πΉ Python Developer | Cybersecurity Engineer at SIA (Indra Group)
πΉ Specialized in Secure API Development & Automation
Iβm currently working at SIA (Indra Group), specializing in cybersecurity solutions, API integrations, and automation. My focus is on secure software development, implementing SOAR (Security Orchestration, Automation, and Response) solutions, and enhancing threat detection through AI and cloud technologies.
- Advanced Cybersecurity Practices β Secure DevOps, API security, and cloud security.
- SOAR & SIEM Integration β Splunk Phantom, IBM Resilient, and Cortex XSOAR.
- Cloud Security β AWS Security Hub, GuardDuty, and IAM best practices.
- Cybersecurity API development β Integrating security tools with Python.
- Threat intelligence automation β Automating detection and response to cyber threats.
- Cloud security projects β Enhancing AWS, Azure, and GCP security.
- Optimizing cybersecurity automation workflows.
- Implementing AI-driven threat detection models.
- Exploring new SOAR strategies for incident response.
- Secure API Development (Django, Flask, FastAPI, DRF).
- Cybersecurity Integration & SOAR Workflows.
- Threat Intelligence & Incident Response Automation.
- Python Automation & Cloud Security.
π§ Email: rosendoarturomendoza@gmail.com
π LinkedIn: Rosendo Mendoza
π GitHub: rosendomendoza
He/Him
I started my career as a software developer but quickly became fascinated by cybersecurity, realizing that writing secure code is as crucial as writing efficient code. Now, I combine my passion for development with cybersecurity to build robust, attack-resistant applications.
β
Python β Django, Flask, FastAPI, Streamlit
β
API Security β OAuth2, JWT, API Gateway
β
Testing β Pytest, unittest, pytest-django
β
Database Management β PostgreSQL, MySQL, SQLAlchemy
β
Incident Response Automation β Splunk Phantom, IBM QRadar, Cortex XSOAR
β
Threat Intelligence β VirusTotal API, Shodan, OpenCTI
β
Cloud Security β AWS Security Hub, IAM, GuardDuty
β
Vulnerability Analysis β OWASP ZAP, SonarQube
πΉ Tech: Python, Django, PostgreSQL, AWS
πΉ Features: API security (OAuth2, JWT), cloud storage (AWS S3), SIEM integration
πΉ Tech: Python, Splunk Phantom, SOAR Playbooks
πΉ Features: Incident triage automation, IP blocking, phishing detection
πΉ Tech: Flask, MySQL, PyWhatKit (WhatsApp API)
πΉ Features: Automated candidate notifications, job application tracking
π Bachelorβs Degree in Computer Engineering β Universidad Centroccidental "Lisandro Alvarado" (1992)
π Masterβs in Computer Science (Networks Specialization) β Universidad Centroccidental "Lisandro Alvarado" (2010)
π Degree Recognition (Spain, 2024) β Engineering & IT Technologies
- AWS Certified Solutions Architect (Associate)
- Networking in the Cloud & Web Security (Universidad de los Andes, 2013)
- Forensic Computing (UNAM, 2013)
- Cisco CCNA 200-125
- Python Mega Course (Udemy, 2023)
- Cybersecurity Master Program (IMF x Deloitte - Ongoing)
π 2024 β Present
- Development & integration of cybersecurity automation solutions.
- API security & authentication using JWT, OAuth2, DRF.
- SOAR automation with Splunk Phantom, QRadar & Cortex XSOAR.
- AWS security monitoring with GuardDuty & CloudTrail.
π 2019 β 2024
- Designed & developed secure APIs for multiple clients.
- Implemented real-time monitoring systems with Prometheus & Grafana.
- Integrated third-party security services (Threat Intelligence APIs).
- AWS administration, automation & security compliance.
π 2007 β 2023
- Taught courses in Networks, Programming & Cybersecurity.
- Led R&D projects in network security & distributed systems.
- Coordinated undergraduate & graduate programs.
π 1998 β 2003
- Led the automation of Venezuelaβs student transportation system (FONTUR project).
- Managed IT infrastructure, including network security & cloud solutions.
π 1993 β 1994
- Installed & maintained ATMs and banking infrastructure.
- Provided technical support & security audits for financial institutions.
I specialize in secure software development, API security, and automation of incident response using SOAR tools. My work focuses on integrating security solutions, automating threat detection, and hardening APIs against attacks.
I follow best practices like OAuth2, JWT authentication, API Gateway security policies, and rate limiting. Additionally, I implement automated security testing using DAST tools (OWASP ZAP) and static analysis (SonarQube).
I have experience with Splunk Phantom, Cortex XSOAR, and IBM QRadar for automating incident response workflows. I integrate these tools with Python scripts and cloud security services to improve detection and mitigation of cyber threats.
Yes! I integrate security into CI/CD pipelines using GitHub Actions, SonarQube, and automated security scanning to ensure that code meets security standards before deployment.
Absolutely! If you have an interesting cybersecurity or software development project, feel free to reach out.
π§ Email: rosendoarturomendoza@gmail.com
π LinkedIn: Rosendo Mendoza
π GitHub: rosendomendoza
