Career in the Information Security field with a results-oriented approach, experience in managing multidisciplinary teams, and the ability to bridge the gap between technical and business areas. Federal civil servant for ten years with roles in various government agencies, responsible for designing cybersecurity architectures and maintaining cybersecurity tools. Experience with SIEM, Firewall, EPP, WAF, and MISP. Strong knowledge of CIS Controls, NIST, and MITRE ATT&CK. Proficient in procurement processes and cybersecurity architecture.
Cielo
View- Website:
- cielo.com.br
- Employees:
- 9123
-
Cyber Security Specialist IiCieloFederal District, Brazil -
Cyber Security SpecialistTivit Dec 2023 - PresentAmericasSIEM Management (Splunk, Microsoft Sentinel, IBM QRadar, and Rapid7): Maintenance of health, creation of log sources, event mapping, log parsers with property extraction, rule tuning, use case development, dashboard creation, and integrations with other tools.SIEM focal point within the CSIRT;Detection, analysis, and mitigation of cyber threats;Cyber incident management;Development of defense techniques to protect clients across various economic sectors;Risk assessment and… Show more SIEM Management (Splunk, Microsoft Sentinel, IBM QRadar, and Rapid7): Maintenance of health, creation of log sources, event mapping, log parsers with property extraction, rule tuning, use case development, dashboard creation, and integrations with other tools.SIEM focal point within the CSIRT;Detection, analysis, and mitigation of cyber threats;Cyber incident management;Development of defense techniques to protect clients across various economic sectors;Risk assessment and potential business impacts;Creation of playbooks and runbooks for incident handling and alert resolution from security tools;SOAR Management - Automation of tasks to reduce operational errors and increase the productivity of cyber incident response analysts;Preparation of security incident reports;Responsible for the implementation and maintenance of MISP, ensuring communication with institutions from various segments, external feeds, and specific nodes. Integration with security tools such as Firewall, Endpoint, WAF, SIEM, and other threat intelligence tools;Review and identify points for improvement in the cybersecurity architecture;Ensure control of security indicators. Show less -
Senior Cybersecurity AnalystSicoob May 2023 - Dec 2023Brasília, Federal District, BrazilManaged SIEM (IBM QRadar): Maintained system health, created log sources, mapped events, parsed logs for property extraction, tuned rules, developed use cases, created dashboards, and integrated with other tools. Served as the SIEM focal point in the CSIRT. Detected, analyzed, and mitigated cyber threats. Managed cyber incident responses. Developed defense techniques to protect a critical banking environment. Assessed risks and potential business impacts. Managed Endpoint… Show more Managed SIEM (IBM QRadar): Maintained system health, created log sources, mapped events, parsed logs for property extraction, tuned rules, developed use cases, created dashboards, and integrated with other tools. Served as the SIEM focal point in the CSIRT. Detected, analyzed, and mitigated cyber threats. Managed cyber incident responses. Developed defense techniques to protect a critical banking environment. Assessed risks and potential business impacts. Managed Endpoint (CrowdStrike and Symantec), WAF (F5 BIG-IP), and Firewall (Fortigate and Check Point). Created playbooks and runbooks for incident handling and security alert resolutions. Produced security incident reports, fraud analyses, and computer forensics.Managed tool procurement processes, creating supporting documentation from identifying needs to selecting the best solutions for the desired scenario. Responsible for implementing and maintaining MISP, ensuring communication with banking institutions, external feeds, and specific nodes. Integrated with security tools like Firewall, Endpoint, WAF, SIEM, and other threat intelligence tools. Reviewed and identified areas for improvement in cybersecurity architecture. Ensured security indicator control. Show less -
