Vidal Reñao Lopelo

IT Infrastructure & AI Solutions Engineer

Basel, Switzerland 🇨🇭vidalrenao.lab@outlook.com+41 77 972 62 99linkedin.com/in/vidalrenao
github.com/vidal-renaovidal-pro-portfolio.vercel.app
English C1German B2Spanish NativeImmediate availability

Professional Summary

Senior IT Infrastructure & AI Solutions Engineer with 7+ years delivering enterprise-grade systems across Cloud Transformation, Active Directory, Microsoft 365, and AI-powered SaaS development. Specialization: AI-Powered SaaS Infrastructure for Swiss & DACH SMEs.


Projects in Production

Aura AI — Revenue IntelligenceProduction

AI-Powered SaaS Infrastructure for product management and commercial margin optimization. Enforces per-tenant PostgreSQL Row Level Security with zero shared-schema exposure — validated under concurrent write loads with no cross-tenant data leakage. Automated schema hardening: table-level security policies, service-role-only write paths, and revoked public schema access eliminate all privilege escalation vectors at the database layer. Pre-algorithmic FinOps engine filters 82.4% of token context before any Anthropic API invocation — quantified, repeatable cost reduction per analysis cycle. INSERT-only immutable audit log aligned with Swiss DSG/nDSG provides tamper-proof traceability for every pricing decision. Chaos Engineering Lab (3 failure modes) validates 100% fault tolerance at Vercel edge nodes.

Next.js 16TypeScriptSupabase RLSAnthropic APIVercel EdgeRLS multi-tenant82.4% API cost cutDSG audit trail
D'NAMAR GmbHProduction

Production platform for a Basel-based facility services company — live at dnamar.ch since April 2026. Full SMTP infrastructure migration from Resend to self-hosted Nodemailer (NOVATREND, port 465 SSL/TLS) — eliminating all third-party transactional email dependencies and ensuring Swiss DSG-compliant data residency for contact submissions. JSON-LD LocalBusiness structured data with explicit addressLocality Basel and areaServed: [CH, LI] drives targeted organic indexing for facility services searches across NW Switzerland. Trilingual SSG (DE/EN/ES), 100/100 Lighthouse across all four metrics, verified and indexed in Google Search Console.

Next.js 16Nodemailer SMTPJSON-LD SEO100/100 LighthouseIndependent SMTPLocal SEO Basel
WAAI SaaS — WhatsApp AI Agent PlatformProduction

Multi-tenant SaaS platform allowing businesses to deploy Claude-powered WhatsApp agents without code. Full 9-phase implementation: SSR auth, tenant isolation, agent lifecycle, RAG knowledge base, WhatsApp webhooks, lead capture, AI↔human handoff, analytics, and billing readiness. RAG pipeline: document chunking, OpenAI embeddings (text-embedding-3-small, 1536-dim), pgvector semantic search. AI↔human handoff system with async state control and RBAC (owner/admin/agent_manager/human_agent). 100% RLS coverage across all tables with workspace-scoped policies — zero secrets exposed client-side. Validated with 52 automated smoke tests (0% failure rate), 4 health checks, and a full E2E runbook. Factory/Strategy pattern for hot-swap embedding provider with zero code changes.

Next.js 16Claude APIpgvector RAG52 tests · 0 failRAG pipelineMulti-tenant RLS
HelpDesk AI + OmniCommandProduction

Enterprise helpdesk platform with MCP-powered CI/CD hardening. Deployed Zero-Trust CORS: dynamic middleware replacing wildcard (*) policies, validating Origin against ALLOWED_ORIGINS env var. Defensive Bash CI/CD scripts eliminate silent-failure pipelines by isolating http_code, headers, and payloads. Supabase multi-schema isolation (.schema('helpdesk') vs public) prevents cross-schema data leakage. Vitest integration with high-fidelity Supabase/Resend mocks — 8/8 tests green, --passWithNoTests permanently removed. Zod structural validation (z.infer<>) eliminates any-typed MCP tool inputs. MCP Server on Vercel SSE exposes 7 autonomous AI tools with strict LLM/DB separation. Multi-tenant RBAC, automated SLA breach detection, trilingual (DE/EN/ES), Swiss DSG/nDSG compliant.

Next.js 15MCP ServerClaude AI7 MCP toolsZero-Trust CI/CDDSG compliant
Ticket Auditor — Autonomous CI/CDProduction

Fully autonomous audit pipeline. GitHub Actions fires hourly → Vercel Edge Function queries Supabase → AI analysis via MCP → Resend delivers branded executive HTML reports. Claude reads live business context through 7 MCP tools without direct DB access. Full audit cycle in under 11 seconds with zero human intervention. Service-role secured. Swiss DSG aligned.

Vercel EdgeGitHub ActionsMCP Protocol<11s audit cycleZero interventionSwiss DSG aligned
MatchPoint AIProduction

AI-powered job matching platform. Candidates upload their CV and Claude AI extracts their full profile automatically, then matches them against live job offers using 4-dimensional scoring: Hard Skills, Experience, Culture Fit, and Logistics. Recruiters only see candidates above 90% match — alerts via WhatsApp and email.

Next.js 16Claude AISupabaseAI CV parsing4D match scoringWhatsApp alerts
Invoice AutoProduction

Freelancer invoice automation SaaS. Upload a receipt photo or PDF and Claude Vision AI extracts all fields — client, amount, date, VAT — and generates a professional invoice ready to send. No manual data entry. Multi-currency (EUR/CHF), PWA installable, fiscal validation for Spain and Switzerland.

