Astik R.

Security Consultant

Singapore, Singapore, Singapore4 yrs 6 mos experience

Key Highlights

  • Improved operational efficiency by 40% through automation.
  • Disclosed over 14 CVEs, enhancing application security.
  • Active contributor to the cybersecurity community as an ambassador.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on vulnerability assessments and penetration testing.

Contact

Skills

Core Skills

Penetration TestingInformation SecuritySecurity Consulting

Other Skills

Vulnerability Assessment and Penetration TestingAutomationClient Relationship ManagementPhishing TechniquesVulnerability AssessmentNetwork SecurityWeb Application SecurityPythonInformation Security ConsultingRed TeamingKubernetesMandarinChineseNetwork Security TestingMobile Security

About

Astik is a Senior Security Consultant at Swarmnetics, where he performs comprehensive vulnerability assessments and penetration tests across web, network, and cloud environments for over 90 clients, ensuring strong security postures and helping them stay protected against real-world threats. He also manages client relationships, communicates findings effectively, and has developed automation to streamline daily IT and security tasks, improving operational efficiency by 40%. Astik graduated from Edith Cowan University with a Bachelor’s degree in Cyber Security in January 2021. He is committed to lifelong learning and holds multiple industry-recognized certifications including OSCE3, OSCP+, OSWE, OSEP, CRTO, PNPT, KLCP, CNSP, eMAPT, PJPT, OSWP, and more. He currently serves as an Offensive Security Ambassador for Singapore, actively contributing to the cybersecurity community through public speaking, mentoring, and technical knowledge sharing. Astik has disclosed over 14 CVEs, covering high to medium severity vulnerabilities such as SQL Injection, Cross-Site Scripting (XSS), and CSRF in various applications. His responsible disclosures have helped developers and vendors patch real-world threats in production systems. He also participates in bug bounty hunting, although not full-time, and has reported several high-severity vulnerabilities in government platforms across Singapore, Malaysia, and the region, including issues that exposed personally identifiable information (PII) and even allowed for zero-click full account takeover in some cases. Astik's technical write-ups and certification reviews have gained strong traction, with a combined total of over 70,000 views across platforms, and a growing audience of 600+ followers on Medium. His content focuses on real-world experiences with offensive certifications, hands-on tools, and CTFs. In his spare time, Astik enjoys participating in Capture The Flag (CTF) competitions and solving boot2root labs on platforms like Hack The Box and TryHackMe. He thrives on continuous learning, hands-on experience, and staying current with offensive security techniques. His ultimate goal is to become a highly skilled and responsible cybersecurity specialist, dedicated to advancing and defending the digital world through real-world testing, ethical hacking, and continuous community contribution.

Experience

Swarmnetics

2 roles

Senior Security Consultant

Promoted

Jan 2025Present · 1 yr 3 mos · Singapore, Singapore

  • Conducted comprehensive Vulnerability Assessments and Penetration Testing across multiple domains including Infrastructure/Network, Web Applications, Mobile Applications, Wireless Networks, and Thick Client Applications.
  • Performed meticulous security assessments and risk analyses for over 90 client applications and systems, diligently implementing requisite security controls and measures to fortify their defenses.
  • Conducted both black-box and grey-box Vulnerability Assessment and Penetration Testing (VAPT) exercises, identifying and addressing security vulnerabilities with precision and expertise.
  • Conducted thorough firewall reviews and firewall configuration audits to evaluate and enhance network security posture.
  • Successfully executed on-site, remote, and hybrid work arrangements, adapting seamlessly to varying work environments and client needs.
  • Implemented automation of daily IT tasks, saving time and increasing efficiency by 40%
  • Managed client relationships from start to end of project, ensuring effective communication and timely delivery of results.
  • Performed phishing via email and call (vishing) on clients with more than 20% acceptance rate.
Vulnerability Assessment and Penetration TestingSecurity ConsultingAutomationClient Relationship ManagementPhishing TechniquesPenetration Testing+1

Security Consultant

Oct 2021Dec 2024 · 3 yrs 2 mos · Singapore, Singapore

Security ConsultingInformation Security Consulting

Synack red team

Synack Red Team Researcher

Jan 2024Present · 2 yrs 3 mos

Freelance

Penetration Tester

Apr 2021Jul 2021 · 3 mos

Virtually testing foundation

Cybersecurity Internship

Jan 2021Mar 2021 · 2 mos · Los Angeles County, California, United States

Education

Edith Cowan University

Bachelor's degree — Cyber Security

May 2019Jan 2021

University of Northampton

Certificate of Higher Education — Computing

Jan 2017Jan 2018

Stackforce found 100+ more professionals with Penetration Testing & Information Security

Explore similar profiles based on matching skills and experience