Skip to content
HENDRICH

I break into systems the way an adversary would.

I’m Arthur Hendrich, a senior cyber security analyst at Accenture working in offensive security and adversary emulation. Cloud native estates, custom offensive tooling, and the full attack lifecycle from first foothold to executive readout.

Certifications

9 held3 OffSecOSEPOSWEOSCP+CRTP
arthur@hendrich: ~

/SELECTED WORK

View all articles ↗

/EXPERIENCE

Senior Cyber Security Analyst Accenture

May 2025 to Present
Remote, USARed TeamCurrent
  • Run red team and adversary emulation on major cloud and multinational engagements, coordinating across the full attack lifecycle and aligning objectives with client stakeholders and executive sponsors.
  • Run continuous penetration testing and adversary emulation on large scale cloud native environments for a major global cloud provider, strengthening detection and hardening critical services.
  • Build custom malware and offensive tooling for red team initiatives, enabling realistic simulations of advanced threat actors and improving EDR and XDR coverage.
  • Test iOS and Android applications, and probe LLM and machine learning models for prompt handling, access control, data exposure and weaknesses in AI integrated workflows.
Red TeamCloudAdversary EmulationMalware DevMobileAI/LLM

Senior Application Security Analyst Hurb

Nov 2024 to May 2025
Remote, BrazilAppSec / DevSecOps
  • Owned the application security and DevSecOps program end to end, driving vulnerability remediation across engineering squads alongside the DevOps and FinOps teams.
  • Shifted security left across the software development lifecycle, wiring SCA, SAST, DAST and RASP into GitHub pipelines with SonarQube, Semgrep, Trivy, Snyk, Tenable, SentinelOne and GitGuardian.
  • Delivered controls against card skimming, supported PCI DSS 4.0 audit preparation, and built Attack Surface Management to reduce exposure.
DevSecOpsAppSecSAST/DASTSCARASPPCI DSS

Information Security Analyst Facilit Tecnologia

Aug 2022 to Nov 2024
Remote, BrazilSecure Development
  • Enabled secure development across engineering and QA, establishing secure GitHub workflows, code review standards and automated security testing.
  • Ran SAST and DAST with Fortify, remediating vulnerabilities before release.
DevSecOpsSecure SDLCFortifyGitHub

/CREDENTIALS

OSEP

Offensive Security Experienced Pentester

OffSec · 2026

OSWE

Offensive Security Web Expert

OffSec · 2026

OSCP+

Offensive Security Certified Professional Plus

OffSec · 2026

eMAPTv3

Mobile Application Penetration Tester

eLearnSecurity · 2026

CRTP

Certified Red Team Professional

Altered Security · 2025

eWPTX

Web Application Pentester eXtreme

eLearnSecurity · 2024

CEH

Certified Ethical Hacker, Practical

EC Council · 2024

eCPPTv2

Certified Professional Penetration Tester

eLearnSecurity · 2024

DCPT

Desec Certified Penetration Tester

Desec Security · 2023

Education

Cesar School

Recife, Brazil

  • Master's in Software Engineering2026 to Present
  • Bachelor's in Computer Science2022 to 2025

/WHAT I DO

Have a system you want tested?

Red team, offensive assessment, or a second opinion on a hard target. Tell me what you are protecting.

arthuralenc@gmail.com