John Lawrence Peñafiel Email and Phone Number
Security Software Engineer with more than 10 years of experience building Cybersecurity tools.I have built Network Firewalls, P2P VPN Applications, Security Dashboards, Web/Mobile Vulnerability Scanners, and Asset Discovery/Monitoring tools, while also maintaining the supporting DevOps infrastructures required to deliver these solutions.I currently spearhead the Research and Development effort for the Pangolin Smart Firewall device at TeamRed Security Inc.I have a background in both Network and Software Engineering which I leveraged upon entering the Information Security industry, quickly having found myself assigned to Research and Development early in my career.I previously served under Hewlett-Packard's Fortify-on-Demand as a Security Researcher, contributing to the development of security assessment software before moving on to become a co-founder of TeamRed Security Inc.Together with my company, we are on a mission to make cybersecurity more accessible by lowering the cost and skill barrier necessary to deploy safeguards.Technical Background:・Programming: Python / C / Objective-C / C# / Java / JS / TS / Shell・Platforms: Linux / Windows / OSX / iOS / Android / Web・Frameworks: Django / .NET / React / React-Native / Netfilter・DevOps: Git / Docker / Kubernetes / Ansible / Yocto / Mender・Cybersecurity: OSINT / Network / Web / MobileOther Skills・Art: UI/UX / Graphics / Illustration・Languages: English / Tagalog / 日本語 (JLPT N2)・Writing: Documentation / Communications / ArticlesPlease direct all business-related messages concerning TeamRed Security Inc. to Miko Tan (miko@teamredlabs.com)
Teamred Security Inc.
View- Website:
- pangolinsecured.com
- Employees:
- 2
-
Founding Software EngineerTeamred Security Inc.Metro Manila, Philippines -
Founding Security Software EngineerTeamred Security Inc. Oct 2017 - PresentTaguig CityServes as one of the founding engineers for a cybersecurity startup. Main contributor of cybersecurity domain knowledge to the team. Spearheads the research and development effort for the Pangolin Smart Firewall device.Tasks• Design and implement security modules• Optimize kernel, distro, and hardware for firewalling• Develop threat-intelligence strategies for curating policies• Ensure a seamless developer-customer code pipeline• Handle internal audit and compliance tasks for certifications• Plan UI/UX that is accessible to non-technical customersResults• Custom Linux kernel and distro, tailor-made for fast firewalling• OpenEmbedded board support packages for the firewall hardware• OTA updater integration with the firewall platform• Netfilter optimizations for rapid packet forwarding and scheduling• Fast "deep-enough" packet inspection gateways for Layer 7 security• Automatically updating malware and phishing blacklists• Rapid device discovery, fingerprinting, and vulnerability scans• Easy plug-and-play deployment with minimal configuration• Cybersecurity Level 2 label from Cyber Security Agency of Singapore • InnoVEX 2022 Pitch Contest Winner (KPMG Special Award)Links• Pangolin Smart Firewall (https://www.pangolinsecured.com/)• InnoVEX 2022 Pitch Contest Result (https://web.archive.org/web/20220531065920/https://innovex.computex.biz/show/pitchTeam.aspx?BNA=3540&pitchID=711) -
Security Researcher, MobileHewlett Packard Enterprise Feb 2016 - Sep 2017Taguig City, PhilippinesParticipated in the research and development of Fortify-on-Demand's Mobile Application Security testing framework for Google Android and Apple iOS by conducting inquiry on common mobile application assets, vulnerabilities, and attack surfaces. Wrote procedures and signatures for automatically detecting said assets, vulnerabilities, and attack surfaces. Wrote automated test cases for verifying the quality of existing automated checks. Test cases include specially-crafted control mobile application samples.Tasks• Research common mobile application assets, vulnerabilities, and attack surfaces• Implement automated checks for the detection of the above• Write test cases to verify the quality of automated checks• Implement specially-crafted control mobile apps for test casesResults• Fortify-on-Demand, Mobile Application Security Scanner -
Security Researcher, OsintHewlett Packard Enterprise Nov 2014 - Feb 2016Taguig City, PhilippinesResponsible for contributing to the research, development, and testing of prototype Fortify-on-Demand services and various internal tools that automate various organizational processes. Participated in the prototyping of Fortify-on-Demand's Continuous Application Monitoring service and its Digital Discovery component.Tasks• Contribute to research and development of prototype services• Develop and maintain various internal toolsResults• Fortify-on-Demand, Continuous Application Monitoring• Fortify-on-Demand, Digital Discovery -
