10/13/2024 updated

**** ******** ****
100 % available

SOC specialist with a focus on reducing MTTR by integrating SIEM, SOAR and generative AI

Fortaleza, Brazil
Worldwide
Degree in Information Technology Management
Fortaleza, Brazil
Worldwide
Degree in Information Technology Management

Profile attachments

Celso_Falcao_CV.pdf

Amazon Web ServicesMicrosoft AzureCloud Computing SecurityIncident ResponseISO/IEC 27001Network SecurityOperations SecurityOWASPSecurity Information and Event ManagementTcpdumpWiresharkVirtualizationVulnerability ManagementNational Institute of Standards and Technology (NIST)QRadarFirewalls (Computer Science)Safety PrinciplesSplunkQualys
SOC and Incident Response
Extensive experience in Security Operations Center (SOC) management, incident response, and vulnerability management.

Security Information and Event Management (SIEM)
Proficiency in SIEM tools such as Rapid7, QRadar, and Splunk for effective threat detection and analysis.

Network Security
Expertise in network security tools including Wireshark, Tcpdump, and various firewalls like Fortigate and WatchGuard.

Cloud Security
Knowledge of cloud security platforms including Azure and AWS.

Endpoint Detection and Response (EDR)
Experience with EDR tools such as Crowdstrike, Carbon Black, and SentinelOne.

Compliance and Frameworks
Familiarity with security frameworks and standards including NIST, ISO 27001, MITRE, CIS, and OWASP.

Virtualization and Container Security
Proficiency in securing virtualized environments using tools like Rapid7, Tenable, and Qualys.
 

Languages

EnglishFluentPortugueseNative speaker

Project history

Cyber Security Engineer

Trust Control
Leading the SOC team, responsible for designing, implementing and improving the IBM SIEM QRadar. Monitoring, detecting, investigating and responding to information security incidents. Planning and monitoring the team's activities using agile methodology and tools.

Tech Lead

Compass.UOL
Led the security incident response and vulnerability management operations team. Monitored and analyzed events and alerts from sources such as Azure, AWS, Carbon Black and Security Scorecard. Investigated and responded to security incidents, including malware infections and phishing attacks.

Tech Lead

Mondiale
Led the security incident response and vulnerability management operations team. Monitored and analyzed events and alerts from sources such as InsightIDR (SIEM/XDR), InsightIVM (Vulnerability Analysis), Crowdstrike Falcon (EDR), Cloudflare (WAF) and Security Scorecard.

Cyber Security Presales Engineer

Trust Control
Worked in the Sales area, responsible for designing and sizing security solutions for clients. Conducted meetings with clients, created proof of concepts, and delivered technical presentations.

Senior Support Analyst

SH Tecnologia
Worked in SNOC's "Applications" tower, providing support to clients throughout Brazil in the support, design and training of solutions such as Antivirus (SEP), Antispam (SMG), Web Proxy (McAfee Web Gateway), Vulnerability Analysis (CCS-VM and Qualys) and Windows Servers.

Senior Information Security Consultant

Tistech Angola
Responsible for providing Information Security consulting to both the group's companies and external clients. Implemented and maintained firewalls, conducted vulnerability analysis, and monitored privileged users.

Senior Infrastructure Specialist

Banco do Nordeste
Responsible for the support and operation of the Antimalware infrastructure for over 16,000 endpoints across more than 300 remote locations. Managed security operations using Symantec Endpoint Protection Manager and Antispam.

IT Consultant

ISH Tecnologia
Provided Information Security consulting at ANP - National Petroleum Agency and the Organizing Committee of the Rio 2016 Olympic Games. Implemented security solutions such as SEP Antivirus, CCS-VM Vulnerability Analysis, and McAfee Webgateway.

IT Support Coordinator

LETS
Led a team of 6 collaborators, reporting to the Director of IT. Restructured the network and server infrastructure, conducted business visits, and implemented various IT solutions.

IT Support Analyst

Prodam
Worked in a NOC (Network Operations Center), conducting monitoring of links, police vehicles, and service availability across over 500 remote locations.

IT Support Analyst

Honda
Served as a Lotus Domino Administrator, supporting the Symantec Endpoint Protection antimalware tool, and providing support for Windows servers.

IT Support Analyst

Petrobras
Worked at Petrobras units through the companies Atos and Criar Soluções, responsible for backup/restore operations using Veritas Netbackup, print servers, and provided on-site and remote support at the Service Desk.

Certificates

EC-Council Certified Incident Handler – ECIH

EC-Council

2024

QRadar SIEM Practitioner Advanced

IBM

2024

CompTIA Cybersecurity Analyst – CySA+

CompTIA

2022

CompTIA Security Analytics Professional – CSAP

CompTIA

2022

CompTIA Security+

CompTIA

2016

ISO 27001 - Information Security Foundation

EXIN

2014


Contact form

Log in to get in touch

You need to be logged in to use the contact form.

Sign upLog in