecture
  • Impact: Reduced documentation time by 60%, improved accuracy with structured knowledge graphs, deployed to 20+ hospitals across US/Europe
  • Compliance: Passed HIPAA audits, built-in PHI anonymization, encrypted data pipeline, audit logging
AWS Comprehend Medical Claude API Neo4j HIPAA

Multi-Vendor E-commerce Marketplace Rebuild

The Lean Product Studio Client | 2024

Rescued failing multi-vendor marketplace experiencing constant crashes and poor user experience. Complete rebuild from ground up with modern architecture, achieving 100% uptime and significantly improved vendor/customer satisfaction.

  • Technical Stack: Flutter (mobile apps), Node.js (backend), MongoDB (database), AWS (infrastructure), real-time inventory sync, payment gateway integration
  • Impact: Reduced crash rate from daily to zero, improved app performance by 300%, rebuilt UI/UX increasing conversion by 40%, built vendor admin dashboards reducing support tickets by 60%
  • Features: Multi-vendor onboarding, product catalog management, real-time inventory, payment processing, order tracking, admin analytics
Flutter Node.js MongoDB AWS

ISO 27001 Penetration Testing Platform

Enterprise Security Clients | 2024

Built SaaS platform connecting penetration testers to development teams for enterprise security workflows. Centralized vulnerability tracking, remediation verification, and regression testing for ISO 27001 compliance.

  • Technical Stack: NestJS (TypeScript backend), PostgreSQL (secure data storage), AWS (infrastructure), role-based access control, encrypted storage
  • Impact: Reduced pen test remediation time by 50%, automated regression testing preventing re-occurrence of fixed vulnerabilities, centralized dashboard providing real-time security posture visibility
  • Compliance: ISO 27001-compliant architecture, audit trails, secure credential management, encrypted communications
NestJS PostgreSQL ISO 27001 Security

Technical Skills

Leadership & Architecture

CTO/Head of Engineering, Technical Leadership, Team Building (10+ engineers), AWS Solutions Architecture, System Design, Multi-Tenant SaaS, Microservices

Compliance & Security

HIPAA, FDA 510(k), SOC2 Type II, ISO 27001, GDPR, Penetration Testing Remediation, Security Architecture, Encryption (AES-256), RBAC, Audit Logging

AI & Machine Learning

RAG Pipelines, Neo4j (Knowledge Graphs), Pinecone (Vector DB), LangChain, Claude API, Gemini, OpenAI, AWS Comprehend Medical, Embeddings, MCP (Model Context Protocol)

Mobile Development

React Native, Flutter (Dart), Offline-First Architecture, Real-Time Sync, iOS/Android Deployment, App Store Optimization

Backend & APIs

Node.js (Express, NestJS), Ruby on Rails, Laravel (PHP), Flask (Python), RESTful APIs, GraphQL, WebSockets, Microservices, Serverless (AWS Lambda)

Cloud & Infrastructure

AWS (EC2, Lambda, RDS, S3, CloudFront, API Gateway, CloudWatch, Comprehend Medical), AWS Solutions Architect - Associate, Infrastructure as Code, CI/CD Pipelines, Docker, Kubernetes

Databases

PostgreSQL (Row-Level Security), MongoDB, Neo4j (Graph DB), Pinecone (Vector DB), Redis (Caching), MySQL, SQLite (Offline Mobile)

Programming Languages

JavaScript/TypeScript (Expert), Python (Advanced), Dart/Flutter (Advanced), Ruby, PHP, SQL

Domain Expertise

Healthcare IT, E-commerce Platforms, Multi-Vendor Marketplaces, Security/SaaS, Telemedicine, Clinical Documentation, Disaster Recovery, Multi-Language/i18n

Methodologies & Certifications

Agile/Scrum (PSM I Certified), AWS Solutions Architect - Associate, DevOps, Test-Driven Development, Code Review, Technical Documentation

Certifications

  • AWS Certified Solutions Architect - Associate | Issued: Jan 2025 | Credential ID: 1b573241-4619-453f-96da-504d21e036a7
  • Professional Scrum Master™ I (PSM I) | Issued by Scrum.org
  • Advanced Certification in Cloud, Blockchain and IoT | IIT Madras

Education

Bachelor of Engineering - BE, Mechanical Engineering

Modern Education Society's College of Engineering, Pune

2014 - 2018

HSC, Science

Modern Education Society's Nowrosjee Wadia College Arts, Science, Pune

2012 - 2014