I am AndrΓ© Rodrigues, a dedicated cybersecurity and systems engineering professional with extensive experience in data loss prevention, vulnerability management, and backend system development. Over the years, I have honed my skills in analyzing security events, managing endpoint security policies, and conducting vulnerability assessments to protect critical systems. My work experience spans reputable organizations such as Indra and the Portuguese Tax and Customs Authority, where I contributed to enhancing security measures and optimizing compliance processes.
My technical expertise includes programming languages like Java, Python, and JavaScript, as well as frameworks such as Spring MVC and Spring Boot. I am proficient in DevOps tools including Git, Maven, and TFS, and have hands-on experience with CI/CD workflows. I am also skilled in database management using Oracle SQL and MySQL, and have developed scalable backend applications and RESTful APIs.
I am passionate about penetration testing and vulnerability assessment, with certifications like Junior Penetration Tester (eJPT) and Hack The Box Certified Bug Bounty Hunter. I actively use tools such as Burp Suite, OWASP ZAP, and Metasploit Framework to identify and mitigate security threats. My approach follows industry standards like OWASP Top 10 and PTES methodologies, ensuring robust security practices.
In addition to my technical skills, I have experience leading teams and managing projects, ensuring timely delivery and quality outcomes. I am fluent in Portuguese and have intermediate proficiency in English and basic knowledge of Spanish, which supports my ability to work in diverse environments. I am committed to continuous learning and professional growth, as evidenced by my ongoing certifications and participation in cybersecurity competitions.
I am eager to leverage my skills and experience to contribute to organizations focused on cybersecurity, system integrity, and data protection. I thrive in dynamic environments where I can apply my analytical skills and technical knowledge to solve complex security challenges and enhance operational efficiency.
Assessed and categorized security events using Microsoft Purview and Trellix. Managed Netskope to enforce endpoint security policies and protect data. Analyzed daily events in Excel to ensure compliance and process optimization. Improved event classification automation and email usage awareness across teams.
Conducted vulnerability assessments with Tenable Nessus, identifying and mitigating critical system weaknesses. Monitored connected devices using Armis Centrix to ensure OT/IoT security, asset management and medical device protection. Developed and implemented security controls in alignment with ISO 27001.
Developed scalable backend applications with Java 8 and built RESTful APIs using Spring MVC and Spring Boot. Enhanced web functionality with JSPs, JavaScript, and managed builds via Apache Maven and Struts 2 in legacy systems. Ensured code quality with JUnit4 and collaboration through Git and TFS. Created efficient SQL queries and managed data persistence with Hibernate in Oracle SQL. Deployed applications on Oracle WebLogic Server and integrated systems using SOAP. Monitored system integrity and performance using Splunk. Led the team in the team leader absence, ensuring project delivery.
Jobicy
578 professionals pay to access exclusive and experimental features on Jobicy
Free
USD $0/month
For people just getting started
Plus
USD $8/month
Everything in Free, and: