About
Network Security Engineer focused on practical, measurable security outcomes: reducing lateral movement, hardening ingress/egress, and building detection that operators trust. I work best where security is treated as engineering—clear threat models, predictable change control, and automation-first baselines.
Security Architecture
Trust boundaries, segmentation strategy, control selection, and audit-ready documentation.
Network Defense
Firewall policy engineering, VPN hardening, secure admin access, and safe rollouts.
Incident Response
SIEM mapping, alert tuning, triage workflows, and containment playbooks.
Automation
Policy-as-code, repeatable baselines, drift detection, and change governance.
Portfolio
Firewall Policy Audit
SIEM Implementation
Privileged Access Mgmt
CIS Benchmarks
Incident Response
Reviews
Nate delivered a clear segmentation strategy with phased rollout steps and rollback plans. The documentation was excellent and the team could execute without ambiguity.
Professional approach. Great change control discipline and strong attention to operational safety. We saw immediate improvements in manageability.
Experience
- Designed security architecture for networked systems
- Built detection pipelines and incident response workflows
- Implemented governance: review gates, change safety, baseline standards
- Maintained firewall/VPN posture with high availability requirements
- Improved telemetry coverage and ticketing workflows
- Universidade Federal do Paraná, Curitiba
- Focus on Network Systems and Information Security
- CISSP — Certified Information Systems Security Professional
- CCNP Security — Cisco Certified Network Professional
- CompTIA Security+
- AWS Certified Security — Specialty