It Infrastructure And Security CoordinatorMinistry Of Human Rights And Citizenship Dec 2020 - Apr 2023Brasília, Federal District, BrazilInformation security manager, responsible for CSIRT, forensics and audits. Responsible for LGPD compliance, from conceptualizing flows to Personal Data Inventory (IDP)and Personal Data Protection Impact Report (RIPD) production, Privacy and Cookie Policies, Terms of Use, contractual adjustments, and indicator monitoring.Created security norms, policies and procedures to meet regulatory entities and maintain certifications.Reviewed cybersecurity defense architecture… Show more Information security manager, responsible for CSIRT, forensics and audits. Responsible for LGPD compliance, from conceptualizing flows to Personal Data Inventory (IDP)and Personal Data Protection Impact Report (RIPD) production, Privacy and Cookie Policies, Terms of Use, contractual adjustments, and indicator monitoring.Created security norms, policies and procedures to meet regulatory entities and maintain certifications.Reviewed cybersecurity defense architecture, focusing on best practices and security controls, using frameworks like CIS Controls, NIST and ISO 27001.Managed infrastructure contracts (data centers, backups, servers, containers and network devices).Managed SIEM (IBM QRadar): Maintained system health, created log sources, mapped events, parsed logs for property extraction, tuned rules, developed use cases, created dashboards, and integrated with other tools. Served as the SIEM focal point in the CSIRT. Detected, analyzed, and mitigated cyber threats. Managed cyber incident responses. Managed security tools such as Firewall (Palo Alto), Endpoint (Trend Micro) and WAF (F5 BIGIP).Responsible for tool procurement processes, creating supporting documentation from identifying needs to selecting the best solutions for the desired scenario.Direct interaction with high-level agency administration and other ministries. Show less -
Cyber Security AnalystMinistry Of Education Jun 2015 - Dec 2020University Of BrasiliaImplemented and defined cybersecurity guidelines, policies and baselines.Created playbooks, alerts and use cases for threat detection, prevention, and mitigation.Managed a highly available and critical environment consisting of Firewalls (Palo Alto and Fortigate). Led the firewall migration process and integrated with monitoring and threat intelligence tools.Managed SIEM (IBM QRadar): Maintained system health, created log sources, mapped events, parsed logs for property… Show more Implemented and defined cybersecurity guidelines, policies and baselines.Created playbooks, alerts and use cases for threat detection, prevention, and mitigation.Managed a highly available and critical environment consisting of Firewalls (Palo Alto and Fortigate). Led the firewall migration process and integrated with monitoring and threat intelligence tools.Managed SIEM (IBM QRadar): Maintained system health, created log sources, mapped events, parsed logs for property extraction, tuned rules, developed use cases, created dashboards, and integrated with other tools.Detected, analyzed, and mitigated cyber threats.Managed Endpoints (Kaspersky and McAfee): defined security baselines, threat detection, software homologation and incident resolution.Managed Load Balancer and WAF (F5 BIG-IP): application control, virtual server deployment, firewall rule definition, bot defense, iRules and log profiles.Managed Layer 3 Switches (Cisco, Dell, Enterasys, Extreme, and HP): VLAN creation, access lists, Radius and LDAP integration, IEEE 802.1X enablement and Netsight maintenance.Created analytical reports and integrated security tools with Graylog, Nagios, Zabbix, Splunk, Honeypots and Grafana. Show less -
Network AdministratorBrazilian Navy - Marine Jun 2013 - Jun 2015Ministry Of Defense - SecirmAdministered Linux servers (Suse and Debian), IBM Lotus Notes email, Active Directory and network devices (Cisco switches and pfSense firewall).Participated in Antarctic Operations XXXII and XXXIII in 2014. -
Network TechnicianSenai Cetind Jan 2012 - May 2013Bahia - BrazilDuring my time at SENAI, I was prepared to participate in the 2012 Skills Olympics as a representative of the State of Bahia in the field of Computer Network Installation and Maintenance, achieving a top-10 national ranking in the competition.
David Abreu Education Details
-
Finanças - Mercado De Capitais -
10 -
Network And System Administration/Administrator -
Computer Systems Networking And Telecommunications
Frequently Asked Questions about David Abreu
What company does David Abreu work for?
David Abreu works for Cielo
What is David Abreu's role at the current company?
David Abreu's current role is Cyber Security Specialist II.
What schools did David Abreu attend?
David Abreu attended Descomplica, Descomplica, Centro Universitário Planalto Do Distrito Federal, Senai Cimatec.
Who are David Abreu's colleagues?
David Abreu's colleagues are Davison Almeida, Kyanne De Lima Santos, Franvieira Vieira, Jocylene Araújo, Israel Silva, Silvana Penteado, Vitor Sarmento De Macedo.
Not the David Abreu you were looking for?
-
-
-
-
David Abreu
Vendedor | Consignados | Imobiliário | Externa | Merchandising | Gestão De Equipes | Otimizador | Logística | Cadeia De Suprimentos | Supply |Niterói, Rj -
David Abreu
São Luís, Ma
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial