Security Consultant, Blockchain enthusiast, Pseudo Data Scientist, Amateur Photographer
Hire MeDownload CVHi! I am Marco Trancoso Vaz. Information Technology Security specialist, Blockchain enthusiast, Data Scientist wannabe, hobbyist developer and photographer.
With over 25 years of professional expertise, I've specialized my skills on different areas such as, Management, Compliance, Security, Delivery and many others. Former CISO, DevOPs, Blue Team, ISO and other frameworks senior consultant. Learn More
As a goal, I want to continue learning, applying the knowledge that I continually acquire, which allows me to help organizations design, implement and acquire the necessary levels of operability in line with the objectives of their business.
Present Objectives
Recognized for establishing security policies/procedures and deploying associated infrastructure to effectively mitigate risk to systems and data, throughout the years I've specialized in large automation process, design and development, as an implementation/delivery security consultant for major Portuguese consultancy companies. Areas related to Research, Data science, AI, ML, Blockchain, to IT Management, Blue Teaming, infrastructure, co-located / on-premise data centers, public clouds, private and hybrid (SaaS, PaaS, IaaS) (AWS, Azure, Google), to DevOPS (Microsoft Team Foundation Server, Git, etc.), to Implementation of automatisms for provisioning, monitoring and all the information security related ramifications in general are my first focus of interest. Remote work is a plus, as well as payment in bitcoin, monero, xlm, xrp, or zcash.
As Chief Information Security Officer, was responsible for the design, implementation, management of, and provision of expert advice on, the selection, justification, implementation, operation and assurance of group wide information security controls, processes and management strategies to maintain confidentiality, integrity, availability, and accountability, in order to protect company assets in line with applicable legislation, regulation and relevant best practice standards. Also providing leadership in relation to Information Security and Business Continuity matters, working effectively with business functions at all management levels as to provide authoritative advice and guidance on the requirements for security controls and best practices.
In 2009 I was proposed the challenge to open a company branch in Angola, wich was the company first International quest. Having double nationality and family actually living there, helped my decision on taking full responsibility for local operations in Angolan territory. Mission included ensuring office's operations, aligned with the organisation’s mission, strategic objectives and policies. Managing staff, overseeing projects and sales, ensuring the organisation follows local laws and regulations, liaising with management at the main office and providing reports on activities, ensuring proper financial controls are in place. Five years management experience and four years of experience in an international environment.
Joined as an IT security engineer responsible for developing, implementing, administering and evaluating information security standards. Over the years, I consolidated expertise in security risk assessment, compliance, and IT governance becoming a security specialist with 20 years’ of technical, architectural, project management, data protection & GRC (Governance, Risk Management & Compliance) consultancy experience around co-located/on-premise data centres & public, private & hybrid clouds (SaaS, PaaS, IaaS). Projects ranged from endpoint security and DLP integration, infrastructure security, firewall systems, computer and network forensics, network security scans for PCI, SOX and HIPAA requirements, NOC/SOC administration, DevOPS, ISO 27001/27002, IT Risk Management and Disaster recovery, Security Awareness, etc.
Senior Security Consultant responsible for leading Security Consultancy Projects and integrating security solutions at CMVM, BCP Group and various public organizations. Responsible for the overall plan setting for the implementation and safety of CCCA homebanking multichannel architecture in conjunction with Microsoft Consulting Services. Designed and implemented Security Policies for Caixa-Geral de Depósitos in conjunction with Microsoft Consulting Services. Led the implementation of multi tier Security Architecture design, and DR security plan for TOP Atlântico Group.
Challenged to create and lead as Head Coordinator of the Security Dept. at Promosoft group, was responsible for the OTP remote access architecture design and platform implementation, to the BCP Group in conjunction with Microsoft Consulting Services. Performed integration of perimeter security solutions in various public organizations, including the design, implementation and management of cross security architectures.
Accumulated functions as System Administrator and Consultant at Marketlink, SA a Company from AITEC group, specialized in electronic payment systems, technology, architecture development, implementation consulting and integration with overall guidance on Security in Information Technology Systems. Responsible for the implementation and management of electronic payments platform and its connections to SIBS and Unicre, for Pmelink.pt portal, among others.
My professional carrer begun at SAS Institute, Portugal, where I accumulated functions as IT Administrator and SAS consultant. Performed implementation projects and consulting for Bank of Portugal , Caixa Geral de Depósitos (Portuguese public bank) , Portugal Telecom, Portuguese Comercial Bank (BCP) Group, Insurance Company Tranquilidade , Insurance Company Mundial Confiança, etc. Proven expertise in SAS products on various platforms (Unix , Mainframe , AS / 400 , Microsoft, Solaris,HP-UX,etc).
Universidade Autónoma de Lisboa
"The Computer Engineer is a technician of high specialization, deep knower of the smallest details of the structure of technological support to the Information Society. It has the mastery of the tools and technologies of Information Systems (SI) construction and the ability to integrate the different parts of the IT building and the dimensioning of its infrastructure. He has excellent knowledge of Information Technologies and the perspective of building integrated and integrated solutions." - Excerpt from Course Curriculum Webpage
Universidade LusÍada de Lisboa
"The objective of the degree in Economics is to provide professionals who, in the field of economic affairs and related areas, are able to perform technical advisory, planning and evaluation and management functions, having acquired, for this purpose, relevant theoretical knowledge, analysis techniques and representation of the reality and the respective transmission, in supports appropriate to several interlocutors." - Excerpt from Course Curriculum Webpage
"The scientific-humanistic courses constitute an educational offer aimed at the pursuit of higher education studies (university or polytechnic). They are destined to students who have completed the 9th year of schooling or equivalent. They last for 3 academic years, corresponding to the 10th, 11th and 12th years of schooling. They award a high school diploma (12th grade) as well as the qualification level 3 of the National Qualifications Framework (NQF)." - Excerpt from Webpage
(by business sector)