SEC_AUTH_LEVEL: ROOT

DIEGO MORAES APPLICATION SECURITY ENGINEER

ARCHIVE_LOGS

CAREER_TRAJECTORY

  1. Application Security Engineer

    ELYTRON CYBERSECURITY // FEB 2026 - PRESENT

    • Windows server hardening following security best practices.
    • SIEM assessments to evaluate detection coverage.
    • AppSec and DevSecOps consulting for pipeline integration.
  2. Application Security Engineer

    MAGAZINE LUIZA GROUP // AUG 2022 - JAN 2026

    • Implemented SAST/DAST tooling using Python within GitLab CI/CD.
    • Managed WAFs and security architecture reviews.
    • Developed Red Team capabilities and performed web pentests.
  3. Red Team Analyst

    PROOF BY SEK // MAY 2022 - JULY 2022

    • Produced vulnerability reports leveraging OSINT techniques.
    • Conducted web and network penetration tests.
  4. Developer

    PROOF BY SEK // SEP 2021 - MAY 2022

    • Built automation tools for MSS, MDR, and CTI teams.
    • Managed CI/CD pipelines and implemented unit testing.
  5. Intern

    EXP TECHNOLOGY // MAR 2021 - JULY 2021

    • Assisted in web development projects using Python and Django frameworks.

CREDENTIALS_VAULT

CERTIFICATIONS_&_EDUCATION

Offensive Security Certified Professional (OSCP)

OFFSEC // 2026

Certified AppSec Practitioner (CAP)

SECOPS GROUP // 2022

Associate Degree, Cyber Defense

FIAP // JAN/2018 - DEC/2023

IT Technician

IFMS // JAN/2018 - DEC/2021

ARSENAL

CORE_COMPETENCIES

Specialized technical expertise spanning application security, offensive security, and development automation.

  • APPSEC & DEVSECOPS
  • OFFENSIVE SECURITY & PENTESTING
  • SECURITY INFRASTRUCTURE (WAF / SIEM)

OFFENSIVE

  • Privilege Escalation
  • Web & Network Pentesting
  • OSINT & Reconnaissance
  • Vulnerability Assessment

DEFENSIVE

  • Application Security
  • Security Architecture Review
  • Threat Modelling
  • SIEM Assessment & Monitoring

DEVELOPMENT

  • Python / Django
  • Node.js / JavaScript
  • Shell Automation
  • REST API Development

INFRASTRUCTURE

  • GitLab CI/CD
  • GitHub Actions
  • WAF Management
  • SAST/DAST Integration

ESTABLISH_CONNECTION

CONTACT_METHOD

For professional inquiries regarding high-stakes security audits, architectural consulting, or collaborative projects, please reach out via my LinkedIn profile.

LINKEDIN_PROFILE / IN / DIEGOVSK