Skip to content

Melbourne, VIC

Made Wisnu Suryakusuma Masna

Security-minded software engineer. I build the detection systems that catch attackers and the applications that keep them out.

> Detection Engineering_Detection Engineering, Penetration Testing, Full-Stack Development

01 / About

What I do

I'm a Melbourne-based IT graduate (Monash University, Computer Networks & Security) working across security and software development. I've found and fixed real vulnerabilities in production web apps, built an automated threat-detection pipeline that goes from raw alert to AI-assessed response in under a minute, and shipped a full booking platform end to end for a live business.

I like problems that sit at the intersection of security and engineering — where the interesting part isn't just finding the bug, but building the system that stops it from happening again.

02 / Work

Featured projects

Hivewire

Automated Threat Detection & Response System

A SOC-in-a-box that goes from raw security alert to AI-assessed response recommendation in under a minute.

  • Wazuh SIEM stack across a multi-machine lab, with real-time log collection from Windows and Linux hosts.
  • Automated enrichment pipeline: pulls alert details, checks threat intel (VirusTotal, NVD), opens a TheHive case, and notifies via email and Slack — all in under 10 seconds.
  • Wazuh
  • Docker
  • Python
  • FastAPI
  • Claude SDK
  • MCP
  • Slack
  • TheHive
  • MITRE ATT&CK
  • NIST 800-61

Willow Studio

Online Booking Platform

A production booking platform for a real business, built and launched solo, end to end.

  • Live availability booking flow with client photo uploads, plus an admin dashboard for managing bookings, services and opening hours.
  • Database-enforced double-booking prevention — two people cannot take the same slot, even on simultaneous requests.
  • Next.js
  • TypeScript
  • Supabase
  • PostgreSQL
  • Row Level Security
  • Vercel
  • Cloudflare

InstaWipe

Web Application Penetration Testing

Found and fixed 10+ real vulnerabilities in a production app before it shipped.

  • Identified CSRF, XSS, SQL injection and brute-force vulnerabilities, and wrote clear security reports with risk ratings and fix recommendations.
  • Implemented the fixes myself: CSRF tokens, input sanitisation, prepared statements and account lockout.
  • Burp Suite
  • OWASP Top 10
  • Secure SDLC
  • Agile / Scrum

03 / Toolkit

Skills

Security & Detection

  • Vulnerability assessment
  • Web app pentesting
  • Wazuh SIEM
  • TheHive
  • MITRE ATT&CK
  • NIST 800-61
  • Wireshark
  • Nmap
  • Burp Suite

Development

  • Python (FastAPI)
  • TypeScript
  • Next.js
  • React
  • Java
  • PHP
  • SQL
  • Docker
  • Git

Infrastructure

  • Linux administration
  • Windows Server
  • TCP/IP
  • pfSense
  • SSH

AI & Automation

  • Anthropic Claude SDK
  • Model Context Protocol (MCP)

04 / Background

Education

Bachelor of Information Technology

Jul 2022 – Jun 2025

Major in Computer Networks & Security

Monash University, Melbourne

Capstone: a full web application delivered for a real client in an Agile Scrum team.

05 / Contact

Get in touch

Open to security engineering, detection engineering and full-stack roles in Melbourne. The quickest way to reach me is email.