Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Timeline
AdministrativeAssistant
Wagner Rosa

Wagner Rosa

Lisbon

Summary

Seasoned cybersecurity professional with 12 years of hands-on experience in incident response, blue team operations, and SOC management. Deep knowledge in SIEM and WAF technologies, utilizing them to enhance security posture. Proficient in vulnerability management and proactive threat hunting, effectively identifying and mitigating risks before escalation. Committed to strengthening cyber resilience and driving security excellence.

Overview

12
12
years of professional experience
1
1
Certification

Work History

Cyber Security Manager

Portuguese Football Federation (FPF)
09.2023 - Current
  • Responsible for assessing potential risks, implementing preventive measures, and monitoring security systems to detect and respond to threats or breaches, providing strategic guidance to enhance organization's overall security posture.
    - Incident Response / CSIRT
    - Endpoint Security
    - Awareness and Training
    - Vulnerability Management
    - Threat Hunting
    - Penetration Testing
  • Optimized incident response time with development of clear and concise communication protocols.

Senior Cyber Security Analyst

Portuguese Football Federation (FPF)
06.2021 - 09.2023
  • Incident Response / CSIRT, Endpoint Security, Penetration Testing and Email Protection
  • Collaborated with IT teams to integrate security measures into development and deployment of new applications.
  • Conducted security audits to identify vulnerabilities.
  • Analyzed security incidents post-resolution, identifying areas for improvement in both technical controls and incident response processes.
  • Reduced risk of cyber attacks by conducting regular vulnerability assessments and penetration testing.
  • Improved incident response times by developing and maintaining cybersecurity playbooks for common attack scenarios.

Senior Cyber Security Consultant

SPMS, EPE - Shared Services of the Ministry of Health
10.2020 - 06.2021
  • SIEM and CSIRT Management, Office 365 Security & Compliance
  • Reduced cyber threats by implementing robust security frameworks and incident response plans.
  • Managed third-party vendor relationships to ensure timely delivery of high-quality cybersecurity products and services.

Senior Information Security Analyst

B2W Digital
11.2019 - 10.2020
  • Responsible for implementing preventive measures, and monitoring security systems to detect and
    respond to threats or breaches, providing strategic guidance to enhance organization's overall
    security posture with Blue Team.

    - Security Frameworks and Controls
    - Network Access Control
    - CASB
    - Privileged Access Management
    - Security Gap Analysis - CIS CSC
    - Endpoint Protection
    - AWS
    - DLP

Senior Information Security Consultant

Nissan Motor Corporation
07.2019 - 12.2019
  • IT Security Audit and Compliance, Incident Response and Training
  • Collaborated with cross-functional teams to develop secure software solutions, minimizing the likelihood of future attacks.

Information Security Analyst

Icatu Seguros
03.2018 - 07.2019
  • Responsible for assessing potential risks, implementing preventive measures, and monitoring security
    systems to detect and respond to threats or breaches with Purple Team and SOC.

    Blue Team / SOC:
    - Incident Response
    - Antispam, AV, DLP
    - SIEM
    - Vulnerability Assessment
    - Information Security Controls and Policies
  • Conducted security audits to identify vulnerabilities.
  • Managed relationships with third-party vendors to ensure timely delivery of essential security products and services.
  • Collaborated with IT teams to ensure seamless integration of security measures into existing infrastructure.

Information Security Analyst

Seguradora Líder-DPVAT
11.2017 - 03.2018
  • Gap Analysis and IT Security Audits
  • Collaborated with IT teams to ensure seamless integration of security measures into existing infrastructure.
  • Conducted internal audits to identify areas of improvement within organization''s information security program.
  • Cybersecurity Awareness and training.

Information Security and Risk Management Consultant

EY (Ernst & Young)
10.2012 - 09.2017
  • Performed reviews and development of regulations related to good information security practices in various clients, based on ISO 27001, CIS CSC, NIST, and other good practices in market.
  • Managed multiple projects simultaneously while maintaining strict deadlines and high-quality work standards.
  • Produced timely reports on security processes, highlighting control programs' strengths and weaknesses in detail.
  • I was part of Vale's information security office (The second biggest mining company in the world), developing normative documents regarding information security, information protection, and privacy.
  • I supported redesign of vulnerability analysis process of TIM (one of largest telecommunications companies in Brazil).
  • I have supported several Black Box and Gray box testing projects in internal, and external network environments and web applications on clients such as TIM and Rede Globo (The largest entertainment company in Brazil).
  • I conducted Wi-Fi network intrusion tests and false Access Point surveys to capture confidential customer information at one of Bradesco's branches in Osasco, one of largest banks in Brazil.
  • Projects regarding Business Continuity Management Plan for BNDES (Most significant investment bank in Brazil), acting directly in Business Impact analysis.

Education

Postgraduate Degree in Cybersecurity -

Estacio De Sa University

Network Computer Technologies -

UNIGRANRIO University

Skills

  • Incident Response
  • Microsoft Defender
  • Cyber Threat Hunting (CTH)
  • Training and Awareness
  • Vulnerability Management
  • Threat Intelligence
  • Endpoint Security
  • Log Analysis
  • SIEM

Certification

  • Certified in Cybersecurity (CC)
  • Cybersecurity Awareness
  • EF English Certificate - C2 Proficient

Languages

Portuguese
Native language
English
Proficient
C2
Portuguese
Bilingual or Proficient (C2)
Spanish
Intermediate (B1)

Timeline

Cyber Security Manager

Portuguese Football Federation (FPF)
09.2023 - Current

Senior Cyber Security Analyst

Portuguese Football Federation (FPF)
06.2021 - 09.2023

Senior Cyber Security Consultant

SPMS, EPE - Shared Services of the Ministry of Health
10.2020 - 06.2021

Senior Information Security Analyst

B2W Digital
11.2019 - 10.2020

Senior Information Security Consultant

Nissan Motor Corporation
07.2019 - 12.2019

Information Security Analyst

Icatu Seguros
03.2018 - 07.2019

Information Security Analyst

Seguradora Líder-DPVAT
11.2017 - 03.2018

Information Security and Risk Management Consultant

EY (Ernst & Young)
10.2012 - 09.2017

Postgraduate Degree in Cybersecurity -

Estacio De Sa University

Network Computer Technologies -

UNIGRANRIO University
Wagner Rosa