Arthur Paixão

CEO

São Paulo, São Paulo, Brazil16 yrs 5 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • 15+ years in enterprise-level security programs
  • Expert in risk management and incident response
  • Skilled in translating technical risks for executives
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in healthcare and financial sectors.

Contact

Skills

Core Skills

Threat IntelligenceSecurity OperationPenetration TestingVulnerability ManagementVulnerability AssessmentSoftware DevelopmentSecurity Assessment

Other Skills

Android DevelopmentBlue TeamComputer ForensicsData IntegrationDigital ForensicsInformation Security ManagementIntrusion TestingJavaMedical Devices Security ResearchMobile PentestingRed TeamReverse EngineeringSQLScrumSecurity Consulting

About

Dedicated and results-driven Head of Cybersecurity with 15+ years of experience in designing, implementing, and managing enterprise-level security programs. Proven expertise in risk management, incident response, offensive security, threat intelligence, and governance frameworks. I excel at leading cross-functional teams, conducting vulnerability assessments, and deploying cutting-edge security technologies to protect organizations against evolving cyber threats. Skilled in developing security strategies aligned with business objectives, ensuring compliance with ISO 27001, NIST, and regulatory frameworks. Experienced in translating complex technical risks into actionable insights for C-Level executives and Boards, bridging the gap between cybersecurity operations and business strategy to drive informed decision-making and measurable business value.

Experience

Hospital israelita albert einstein

2 roles

Sr. Cyber Security Manager

Jun 2023Present · 2 yrs 9 mos · São Paulo, Brazil

Cyber Security Manager - Blue Team / Security Operation / Offensive Security

Aug 2021Present · 4 yrs 7 mos · São Paulo, Brazil

  • Threat Intelligence
  • Blue Team (CSIRT, SOC, Threat Hunting)
  • Security Operation
  • Medical Devices Security Research
  • Red Team (Adversary Simulations, Offensive Security)
Threat IntelligenceBlue TeamSecurity OperationMedical Devices Security ResearchRed Team

Faculdade israelita albert einstein

Professor

Jan 2023Present · 3 yrs 2 mos · On-site

  • Courses:
  • Healthcare Ethical Hacking
  • Healthcare Hacking: Offensive Operations

C6 bank

2 roles

Head of Offensive Security, Red Team & AppSec

Promoted

Apr 2020Aug 2021 · 1 yr 4 mos

Information Security Specialist [Red Team]

Jul 2018Apr 2020 · 1 yr 9 mos

  • As a Offensive Security Team Leader:
  • Perform attack simulations on company systems and web applications to determine and
  • exploit security flaws;
  • Performed internal, external, web application, mobile and physical penetration tests;
  • Consulted management and application developers before product launch regarding security
  • issues;
  • Reviewing other technical deliverables, such as penetration testing work and client reports;
  • Social engineering including phishing and pre-text calling;
  • Design, develop and implement penetration tools and tests and also use existing ones to
  • handle penetration testing activities;
  • Document and discuss security findings with information technology teams;
  • Work on improvements for security services and provide feedback and verification about
  • existing security issues;

Itaú unibanco

Senior Information Security [Red Team]

Mar 2017Jul 2018 · 1 yr 4 mos · São Paulo, São Paulo, Brazil

  • As a Team Leader at Vulnerability Management Team:
  • Responsible for the resolution of technical doubts of the team;
  • Accomplishment of mobile pentesting on IOS, Android, Windows Phone platforms;
  • Prioritization of activities, preparation of indicators and monitoring of vulnerabilities reported
  • by the team;
  • As a Pentester at Red Team:
  • Perform attack simulations on company systems and web applications to determine and
  • exploit security flaws;
  • Performed internal, external, web application, mobile and physical penetration tests;
  • Consulted management and application developers before product launch regarding security
  • issues;
  • Reviewing other technical deliverables, such as penetration testing work and client reports;
  • Social engineering including phishing and pre-text calling;
  • Design, develop and implement penetration tools and tests and also use existing ones to
  • handle penetration testing activities;
  • Document and discuss security findings with information technology teams;
  • Work on improvements for security services and provide feedback and verification about
  • existing security issues;
Penetration TestingSocial EngineeringSecurity Consulting

