~/whoami.sh
rifan@kali:~$ ./whoami.sh

Muhammad Rifan Grizhavandya

NETWORK ENGINEER//SECURITY SPECIALIST

Building and keeping networks alive routing, switching, firewalls, and automation. Off the clock, I dig into bugs through bug bounty programs & CTFs.

1+
Years Experience
4
Certified
5+
Devices Managed
99.9%
Network Uptime
about.md

Network Engineer focused on enterprise routing & switching, WAN/SD-WAN design, and network automation. Comfortable managing multi-site environments with hundreds of devices from late-night BGP troubleshooting to zero-downtime datacenter migrations.

Beyond that, I have a side interest in cyber security self-taught through bug bounty and CTF. To me the two connect: understanding how networks are built makes it easier to spot where they break.

Toolkit
Mikrotik
Mikrotik
Linux
Linux
Cisco Packet Tracer
Cisco Packet Tracer
VMware
VMware
Burp Suite
Burp Suite
Wireshark
Wireshark
Nmap
Nmap
Certifications
MTCNA badge
MTCNA
MikroTik Certified Network Associate
MTCRE badge
MTCRE
MikroTik Certified Routing Engineer
MTCINE badge
MTCINE
MikroTik Certified Inter-networking Engineer
CYSEC Bug Bounty badge
CYSEC Bug Bounty
Merdeka siber
Project
INFRA-2025-10 · retail chain (40+ sites) SD-WAN
Virtual Enterprise SD-WAN Topology & Failover Simulation
Designed and emulated a multi-site SD-WAN architecture in PNETLab. Configured automatic path selection, IPsec VPN tunneling, and implemented failover features during simulated WAN link degradation.
Downtime 0 minutes Cost saving 35% Completed
INFRA-2023-11 · datacenter core Small Provider
Simulated RT-RW Net Architecture for Multi-Room House
Implemented room-to-room LAN/WLAN distribution across multiple rooms, configuring VLAN segmentation, bandwidth queues, and user authentication.
Devices 180+ Time saved 92% In production
experience
A collection of security research disclosures, technical mentorships, and practical hands-on experience.
ROLE: INSTRUCTOR · SMK Bina Karya Mandiri EDUCATION
Teaching Cybersecurity Fundamentals
Teaches cybersecurity fundamentals, including OWASP Top 10 vulnerabilities, web security, and Linux basics.
Scope Web Security & Linux Audience Vocational Students Completed
BUG-2024-033 · cloudstore-saas.example High
IDOR on data export endpoint allowing cross-tenant access
The export_id parameter wasn't validated against tenant ownership, allowing another customer's data to be downloaded directly via sequential URLs.
CVSS 7.5 Bounty $3,200 Fixed & disclosed
CTF — recent results
CompetitionTeamCategoryRank
Hack The Box CTF-Web ExploitationActive Participant
contact.sh

Need a network engineer, or have an interesting bug bounty program?

Open to infrastructure projects as well as security research collaboration.

// send a message

// sent automatically, no need to open an email app

× Certificate Preview