Halo, saya
Athala Angwyn Renaldi
Software Engineer & Cybersecurity Specialist with a focus on secure development and proactive defense. As a Certified ISO/IEC 27001:2022 Lead Auditor, I combine robust backend engineering with deep analytical security to build and protect resilient digital infrastructures.
Tentang Saya
My journey in tech is driven by a simple philosophy: true security starts at the code level. While my foundation lies in building scalable backend architectures, my passion for cybersecurity has led me to actively stress-test and harden those very systems. I have successfully conducted VAPT on government networks, led security audits, and implemented secure SDLC practices in enterprise environments. I thrive in bridging the gap between developers and security teams, ensuring that every project I touch is not only highly functional but also prepared to withstand real-world threats.
Tech Stack & Keahlian
Pengalaman
Laboratory Assistant, Telkom University
September 2025 – January 2026Instructed 50+ students in developing web applications using PHP and Laravel, emphasizing MVC architecture and database security. Facilitated hands‑on practicums for Computer Networks, demonstrating expertise in IP Subnetting, Routing, and network topology analysis using Cisco Packet Tracer. Managed technical evaluations and provided feedback on student code to ensure adherence to industry‑standard programming practices and security.
IT Application Development, PT Mandiri Inhealth
June 2025 – September 2025Administered comprehensive security audits and Vulnerability Assessments (VAPT) on enterprise platforms to ensure compliance with ISO 27001:2022 and national data privacy regulations. Executed security hardening and technical risk assessments for financial and medical data systems, effectively preventing unauthorized access and potential data breaches. Implemented Secure SDLC practices and monitored application security logs to detect threats and ensure software resilience against OWASP Top 10 vulnerabilities.
Cybersecurity Intern, Diskominfo Purwakarta
January 2025 – March 2025Executed security audits on government web infrastructures, specifically targeting and remediating backdoor vulnerabilities and illegal content exploits. Developed a specialized Vulnerability Detection Framework to monitor public sector attack surfaces and map security gaps in real‑time. Enhanced the incident response window by 40 % through the implementation of automated threat identification protocols.
IoT Security Researcher, Lab Internet of Things (IoT)
March 2025 – January 2026Conducted comprehensive security audits and penetration testing on IoT devices to mitigate risks of sniffing, spoofing, and unauthorized access. Evaluated the integrity of communication protocols (MQTT, CoAP, HTTP) to ensure secure data transmission and detect architecture vulnerabilities.
Lead Software Engineer & Security Lead, Si-Palsin BU Project
March 2026 – April 2026Developed a secure agricultural reporting system for the North Buton government using Laravel, ensuring data confidentiality for local governance. Implemented Role‑Based Access Control (RBAC) and input validation to protect against SQL Injection and unauthorized data manipulation. Managed secure database architecture and geotagging integrity to ensure accurate and tamper‑proof reporting.
Team Lead, Innovillage 2025 (Social Innovation Project)
November 2025 – April 2026Led a multidisciplinary team to develop “Smart Biopond,” an IoT‑based waste management system, focusing on end‑to‑end data security. Architected secure communication protocols between ESP32 sensors and cloud infrastructure using MQTT/HTTP to ensure data integrity. Managed the full project lifecycle from hardware prototyping to cloud integration and final technical reporting.
Junior Security Analyst L1, Temika Cyber
March 2026 – July 2026Melakukan pemantauan keamanan (security monitoring) 24/7 dan triase alert secara terus-menerus di 3 tenant enterprise, menggunakan Wazuh (SIEM) dan CrowdStrike (EDR) untuk deteksi dan analisis ancaman secara real-time. Mengelola alur kerja respons insiden dan eskalasi ancaman menggunakan Jira dan IRIS, sekaligus mengawasi kepatuhan keamanan endpoint melalui Jamf Cloud untuk mempertahankan perlindungan yang tangguh terhadap ancaman siber.
Proyek Unggulan
Malware Analysis & Defense Evasion
Analisis statis dan dinamis pada payload reverse shell berbasis Metasploit. Mengevaluasi efektivitas encoding polimorfik (shikata_ga_nai) dalam melewati sistem deteksi berbasis signature.
Cloud-Based WAF Efficacy Analysis
Evaluasi komprehensif terhadap efektivitas Cloudflare WAF Free Tier dalam memitigasi ancaman SQL Injection (SQLi) dan XSS. Menerapkan aturan kustom + mode IUAM untuk deteksi 100%.
Penetration Testing: Active Directory DC
Laporan penetration testing komprehensif terhadap Domain Controller (CENTRALPARKZOO.LOCALDOMAIN). Mengidentifikasi kerentanan AS-REP Roasting dan RID Cycling.
Vulnerability Assessment: Network Mapping
Pemindaian layanan dan penilaian kerentanan komprehensif terhadap 8 mesin aktif. Mengidentifikasi kelemahan kritis (RCE) pada sistem lama dan celah keamanan RDP/SMB.
VAPT: Internal Network Penetration
Laporan VAPT Black-Box komprehensif pada jaringan internal 192.168.70.0/24. Berhasil melakukan kompromi penuh (Akses Root) pada mesin Capitano.
ISO/IEC 27001:2022 Internal Audit
Laporan audit internal SMKI komprehensif pada PT Jelajah Dunia. Menguji 12 checklist kontrol keamanan dan mengidentifikasi 9 ketidaksesuaian kritis lintas IT GRC, Engineering, dan Human Capital.
Sertifikasi
2nd Place National Environmental Theme & Best Local Hero
National Social Innovation Award 2026
Lihat Sertifikat
AI for Work & Career Readiness with Google AI Products
Hacktiv8 Indonesia
Lihat SertifikatTop 10 Finalist Innovillage 2025
Pendanaan Hibah Inovasi Sosial Tingkat Nasional
Lihat WebMari Bekerja Sama
Punya ide proyek atau sekadar ingin menyapa? Jangan ragu untuk menghubungi saya!