
Thiago Goncalves
Senior IT & Cybersecurity Specialist | IT Infrastructure & Systems Administration | Penetration Testing | Risk Reduction & Cost Savings
Professional Summary
Cybersecurity founder and penetration tester with 20+ years of IT experience and 3+ years of offensive security specialization. Founded Hackerware (2022) and independently built two enterprise security platforms: Red Archives (blockchain-based evidence preservation) and Continuity (AI development productivity tool). Combines deep offensive security expertise with full-stack security product engineering. Drove over $85K in cost savings at ShineOn and ranked in the top 250 in the US on TryHackMe. CEH certified.
Experience
Founder & Solo Developer
Hackerware1337 · Freelance
Jun 2022 - Present · Remote
Founded a cybersecurity software company, independently developing enterprise-grade security and productivity tools from concept to deployment.
Red Archives - War Crimes Evidence Platform
- Architected a blockchain-based platform for ICC/tribunals to preserve evidence of war crimes, addressing the deletion of over 15,000 videos in 10 days.
- Implemented a zero-trust architecture with AES-256 encryption, AI deepfake detection, and distributed storage for a 99.9% SLA design.
- Designed a nation-state level threat model and a secure multi-jurisdictional collaboration system.
- Managed the full lifecycle: field collection → AI verification → blockchain anchoring → distributed storage → court-ready documentation.
Tech Stack:
Blockchain, AI/ML, Geographic Redundancy, Cryptographic Hashing, RBAC
Continuity - AI Development Context Manager
- Developed a commercial VS Code extension and CLI with MCP server integration for major AI code assistants.
- Engineered TypeScript AST parsing for documentation and delta tracking, and a file protection system to detect exposed secrets.
- Built a cross-platform architecture (Windows/macOS/Linux) with auto-sync, configurable token limiting, and decision logging.
- Created an interactive CLI with commands for project initialization, syncing, logging, searching, and configuration.
Tech Stack:
TypeScript, Node.js, Webpack, MCP, File Watchers, VS Code Extension API
Senior Information Technology Specialist
ShineOn · Full-time
May 2022 - Present · St Petersburg, Florida
- Delivered over $85K in annual savings through strategic SaaS audits, license optimization, and vendor renegotiation.
- Consolidated disparate security systems (access control, cameras, network) into a unified Ubiquiti environment, significantly reducing the attack surface.
- Spearheaded company-wide Jira adoption and served as the primary escalation point for all critical IT incidents.
- Authored and enforced IT compliance policies for access control, data handling, and disaster recovery, maintaining 99.9% system availability.
- Reduced organizational risk via systematic system hardening, rigorous patch management, and improved access control protocols.
Pentester / IT Specialist
Quantum IT · Freelance & Self-employed
Jun 2003 - Present · Apollo Beach, Florida
Provided offensive security assessments for SMB/enterprise clients, translating technical findings to business risk. Also managed comprehensive IT infrastructure and systems.
- Conducted end-to-end penetration tests on networks, web apps, and cloud infrastructure, identifying OWASP Top 10 vulnerabilities.
- Utilized Burp Suite, Nessus, Nmap, Metasploit, and custom scripts to execute SQL injection, XSS, and authentication bypass tests.
- Produced executive-level risk reports with CVSS scoring and actionable remediation guidance aligned with NIST, ISO, and HIPAA standards.
- Managed Windows/Linux servers, Active Directory, Group Policy, and virtualization platforms.
- Designed and secured network architectures with VLANs, firewalls, and VPNs.