Eduardo Neves

Eduardo Neves Email and Phone Number

Incident Response Lead @ SAP | Cybersecurity and Privacy Evangelist / Security Officer / Risk Management / Incident Handler / Internal Controls / ISO 27001 / PCI-DSS / GDPR / LGPD / ANPPD® Member @ SAP
germany
Eduardo Neves's Location
Salvador, Bahia, Brazil, Brazil
Eduardo Neves's Contact Details

Eduardo Neves personal email

About Eduardo Neves

Information security specialist with a proven track record in the payment industry, technology, consulting, startup, and big-tech companies.Expertise in cybersecurity, incident handling and response, compliance, and risk management. Recognized by peers and superiors for critical and analytical capabilities, result-driven leadership, and good work environment promoter.Responsible for establishing the best practices required by regulations and security frameworks such as PCI-DSS, ISO 27001, SOC, FEDRAMP, GDPR and LGPD.Experience in PCI-DSS, ISAE 3402, ISO 27001 implementation process, and certification.Skills: Information Security, Data and Privacy Protection, Governance, Risk Management and Compliance (GRC), Incident Handling and Response, Vulnerability Management, PCI - DSS, Internal Controls, Cloud Security, Customer Support, ISO 27001, LGPD, and GPDR. Above all, interested in doing things that matter.

Eduardo Neves's Current Company Details
SAP

Sap

View
Incident Response Lead @ SAP | Cybersecurity and Privacy Evangelist / Security Officer / Risk Management / Incident Handler / Internal Controls / ISO 27001 / PCI-DSS / GDPR / LGPD / ANPPD® Member
germany
Website:
sap.com
Employees:
114326
Eduardo Neves Work Experience Details
  • Sap
    Product Security Specialist - Incident Response Lead - Isbn Security Response Team
    Sap Nov 2022 - Present
    Lead incidents on local, regional, and global scales, setting goals and prioritizing tasksBe part of a Global 24/7 follow-the-sun teamDrive continuous improvement and increases efficiency through standardization and automationWork independently and with management on complex projectsContribute to major, global scale incidents by conducting root cause analysis and writing summaries or reportsPartner with analysts, managers, and other stakeholders to identify opportunities for systemic improvement in monitoring and processesEstablish and perform knowledge management activities, such as lessons learned, knowledge-based articles, and trainingsDesign, implement, and verify new detection mechanismsConduct investigations and forensics on internal and cloud assetsSupport other SAP teams in their day-to-day business activities
  • Sap
    Concur Security Operations Engineering Lead - Americas
    Sap Jul 2022 - Nov 2022
    Execute complex projects both independently and with the support of the managementContribute to major, global scale incidents by conducting root cause analysis and crafting summaries or reportsTeam up with analysts, managers, and other stakeholders to identify opportunities for systemic improvement in monitoring and processesEstablish and carry out knowledge management activities such as lessons learned, knowledge-based articles, and training sessionsDesign, implement, and verify new detection mechanismsConduct investigations and forensics on internal and cloud assetsManage events at the local, regional, and global levels, establishing objectives and arranging tasks accordinglyBe part of a Global 24/7 follow-the-sun teamImprove the quality and proficiency of the systems through standardization and automationSupport other SAP Concur teams in their day-to-day business activities
  • Zenvia
    Information Security Analyst
    Zenvia Mar 2022 - Jul 2022
    Brasil
    Responsible for knowledge transfer within D1xZenvia's Merge & Acquisition process for the Cloud, Information Security, and Cyber Defense areas.Work in internal and external reviews for security frameworks like PCI-DSS, and ISO 27001.Respond to all stakeholders' security due diligence requests.Work with other teams to identify and implement the best security solutions/architecture.
  • D1
    Cyber Security Engineer
    D1 Nov 2021 - Jul 2022
    São Paulo, Brazil
    Coordinate internal and external reviews for security frameworks like PCI-DSS, and ISAE 3402 (SOC 2).Perform vulnerability management/audits and delivery of pentest assessments.Respond to partners/clients’ security due diligence requests.Responsible for defensive and offensive security management.Support, and review cyber incident handling and response actions to ensure proper assessment, containment, mitigation, and documentation.Work together with other teams to identify and implement the best security solutions/architect for the company.
  • D1
    Information Security Analyst
    D1 Mar 2021 - Nov 2021
    São Paulo, Brazil
    Responsible for the strategy, planning, and continuous improvement of new and current security technologies, procedures, and processes.Respond to partners/clients’ security due diligence requests.Perform vulnerability management/audits, and delivery of pentest assessments.Creating, reviewing, and maintaining security policy, standards, and procedures.Coordinate internal and external reviews for security frameworks, e.g ISO 27001, PCI-DSS, SOC, LGPD/GDPR.Ability to apply risk-based decisions balancing cost/opportunity and risk.Develop the strategy, goals, and objectives for the information security training, education, and awareness program.
  • D1
    Cloud Engineer
    D1 Dec 2020 - Nov 2021
    São Paulo, Brazil
    Improvements in the environment focusing on security, and cost reduction;Work together with the engineering team to identify and implement the best cloud-based solutions for the company;Define and document best practices and strategies concerning application deployment and infrastructure maintenance;Provide guidance, innovative leadership, and mentoring to staff development to develop cloud competencies;Ensure application performance, uptime, and scale, maintaining high standards of code quality and intelligent design;Management of cloud environments according to the guidelines of the company's security standards (ISO 27001, LGPD, and PCI-DSS).
  • D1 - Jornadas Digitais
    Head Of Security
    D1 - Jornadas Digitais Mar 2021 - Feb 2022
    São Paulo, Brasil
    Resport directly to CISO.Responsible for the strategy, planning, and continuous improvement of new and current security technologies, tools, and architecture.Establish and Monitor InfoSec's KPIs, and Goals.
  • Maxifrota
    Information Technology Supervisor - Infrastructure And Security
    Maxifrota Mar 2010 - Nov 2020
    Salvador Area, Brazil
    Analyze existing computer systems and make recommendations for upgrades and improvements.Develop policies, procedures, security protocols, and recovery plans.Plan, implement, manage, monitor, and upgrade security measures for the protection of the organization's data, systems, and networks.Troubleshooting to all system and/or network security breaches.Ensure that the organization's data and infrastructure are protected by enabling the appropriate security controls.Implement security, risk management, and data privacy policies complying with regulations. (BACEN, ISO 27001, PCI-DSS, LGPD/GDPR)Manage, develop, and plan cloud solutions following best practices (GCP, Azure, and AWS).Delegate tasks and develop budgets and work schedules.Recruit, train, evaluate, and lead staff members.Stay up-to-date with field advancements and ensure the team receives refresher training as well.
  • Nutricash
    Information Technology Supervisor - Infrastructure And Security
    Nutricash Mar 2010 - Nov 2020
    Salvador Area, Brazil
  • Ernst & Young
    Systems Auditor
    Ernst & Young Mar 2008 - Oct 2008
    Support Assurance, Internal Controls, Risk Advisory Services, and Fraud Investigation & Dispute Services.
  • Rnp - Measurement Working Group
    System Analyst
    Rnp - Measurement Working Group Nov 2004 - Nov 2005
    Working Group that develop Network Tools for RNP; Customer Support and Technology Transference; and QoS

