e.g. ./screenshots/p1-dashboard.png
Cybersecurity · DevSecOps · Cloud Infrastructure
Building secure, resilient systems from threat detection pipelines to automated incident response. Passionate about bridging the gap between security engineering and software delivery.
End-to-end cybersecurity system for a simulated manufacturing company (Global-Tech Corp), inspired by the Colonial Pipeline (2021) and MGM Resorts (2023) breaches. Built a three-layer protection architecture and presented to industry jury from Grab Indonesia and Telkomsigma over 23 working days in a 5-person team.
Self-hosted SOAR platform integrated with Wazuh SIEM to autonomously detect and respond to SSH brute force and port scanning attacks — zero manual SOC intervention required. Hypothesis-driven triage pipeline with RFC 1918 IP enrichment, port-based severity classification, and full forensic audit trails.
Contributed to the official ITS data platform — the institution's single source of truth. Designed a comprehensive Pest PHP test suite across 3 core use cases covering integration, security, and database integrity layers. Also architected the full production deployment on Azure VM using Docker Compose with 5 services, nginx reverse proxy, and campus SSL.
On-premise SaaS helpdesk implementing database-per-tenant isolation architecture aligned with NIST Cloud Computing Reference Architecture (CCRA). Each tenant runs in a dedicated containerized environment with isolated PostgreSQL instance, eliminating cross-tenant data leakage. Full CI/CD pipeline automates from Git push to container redeploy.
Deployed an Express.js API to Azure VPS with a fully automated Docker-based CI/CD pipeline: a code push to GitHub triggers GitHub Actions, builds a Docker image, pushes to Docker Hub, and redeploys the container on the cloud VM automatically. Includes a /health endpoint for monitoring and end-to-end pipeline testing.
Open to cybersecurity engineering roles, DevSecOps positions, and research collaborations.
Let's build something secure together.