I'm a security-focused engineer from Brazil with a background in backend systems, APIs, authentication flows, webhooks, and SaaS platforms.
My current direction is Cloud Security and DevSecOps. I care about security that is practical: reducing exposed services, catching secrets early, improving CI/CD checks, reviewing permissions, and building controls that developers can actually use.
- Cloud security fundamentals: IAM, least privilege, logging, exposed resources
- DevSecOps: secure pipelines, dependency risk, container scanning, IaC checks
- Application and API security: authentication, authorization, webhooks, abuse prevention
- Security automation: small tools, readable reports, and repeatable local labs
Security Engineering, Cloud Security, and DevSecOps.


