Monica Chingate
Cyber Security Engineer
Experience
Cyber Security Engineer
MERCADO LIBRE
- Led security assessments for cloud and on-premise applications and initiatives, embedding automated SAST/DAST scans and threat modeling across the SSDLC.
- Ensured compliance with regulatory standards (PCI-DSS, ISO 27001, SOX) by integrating layered controls and closing all external-audit findings.
- Oversaw risk detection and management for solutions related to money management, insurance, credit and debit cards, and loans.
- Built dashboards and KPIs to monitor squad OKRs, incident SLAs, and risk trends; delivered quarterly briefings that secured a US $6 billion portfolio of loans.
- Designed roles vs profiles RBAC matrices for identity and access management of applications.
- Drove third-party risk assessments for 50+ partner integrations, mapping data flows and ensuring technical, compliance, and regulatory alignment.
- Negotiated and embedded security clauses in vendor contracts, aligning SLAs and breach-notification terms with ISO 27001 and local data protection laws.
Digital Security Professional III
BANCO DAVIVIENDA
- Mapped and classified critical assets across core banking, payments, and digital channels.
- Reviewed cloud architectures (AWS, Azure, GCP) for new digital-banking projects, issuing secure-design patterns that met Financial Superintendency "External Basic Circular" requirements.
- Led risk and compliance assessments for initiatives, ensuring alignment with SOX, PCI-DSS, and IT governance frameworks.
- Participated in cybersecurity strategy meetings and monitored the proper implementation of controls for each project.
- Executed real-time security monitoring, identifying and neutralizing cyber threats across digital platforms.
Information Security Analyst
LABORATORIOS LEGRAND S.A
- Managed 900+ Google Workspace accounts, handling onboarding and off-boarding processes.
- Executed daily full-system and weekly off-site backups, achieving a 99.9% backup success rate and validating restores twice per quarter.
- Drove the patch-management program for Windows and Linux servers, maintaining critical-update compliance.
- Designed and implemented security controls and incident response procedures.
- Managed security monitoring tools to detect anomalies and potential breaches.
- Conducted staff training sessions on security awareness and compliance protocols.
Junior IT Security Analyst
YANBAL S.A.S
- Created vulnerability management metrics, tracking and closing security gaps.
- Coordinated external and internal audits (BASC, OEA, PwC); tracked remediation plans and maintained zero repeat findings across two audit cycles.
- Developed and implemented contingency plans and security testing strategies to support business continuity.
- Established and maintained security controls, policies, and compliance procedures in alignment with regulations.
IT Intern
YANBAL S.A.S
- Assisted in IT service desk operations, managing technical support requests, overseeing documentation, assessing PQRS processes, and ensuring SLA compliance.
- Participated in the Technology Renewal Project at the Distribution Center, supervising the replacement of obsolete network equipment, coordinating change windows and work plans, and updating network diagrams and associated inventory.
- Led network infrastructure updates and configurations, including VoIP systems, routers, and switches.
Industries Experience
See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.
Experienced in Banking and Finance (4.5 years), Retail (3 years), Cosmetics (2.5 years), and Pharmaceutical (0.5 years).
Business Areas Experience
The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.
Experienced in Information Technology (7.5 years), Procurement (3 years), and Audit (2 years).
Summary
Cybersecurity Specialist with 7+ years of experience in Risk management, Compliance, and Security Architecture. Proven ability to identify, assess, and mitigate risks, ensuring regulatory compliance and robust security frameworks for financial institutions and digital services. Strong expertise in Cloud security, PCI-DSS compliance, Zero trust strategies, and threat modeling. Passionate about staying ahead of emerging threats and implementing proactive security measures.
Skills
Cybersecurity & Risk Management
- Pci-dss, Zero Trust, Threat Modeling, Ssdlc, Supply Chain, Incident Response
Cloud Security
- Aws
- Gcp
Security Tools & Technologies
- Burp Suite
- Nessus
- Pam
- Iam
- Dlp
- Siem
- Mdm
- Fortinet
- Jira
Programming & Data Analysis
- Ai
- Ai Agents
- Python
- Javascript
- Power Bi
- Sql
- Machine Learning
- Prompt Engineering
Regulatory Compliance & Audits
- Gdpr
- Sox
- Iso 27001
- Iso 27018
Key Strengths
- Proactive & Adaptable
- Leadership & Team Collaboration
- Strong Analytical Thinking
- Passion For Cybersecurity & Continuous Learning
Languages
Education
Politecnico di Torino
Master of Science program in Cybersecurity · Cybersecurity · Italy
Escuela Colombiana de Ingenieria Julio Garavito
BSc Electronic Engineering · Electronic Engineering · Bogotá, Colombia
Certifications & licenses
Aws Certified Cloud Practitioner
AWS
Cyber Security Foundation - Csfpc
Certiprof
Internal Auditor- Security And Resilience – Business Continuity Management Systems Iso 22301:2019
SGS
Protection Of Personally Identifiable Information (Pii) In Public Clouds Training Course (Iso/Iec 27018:2019)
SGS
Scrum Foundation Certificate
Certiprof
Internal Auditor-Information Security Management Systems Iso 27001: 2013
SGS
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Monica based?
What languages does Monica speak?
How many years of experience does Monica have?
What roles would Monica be best suited for?
What is Monica's latest experience?
What companies has Monica worked for in recent years?
Which industries is Monica most experienced in?
Which business areas is Monica most experienced in?
Which industries has Monica worked in recently?
Which business areas has Monica worked in recently?
What is Monica's education?
Does Monica have any certificates?
What is the availability of Monica?
What is the rate of Monica?
How to hire Monica?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Cyber Security Engineer
Nearby freelancers
Professionals working in or nearby Torino, Italy