Spain
Research on the cyberthreat attribution model based on the analysis of technical evidence and IoCs (Indicators of Compromise). It also consisted in a bibliographic analysis of specialized documentation, academic papers, and real-world cases to establish an attribution framework.
The role included Proactive Monitoring by conducting active Open Source Intelligence (OSINT) monitoring and generating intelligence reports focused on detecting cyber threats, reputational risks, and physical threats directed at executives and the organization. Furthermore, the position covered the Analysis of fraudulent applications, digital identity, and website impersonation.
The role involved implementing Data Loss Prevention (DLP) policies, with a focus on reporting and prevention of Data Leaks across the corporation. It also required administering Client Identity and Access Management (CIAM), including the design and optimization of approval workflows and conducting periodic permission reviews. Furthermore, the position ensured ongoing GDPR compliance and prepared risk and incident reports for the CISO, alongside managing internal IT security incidents.
Cyber Defense Market | Product Owner (2023 - Currently) Product Owner (PO), leading the development of critical Cybersecurity solutions for strategic programs, including those funded by the European Commission and the Ministry of Defense. This role involves coordinating teams through the complete product development lifecycle (from design to implementation) and ensuring strict adherence to strategic objectives and security requirements. Acts as the main point of contact for coordination of stakeholders and consortia in innovation projects within the Cyber Defense sector. Air Traffic Management (ATM) Market | Cybersecurity Consultant (2021-2023) Delivery Management for the ATM sector, successfully coordinating and managing technical teams in the delivery of essential cybersecurity reports, including Penetration Testing, Risk Analysis, and Threat Modeling. Ensured strict regulatory compliance (ISO 27001, ENS, OWASP) across all project phases and served as the key client liaison for all cybersecurity requirements and deliverables in European projects.