Recommended expert

Monica Chingate

Cyber Security Engineer

Monica Chingate
Torino, Italy

Experience

Apr 2021 - Apr 2024
3 years 1 month
Bogotá, Colombia

Cyber Security Engineer

MERCADO LIBRE

  • Led security assessments for cloud and on-premise applications and initiatives, embedding automated SAST/DAST scans and threat modeling across the SSDLC.
  • Ensured compliance with regulatory standards (PCI-DSS, ISO 27001, SOX) by integrating layered controls and closing all external-audit findings.
  • Oversaw risk detection and management for solutions related to money management, insurance, credit and debit cards, and loans.
  • Built dashboards and KPIs to monitor squad OKRs, incident SLAs, and risk trends; delivered quarterly briefings that secured a US $6 billion portfolio of loans.
  • Designed roles vs profiles RBAC matrices for identity and access management of applications.
  • Drove third-party risk assessments for 50+ partner integrations, mapping data flows and ensuring technical, compliance, and regulatory alignment.
  • Negotiated and embedded security clauses in vendor contracts, aligning SLAs and breach-notification terms with ISO 27001 and local data protection laws.
Nov 2019 - Mar 2021
1 year 5 months
Bogotá, Colombia

Digital Security Professional III

BANCO DAVIVIENDA

  • Mapped and classified critical assets across core banking, payments, and digital channels.
  • Reviewed cloud architectures (AWS, Azure, GCP) for new digital-banking projects, issuing secure-design patterns that met Financial Superintendency "External Basic Circular" requirements.
  • Led risk and compliance assessments for initiatives, ensuring alignment with SOX, PCI-DSS, and IT governance frameworks.
  • Participated in cybersecurity strategy meetings and monitored the proper implementation of controls for each project.
  • Executed real-time security monitoring, identifying and neutralizing cyber threats across digital platforms.
May 2019 - Nov 2019
7 months
Bogotá, Colombia

Information Security Analyst

LABORATORIOS LEGRAND S.A

  • Managed 900+ Google Workspace accounts, handling onboarding and off-boarding processes.
  • Executed daily full-system and weekly off-site backups, achieving a 99.9% backup success rate and validating restores twice per quarter.
  • Drove the patch-management program for Windows and Linux servers, maintaining critical-update compliance.
  • Designed and implemented security controls and incident response procedures.
  • Managed security monitoring tools to detect anomalies and potential breaches.
  • Conducted staff training sessions on security awareness and compliance protocols.
Aug 2017 - May 2019
1 year 10 months
Bogotá, Colombia

Junior IT Security Analyst

YANBAL S.A.S

  • Created vulnerability management metrics, tracking and closing security gaps.
  • Coordinated external and internal audits (BASC, OEA, PwC); tracked remediation plans and maintained zero repeat findings across two audit cycles.
  • Developed and implemented contingency plans and security testing strategies to support business continuity.
  • Established and maintained security controls, policies, and compliance procedures in alignment with regulations.
Jan 2017 - Jul 2017
7 months
Bogotá, Colombia

IT Intern

YANBAL S.A.S

  • Assisted in IT service desk operations, managing technical support requests, overseeing documentation, assessing PQRS processes, and ensuring SLA compliance.
  • Participated in the Technology Renewal Project at the Distribution Center, supervising the replacement of obsolete network equipment, coordinating change windows and work plans, and updating network diagrams and associated inventory.
  • Led network infrastructure updates and configurations, including VoIP systems, routers, and switches.

Industries Experience

See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.

Experienced in Banking and Finance (4.5 years), Retail (3 years), Cosmetics (2.5 years), and Pharmaceutical (0.5 years).

Banking and Finance
Retail
Cosmetics
Pharmaceutical

Business Areas Experience

The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.

Experienced in Information Technology (7.5 years), Procurement (3 years), and Audit (2 years).

Information Technology
Procurement
Audit

Summary

Cybersecurity Specialist with 7+ years of experience in Risk management, Compliance, and Security Architecture. Proven ability to identify, assess, and mitigate risks, ensuring regulatory compliance and robust security frameworks for financial institutions and digital services. Strong expertise in Cloud security, PCI-DSS compliance, Zero trust strategies, and threat modeling. Passionate about staying ahead of emerging threats and implementing proactive security measures.

