ESC · CLOSE
Screenshot
Informatics Engineering · ITS Surabaya

Dea Kristin
Ginting

Cybersecurity · DevSecOps · Cloud Infrastructure

Building secure, resilient systems from threat detection pipelines to automated incident response. Passionate about bridging the gap between security engineering and software delivery.

DKG CYBERSECURITY
OPEN TO OPPORTUNITIES

Skills & Competencies

🛡️
Cybersecurity & SIEM
Wazuh SIEMMITRE ATT&CKIncident ResponseLog4ShellThreat DetectionPenetration TestingCustom Rules
SOAR & Automation
Shuffle SOARActive ResponseWebhook IntegrationTriage AutomationPlaybook DesignAlert Enrichment
🌐
Network & Infrastructure
pfSenseVLAN SegmentationHoneypot (Cowrie)OpenCanaryNmapSSH/RDP SecurityFirewall Rules
🐳
DevOps & Cloud
DockerDocker ComposeCI/CD PipelinesGitHub ActionsJenkinsAzure VMNginx ProxyLinux Admin
🧪
Testing & QA
Pest PHPIntegration TestingSecurity TestingAudit LoggingCSRF TestingEdge Case Analysis
🔧
Development & Monitoring
PythonLaravelElasticsearchGrafanaKibanaPostgreSQLRabbitMQOpenSearch
🎯 Project Management
📋 Technical Documentation
👥 Team Leadership
🎓 Teaching & Mentoring
🗣️ Stakeholder Communication
🔍 Analytical Thinking
🚀 Sprint Planning
📊 Risk Assessment
🤝 Cross-functional Collaboration

Featured Projects

01
Project Manager · Documentation Lead
On-Premise Integrated Threat Detection with Automated Active Response for Industrial Networks
Wazuh SIEMpfSenseMITRE ATT&CKCowrieGrafanaTelegram API
Featured

End-to-end cybersecurity system for a simulated manufacturing company (Global-Tech Corp), inspired by the Colonial Pipeline (2021) and MGM Resorts (2023) breaches. Built a three-layer protection architecture and presented to industry jury from Grab Indonesia and Telkomsigma over 23 working days in a 5-person team.

System Architecture
ATTACKER External Threat pfSENSE VLAN 30 DMZ VLAN 10 LAN Production VLAN 20 Management Cowrie / OpenCanary 🍯 logs WAZUH SIEM MITRE ATT&CK Rules Risk Score Engine Active Response Grafana · Kibana 🔒 BLOCK IP pfSense API · Auto 📱 TELEGRAM Alert Notification ⏱ < 30 sec end-to-end DETECTION · PREVENTION · DECEPTION
<30sAuto Response
6Attack Scenarios
3VLAN Zones
38GitHub Issues
Screenshots
02
SOAR Engineer · SOC Developer
End-to-End Incident Response Automation with Shuffle SOAR & Wazuh SIEM
Shuffle SOARWazuh 4.7.4Python 3Docker ComposeOpenSearch
Completed

Self-hosted SOAR platform integrated with Wazuh SIEM to autonomously detect and respond to SSH brute force and port scanning attacks — zero manual SOC intervention required. Hypothesis-driven triage pipeline with RFC 1918 IP enrichment, port-based severity classification, and full forensic audit trails.

Automation Workflow
Hydra/Nmap Simulate Attack WAZUH Agent /var/log/auth.log Rule 5551/5763 Rule 5706–5709 webhook SHUFFLE SOAR ① Validate Data ② IP Enrichment ③ Severity Class. ④ Execute Response HIGH Severity Block IP + Audit Trail LOW Severity Log for Monitoring 📄 Audit Trail Timestamp · IP · Rule Python 3 — datetime · re · json
2SOAR Workflows
0Manual SOC Steps
RFC1918IP Enrichment
Real-timeAlert Ingestion
Screenshots
03
DevSecOps · QA Engineer (Internship · DPTSI ITS)
MyITS OneData — Institutional Data Management Platform
Pest PHPLaravelDocker ComposeAzure VMElasticsearch 8RabbitMQ
Completed

Contributed to the official ITS data platform — the institution's single source of truth. Designed a comprehensive Pest PHP test suite across 3 core use cases covering integration, security, and database integrity layers. Also architected the full production deployment on Azure VM using Docker Compose with 5 services, nginx reverse proxy, and campus SSL.

