Fernando Fresteiro
@fernandofresteiro
Offensive security specialist delivering red-team pentesting and vulnerability remediation.
What I'm looking for
I’m an Offensive Security Specialist focused on Offensive Security (OffSec) execution—running continuous penetration tests, Red Team operations, and vulnerability research across digital ecosystems. Across Icatu Seguros, B2W Digital, Telefônica VIVO, and iFood, I manage the vulnerability lifecycle and partner with development teams to drive effective remediation.
I bring deep hands-on expertise across web, mobile, network, and wireless testing, including exploitation and reconnaissance automation with custom scripts. I’ve led Bug Bounty program triage and coordinated rapid patching, and I’m currently architecting proactive Attack Surface Management (ASM) solutions that integrate automation and LLMs for actionable technical insights and executive-level KPIs.
Experience
Work history, roles, and key accomplishments
Conducted IT risk assessments through an offensive lens and architected proactive Attack Surface Management (ASM) solutions. Integrated automation and LLMs to streamline threat prioritization and deliver actionable technical insights and executive-level KPIs.
Security Specialist (OffSec)
Jusbrasil
Sep 2024 - Sep 2025 (1 year)
Performed web penetration tests and supported Attack Surface Management (ASM) implementation. Built headless crawling solutions and other techniques to avoid blocking during reconnaissance.
Performed security assessments for microservices and cloud-native applications, focusing on identifying and mitigating vulnerabilities. Managed the Bug Bounty program by triaging reports and coordinating rapid patching with internal squads, and implemented controls to prevent fraud and data leakage.
Security Specialist (OffSec)
Telefônica Vivo
Oct 2020 - Jul 2022 (1 year 9 months)
Executed large-scale infrastructure penetration tests and network security assessments across legacy and cloud architectures. Developed custom scripts for automated reconnaissance and exploitation to protect critical telecommunications data.
Security Specialist (OffSec)
B2W Digital
Sep 2019 - Sep 2020 (1 year)
Performed advanced penetration testing on web and mobile platforms for major e-commerce brands, focusing on business logic and API security flaws. Collaborated with AppSec to integrate automated scanning tools and promote secure coding practices across engineering chapters.
Senior Security Analyst
Icatu Seguros
Mar 2017 - Sep 2019 (2 years 6 months)
Led the Offensive Security (OffSec) front, performing continuous penetration testing and Red Team operations to identify critical flaws across the digital ecosystem. Managed the vulnerability lifecycle and supported development teams with technical remediation guidance.
Education
Degrees, certifications, and relevant coursework
Estácio de Sá University (UNESA)
Bachelor’s Degree in Information Systems, Information Systems
Earned a Bachelor’s Degree in Information Systems from Estácio de Sá University (UNESA).
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Fernando?
You can contact Fernando and 90k+ other talented remote workers on Himalayas.
Message FernandoFind your dream job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
