Igor Portella
Cybersecurity Analyst | Red Team at Every Cybersecurity and GRC Solutions- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
-
English Full professional proficiency
Topline Score
Bio
Gustavo Souza
I had the pleasure of working with Igor in the cybersecurity team. His ambition in tackling complex challenges is inspiring. He possess exceptional skills in both red teaming and blue teaming, excelling in attack simulations and defending against threats. His analytical mindset and swift responses are crucial in ensuring the security of our systems (and for our customers). Apart from his technical prowess, he is an outstanding leader and a great team player, always eager to share knowledge. I highly recommend him for any cybersecurity project. His versatile and passionate profile will undoubtedly be a valuable asset.
Gustavo S.
Conheci o Igor em um estágio que fizemos no Banco do Brasil. Trabalhávamos em diferentes equipes mas na mesma diretoria. Desde o início, Igor me chamou atenção pela sua habilidade com sistemas GNU/Linux, Shell Script e claro, Cybersecurity. Ele inclusive se mostrou sempre prestativo em todas as vezes em que precisei de ajuda com esses assuntos, pois minhas skills eram diferentes. Um dos pontos fortes que percebi durante aquele estágio, foi sua capacidade e curiosidade em aprender novas tecnologias, além de demonstrar ter várias soft skills necessárias em qualquer área. Eu acredito que o Igor possa se sair bem em qualquer posição que ocupar em qualquer empresa, pois ele possui conhecimento técnico e realmente gosta do que faz, e realiza seu trabalho com a mais alta qualidade possível. Espero que possamos ingressar em um projeto novamente no futuro.
Gustavo Souza
I had the pleasure of working with Igor in the cybersecurity team. His ambition in tackling complex challenges is inspiring. He possess exceptional skills in both red teaming and blue teaming, excelling in attack simulations and defending against threats. His analytical mindset and swift responses are crucial in ensuring the security of our systems (and for our customers). Apart from his technical prowess, he is an outstanding leader and a great team player, always eager to share knowledge. I highly recommend him for any cybersecurity project. His versatile and passionate profile will undoubtedly be a valuable asset.
Gustavo S.
Conheci o Igor em um estágio que fizemos no Banco do Brasil. Trabalhávamos em diferentes equipes mas na mesma diretoria. Desde o início, Igor me chamou atenção pela sua habilidade com sistemas GNU/Linux, Shell Script e claro, Cybersecurity. Ele inclusive se mostrou sempre prestativo em todas as vezes em que precisei de ajuda com esses assuntos, pois minhas skills eram diferentes. Um dos pontos fortes que percebi durante aquele estágio, foi sua capacidade e curiosidade em aprender novas tecnologias, além de demonstrar ter várias soft skills necessárias em qualquer área. Eu acredito que o Igor possa se sair bem em qualquer posição que ocupar em qualquer empresa, pois ele possui conhecimento técnico e realmente gosta do que faz, e realiza seu trabalho com a mais alta qualidade possível. Espero que possamos ingressar em um projeto novamente no futuro.
Gustavo Souza
I had the pleasure of working with Igor in the cybersecurity team. His ambition in tackling complex challenges is inspiring. He possess exceptional skills in both red teaming and blue teaming, excelling in attack simulations and defending against threats. His analytical mindset and swift responses are crucial in ensuring the security of our systems (and for our customers). Apart from his technical prowess, he is an outstanding leader and a great team player, always eager to share knowledge. I highly recommend him for any cybersecurity project. His versatile and passionate profile will undoubtedly be a valuable asset.
Gustavo S.
Conheci o Igor em um estágio que fizemos no Banco do Brasil. Trabalhávamos em diferentes equipes mas na mesma diretoria. Desde o início, Igor me chamou atenção pela sua habilidade com sistemas GNU/Linux, Shell Script e claro, Cybersecurity. Ele inclusive se mostrou sempre prestativo em todas as vezes em que precisei de ajuda com esses assuntos, pois minhas skills eram diferentes. Um dos pontos fortes que percebi durante aquele estágio, foi sua capacidade e curiosidade em aprender novas tecnologias, além de demonstrar ter várias soft skills necessárias em qualquer área. Eu acredito que o Igor possa se sair bem em qualquer posição que ocupar em qualquer empresa, pois ele possui conhecimento técnico e realmente gosta do que faz, e realiza seu trabalho com a mais alta qualidade possível. Espero que possamos ingressar em um projeto novamente no futuro.
Gustavo Souza
I had the pleasure of working with Igor in the cybersecurity team. His ambition in tackling complex challenges is inspiring. He possess exceptional skills in both red teaming and blue teaming, excelling in attack simulations and defending against threats. His analytical mindset and swift responses are crucial in ensuring the security of our systems (and for our customers). Apart from his technical prowess, he is an outstanding leader and a great team player, always eager to share knowledge. I highly recommend him for any cybersecurity project. His versatile and passionate profile will undoubtedly be a valuable asset.
Gustavo S.
Conheci o Igor em um estágio que fizemos no Banco do Brasil. Trabalhávamos em diferentes equipes mas na mesma diretoria. Desde o início, Igor me chamou atenção pela sua habilidade com sistemas GNU/Linux, Shell Script e claro, Cybersecurity. Ele inclusive se mostrou sempre prestativo em todas as vezes em que precisei de ajuda com esses assuntos, pois minhas skills eram diferentes. Um dos pontos fortes que percebi durante aquele estágio, foi sua capacidade e curiosidade em aprender novas tecnologias, além de demonstrar ter várias soft skills necessárias em qualquer área. Eu acredito que o Igor possa se sair bem em qualquer posição que ocupar em qualquer empresa, pois ele possui conhecimento técnico e realmente gosta do que faz, e realiza seu trabalho com a mais alta qualidade possível. Espero que possamos ingressar em um projeto novamente no futuro.
