d
danielracho

Daniel R

@danielracho

Software Engineer Backend Security

Schweden
Schwedisch, Englisch
Einige Informationen werden in englischer Sprache angezeigt.
Über mich
I am a Software Engineer specializing in Backend and Security with extensive experience in system design, API development, and infrastructure. I have a strong focus on IAM, authentication, and integrating security controls into CI/CD pipelines. My expertise includes Java, Spring Boot, Docker, and architecting robust, scalable systems for organizations like the Swedish Police and Scania.... Mehr lesen

Kompetenzen

d
danielracho
Daniel R
offline • 
Durchschnittliche Antwortzeit: 1 Stunde

Meine Dienstleistungen

API & Integrationen
I will develop secure backend API solutions

Arbeitserfahrung

PoliceImage

Security engineer

PoliceImage • Vollzeit

Sep 2025 - Present11 mos

System & Technical Architecture: Led the end-to-end technical design of a new system, encompassing service boundaries, API architecture, data modeling, security frameworks, and containerized deployment. API Development & Maintenance: Designed and implemented REST and GraphQL APIs, prioritizing clean integration contracts, secure authentication, and long-term maintainability. Identity & Access Management: Engineered secure authentication and inter-service communication flows, leveraging JWTs for robust identity verification and authorization. DevSecOps & Pipeline Security: Embedded security into the core development lifecycle by integrating automated testing, secrets management, and code/dependency vulnerability scans into the CI/CD pipeline. System Modernization & Resilience: Led the re-architecture and partitioning of an existing system, successfully eliminating single points of failure to enable horizontal scaling and high availability.

Scania

Software Engineer (Backend & Security)

Scania • Vollzeit

Aug 2022 - Jan 20252 yrs 5 mos

Designed secure integration solutions and APIs focusing on principles like least privilege and minimized attack surfaces. Conducted security reviews of new solutions, analyzing authentication and authorization models to identify risks before implementation. Performed threat modeling alongside architects and development teams to define security requirements and mitigate risks early in the development process.