Rafael Brinhosa

CEO

Lisbon, Portugal27 yrs 9 mos experience

Key Highlights

  • 20+ years of experience in Information Security.
  • Expert in crafting tailored security programs and frameworks.
  • Proven track record with industry-leading organizations.
Stackforce AI infers this person is a seasoned Information Security Architect with extensive experience in enterprise cybersecurity solutions.

Contact

Skills

Other Skills

ITILVulnerability AssessmentTestingFirewallsNetwork SecurityISO 27001Software DevelopmentInnovationSoftware Project ManagementIT ManagementScrumVulnerability ManagementEnterprise SecurityWeb ServicesSoftware Quality Assurance

About

Accomplished Information Security Expert, boasting 20+ years of experience in fields like Security Architecture, Application Security and Pentesting. I excel in crafting tailor-made Information Security programs, assessments, and frameworks that align with risk management, security, and governance practices to bolster organizational resilience. My expertise spans manual, automated and AI security testing, Pentesting, DevSecOps, SCA, SAST, and DAST. Throughout my career, I have had the privilege of working with industry-leading organizations across various sectors, such as Dell (technology), US Bank (financial services), EDS (now HP, information technology), AVAYA (telecommunications) and Volkswagen Digital Solutions/MAN (automotive). Currently, I am proudly contributing to Reltio in Lisbon, Portugal, where I continue to apply my extensive knowledge and skills to enhance cybersecurity efforts within the data management industry.

Experience

27 yrs 9 mos
Total Experience
2 yrs 10 mos
Average Tenure
2 yrs 7 mos
Current Experience

Reltio

Principal Security Architect

Oct 2023Present · 2 yrs 7 mos

Volkswagen digital solutions

Cyber Security Specialist

Jul 2022Oct 2023 · 1 yr 3 mos · Lisbon, Portugal

Avaya

Senior Security Architect - Senior Software Engineer (Security)

Jul 2021Jul 2022 · 1 yr

Instituto federal catarinense

Professor & Software Engineering Manager

Nov 2016Jul 2021 · 4 yrs 8 mos · Araquari, Santa Catarina, Brazil

  • An experienced educator for both undergraduate and postgraduate programs, providing comprehensive instruction in Information Security, Software Development, Cloud Computing, Scripting, Project Management, and related subjects.
  • A dedicated Software Engineer Manager, leading software development projects using multiple platforms and technologies such as Django, Mobile, React, Vue, and GitLab. My primary focus was on integrating cutting-edge research into practical applications that drive innovation and progress.
  • URL: https://araquari.ifc.edu.br/

U.s. bank

Senior Application Security Architect - Contractor - Global Information Security

Jan 2016Nov 2016 · 10 mos · Greater Atlanta Area - Home-based

  • Reporting directly to the VP of Assurance & Security Consulting
  • Focusing on Application Security across various platforms and technologies
  • Providing Security Consulting services to internal teams and stakeholders
  • Conducting Web Application Penetration Testing to assess security risks
  • Performing Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) on over 50 applications to identify vulnerabilities and potential threats

Neogrid

Senior Cybersecurity Swiss Army Knife & Information Security / Innovation Committee Manager

Jul 2009Jan 2016 · 6 yrs 6 mos

  • I played a pivotal role in supporting the company's growth from 180 to 700 employees. This expansion brought with it a range of new challenges and compliance requirements. I diligently managed and adapted our information security strategy and execution to ensure that our systems remained secure and compliant throughout this period of rapid growth.
  • Developing and implementing comprehensive Information Security strategies
  • Ensuring Application Security across various platforms and technologies
  • Serving as the Coordinator for the Information Security Committee
  • Conducting Security Testing to identify vulnerabilities and potential threats
  • Establishing Security Metrics and Dashboard for monitoring and reporting
  • Integrating security best practices into the Software Development Life Cycle (SDLC)
  • Performing Web Application Penetration Testing to assess security risks
  • Handling security incidents and coordinating appropriate response measures
  • Conducting Manual and Automated Penetration Testing for thorough security evaluations
  • Utilizing tools such as IBM Rational AppScan, as well as custom scripts, for in-depth security assessments

Dell

Senior IT Security Consultant

Aug 2008Jul 2009 · 11 mos

  • Conducting IT Information Security Risk Assessments to identify potential threats and vulnerabilities
  • Providing information security project management and guidance for over 40 projects, collaborating with a team of more than 400 developers
  • Performing Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to evaluate application security
  • Executing Web Application Penetration Testing to assess security risks and recommend mitigations
  • Offering Security Consulting services as a member of the Red Team, simulating attacks and testing the effectiveness of security measures

Electronic data systems

Security Testing - Global Security Testing Board - EDS (now HP)

Aug 2005Jul 2008 · 2 yrs 11 mos

  • Only member in Brazil of the Global Security Testing Board.
  • EDS had 180.000 employees and was acquired by HP in 2008.

Network management laboratory - ufsc

Researcher - Part-time

Jun 2005Aug 2005 · 2 mos

  • Web Services QoS and Network Security Researching.

Dmi - medical image diagnostic clinic

Network Administrator

Feb 2004Oct 2004 · 8 mos

  • Overseeing Network Management to ensure efficient and secure connectivity
  • Administering Information Systems and maintaining their integrity and availability
  • Implementing and managing Firewall configurations for optimal security
  • Deploying and monitoring Intrusion Prevention Systems (IPS) and Intrusion Detection Systems (IDS) to safeguard against potential threats
  • Administering Web Servers to ensure smooth operations and high performance
  • Performing Server Hardening on both Linux and Windows servers to enhance security and reduce vulnerabilities

Committee for democracy in information technology (cdi)

Voluntary Teacher

Sep 2003Dec 2003 · 3 mos

  • Pro bono teaching computer basics.

Tcsul - south technology and communication

Co-Founder

Jan 1998Feb 2005 · 7 yrs 1 mo

  • Business Development
  • Software Development
  • Security Testing
  • Penetration Testing

Education

Universidade Federal de Santa Catarina

Doctor of Philosophy (PhD) - On Hold — Computer Science (Information Security)

Jan 2017Oct 2023

Universidade Federal do Paraná

Specialization — MBA - Strategic Management

Jan 2011Jan 2012

Universidade Federal de Santa Catarina

Master — Computer Science (Information Security)

Jan 2007Jan 2010

Universidade Federal de Santa Catarina

Bachelor — Information Systems

Jan 2002Jan 2006

Stackforce found 100+ more professionals with ITIL & Vulnerability Assessment

Explore similar profiles based on matching skills and experience