Mv s/a

Senior Software Engineer

Oct 2015Feb 2017 · 1 yr 4 mos · Greater Recife

  • As a Integration team:
  • Secure Data Integration Specialist
  • Support Development (Java/Oracle Forms)
  • As a Infrastructure team:
  • Create MV Security (Responsible team for responses and security Incidents)
  • Vulnerability and Threat Management
  • Performing penetration testing (Web apps, Networks, Code reviews)
  • Contributing to the development of internal tools and methodologies
  • Contributing to general company communications and other activities
  • Reviewing other technical deliverables, such as penetration testing work and client reports
Mobile PentestingVulnerability Management

Accenture

Senior Analyst

Jul 2015Oct 2015 · 3 mos · Greater Recife

  • As a Integration Team:
  • Working at SKY HDTV Project, performing data integration.
  • Technologies: ODI (Oracle Data Integration), Oracle 11g(PL-SQL), ETL.
  • As a Security Team:
  • Identifying vulnerabilities that are usually impossible to spot through automated tools;
  • Identifying higher-risk "chained vulnerabilities", that are often result of combining lower-risk vulnerabilities in a particular sequence;
  • Writing proof of concept exploit code;
  • Testing the reliability of security countermeasures in place;
  • Assessing the business and operational impact of successful intrusions;
  • Providing evidence of relevant findings with a written detailed report;
Penetration TestingVulnerability Management

Linx s.a.

System Analyst

Oct 2013Jul 2015 · 1 yr 9 mos · Greater Recife

  • As a Development Team:
  • My mission was to improvement and software development of Wallmart Pharmacy and Telecom Italia Mobile (TIM).
  • Technologies: Java 1.4/1.7, Mantis, Oracle 11g(PL-SQL), ObjectStore Java Browser (Database Object Oriented), State Machine Compiler, JavaFX, SWING, Apache Tomcat.
  • As a Security Team:
  • Handle the tasks of designing testing systems and testing technologies for embedded systems;
  • Perform responsibilities of documenting testing reports, testing procedures, and testing plans;
  • Responsible for reviewing and evaluating test cases to ensure standard security systems;
  • Developed Black Box Security test environments & conducted tests as part of team for precautionary measures;
  • Handle the tasks of improving system efficiency by implementing software security standards;
  • Responsible for preparing details of product functionality by coordinating with software developers;
Data IntegrationVulnerability Assessment

Mv s/a

Software Engineer

Feb 2012Oct 2013 · 1 yr 8 mos · Boa Viagem - Recife

  • My mission was to improvement and software development of SoulMV and MV2000 (Hospital Management System).
  • Technologies: Java 1.7, Oracle2Java, Reports2Java, Oracle Database, Oracle Forms (6i & 10g), Adoble Flex, Apache Tomcat.
Software DevelopmentSecurity Testing

Usecurity

Information Security Consultant

Jan 2012Oct 2013 · 1 yr 9 mos · Greater Recife

  • Work undertaken:
  • Analysis and testing intrusion security systems (networks and web).
  • Expert in finding threats / failures in technological environments
  • Safety assessment in the corporate environment, structure and security implementations hardenning.

Apply solutions

Software Engineer

Nov 2010Feb 2012 · 1 yr 3 mos · Derby - Recife

  • My mission was to working outsourcing as allocated on the client (MV Systems) performing the migration MV2000 system that was created in Oracle Forms (PL-SQL) to Java and Adove Flex, using the framework Forms2Java;
  • Technologies: Java 1.7, Oracle2Java, Reports2Java, Oracle Database, Oracle Forms (6i & 10g), Adoble Flex, Apache Tomcat.
Intrusion TestingSecurity Assessment

G.h security consultant

Security Analyst & Pentester

Apr 2008May 2009 · 1 yr 1 mo · Greater Recife

  • Acting in performing consulting in information security based on ISO 2700, 27002.
  • Providing training on-site and distance learning on best practices for security and preventive measures.
  • Audit Security: Penetration Testing (Penetration Test) - With a focus on trying to find flaws in critical resources within organizations.
Software DevelopmentSystem Migration

Education

Faculdade dos Guararapes

University degree — Computer and Information Systems Security/Information Assurance

Jan 2013Jan 2015

UNIBRATEC

University degree — Analysis and Systems Development

Jan 2011Jan 2013

UNIBRATEC

Technical degree — Analysis and Systems Development

Jan 2008Jan 2010

Stackforce found 100+ more professionals with Threat Intelligence & Security Operation

Explore similar profiles based on matching skills and experience