> ROLE: DEVOPS & INFRASTRUCTURE ENGINEER

CRAFTING [DIGITAL]
EXPERIENCES.

AKHDAN RAFIF NUGRAHA // SYSTEM ARCHITECT & DEV

Informatics graduate from Siliwangi University with deep technical focus on Linux Administration, DevOps, and Infrastructure Management. Engineering resilient, efficient, and scalable self-hosted environments and secure systems.

NODE: MASTER-01
SYS // ARCH
Akhdan Rafif Nugraha
REAL-TIME TELEMETRY LATENCY: 12ms // JAKARTA, ID (UTC+7)
PROVEN RECORD 4+ YEARS EXP // 15+ SHIPPED SYSTEMS
Visitor_01

// 01 BIOGRAPHY & CORE FOCUS

Informatics graduate from Siliwangi University (GPA 3.75) specialized in Linux Administration, DevOps, and Infrastructure Security.

Engineering philosophy centers on three tenets: automate everything, monitor proactively, and iterate continuously. Proven track record in provisioning resilient virtualized clusters, implementing authenticated End-to-End Encryption (E2EE) schemes, and deploying enterprise SIEM detection pipelines.

3.75 CUM LAUDE GPA
99.9% HOMELAB UPTIME
02 ENGINEERING INTERNSHIPS
02 INDUSTRY CERTIFICATES

// 02 SYSTEM CAPABILITIES & BENTO RADAR

$ cat stack_manifest.v2
> CONTAINER & CLOUD
Docker Containerization 95%
Proxmox VE / KVM 90%
Linux (RHEL / Debian) 95%
> SECURITY & SIEM
Wazuh SIEM / XDR 88%
E2EE & Cryptography 92%
Firewall / Mikrotik 85%
> AUTOMATION & CODE
Bash & Systemd 92%
Python / Scripting 86%
TypeScript / Node.js 80%
OPEN_SOURCE // GITHUB
@FrostLynn
// CREED & DIRECTIVE

"Obsessed with sub-100ms latency, zero-trust security & fluid micro-interactions."

PT. NOOSC SECURITY GLOBAL // DISKOMINFO TASIKMALAYA // RED HAT ACADEMY // UNIVERSITAS SILIWANGI // MIKROTIK SIA // JUTI JOURNAL PUBLICATION //

// 03 FEATURED WORKS & SYSTEMS

> PRODUCTION BUILDS & CRYPTOGRAPHIC RESEARCH
01 // CRYPTOGRAPHY

End-to-End Encryption Scheme (AES-GCM-SIV & ECDH)

Designed and implemented an authenticated E2EE protocol for text and media exchange using AES-GCM-SIV with Elliptic Curve Diffie-Hellman ephemeral keys. Published in accredited JUTI Journal (Vol. 24, No. 2), Jul 2026.

02 // SIEM & XDR

Enterprise SIEM Deployment & Security Monitoring

Orchestrated Wazuh SIEM/XDR cluster across virtualized infrastructure on Proxmox VE. Configured real-time file integrity monitoring (FIM), anomaly detection rules, and automated incident triage alerts.

03 // PRIVACY TOOL

FrostlynnPDF — Client-Side PDF Tools

Neo-Brutalist PDF utility application enabling users to merge, split, reorder, and digitally sign documents entirely client-side. Zero server uploads ensures strict confidential privacy.

04 // LOCATION ENGINE

Jadwal Sholat — Automated Prayer Telemetry

Lightweight geolocation-aware prayer schedule engine integrating daily astronomy API feeds with real-time countdown clocks and responsive device-first UI.

05 // WORKFLOW UTILITY

Minimalist Pomodoro Timer

Distraction-free focus timer application built with modern reactive state management and audio triggers, designed to boost cognitive sprint cycles and engineering output.

// 04 CAREER PATH & CREDENTIALS

CAREER PATH // 2024 - PRESENT

> TRAJECTORY_MANIFEST

Focused on infrastructure resilience, zero-trust architecture, and DevOps automation. Transitioned from high-performance academic computing and cryptosystems research at Universitas Siliwangi to enterprise cloud infrastructure security and SIEM engineering.

01
PT. NOOSC Security Global JAN 2026 — FEB 2026 // JAKARTA, ID
Infrastructure Security Engineer (Internship)
  • Provisioned and hardened virtual machines across multi-tenant enterprise server infrastructure using Proxmox VE.
  • Deployed and configured Wazuh SIEM/XDR cluster to ingest system logs, detect anomalous lateral movements, and perform real-time integrity checks.
  • Engineered custom security detection rules, vulnerability alerts, and centralized log triage pipelines for virtualized production environments.
KEY ARTIFACT: PROXMOX VE CLUSTER & WAZUH AGENT MESH
02
Dinas Komunikasi dan Informatika JUN 2025 — AUG 2025 // TASIKMALAYA, ID
Cyber Security Analyst (Internship)
  • Conducted rigorous Web Application Penetration Testing on municipal government portals to discover exploitable vulnerabilities.
  • Performed systematic automated and manual attack simulations benchmarking the OWASP Top 10 vulnerabilities.
  • Authored in-depth vulnerability assessment and remediation reports directly utilized by municipal engineering teams to patch attack surfaces.
KEY ARTIFACT: OWASP PEN-TEST AUDIT SUITE & REMEDIATION GUIDES
03
Universitas Siliwangi & Independent Homelab 2024 — 2026 // RESEARCH & BUILD
Systems & Cryptographic Protocol Researcher
  • Designed and analyzed an authenticated End-to-End Encryption protocol using AES-GCM-SIV and ECDH, published in accredited JUTI Journal (Vol. 24, No. 2, Jul 2026).
  • Architected self-hosted cloud homelab running Docker container fleets, Nginx SSL reverse proxies, Vaultwarden, and WireGuard VPN tunnels with 99.9% availability.
  • Maintained open-source developer tooling including client-side PDF processors and prayer schedule APIs.
KEY ARTIFACT: JUTI E2EE JOURNAL PAPER & DOCKER HOMELAB