Currently working for Kainga-Ora, a New Zealand, goverment institution, implementing a Next Generation Antivirus for ransomware protection based on Behaviour protection including Web filtering for endpoints.
This project is almost over, hence, now we are designing a SIEM/SOAR solution for automated incident response to achive our Zero Trust Architecture goals.
I have 20+ years of experience in Network Security and server's administration
performing troubleshooting and support combined with advanced skills on cloud, server side, open source tools and scripts/APIs for task automations.
Having certifications below:
Ethical Hacker, CISSP, CheckPoint CCSE, Fortinet NSE7, f5 Administrator, Cisco CCNA,
Azure Network/Security Associate + Security Operations Analyst, AWS Architect
and also a Bachelor degree in Computer Science.
My work experience during the last few years includes:
- Troubleshoot advanced connectivity/performance issues across multiple technologies;
- Administration and troubleshooting of Firewall (IPS/VPN) and Load Balancer;
- Level 3/4 support on Linux and Windows Servers and Virtualisation;
- Cloud security / architecture;
- SIEM implementation in Azure Sentinel with Automatic Incident Response designing use cases/alerts/dashboards and remediation automations;
- High performance, secure and elastic web sites using Cloud, CDN, Web accelerators and WAF/IPS protections;
- Shell and Python scripts for automating network support tasks.
Managing firewalls clusters for the last 10 years, but on last couple years I was more into Web APIs for automation, dynamic scaling on the cloud and SIEM implementations.
Providing security solutions for private/public sector in different countries, setting up Firewalls, VPN, Web filtering, anti-phishing and anti-ransomware protections based on Ethical Hacker experience from several purple-team exercises.
Nowadays, I'm focused in security automation / threat intelligence, while playing with cloud and containers on my spare time.