Fernando Pinheiro

CEO

Lisbon, Portugal10 yrs 7 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in offensive security and penetration testing.
  • Created a Hackerspace to foster community learning.
  • Delivered lectures at multiple security conventions.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on offensive security and application security.

Contact

Skills

Core Skills

Information SecurityPenetration TestingSecurity ResearchCode ReviewVulnerability Assessment

Other Skills

HackeamentoOWASPPhysical penetration testingSocial engineeringProject managementReverse engineeringHackingSecurityRubyLinuxJavascriptInkscapeFirewallsOperating systemsNetwork security

About

Senior Information Security Engineer at Cipher working with offensive security and AppSec, conducting red team services, penetration tests, vulnerability analysis and code review. Provided lectures and workshops in conventions such as Roadsec, HackBahia, SEMCOMP, IT Sec, and others. I have created a Hackerspace called Raul Hacker Club in Salvador-Bahia. The activities that I have developed in my carrier are with the focus in offensive security, executing penetration test in the application, web servers, infrastructure, mobile (Android/iOS) and projects about PCI-DSS. Currently, I also develop code review skill. I have certifications as: eLearningSecurity Junior Penetration Testing (eJPT); Desec Certified Penetration Tester (DCPT); eLearnSecurity Certified Penetration Tester (eCPPT); eLearnSecurity Web Application Penetration Tester (eWPT); eLearnSecurity Web Application Penetration Tester Extreme (eWPTX); Zero Point Security - Certified Red Team Operator (CRTO); Secure Coding from Cybrary. Published CVEs: CVE-2019-13977 CVE-2019-13978 CVE-2021-30144 CVE-2021-3486

Experience

10 yrs 7 mos
Total Experience
1 yr 6 mos
Average Tenure
5 yrs 7 mos
Current Experience

Cipher

2 roles

Information Security Specialist

Feb 2022Present · 4 yrs 2 mos · Full Remote

HackeamentoOWASPInformation SecurityPenetration Testing

Senior Information Security Consultant

Sep 2020Feb 2022 · 1 yr 5 mos · Full Remote

  • Red Team Projects
  • Penetration Testing
  • Android Apps
  • iOS Apps
  • Web Application
  • Security Research
HackeamentoOWASPPenetration TestingSecurity Research

Conviso application security

2 roles

Senior Information Security Engineer

Feb 2020Sep 2020 · 7 mos · Full Remote

HackeamentoOWASPInformation SecurityPenetration Testing

Information Security Engineer

Mar 2019Feb 2020 · 11 mos · Full Remote

  • Penetration Testing
  • Android Apps
  • iOS Apps
  • Web Application
  • Infrastructure
  • Code Review
  • Manual Code Review
  • Continuous Code Review
  • SAST
  • DAST
HackeamentoOWASPPenetration TestingCode Review

Cipher

Information Security Engineer

Sep 2018Mar 2019 · 6 mos · São Paulo e Região, Brasil

  • Penetration Testing
  • Web Application
  • Infrastructure
  • Segmentation
  • Vulnerability Assessment
  • PCI Compliance
  • Developer
  • Creating scripts to automate tasks
HackeamentoOWASPPenetration TestingVulnerability Assessment

Vtech

Security Analyst

May 2017Jun 2018 · 1 yr 1 mo · Bahia

  • Deploy and support security solutions such as:
  • Firewall;
  • Antivirus;
  • VPN;
  • Among others.
  • Apply best practices in the same solutions;
  • Check local security;
  • Make comparisons between security solutions to better serve customers;
  • Test solution features with documentation and PoC's.

Rails girls summer of code

Programmer

Jun 2016Sep 2016 · 3 mos

  • Summer program for learning the language Ruby on Rails;
  • Develop new functionalities of the study platform;
  • Solve current platform problems;
  • Learn about unit testing and demonstrate that by developing or improving the platform's current testing;
  • Improve English skills in conferences with other participating groups and trainers;
  • Plataforma - https://speakerinnen.org/
  • Group - Perifericas Team

Ufba - federal university of bahia

Security Analyst - Volunteer

Nov 2015Jun 2016 · 7 mos · Ondina

  • Writing scripts to automate tasks;
  • Penetration test in university web systems and applications;
  • Develop script to use network flow to detect and respond to incidents.
  • To present a study on the functionalities of pentest tools and their results.

Colivre

SysAdmin - Trainee

Oct 2014Nov 2015 · 1 yr 1 mo · Salvador Area, Brazil

  • Administer enterprise network and linux systems;
  • Prospect new agile tools;
  • Automate tasks with chef;
  • User support;
  • Maintenance of local machinery;
HackeamentoOWASPPenetration Testing

Education

Estácio

Bacharelado — Defesa Cibernética

Mar 2024Jun 2026

Stackforce found 100+ more professionals with Information Security & Penetration Testing

Explore similar profiles based on matching skills and experience