Skills

Cybersecurity & Risk Management

  • Pci-dss, Zero Trust, Threat Modeling, Ssdlc, Supply Chain, Incident Response

Cloud Security

  • Aws
  • Gcp

Security Tools & Technologies

  • Burp Suite
  • Nessus
  • Pam
  • Iam
  • Dlp
  • Siem
  • Mdm
  • Fortinet
  • Jira

Programming & Data Analysis

  • Ai
  • Ai Agents
  • Python
  • Javascript
  • Power Bi
  • Sql
  • Machine Learning
  • Prompt Engineering

Regulatory Compliance & Audits

  • Gdpr
  • Sox
  • Iso 27001
  • Iso 27018

Key Strengths

  • Proactive & Adaptable
  • Leadership & Team Collaboration
  • Strong Analytical Thinking
  • Passion For Cybersecurity & Continuous Learning

Languages

Spanish
Native
English
Advanced
Italian
Advanced

Education

Oct 2023 - Jun 2025

Politecnico di Torino

Master of Science program in Cybersecurity · Cybersecurity · Italy

Oct 2012 - Jun 2017

Escuela Colombiana de Ingenieria Julio Garavito

BSc Electronic Engineering · Electronic Engineering · Bogotá, Colombia

Certifications & licenses

Aws Certified Cloud Practitioner

AWS

Cyber Security Foundation - Csfpc

Certiprof

Internal Auditor- Security And Resilience – Business Continuity Management Systems Iso 22301:2019

SGS

Protection Of Personally Identifiable Information (Pii) In Public Clouds Training Course (Iso/Iec 27018:2019)

SGS

Scrum Foundation Certificate

Certiprof

Internal Auditor-Information Security Management Systems Iso 27001: 2013

SGS

Profile

Created
Last Update
Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions

Frequently asked questions

Do you have questions? Here you can find further information.

Where is Monica based?

Monica is based in Torino, Italy.

What languages does Monica speak?

Monica speaks the following languages: Spanish (Native), English (Advanced), Italian (Advanced).

How many years of experience does Monica have?

Monica has at least 7 years of experience. During this time, Monica has worked in at least 5 different roles and for 4 different companies. The average length of individual experience is 1 year and 5 months. Note that Monica may not have shared all experience and actually has more experience.

What roles would Monica be best suited for?

Based on recent experience, Monica would be well-suited for roles such as: Cyber Security Engineer, Digital Security Professional III, Information Security Analyst.

What is Monica's latest experience?

Monica's most recent position is Cyber Security Engineer at MERCADO LIBRE.

What companies has Monica worked for in recent years?

In recent years, Monica has worked for MERCADO LIBRE and BANCO DAVIVIENDA.

Which industries is Monica most experienced in?

Monica is most experienced in industries like Banking and Finance, Retail, and Beauty and Cosmetics. Monica also has some experience in Pharmaceutical.

Which business areas is Monica most experienced in?

Monica is most experienced in business areas like Information Technology (IT), Procurement and Purchasing, and Audit.

Which industries has Monica worked in recently?

Monica has recently worked in industries like Banking and Finance and Retail.

Which business areas has Monica worked in recently?

Monica has recently worked in business areas like Information Technology (IT) and Procurement and Purchasing.

What is Monica's education?

Monica holds a Master in Cybersecurity from Politecnico di Torino and a Bachelor in Electronic Engineering from Escuela Colombiana de Ingenieria Julio Garavito.

Does Monica have any certificates?

Monica has 6 certificates. Among them, these include: Aws Certified Cloud Practitioner, Cyber Security Foundation - Csfpc, and Internal Auditor- Security And Resilience – Business Continuity Management Systems Iso 22301:2019.

What is the availability of Monica?

Monica is immediately available full-time for suitable projects.

What is the rate of Monica?

Monica's rate depends on the specific project requirements. Please use the Meet button on the profile to schedule a meeting and discuss the details.

How to hire Monica?

To hire Monica, click the Meet button on the profile to request a meeting and discuss your project needs.

Average rates for similar positions

Rates are based on recent contracts and do not include FRATCH margin.

800
600
400
200
Market avg: 530-690 €
The rates shown represent the typical market range for freelancers in this position based on recent contracts on our platform.
Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.