Experience
May 2025 - Present
7 months
- Invasion testing in AB-InBev Ambev’s product environments.
- Offensive security operations and code reviewing of critical worldwide applications.
- Engagement with development teams regarding security concerns.
- Tech stack innovation.
- Linux, Oauth2, WebSockets, Azure, Active Directory, Nginx, XAMPP, firewall, APIs, web applications.
Feb 2024 - May 2025
1 year 4 months
- White, grey, and black box pentesting on the senhasegura application and running environments.
- Wide scale testing in government and critical services enviroments.
- Incident responsing.
- Security and innovation studies regarding software architecture and cloud networks.
- Critical issues troubleshooting.
- Linux, Oauth2, Wazuh, WebSockets, AWS, PHP, Nginx, Docker, clustering, XAMPP, AppArmor, APIs, web applications, low level.
Nov 2023 - Jan 2024
3 months
- Implementation of the offensive security and SaaS departments.
- Web application and network pentesting.
- Stablishment of security standards and policies for the company and clients.
- Creation and presentation of security awareness programs.
- Participation in configuration of Sophos Firewall and Endpoint environments.
- Linux, Microsoft Azure, Active Directory, NAS, Firewall, XDR, XAMPP.
Apr 2021 - Present
4 years 8 months
- Pentesting on companies enrolled in bug bounty programs.