About

(root@cybersec)-[~]# whoami


Security Analyst & Penetration Tester


I’m working as Cyber Security Specialist at private sector. Initially, I was interested in Web Development but later in Cyber Security, especially in CTF (Capture The Flag). I was also a contestant in Myanmar Cyber Security Challenge 2018, 2019 both University level and Open level, and got 3rd prize and 3rd runner up with my team W.A.B(MGY).



  • Email: kokn3t@gmail.com
  • Phone: 0814522575
  • City: Nonthaburi, Thailand
  • Experience: 3 years +
  • Degree: B.C.Sc.
  • Freelance: Available


  • Work closely with developers to improve security on their applications before going to QA.
  • Responsible to create report on findings and act on vulnerabilities.
  • Monitor and track potential threats.
  • Responsible for reviewing open-source security tools and products to use in organization
  • Contact Person to third party security consultants
eJPT

eLearnSecurity

eCPPTv2

eLearnSecurity

eWPTX

eLearnSecurity

OSCP

Offensive Security

Skills & Responsibilities

Web Application Penetration Testing 60%
Android Application Penetration Testing 40%
API Penetration Testing 70%
Network Penetration Testing 70%
Web Development 40%
Scripting 40%

Interests & Hobbies

Take a walk

Reading

Writing

Listening to Music

Cryptocurrency

Information Security

Cloud Technology

Adventure

Resume

Check My Resume

Objectives

Profile

IT Security Analyst, Penetration Tester and Authorization professional, Insightful, results-driven with notable success directing a broad range of corporate IT security initiatives while participating in planning, analyzing, security control assessments and implementing solutions in support of business objectives.

  • Nonthaburi, Thailand
  • 0814522575
  • kokn3t@gmail.com

Education

Bachelor of Computer Science (B.C.Sc)

2014 - 2019

University of Computer Studies, Magway

Learned Web Development in HTML, JavaScript and such kinds of programming languages, concepts, Algorithms and Data Structure on C++, C#, Java, J2EE, JavaScript, and so on.

Web Design Intenship

2019

Green Hackers Institute

Learned HTML5, CSS, BootStrap, JavaScript, React and created smooth and authentic design for Hotel Management System project.

Penetration Testing Training

2020

Creatigon Cyber Security Training

Learned about Network Pentesting, Metasploit, exploit-db, and any other penetration testing tools and methodologies.

Professional Experience

Cyber Security Specialist

2022 Sep- Present

Private Sector

  • Responsibilities on pentesting Web, Mobile, Network, API.
  • Threat Identifying and assist to CSOC Team.
  • Researched current and developing cyber security products to improve the organization
  • Reporting

Associate Application Security Engineer

2021 Dec- 2022 Aug

YOMA Bank

  • Penetration testing on all applications of YOMA Bank and YOMA Group including Android Apps and Web Portals
  • Design and develop strategies for security assessment projects.
  • Conduct Security Assessment on Vendor products
  • Develop and recommend solutions to mitigate security vulnerabilities.
  • Researched current and developing cyber security products and standards Evaluated current cyber security tools including writing reports

Security Analyst

2019 Nov- 2021 Dec

AYA Innovation Labs, AYA Bank

  • Penetration testing on all applications of AYA Innovation Labs including Android Apps and Web Portals
  • Researched current and developing cyber security products and standards Evaluated current cyber security tools including writing reports
  • Assisted in established a security framework for control and access to systems
  • Monitored and identified cyber security threats, including implementing fixes were possible or passing onto the Senior Cyber Security Team for the issue to be fixed in line with client's SLAs

Achievements

2018

Myanmar Cyber Security Challenge

  • 3rd Prize with Team W.A.B(MGY)

2019

Programming Content at UCSMGY

  • Winner with Team W.A.B(MGY)

2020

MITRE

  • Assigned CVE-2020-29156

Certifications

eLearn Security

  • eLearn Security Junior Penetration Tester (eJPT)
  • eLearn Security Certified Professional Penetration Tester (eCPPT)
  • eLearn Security Web Application Penetration Tester eXtreme (eWPTX)

Offensive Security

  • Offensive Security Certified Professional (OSCP)

ICSI

  • CNSS Certified Network Security Specialist

Services

My Services

Web Application Penetration Testing

Experienced in various web applications, frameworks, & CMS penetration testing

Android Application Penetration Testing

Experienced in black box, grey box penetration testing

API Penetration Testing


Experienced in REST, GraphQL API penetration testing

Professional Tools

Experience in BurpSuite, Nessus ,OpenVas Acunetix, BluckDuck, Polaris, Fortify SCA, Mandiant ASM & DTM, etc.

Network Penetration Testing

Experienced in external, internal, cloud infra penetration testing

Reporting

Finalizing the vulnerabilities, well documented and deliver to respective team

Portfolio

My Works

  • All
  • App
  • Card
  • Web

App 1

App

Web 3

Web

App 2

App

Card 2

Card

Web 2

Web

App 3

App

Card 1

Card

Card 3

Card

Web 3

Web

Designed by BootstrapMade