Credentials
-
EXIN Information Security Foundation based on ISO/IEC 27001
EXINMay, 2022- Nov, 2024 -
Introdução ao hacking e pentest
Solyd Offensive SecurityJan, 2022- Nov, 2024 -
Certificado A Nova Geração Em Pentest Profissional
Desec SecurityOct, 2021- Nov, 2024 -
Automatizando Tarefas com Bash Script
GuardWebSep, 2017- Nov, 2024 -
Curso de VirtualBox
GuardWebSep, 2017- Nov, 2024 -
Fundamentos de Wireshark
GuardWebSep, 2017- Nov, 2024 -
Shell Script
UdemySep, 2017- Nov, 2024 -
Treinamento em Técnicas de Invasão
GuardWebSep, 2017- Nov, 2024 -
Introdução à Segurança da Informação
eSecurity SolutionsJul, 2017- Nov, 2024 -
Python para Hackers
UdemyJul, 2017- Nov, 2024 -
Curso de Kali Linux
GuardWebJun, 2017- Nov, 2024 -
Curso de Shell Script
GuardWebJun, 2017- Nov, 2024
Experience
-
Every TI Cybersecurity and GRC Solutions
-
Brazil
-
Information Technology & Services
-
1 - 100 Employee
-
Cybersecurity Analyst | Red Team
-
Nov 2022 - Present
• Engaged in high complexity projects involving the application of cybersecurity frameworks: ISO 27001, CIS Controls, and NIST, conducting diagnostic and maturity evaluation in information security. • Led and supervised network infrastructure penetration testing (PenTest) utilizing the Penetration Testing Execution Standard (PTES) methodology. • Executed vulnerability analysis in network assets (Tenable) and web applications (Syhunt), generating detailed reports on identified vulnerabilities and proposing respective remediation. • Conducted specialized Information Security training. • Guided and oversaw web application penetration testing (PenTest) utilizing the PTES methodology. • Produced detailed technical reports with intrusion test results, offering recommendations to mitigate the risk of external and internal intrusions to clients' sensitive information. • Participated actively in Information Security incidents, helping coordinate response activities and mitigating potential impacts. • Developed Phishing campaign strategies, creating simulations to assess employee awareness and improve their response to attempted attacks. • Managed vulnerability lifecycle processes, incorporating threat intelligence feeds to prioritize remediation activities effectively. • Conducted client environment vulnerability analysis using the Nessus tool, facilitating proactive identification and management of potential risks. • Developed and executed action plans for vulnerabilities identified within environments, mitigating potential security risks and enhancing overall cybersecurity posture. • Engineered automation tools to streamline the reconnaissance phase of PenTest, improving efficiency and accuracy in identifying potential targets and vulnerabilities. • Managed incident response planning and execution, utilizing forensic tools for investigation and root cause analysis to prevent future occurrences. Show less
-
-
-
Confidencial
-
United States
-
Internet Publishing
-
700 & Above Employee
-
Cyber Security Analyst
-
Jan 2020 - Nov 2022
• Administered ticket handling via ITSM, adhering strictly to the client-defined SLA.• Undertook incident triage via Elastic SIEM, utilizing advanced analytics to identify and manage security events.• Conducted thorough network traffic analysis for both internal and client networks to detect potential risks, vulnerabilities, and ongoing incidents.• Performed proactive threat hunting within client environments to identify hidden threats and reduce potential risks.• Executed client-requested intrusion testing, adhering to defined scope, leveraging both automated tools (open-source or otherwise) and manual techniques.• Crafted detailed technical reports post-intrusion testing, offering strategic recommendations to mitigate risks of unauthorized access to sensitive client information.• Analyzed Pcap data to identify potential system infections and devise appropriate remediation plans.• Generated detailed and concise client reports based on analysis findings, explicating potential risks and offering risk mitigation strategies.• Developed and implemented security playbooks to automate threat detection and incident response workflows, thereby enhancing security posture across environments. Show less
-
-
Information Security Intern
-
Jun 2019 - Jan 2020
• Monitored internal and client network traffic analysis, identifying anomalies and potential security incidents.• Documented analysis procedures, contributing to the creation of robust standard operating procedures.• Executed proactive threat hunting within both internal and client environments, leveraging advanced tools and techniques to identify and neutralize hidden threats.• Documented identified vulnerabilities from analyses, creating a knowledge base to inform future detection and prevention strategies.• Actively participated in client meetings, facilitating transparent communication and strengthening the client relationship.• Contributed to network traffic analysis of Proof of Concepts (POCs), enabling proactive identification and resolution of potential issues.• Developed comprehensive reports on POC analysis, delivering key findings and recommendations to stakeholders. Show less
-
-
-
Banco do Brasil
-
Banking
-
700 & Above Employee
-
IT Intern
-
Jul 2018 - Dec 2018
-
-
-
Globalweb Corp
-
Brazil
-
IT Services and IT Consulting
-
700 & Above Employee
-
Technical Backup Operator
-
Sep 2017 - Dec 2017
-
-
Education
-
Universidade Católica de Brasília
Tecnólogo, Segurança da Informação