Eduardo Neves Skills

Cobit Itil Operating Systems Linux Java Security Business Continuity Windows Data Security Infrastructure Security Microsoft Office Iso 20000 Arcserve Customer Relations Shell Scripting Android Competitive Analysis Word Security Audits Internet Wifi Risk Management Risk Analysis Operational Risk Management Pci Dss Social Networking Corporate Social Responsibility Internal Controls It Audit Quality Auditing Penetration Testing Stress Testing Credit Card Processing System Administration Systems Engineering Infrastructure Projects Infrastructure Planning Telecom Infrastructure Mpls Vpn Data Center Data Analysis Fraud Investigations Fraud Prevention Budget Management Bsc Value Chain Analysis Business Strategy Security Management Microsoft Excel

Eduardo Neves Education Details

Frequently Asked Questions about Eduardo Neves

What company does Eduardo Neves work for?

Eduardo Neves works for Sap

What is Eduardo Neves's role at the current company?

Eduardo Neves's current role is Incident Response Lead @ SAP | Cybersecurity and Privacy Evangelist / Security Officer / Risk Management / Incident Handler / Internal Controls / ISO 27001 / PCI-DSS / GDPR / LGPD / ANPPD® Member.

What is Eduardo Neves's email address?

Eduardo Neves's email address is ed****@****ail.com

What schools did Eduardo Neves attend?

Eduardo Neves attended Fiap, Universidade Estadual De Campinas, Universidade Federal Da Bahia, Universidade Salvador, Colégio Antonio Vieira.

What are some of Eduardo Neves's interests?

Eduardo Neves has interest in Professional Networking, International Travel, New Technology, Investing, Playing Keyboard, Education, Chess, Gourmet Cooking, Sports, Strategic Planning.

What skills is Eduardo Neves known for?

Eduardo Neves has skills like Cobit, Itil, Operating Systems, Linux, Java, Security, Business Continuity, Windows, Data Security, Infrastructure Security, Microsoft Office, Iso 20000.

Who are Eduardo Neves's colleagues?

Eduardo Neves's colleagues are Kazuharu Ohmori, Laura Richter, Aahil Saifi, Gautam Kumar, Ricky Almojuela, Koverga Andrey, Fábio Geadas.

Not the Eduardo Neves you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.