I am a Senior Cloud & Security Engineer and Blue Team Analyst with over 9 years of experience in architecting, engineering, and automating resilient cybersecurity programs across multi-cloud environments (Azure, GCP, AWS, OCI). My approach is focused on aligning robust security controls with business agility and measurable results.
My expertise centers on leading and implementing complex security solutions:
- Privileged Access Management (PAM): Architecting and managing high-risk environments using BeyondTrust solutions.
- Identity Governance (IGA): Implementing and optimizing enterprise IGA systems like SailPoint and Microsoft Entra ID.
- Identity Providers (IdP): Deep proficiency in Okta and Keycloak for SSO, federation, and centralized access control.
- Security Integration: Embedding security early in the SDLC using SAST/DAST and GitHub Advanced Security in CI/CD pipelines.
- Infrastructure as Code (IaC): Automating secure provisioning and hardening of cloud resources with Terraform, Bash and PowerShell.
- Container Security: Expertise in securing Kubernetes/EKS workloads using Calico (eBPF and Network Policy enforcement).
- AI Security Engineering: Currently focused on leveraging Generative AI concepts (RAG, Fine-Tuning) and AI Vector Search for threat intelligence and security anomaly detection.
- Incident Response & Automation (SOAR): Designing and implementing SIEM/SOAR solutions (Sentinel, Wazuh, Shuffle) to automate detection and response playbooks.
- Secure Data Engineering Pipeline: Engineering end-to-end security and Data Governance for critical data pipelines, focusing on encryption, DLP (Purview), and robust IAM across data lakes.
- AWS & CySA+ Roadmap: Actively pursuing the AWS Solutions Architect Associate and CompTIA CySA+ certifications to validate advanced cloud architecture and defensive security analysis skills.
- AI-Powered Blue Team: Building ML models and automation workflows for proactive threat prioritization and optimizing SOAR efficiency.
I am open to: New challenges as a Security Engineer or Architect focusing on IAM/PAM, DevSecOps, or applying Data/AI Engineering to enhance Cyber Defense operations.
- Vulnerability Management: Coordinated vulnerability management in hybrid environments (Azure, GCP e AWS), ensuring alignment with CIS Controls v8.
- Operational Efficiency: Automated Disaster Recovery (DR) and secure infrastructure provisioning with IaC, leading to 40% reduction in repetitive task execution time and 30% increase in proactive anomaly detection (as Analyst).
- Compliance: Ensured continuous compliance with major standards, including ISO 27001, LGPD, and PCI-DSS across complex IT landscapes.
To improve scannability, here are the most relevant certifications grouped by domain:
- Oracle Cloud Infrastructure | Architect Certified
- Microsoft Certified | Azure Fundamentals / 365 Fundamentals
- Certified Calico Operator | AWS Expert (Kubernetes/EKS Security)
- Aviatrix | Multicloud Network Associate
- Certified Calico Operator | eBPF
- SailPoint | Identity Security Leader (IGA)
- BeyondTrust Certified Administrator/Engineer (PAM)
- Microsoft Certified | Security, Compliance, and Identity Fundamentals
- GitHub Certified | Advanced Security
- Databricks | AI Security Fundamentals
- Oracle Certified Professional | Generative AI / AI Vector Search
- MongoDB | Building RAG Apps
- Cyber Threat Intelligence Analyst | CTI
- Snowflake | SnowPro Associate
