Enterprise Security Architecture & AppSec
Establishing defense-in-depth through systematic threat modeling (STRIDE, PASTA), OWASP ASVS/SAMM frameworks, and automated DevSecOps pipelines integrated into CI/CD environments.
> BIOS_CHECKSUM: OK | KERNEL_LOAD: 0x00007FFD... ACCESS_GRANTED
> IDENTITY: Daniel Gonçalves Araujo [@dandgabr]
> ROLE: Information Security Architect @ Dasa
> SPECIALIZATION: Enterprise Defense | AI Safety & Hardening | AppSec & DevSecOps
Architecting resilient enterprise defenses, forging containment frameworks for autonomous AI agents, and establishing continuous DevSecOps governance.
Operating at the intersection of Enterprise Defense Architecture and Emerging Autonomous Tech, I engineer security frameworks that prevent exploitation before code reaches production and isolate autonomous agents operating in developer workspaces.
My engineering approach is rooted in systems programming, microcontroller diagnostics, and threat containment. With 4+ years of academic background lecturing algorithms, computer security, and electronics, I combine pedagogical clarity with technical rigor in application security, threat modeling, and secure software development lifecycles.
Establishing defense-in-depth through systematic threat modeling (STRIDE, PASTA), OWASP ASVS/SAMM frameworks, and automated DevSecOps pipelines integrated into CI/CD environments.
Pioneering practical sandboxing for developer AI tooling. Designing MCP (Model Context Protocol) validation layers and agent skill frameworks to prevent prompt injection and tool misuse.
Automating security policy enforcement, infrastructure hardening (CIS Benchmarks), container integrity, and compliance controls across multi-cloud environments (AWS & Azure).
Enterprise defense design, policy enforcement, and resilient DevSecOps integration.
Hardening autonomous agents, sandbox containment, and protocol-level integration.
Enterprise cloud defense, operating system hardening, compliance baselines, and infrastructure security.
Languages and automation pipelines for rapid validation and reproducible reporting.
Automated security hardening framework designed for AI-assisted development environments. Implements sandbox verification, API token boundary enforcement, and permission audits.
A battle-tested ecosystem of standardized, modular skills engineered for AI coding agents, multi-agent orchestration, and developer assistants.
Model Context Protocol (MCP) server interface for Cheat Engine, enabling programmatic inspection, process automation, and security telemetry for AI assistants.
Automated scripts for security auditing, CIS baseline compliance validation, file permission anomaly detection, and kernel parameter enforcement across Linux servers and developer workstations.
Modular presentation deck theme designed for Typst using Polylux, inspired by Google Developer Groups visual identity, accompanied by technical talk materials including Quantum Computing Fundamentals.
Globally recognized credential validating foundational and operational cybersecurity proficiency: network architecture security, threat analysis, incident response, cryptographic controls, and risk governance.
Specialized research and development in machine learning paradigms, deep neural architectures, heuristic optimization, and automated decision-making models.
Comprehensive engineering foundation: circuit analysis, analog/digital signal processing, embedded systems, microcontrollers, control theory, and hardware-level computer architecture.
Taught undergraduate courses in Information Security, Algorithms and Data Structures, Analog and Digital Electronics, and Embedded Microcontrollers. Mentored future engineers in algorithmic thinking and secure systems design.
Available for technical dialogues on enterprise defense architecture, AI agent safety research, threat modeling workshops, and community speaking engagements.