Test & Deploy Architecture
TESTING LAYER UC-01 Data Source Mgmt CRUD · Soft Delete RabbitMQ · Audit Log UC-02 Role & Access Control CheckAdminRole CSRF · FK Constraint Idempotent Assign UC-07 Role Preset Config CRUD Role Preset Sync Pivot Table Cascade Delete Unique Constraint — 3 test layers — Integration Security DB Integrity PRODUCTION DEPLOY Azure VM · Ubuntu 22.04 nginx-proxy SSL · Reverse Proxy Laravel App Backend + API PostgreSQL 16 Database RabbitMQ 3.13 Message Queue Elasticsearch 8 Search Engine pgAdmin DB GUI Docker Compose — 5 services orchestrated docker-compose.prod.yml
3Use Cases Tested
5Docker Services
4Bugs Found
3-layerTest Coverage
Screenshots
04
DevOps · Backend Developer
Multi-Tenant SaaS Helpdesk Ticketing System with CI/CD Pipeline
DockerLaravelPostgreSQLJenkinsGitHub ActionsMulti-tenancy
Completed

On-premise SaaS helpdesk implementing database-per-tenant isolation architecture aligned with NIST Cloud Computing Reference Architecture (CCRA). Each tenant runs in a dedicated containerized environment with isolated PostgreSQL instance, eliminating cross-tenant data leakage. Full CI/CD pipeline automates from Git push to container redeploy.

Multi-Tenancy & CI/CD Flow
CI/CD PIPELINE Dev Push Git Commit Jenkins Pipeline Trigger Docker Build Image Create Deploy Container Up MULTI-TENANT ISOLATION Tenant A Laravel App Container A PostgreSQL DB Instance A Isolated | Tenant B Laravel App Container B PostgreSQL DB Instance B Isolated Architecture NIST CCRA No cross-tenant leakage Fault isolation
DB/TenantIsolation Model
0Data Leakage Risk
AutoCI/CD Deploy
05
Cloud Engineer · DevOps
Docker Image Deployment on Azure with CI/CD via GitHub Actions
Express.jsDockerDocker HubAzureGitHub Actions
Completed

Deployed an Express.js API to Azure VPS with a fully automated Docker-based CI/CD pipeline: a code push to GitHub triggers GitHub Actions, builds a Docker image, pushes to Docker Hub, and redeploys the container on the cloud VM automatically. Includes a /health endpoint for monitoring and end-to-end pipeline testing.

CI/CD Pipeline
① Git Push GitHub Repo Express.js API ② Actions GitHub Actions Workflow trigger ③ Docker Build Image create ④ Docker Hub Push Registry ⑤ Azure Deploy VPS · Container /health Endpoint Monitor Fully automated — zero manual intervention from commit to live deployment
AutoPush → Deploy
AzureCloud Platform
/healthMonitoring
Screenshots

Experience & Recognition

💻
Computer Network Assistant Lecturer
Institut Teknologi Sepuluh Nopember (ITS)
Assisted in teaching computer networking concepts, conducting lab sessions, and supporting students in practical network configuration and troubleshooting exercises.
🖥️
Operating System Assistant Lecturer
Institut Teknologi Sepuluh Nopember (ITS)
Guided students through OS fundamentals including process management, file systems, and Linux administration in hands-on laboratory settings.
🎓
Programming Tutor — Fundamental C, C++, Python
Jago Teknik
Taught foundational programming concepts to beginners, designing structured lesson plans and exercises across C, C++, and Python.
🤝
Staff — Student Welfare, Research & Technology
HMTC ITS
Contributed to student organization initiatives bridging welfare programs with research and technology advancement within the Informatics Engineering student community.
🏆
Bakti Champions Ambassador 2026
Beasiswa Bakti BCA — Selected as Ambassador among national awardees
🎖️
Beasiswa Bakti BCA Awardee
National scholarship recipient 2024–2027
🔒
Google Cybersecurity Certificate
Coursera — Foundations of cybersecurity, threat analysis, and SIEM
🎄
Advent of Cyber 2025
TryHackMe — Completed 24-day cybersecurity challenge series

Get In Touch

Open to cybersecurity engineering roles, DevSecOps positions, and research collaborations.
Let's build something secure together.

Informatics Engineering · ITS Surabaya · Indonesia