Web Application Security ConsultantHewlett-Packard Company Aug 2014 - Nov 2014Taguig City, PhilippinesPerformed automated dynamic security assessments on the websites and web applications of various multinational companies in contract with Hewlett-Packard's Fortify-on-Demand. Ensured the compliance of security assessment results with the team’s data safety standards before releasing them to customer representatives. Generated reports according to customer requests and made sure that reports were delivered properly and safely. Implemented an Assessment Coverage Verification Tool which automated a portion of the quality assurance process - improving the overall quality of assessments for the entire team. Also implemented a Computing Resource Availability Tracking Tool which tracks use of computing resources currently in use for assessments - removing the need to manually track which resources cannot be used.Tasks• Perform pre-scan assessment of target customer web assets• Determine appropriate thoroughness of scans depending on size of targets• Configure automated scans against target customer web assets• Apply appropriate policies to scans depending on customer requirements• Monitor ongoing scans against target customer web assets• Apply appropriate fixes in case of execution errors• Conduct scan quality validation, ensuring proper coverage of target web assets• Perform data safety processes, ensuring proper delivery of results to customersResults• Completed Assessments: 46 (96% Success Rate)• Assessment Coverage Verification Tool (improved overall quality of assessments)• Computing Resource Availability Tracking Tool (removed manual resource tracking process)• Manual Site Crawler Extension for Google Chrome -
Intern Software Engineer, TestingNavitaire Llc - An Accenture Company Apr 2013 - Jun 2013Makati City, PhilippinesDesigned and implemented a test suite for the communications component of Navitaire's New Skies Airline Reservation System. The test suite is meant to automatically run the system through various common transactions and check for any results that may indicate a bug.Tasks• Study and understand the format of the messages being transceived by the system• Design and implement a test suite for the communications component of the system• Document each test case, indicating their purpose and the process involved in their execution• Prepare a report at the end of the project indicating the results of the effortResults• A working test suite which targets the communications component of the system• A documentation of the test suite highlighting each test case's purpose and mode of execution• A document containing instructions on how to invoke the test suite• A report indicating the progress of the team as well as the results of the effort -
Research AssistantDe La Salle University Jun 2012 - Oct 2012Manila City, PhilippinesEnsured compliance of student-developed mobile applications with the quality standards of various mobile application marketplaces such as the Windows Phone App Store, and Nokia’s Ovi Store. Applied appropriate patches to mobile applications that fail to comply with marketplace standards. Developed mobile applications for Symbian and Windows Phone as contributions to the University’s effort to publish mobile applications for Symbian and Windows Phone devices.Tasks• Submit mobile applications developed by students to the appropriate marketplaces• Develop my own mobile applications in order to increase the University's output• Handle the quality issues raised by Ovi or Microsoft and then apply the appropriate fixesResults• The quota of around 26+ successful submissions have been met• My submission racked up the highest number of downloads among the submitted applicationsReferences• Manager: Ralph Vince Regalado (rvregalado)
John Lawrence Peñafiel Skills
John Lawrence Peñafiel Education Details
-
3.415
Frequently Asked Questions about John Lawrence Peñafiel
What company does John Lawrence Peñafiel work for?
John Lawrence Peñafiel works for Teamred Security Inc.
What is John Lawrence Peñafiel's role at the current company?
John Lawrence Peñafiel's current role is Founding Software Engineer.
What schools did John Lawrence Peñafiel attend?
John Lawrence Peñafiel attended De La Salle University.
What are some of John Lawrence Peñafiel's interests?
John Lawrence Peñafiel has interest in Information Security, Epistemology, Tools Development, History, Apologetics, Law, Web Development, Environment, Science And Technology, Visual Arts.
What skills is John Lawrence Peñafiel known for?
John Lawrence Peñafiel has skills like Linux, Software Development, Programming, Web Development, Java, Network Security, Javascript, Network Engineering, Game Development, C, C++, C#.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial