sumé
Red Team Lead · Principal Pentester · Security Researcher
Download PDF
Experience
Red Team Operator & Red Team Manager
Cybertrust, Devoteam — Lisbon, PT
Leading and operating Red Team assessments as Lead Red Team Operator under PCI DSS and TIBER-EU frameworks. Founded a purple team service offering. Deliver client-facing engagements in both Portuguese and English. Run internal and external workshops on penetration testing and secure code development.
Principal Penetration Tester
Integrity SA — Lisbon, PT
Performed penetration tests daily across Web Apps, APIs, Cloud (AWS, GCloud), Internal Networks, Active Directory, IoT, Android, and SCADA/OT environments. Founded and led the SCADA/OT penetration testing practice at Integrity. More recently conducted Red Team assessments targeting AI agents and integrations. Delivered detailed reports to clients including banks, insurance companies, start-ups, and governmental organisations.
CVEs & Research
CVE-2020-13639
Publicly disclosed vulnerability. Full details available via NVD / MITRE.
DISCLOSED
IEEE Publication
Paper published at the IEEE International Symposium on Network Computing and Applications.
RESEARCH
Certifications
OSCE3 — Offensive Security Certified Expert 3
Offensive Security
OffSec's most advanced certification, combining OSWE, OSEP, and OSED. Awarded to fewer than 1% of candidates.
OSED — Offensive Security Exploit Developer
Offensive Security
OSWE — Offensive Security Web Expert
Offensive Security
OSEP — Offensive Security Experienced Pentester
Offensive Security
WPTXv2 — Web Application Pentesting Extreme
eLearnSecurity
CRTP — Certified Red Team Professional
Pentester Academy
OSCP — Offensive Security Certified Professional
Offensive Security
Malware Analysis & Memory Forensics (On-site)
3-day intensive training
Education
M.Sc Information Systems & Computer Engineering
Instituto Superior Técnico, Universidade de Lisboa
Double major in Cyber-Security and Distributed Systems. Thesis merit award by AP2SI. Published paper at IEEE International Symposium on Network Computing and Applications.
B.Sc Networks & Computer Science Engineering
Instituto Superior Técnico, Universidade de Lisboa
Technical Skills
Languages
PythonCC#JavaJavaScriptBashSolidity
Offensive Tools
Burp SuiteCobalt StrikeNessusNMAPKali Linux
Domains
Web & APIActive DirectoryAWS / GCloud / Azure ADSCADA/OTAndroidWi-Fi
Specialisms
Red Team OpsPurple TeamAI SecuritySmart Contract AuditCAN Bus Research