Wazuh SIEM
Deployment, telemetry engineering, rules, alert analysis and risk visibility.
CYBERSECURITY • AI SECURITY • TECHNOLOGY LEADERSHIP
I design defensive security operations that connect telemetry, automation and large language models to improve risk assessment, incident triage and decision-making.
✓Defensive, authorized and human-supervised security engineering.
Privileged identity anomaly
CorrelatedEndpoint behavior deviation
EnrichedConfiguration risk finding
Reviewed01 — FOCUS
Deployment, telemetry engineering, rules, alert analysis and risk visibility.
Cloud-native SIEM, analytics, investigation workflows and security operations.
Defender ecosystem, identity security and broader Microsoft security controls.
Event orchestration, enrichment, routing, reporting and repeatable response workflows.
Contextual evaluation, prioritization and structured summaries with human oversight.
Kubernetes, Linux, IAM, hardening, resilience, monitoring and secure architecture.
02 — ARCHITECTURE
HUMAN REVIEW & AUTHORIZED DEFENSIVE ACTION
Operational outcomes
03 — PROJECTS
CURRENT TECHNICAL DIRECTION
Telemetry onboarding, detection tuning and alert investigation across Wazuh and Microsoft Sentinel.
Repeatable n8n workflows for enrichment, routing, reporting and analyst-reviewed response guidance.
Structured risk assessment, incident summarization and MITRE ATT&CK context with human validation.
04 — EXPERIENCE
Selected career path
Director of Technology & Cybersecurity
CTO
CTO
Technical Lead & Architect
Research & Development Engineer
Architecture and senior software engineering roles
05 — CREDENTIALS
Oracle • Valid through Nov 2027
Oracle • Valid through Sep 2027
Previously earned • Credential expired
Fundação Getulio Vargas • 2014
ITA • 2008
PUC-SP • 2004
06 — CONTACT