
Security Engineer at Dynsec & N-Stalker
Brazil

Security Engineer at Dynsec & N-Stalker
Brazil
Rodrigo "Sp0oKeR" Montoro is certified LPI, RHCE , SnortCP and MCSO, professional with 10 years experience in special Open Source Software (firewalls, IDS , IPS , HIDS) and hardening systems. He is currently coordinator and snort evangelist for the Brazilian snort community ( http://www.snort.org.br ), board member of ISSA Brazil and OWASP Brazilian chapter member. Currently is working as Security Engineer @ N-Stalker Web Application Security Scanner . In his spare time, he is one of the coordinators for creating new snort-rules specifically for Brazilian malware, researching and speaker in opensource & security conferences.
- Firewall
- Intrusion Detection ( HIDS / NIDS )
- Packet Analysis
- Penetration Tests
- Log Analysis
- Hardening Linux/Unix Systems
- Web Application Firewall
- Web Security
- IPS (Intrusion Prevention Systems)
- Incident Response
(Privately Held; Information Technology and Services industry)
February 2009 — Present (6 months)
Working at N-Stalker Engineering Team as Security Engineer I have some challenges as:
- research
- papers
- 3rd level support & design for special projects
- podcast
- N-Stalker speaker & evangelist
- costumer trainings
- Blogging for N-Stalker Community and Research Labs blog.
(Computer & Network Security industry)
August 2008 — Present (1 year)
(Computer & Network Security industry)
February 2008 — Present (1 year 6 months)
Dynamic Security is a brazilian company founded by me and Marcos for Smart Intrusion Detection and Prevention.Our goal is to offer ruleset for passive monitoring based on your Security Policy , Compliance and Business making your security tools know your business and not only your network.
Know more about dynsec at http://www.dynsec.com.br
(Computer & Network Security industry)
2007 — Present (2 years)
(Computer & Network Security industry)
January 2005 — Present (4 years 7 months)
- Snort speaker in brazilian Open Source and Security conferences.
- Trainings
- Papers / Articles about Snort
- Snort Evangelist
- Project Snort Malwares-BR Rules coordinator and analyst
(Computer & Network Security industry)
June 2008 — February 2009 (9 months)
- Installation, maintenance, setup and tuning SourceFire Network Security products (www.sourcefire.com).
- Snort Evangelist @ Brazil
- SIEM Arcsight
- Writing Snort Rules for costumer based on their business and network topology
- Log Analysis
- Incident Response
- Intrusion Detection presentations for costumer
(Privately Held; 51-200 employees; Computer Software industry)
October 2004 — April 2008 (3 years 7 months)
Currently Security Team member working as BRconnection products pentester and vulnerability researcher.
During my vulnerability researchers I try to figure out how we could change our product to improve security to our costumers.
I usually speak in security and opensource conferences about Security in Depth, Penetration Test and in special about log analyze (OSSEC) and Intrusion Detection with Snort IDS. Beside that confereces I'm BRconnection speaker to costumers and future costumers talking about trends, threats, firewall and how our solution mitigate those problems.
(Privately Held; 11-50 employees; Internet industry)
December 2002 — December 2003 (1 year 1 month)
DoctorData is a corporate Internet Provider locate in Sao Paulo. In 2002/2003 DoctorData hosts around 600 companies domains in different environment as Linux , FreeBSD and Win2000. It also provider Dialup and BroadBand internet connection. I work as Systems Administrator / Support Analist of access and services . Linux and Windows 2000 Administration. Development of systems using Perl, PHP and MySQL. Linux server of email (qmail), www (apache), bandwidth, DNS, radius, ftp, proxy, Firewall, IDS (Snort) and customers servers (Samba, Proxy, Gateways). Development of System management (PHP) and virtual store (PHP).
(Privately Held; 51-200 employees; Computer Software industry)
January 2002 — December 2002 (1 year)
Systems Administrator. Software House (SGDB, Terminals Emulators) and devices(RAS, Communication servers, terminals, Thin Clients Linux and Windows). Security software implementation, tests for hardware homologation, implementation of diferents types linux based projects.
Computer 2008 — 2010 (expected)
Penetration Tests , Intrusion Detection System (Snort , Prelude), Firewall, Host IDS, The Open Web Application Security Project (OWASP) - Brazilian Chapter , fuzzing, bugs, Packet Analyze, Log Analyze