Next.js 16Claude Vision AISupabaseAI OCR extractionAuto invoice generationEUR · CHF
Parcel Tracker SaaSProduction

End-to-end logistics SaaS for international courier operations. Three-tier RBAC (Admin / Staff / Client) with automatic role assignment on registration. Full package lifecycle (Arrived → Ready → Picked Up) with Canvas API digital delivery proof — in-browser signature capture and photo upload. Multi-channel notifications on every status change via Twilio WhatsApp Business API and Resend branded email. Analytics dashboard: revenue by period, package volume, top clients. AI-audited security: JWT + bcrypt + Helmet, Zod validation on all API inputs, zero exposed credentials in git history. Public zero-login tracking at /track/[number] — SEO-friendly, fully translated. Native 6-language i18n (DE/EN/ES/FR/IT/PT) with zero page reload on switch. PWA installable.

Next.js 14Node.js/ExpressTwilio · Resend3-tier RBAC6-language PWAAI-audited security
CivicFund Web3 LabLab

Privacy-aware public goods funding interface inspired by community governance platforms. Connect an injected wallet, switch to Sepolia, read live balance and block data, then sign a non-financial support intention with transparent consent messaging.

Next.js 16wagmiviemTypeScriptWallet connectSepolia readsEVM message signing
TempoTutor Marketplace LabLab

Music lesson marketplace product lab: browse teacher profiles, reserve a session through Stripe Test Checkout, protect bookings with Supabase Auth and RLS, onboard teacher payouts through Stripe Connect, and process payment webhooks idempotently.

Next.js 16Supabase RLSStripePlaywrightTest checkoutSeller payoutsIdempotent webhook

Professional Experience

IT & AI Solutions Engineer2025 – Present

Self-Employed · Freelance · Switzerland

  • Running cloud-based platforms focused on availability, clean technical architecture, and reliable operations
  • Building helpdesk and workflow systems with SLA-aligned processes, role-based access control, and structured service logic
  • Translating infrastructure and operational thinking into modern SaaS environments — automation and continuous optimization
  • Active production portfolio: Ticket System, MatchPoint AI, Invoice Auto, HelpDesk AI
Operations & Logistics Technician2023 – 2025

Servo Personal & Treuhand GmbH · CareJob · Basel, Switzerland

  • Swiss integration phase — temporary roles in logistics, production, and construction to establish professional roots in Switzerland and deepen German language skills
  • Operated in structured Swiss environments with high standards for reliability, precision, and clean operational execution
  • Developed service orientation, professional discipline, and communication across diverse client-facing contexts
  • Throughout this period: continued building technical projects independently — HelpDesk AI platform, freelance IT work, and SaaS development
Technical Support Specialist & Systems Administrator2021 – 2023

Lutelco Facilities · Zaragoza, Spain

  • Managed enterprise IT for 500+ users across 2nd/3rd-level support
  • Administered Microsoft 365 and Active Directory environments
  • Network troubleshooting: TCP/IP, DNS, DHCP, VLAN, VPN
  • Supported VMware vSphere virtualization infrastructure
Help Desk Support Specialist2019 – 2021

Nationale Nederlanden Bank · Zaragoza, Spain

  • 1st-level IT support in ITIL-based enterprise environment
  • Incident management, SLA tracking, and user account administration
  • Microsoft 365 application support and remote troubleshooting
Systems & Network Engineer2017 – 2019

NSC — Networks, Systems & Communications · Spain

  • Operated and maintained network and systems infrastructure
  • Managed virtualization environments and system monitoring
  • Provided infrastructure support across multiple client sites
Web Developer & Application Support2016 – 2017

Freelance / Agency · Spain

  • Built and maintained web applications with MySQL database backends
  • Provided technical support and troubleshooting for deployed systems
Fiber Optic & Datacenter Technician2010 – 2012

Vodafone (Contractor) · Spain

  • Deployed fiber and copper cabling infrastructure in datacenters
  • Rack installation and network infrastructure maintenance

Core Skills

Cloud & Identity

Microsoft Azure · Microsoft 365 · Entra ID · Intune · Autopilot · Azure Arc

Infrastructure

Windows Server 2025 · Active Directory · Group Policy · VMware vSphere · Hyper-V · Linux/Debian

Networking

CCNA · TCP/IP · DNS/DHCP · VLAN · VPN · Firewall (nftables)

Development & AI

Next.js · TypeScript · Supabase · Claude API · PowerShell · Tailwind CSS · Framer Motion


Certifications

CCNA Discovery: Routing & Switching in the Enterprise

Cisco Networking Academy · Routing, Switching, VLANs, VPN, Network Security

AI Development: From 0 to Production

BIG School (Brais Moure & Romuald Fons) · LLM Tooling, AI Automation, Fullstack

Técnico Superior en Administración de Sistemas Informáticos en Red (ASIR)

Spain MEC · 2012 · Systems Administration, Networking, Linux/Windows Server

Técnico Superior en Desarrollo de Aplicaciones Informáticas (DAI)View Diploma

IES Pablo Serrano · Zaragoza, 2012 · Software Development & Systems Engineering

E-commerce & Digital Marketing Specialist

PrestaShop · Joomla · MySQL · SEO/CRO


vidalrenao.lab@outlook.com · +41 77 972 62 99 · linkedin.com/in/vidalrenao · github.com/vidal-renao