Command Palette

Search for a command to run...

hi, I'm

João Ferro

Building security-first systems and automating security workflows.
With 🧡 from Lisbon, Portugal.

Work

Projects

Vulnerability Management Platform

2025-current

Company - Production

FastAPI backend paired with a Next.js frontend to centralize vulnerability tracking. Used Alembic to manage database migrations. Replaced fragmented and isolated workflows with a structured, searchable interface — reducing triage overhead and enabling data-driven remediation prioritization.

FastAPINext.jsPythonPostgreSQLSecurity

Security by Design & TPRM Platform

2024 - current

Company - Production

Full-stack Django application automating Security by Design (SbD) requirements and Third-Party Risk Management (TPRM) requirements/workflows. Integrated automated compliance/security checks while exploring best practices of GitLab's CI/CD pipelines. Worked with Power BI to create dashboards for risk and data visualization.

DjangoPythonGRCCI/CDDevSecOpsPostgreSQLPower BIPhishing

Personal Homelab

2024 - current

Personal

Self-hosting a Fedora Server infrastructure running several services such as Vaultwarden, Portainer, Uptime Kuma — containerized via Docker. Custom Python and Bash scripts in order to automate monitoring, health checks, and backups. Primary environment for security research and network testing via virtualization.

DockerLinuxPythonBashSelf-hostedFedora

Say hello

Get in touch

Open to new opportunities, collaborations, and interesting conversations.