Career Profile

A Programmer and Software Security Consultant with six (7) years of experience in Information Technology covering technical consulting and systems hardening responsibilities. Very conversant with various programming languages and OWASP Testing Methodology for web application security testing, Part of the key team members in SDLC and consulting team for various organizations from diverse vertical markets in Malaysia.

Experiences

Working Experience (Security Consultant)

October 2020 - Present
Secure Insight SDN BHD

Secure Insight is a regional cyber security and resiliency advisory firm with highly qualified and certified Professionals.
Secure Insight has served about 150+ clients globally to address cyber security and resiliency assurance needs.

Working Experience (Software Engineer)

April 2018 - May 2019
Ofisgate SDN BHD

Ofisgate is a Network & Telecommunication Solution company. This company focus in providing Testing, Auditing, Troubleshooting,Benchmarking and Training Services on Network Infrastructure. This company give me responsibility to do the Secure Code Review, PerFormance Testing, Manitainance WAF, Training and development.

Internship

February 2017 - July 2017
Caspian Technology

I have completed my industrial training at Caspian Technology. The internship takes about 20 weeks which is from 20 February until 7 July 2017. During the internship, I was assigned development team. My task is to develop the mock-ups flow and backend the apps or websites for each use case that has been assigned based on the flow given by my supervisor or client. I had a chance to learnt new tools, software, and service during the internship such as Xcode, Android Studio, Firebase (database) and Wordpress (website).

Certification:

  • Network Miner
  • Offensive Security Web Expert (OSWE)

Projects Secure Code Review with:

  • Accountant General's Department Of Malaysia (AG)
  • Ministry of Education (MOE)
  • Ministry of Finance Malaysia (MOF)
  • Malaysian Administrative Modernisation and Management Planning Unit (MAMPU)
  • Road Transport Department Malaysia
  • PR1MA

Penetration Testing:

  • Accountant General's Department Of Malaysia (AG)
  • Ministry of Education (MOE)
  • Ministry of Finance Malaysia (MOF)
  • Malaysian Administrative Modernisation and Management Planning Unit (MAMPU)
  • Suruhanjaya Syarikat Malaysia (SSM)
  • Road Transport Department Malaysia
  • PR1MA

Security Operations Center (SOC) (Manager):

  • Suruhanjaya Syarikat Malaysia (SSM)

Projects PerFormance Testing with:

  • Accountant General's Department Of Malaysia (AG)
  • Ministry of Education (MOE)
  • Marine (JLM)
  • Ministry of Territories (KW)
  • Ministry of Domestic Trade and Consumer Affairs (KPDNKK)
  • Road Transport Department Malaysia

Projects Manitainance WAF with:

  • National Audit Department
  • PR1MA

Training Class:

  • Web Penetration Test
  • Secure Code Review
  • PerFormance Testing (JMeter)

Development:

  • Develop portal event in Cyber Defense Operation Center (CDOC)
  • Website Annur group
  • Website Sarf
  • Website Esmash
  • Website Learn Basic Japanese
  • Website Management system
  • Website Djodoh
  • Website HRA Engineering

My Current Project

https://mountainwaf.com/ - A web application firewall (WAF) is a specific form of application firewall that filters, monitors, and blocks HTTP traffic to and from a web service. By inspecting HTTP traffic, it can prevent attacks exploiting a web application's known vulnerabilities, such as SQL injection, cross-site scripting (XSS), file inclusion, and improper system configuration
A Lightweight Source code scanning application - Deal with security issues in code review with Static Application Security Testing (SAST). Getting early security feedback during code review is your opportunity to learn & grow

My Previous Project

dedelang.com - Dedelang is php framework to help the developer to create the web applications. The purpose of this framework is to enable you to develop web applications much faster than your write the code from the scratch. This framework also has embedded web application firewall (WAF) to protect your applications from suspicious activity.
selenggara.com - selenggara is system to help customer to find the maintenance service for thier house or building
http://www.annurgroup.com.my/ - Foundered in 2012, AN NUR Marine Services is a Malaysian based service provider to the Oil & Gas industry. An ISO 9001:2015 Certified Company specialized in providing Marine Agency & Logistic Support, Vessel Chartering for offshore survey operations. The company has quickly established itself and rapidly expanding until today where we offer a wide range of professional services focusing on upstream processes in South East Asia region.
https://esmash.biz/ - Our expertise in Jebatech Solutions is to help our prospect to mining ,traders and sales the crypto currency.
JM Management - JM management is a system to help small businesses to manage thier business
sarf.my - sarf is ecommerce system to sale the custom and ready make perfume
Learn Basic Japanese Mobile App (UPM) - This mobile application to help student learn the basic Japanese

Projects Intership

Pancing GP KOPDBKL System - GP KOPDBKL System created for Dewan Bandaraya Kuala Lumpur fishing tournament and than this project develop using PHP language and MySQL as database (XAMPP).
ParkingKu Mobile Application (iOS) - ParkingKu Mobile Application is project from Dewan Bandaraya Kuching Utara or Kementerian Negeri Sarawak.
TVSarawak Mobile Application - TVSarawak mobile application project from Kementerian Sarawak. This project is basic mobile app because this application just call API from tvsarawak.com
RevZon Gym Mobile Application - RevZon Gym Mobile Application project form RevZon Gym. This project developed using the native mobile application that is iOS and android
Syni Mobile Malaysia - This mobile application develop by using hybrid mobile framework (Ionic Framework) and Firebase for database.

Skills & Proficiency

WEB3 Smart Contract

ICP smart contract

Solana smart contract

Ethereum smart contract

Cardano smart contract

Mobile Application

Ionic Framework

Flutter

Android

Swift


Website Application (server site)

PHP (Hypertext Preprocessor)

CodeIgniter Framework

Laravel Framework

Yii2 Framework

Django Framework(python)

CRUDBooster

Phoenix Framework(elixir)

Ruby on Rails

ASP.NET CORE

Java EE with servlet

Spring Framework(java)


Website Application (Client site)

Javascript & jQuery

Angular

HTML5 & CSS


Website Application (CMS)

Wordpress

Drupal

Liferay


Desktop Application

Java

Python


Database

Phpmyadmin(mysqli)

Sqlite

Firebase

Oracle

PostgreSQL

MongoDB

MySQL


Operating System

Windows

Ubuntu(linux)

MAC(IOS)

Kali(linux)

Windows server 2012

Ubuntu server(linux)