I started my career as a software developer 15 years ago. I worked profesionally with different languages and frameworks (Java, C#, PHP, Javascript, Python etc). Early on my career I caught interest on the security aspects of the software development, started a PhD on security, and started to do the security review from the applications being developed.
A couple of years ago I switched from a blue-team to a red-team security profile, starting a new position as Security Researcher for Faraday Security. The last years have been an amazing professional experience, I got the possibility to work with many well-known international companies and got experience in a lot of different technologies and security assessment methodologies (External, Internal, Blackbox and Greybox applications assessments).
During these years I've been working on different technologies, programming languages, so it was hard for me to find something I particularly liked or wanted to do with my professional career, till I got to do a Mobile application security assessment. It was a mix of Java/Objectvie-C/Swift, hardware knowledge, client-side exploitation, native OS library reversing, web application assessment (hybrid libraries) and an endless quantity of frameworks. I was fascinated by the experience and since the first assessment I started especializing my career on those technologies.