LEONARDO NEVES BERNARDO
Rua das Grumixamas, ***. apt 8/502 - São Paulo, SP, Brazil.
+55-11-952**-**** - ********.*****@*****.***
https://br.linkedin.com/in/leonardoneves
Career Overview
Over 20 years' experience in the IT area with a focus on infrastructure and information security areas.
Expert in Linux and free software, holding almost a dozen Linux and information security related certifications.
I have built, rebuilt, organized and protected networks and services for many companies.
Skills
Linux
Unix
AIX
Solaris
HP-UX
Red Hat
Suse
Debian
Security
LDAP protocol
Openldap
IBM TDS
DNS protocol
Bind
DHCP protocol
Nagios
Cacti
Arcsight
(r)Syslog
Firewall
Iptables
Samhain
Nessus
Snort
Selinux
Ipsec
Openswan
AWS
Vmware
Kvm
Xen
Heartbeat
Voip
Asterisk
TCP/IP
Jenkins
OpenStack
Postfix
Qmail
Sendmail
Bacula
Amanda
Apache
Squid
Postgresql
Mysql
DB2
Sybase
SQL language
Shell script
Python
PHP
Perl
Puppet
Subversion
Ansible
Tomcat
Ethernet
Netbios/CIFS
Aide
Certifications
LPI-300 Mixed Environment
LPI-301 Core
LPI-302 Mixed Environment
LPI-303 Security
RHCSA RHEL5
ITILv3 Foundations
ISO 27002 Foundations
NCLA
NDTS
Work Experience
Senior Analyst - Information Security Jul/2011 to Jul/2015
Porto Seguro S/A – www.portoseguro.com.br
Experience with large production environment. Planning and implementation of Linux, AIX and HP-UX hardening. Migration from sudo/sudoers to sudo+ldap. Management/migration/troubleshooting of authentication services (IBM Tivoli Directory Server infrastructure). Definition and collaboration of security standards for Linux, AIX and HP-UX operating systems, network, database and systems architecture. Installation and managemement of HIDS Samhain. Security Assessment of operation systems. Restructure of DNS services using security best practices. Installation and managemement of SIEM Arsight. Provided training for trainees and junior colleagues.
Senior Analyst - IT Infrastructure Oct/2008 to Jun/2011
Bicbanco – www.bicbanco.com.br
Experience in a critical production environment. Linux and AIX administration, including configuration, troubleshooting, and automation. Database administration (IBM DB2 and MySQL). Implemented OpenLDAP multi master replication servers with ppolicy and syncrepl; Management of e-mail servers, webserver, printing servers, Version Control System (PVCS), Web Proxies, DNS servers, and others. Restructured monitoring systems.
Senior Analyst - IT Infrastructure Dec/2007 to Oct/2008
IG – www.ig.com.br
Coordination of the incident team. Experience with large production environment. Linux administration, including configuration, troubleshooting, and automation. Database administration (MySQL). Automation procedures using puppet software for hundreds of servers. Implemented centralized authentication with OpenLDAP, including ppolicy, SSH keys and sudo. Hardening of hundreds of servers. Management of LDAP, Version Control System (Subversion), webservers, application servers, DNS servers, Monitoring Systems, and others.
Senior Analyst - IT Infrastructure Aug/2007 to Dec/2007
Motorola/Solvo - www.motorola.com / www.solvo.com.br
Responsible for R&D (Research & Development) IT environment. Management of Solaris servers, under VCS (Veritas Cluster). Collaboration of AIX, HP-UX and Linux management.
Senior System Administrator Apr/2004 to Jul/2007
Prosul Engineering - www.prosul.com.br
Management of email servers, webservers, fileservers, firewalls, proxies, DNS servers. Authentication servers, terminal services, voip systems, version control systems, printing servers, backup, monitoring, VPN and others. Define security policy of company. Collaboration of ERP implementation. Management of DBMS (MySQL, PostgreSQL and IBM DB2).
System Administrator Apr/1996 to Apr/2004
University Hospital UFSC - www.hu.ufsc.br
Management of email servers, webservers, fileservers, firewalls, proxies, DNS servers, authentication servers, printing, backup, monitoring and others. Development of web softwares with PHP language.
Education and Training
BS Computer Science 1998-2003
Federal University of Santa Catarina/UFSC (Universidade Federal de Santa Catarina/UFSC)
Telecommunications Technician 1992-1995
Federal Technical School of Santa Catarina (Escola Técnica Federal de Santa Catarina)
Training:
Jenkins and Build Automation
Apache Tomcat 8 Application Server
Puppet DevOps Deployment
OpenStack
AWS Certified Solutions Architect
Advanced Threat Defense
Security Officer Advanced
Security Officer Foundation
ITILv3 Foundations
COBIT Foundations
PMP Foundations
OpenLDAP
Asterisk
Terminal Services Linux
Publications
Title: Peer to peer authentication for non-adjacent LSRs in LDP;
5th Symposium on Information Security - 2003
Aeronautical Institute of Technology (ITA);
Authors: Morvan Daniel Müller, Carlos Becker Westphall, Carla Merkle Westphall and Leonardo Neves Bernardo
Hackin9 Magazine (www.hackin9.org):
- Secure Log Server With Rsyslog (Cover Article) – November/2011
- Best Practices in UNIX Access Control with SUDO - November/2011
- Secure OpenLDAP Infrastructure - December/2011
- OpenSSH Good Practices - January/2012
BSD Magazine (www.bsd.org):
- Best Practices in UNIX Access Control with SUDO - July/2015
- Secure Log Server With Rsyslog (Cover Article) – August/2015
Languages
English – Advanced.
Portuguese – Native