Ana Scolari profile photo

Ana Scolari

Senior Field AppSec @ GitHub

United States
500+ connections
Ana Scolari on LinkedIn

Updated 7 months ago

26+

Years Experience

8

Roles

21

Skills

3

Education

About

As a Lead Software Application Security Engineer, I play a pivotal role in bolstering our organization's defenses against cybersecurity threats. My responsibilities span across collaborating with multiple teams to instill security best practices and ensuring the integration of comprehensive security controls within our secure software development life cycle (SSDLC). I am proficient not only in deploying, but also in actively using critical security tools such as Static Application Security Testing (SAST), Software Composition Analysis (SCA), Dynamic Application Security Testing (DAST), Secret Scanning, and Threat Modeling. My role includes scanning, triaging, and automating their use in our Source Code Management (SCM) system, effectively shifting left our security controls to integrate security earlier in the development process. I lead crucial security projects that were instrumental in meeting FedRAMP certification requirements, showcasing my expertise in aligning our security protocols with stringent federal standards. Beyond technical implementations, I contribute to audit and incident reviews, providing expert analysis and recommendations. I also head the Application Security Champions program, fostering a culture of security awareness and skill enhancement across the engineering teams. Additionally, I conduct security brownbags, delivering vital security insights and training to the entire engineering department, thereby empowering them to prioritize and implement robust security practices in their workflows. I am an energetic, passionate, and enthusiastic engineer who loves what I do, consistently communicating with exceptional clarity and effectiveness to drive security initiatives forward.

Experience (8 roles)

GitHub · Full-time

Senior Application Security Engineer

Current

GitHub · Full-time

Nov 2024 - Present · 10 mos
Full-time · 3 yrs 4 mos

2 roles · Aug 2021 - Nov 2024

Lead Application Security Software Engineer

Mar 2023 - Nov 2024 · 1 yr 9 mos

Skills: Software as a Service (SaaS) · Security · Automation · Risk Analysis · Penetration Testing · Threat Modeling · Oral Communication · Communication · Threat & Vulnerability Management

Sr. Application Security Software Engineer

Aug 2021 - Mar 2023 · 1 yr 8 mos

Skills: Software as a Service (SaaS) · Security · Automation · Risk Analysis · Penetration Testing · Threat Modeling · Oral Communication · Communication · Threat & Vulnerability Management

Gainwell Technologies · Full-time

Staff Software Engineer - Security Champion

Gainwell Technologies · Full-time

Oct 2020 - Aug 2021 · 11 mos·California, United States

Skills: Software as a Service (SaaS) · Security · Risk Analysis · Penetration Testing · Oral Communication · Communication · Threat & Vulnerability Management

Is this your profile, Ana?

Claim it to keep it updated or request removal.

Claim or Remove

Education (3)

Pontifícia Universidade Católica do Rio Grande do Sul

Pontifícia Universidade Católica do Rio Grande do Sul

Stanford University

Stanford University

Pontifícia Universidade Católica do Rio Grande do Sul

Pontifícia Universidade Católica do Rio Grande do Sul

Skills (21)

Oral CommunicationVulnerability AssessmentThreat & Vulnerability ManagementDesign PatternsPenetration TestingScrumCommunicationWeb ApplicationsSoftware EngineeringSoftware as a Service (SaaS)Software Project ManagementRisk AnalysisAutomationSecurityDistributed SystemsGitHubSoftware DevelopmentThreat ModelingAgile MethodologiesObject Oriented DesignSoftware Design
Certifications (1)

Interprofessional Healthcare Informatics

Coursera

Languages (3)
EnglishPortugueseSpanish

Frequently Asked Questions

What is Ana Scolari's current role?
Ana Scolari is currently working as Senior Application Security Engineer at GitHub · Full-time.
Where did Ana Scolari study?
Ana Scolari studied Master, Computer Science at Pontifícia Universidade Católica do Rio Grande do Sul. They have 3 education entries on their profile.
What skills does Ana Scolari have?
Ana Scolari's top skills include Oral Communication, Vulnerability Assessment, Threat & Vulnerability Management, Design Patterns, Penetration Testing. They have 21 skills listed on their profile.
Where is Ana Scolari based?
Ana Scolari is based in United States.

Related Jobs

View all jobs →

Other Profiles

Browse all →

Looking for your next role?

Chat with Clera to discover job matches, salary insights, and get a polished AI-generated resume.

Chat with Clera

This profile is based on publicly available information. Ana is not affiliated with or endorsed by Clera. Privacy Policy