Software Architecture · Application Security · SSDLC · .NET
Microsoft MVP · APIsec University Ambassador
Software & Security Architect focused on designing sustainable software architectures
and integrating security throughout the software development lifecycle.
I'm a Software & Security Architect, Microsoft MVP and APIsec University Ambassador, currently focused on Software Architecture, Application Security and Secure Software Development Life Cycle (SSDLC).
I've been working professionally with .NET and C# since 2007, designing, building and modernizing software across enterprise systems, web applications, APIs, backend services and complex integrations.
Today, my work sits at the intersection of software engineering, architecture and security — helping teams make better architectural decisions, build maintainable systems and integrate security throughout the development lifecycle, from design to production.
I'm currently Head of Technology at NESS, where my work combines technical leadership, software architecture, engineering and application security.
Beyond my professional work, I'm a speaker, technical writer, open-source contributor and an active member of the .NET, Software Architecture and Application Security communities.
System design, architectural decisions, modernization, integrations, maintainability, technical governance and the evolution of complex software systems.
Secure-by-design practices, security requirements, threat modeling, secure development processes and integrating security throughout the Software Development Life Cycle.
Designing and reviewing APIs with a strong focus on architecture, authentication, authorization and OWASP API Security practices.
C#, .NET, ASP.NET Core, APIs, backend services, enterprise applications and system integrations.
Architecture governance, technical decision-making, mentoring and helping engineering teams adopt sustainable architecture, engineering and security practices.
My current work, research and technical content are primarily centered around:
Software Architecture · Application Security · SSDLC · Secure by Design · API Security · Security Architecture · .NET
Other topics I frequently work with and research include:
Threat Modeling · OWASP · Secure Coding · DevSecOps · Software Modernization · Architecture Governance · Software Supply Chain Security
I'm a Microsoft Most Valuable Professional (MVP), recognized for my technical contributions and involvement with the developer community.
My work in the Microsoft ecosystem has been closely connected to .NET, Software Architecture and Developer Security.
I'm an APIsec University Ambassador, contributing to the API Security community through knowledge sharing, technical content and advocacy around secure API development.
API Security is an important part of my work within Application Security and SSDLC, especially around incorporating security into APIs from the earliest stages of architecture and design.
My professional certifications and digital credentials are available on my Credly profile.
My career started with .NET development in 2007 and evolved through software engineering, technical leadership, software architecture and application security.
Throughout this journey I've worked across different technologies, systems and business domains:
Enterprise Software · Web · APIs · Backend Services · Desktop · ERP Integrations · Financial Systems · EDM · Geomarketing · Cloud · Mobile
For several years I also worked extensively with Xamarin and .NET MAUI, contributing libraries, samples, technical articles, tutorials and community content to the ecosystem.
That period represents an important part of my history with .NET and open source, while my professional focus today is centered on Software Architecture and Application Security / SSDLC.
Community has been an important part of my career for many years.
I help organize and contribute to Canal .NET, creating and promoting technical content, live sessions, discussions and events around .NET, Software Architecture, Cloud, Security and the broader Microsoft ecosystem.
I'm also involved with .NET São Paulo, helping connect developers through technical events, knowledge sharing and community initiatives.
I regularly share technical content through DEV.to, my personal website, conferences, meetups, podcasts, live sessions and videos.
Most of the content I publish today is centered around:
Software Architecture · Application Security · SSDLC · API Security · .NET
Learning is great. Sharing what you learn is even better.
Open source has been part of my career for many years.
I maintain and contribute to projects, libraries, samples and tools covering different areas of the .NET ecosystem, software engineering and technologies I explore.
Architecture defines how software evolves. Security defines how safely it does.
