Renan Toesqui Magalhães

Security Engineer | DevSecOps

About Me

Hello, my name is Renan. With a background in DevSecOps, I have extensive experience in the banking sector, collaborating closely with BACEN (Central Bank of Brazil) and SPB (Brazilian Payment System). My expertise spans both Linux and Windows system administration, and I have taken the lead in project management within this domain.

Currently, I am a Security Engineer with a specialization in architecting secure and robust systems for cloud environments. My role encompasses the design and implementation of best practices in cloud engineering, ensuring optimal performance and security. I am well-versed in conducting penetration testing to identify and rectify vulnerabilities, ensuring our cloud infrastructure remains impervious to threats. My commitment to continuous learning and staying updated with the latest in cloud security ensures that the systems I work on are both cutting-edge and secure.

Projects

Only by knowing evil can you truly fight it ...

A dedicated fork from the RTM project, Insecure Codes narrows its focus exclusively on security topics and discussions.

A knowledge database for everyone

The RTM project stems from a personal aspiration I’ve harbored for a while. It showcases the vast knowledge I’ve amassed throughout my sysadmin journey. Designed as an open database, it serves as a reservoir of information, beneficial not just for me but for anyone seeking knowledge.

My full enviroment

This is a project for build and configure my full working environment … This is still a WIP, but there’s some interesting stuff in here.

Latest Experiences

SoSafe GmbH

https://sosafe-awareness.com/

Security Engineer

July 2022 - Present

Cyber Security Awareness

  • Architected and maintained AWS pipelines to bolster product security, leveraging multiple AWS security services.
    • Security Gates
    • Testing / Validations
  • Independently developed and implemented security services and processes.
  • Conducted comprehensive security assessments and ensured adherence to best practices across all environments
    • Compliance with GDPR and ISO27001 standards.
  • Collaborated closely with C-Level executives, providing insights on the cost-benefit analysis of various tools.
  • Led training sessions for developers, instilling a security-by-design mindset.
  • Advocated and implemented a zero-trust security model.
  • Integral member of the purple team, bridging the gap between offensive and defensive security strategies.

SoSafe GmbH

https://sosafe.de/

Platform Engineer

January 2022 - July 2022

Cyber Security Awareness

  • Developed and maintained a state-of-the-art, secure web platform, empowering developers to seamlessly deploy, test, and run their products.
  • Spearheaded the implementation and upkeep of features within the SoSafe platform.
  • Mentored peers and conducted workshops for developers and engineers.
  • Engaged actively in agile work processes.
  • Contributed to the design of cloud architecture and technology selection.

X-SENSORS GmbH / Ainda.ai

https://xsensors.ai/

DevSecOps Engineer

February 2019 - December 2021

Industry 4.0

Pioneered the construction of the entire infrastructure pipeline from the ground up.

All process around:

  • Oversaw processes including Cloud Architecture, CI/CD integration with tools like Jira, GIT, Jenkins, EKS, Keel.sh, and Slack.
  • Implemented robust security policies, including WAF, LoadBalancers, GeoIP, and Behavior Analysis.
  • Monitoring (Zabbix, Grafana, Prometheus)
  • Executed system hardening by applying best practices for image building and testing.
  • Designed and managed data pipelines, encompassing streaming, Apache Nifi, MQTT, OPC-UA, data lakes, warehouses, marts, and IoT.
  • Log aggregation (ELK)
  • Network segmentation/Zero-trust
  • Developed custom backup solutions integrated with AWS S3.

Updated with the latest technology regarding:

  • Distributed systems using Kubernetes orchestration and microservices
  • Security implementation and best practices in infrastructure.
  • Devised disaster recovery management solutions, including test planning, post-test analysis, and recovery lifecycle management.

Extra Skills:

  • Python
  • Shell Script
  • Infrastructure as Code

CreativeDrive

https://cora.creativedrive.com/

DevOps Engineer

March 2018 - February 2019

Veni, vidi, vici

Main driver behind the migration of the entire on-premises infrastructure to AWS Cloud, managing a vast network of servers across both public and private data centers globally.

Stayed at the forefront of technological advancements by:

  • Implementing distributed systems using Kubernetes orchestration and microservices.
  • Streamlining continuous integration and delivery with state-of-the-art tools such as Jenkins and CircleCI.
  • Prioritizing cybersecurity, ensuring the implementation of security best practices throughout the infrastructure.
  • Orchestrating and deploying services exclusively on Amazon Web Services (AWS).
  • Devised comprehensive disaster recovery management strategies, encompassing:
    • Detailed test planning and execution.
    • Thorough post-test analysis to identify and address potential vulnerabilities.
    • Overseeing the entire recovery lifecycle management to ensure swift and efficient system restoration.

Cresol Confederação

http://cresolconfederacao.com.br/

IT System Administrator

February 2015 - February 2018

Together We're Strong

Played a pivotal role in managing intricate projects in collaboration with multiple partners, integrating Cresol into the Brazilian financial system.

Key responsibilities included:

  • Deployment, maintenance, and debugging of the system in a Jboss environment.
  • Automation of routine tasks to enhance efficiency.
  • Comprehensive log analysis to ensure system integrity.
  • Conducting benchmarks to evaluate and optimize system performance.
  • Expert administration of Linux systems, specifically RedHat and Debian.

Baia Sul Hospital

http://www.hospitalbaiasul.com.br/

IT System Analyst

April 2014 - February 2015

Our biggest concern is life

Entrusted with the comprehensive management of the hospital’s IT infrastructure, leading a dedicated team of three professionals in a predominantly Windows server environment.

Notable achievements::

  • Introduced and integrated open-source tools, implementing various Linux services for enhanced monitoring and management of the tech infrastructure.
  • Successfully implemented an audit system, bolstering the hospital’s data integrity and compliance.

Education

Cruzeiro do Sul

Master of Business Administration in Information Security

2017 - 2019

The Cruzeiro do Sul University, was founded in 1972, and has approximately 133 thousand students.

The prominence of espionage films and data-trafficking narratives in cinema underscores the significance of information security. This comprehensive course emphasizes the importance of staying updated with cutting-edge digital technologies, including TCP/IP vulnerability analysis and intrusion methods. It offers the latest ITIL certification, focusing on IT security management, disaster recovery, the COBIT model, and auditing processes.

IES - Instituto de Ensino Superior da Grande Florianopolis.

Bsc in Computer Network

2014 - 2016

Participate in the process of education to personal and professional development, contributing to the competitiveness and improvement of the quality of life in society.

IES’s Computer Networks program is designed for immediate professional integration, enabling swift entry into the workforce. By merging theory with current practices, it produces professionals adept in new network technologies, capable of project development, configuration, management, and deployment. Students learn to scale and configure equipment, manage network security, simulate virtual environments, and delve into high-performance cloud computing.

A Little More About Me

Alongside my interest in software engineering some of my other hobbies are: