Skip to content
View siyadhkc's full-sized avatar
🎯
learning
🎯
learning

Block or report siyadhkc

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
siyadhkc/README.md

SIYADH KC

Backend Engineer | AppSec | Web Pentester


Building secure, scalable backends. Stress-testing them from the outside in.

LinkedInEmail

🛠 The Builder-Breaker Mindset

My development workflow is cyclical. I build high-performance, asynchronous backends using Django, Celery, and PostgreSQL, then I pivot to my Offensive Security workflow to stress-test every API endpoint, authentication flow, and data handling process.

I don't just develop; I perform security research on my own infrastructure to ensure it is hardened against modern attack vectors.


🛡️ Core Competencies

1. Backend Architecture

Building scalable, secure-by-default server-side systems.

  • Core: Python, Django, DRF, Django Channels
  • Async/Cache: Celery, Redis
  • Database: PostgreSQL, JWT, Pytest (TDD)

2. Offensive Security & AppSec

Identifying and mitigating vulnerabilities before they reach production.

  • API Security: Focus on OWASP API Top 10 (BOLA, BFLA, Injection flaws).
  • Pentesting: Web application & API pentesting, identifying logic flaws.
  • Tooling: Burp Suite, Nmap, custom automation scripts.

🧰 Infrastructure & Systems

  • Ops: Docker, Nginx, Gunicorn, Linux (Ubuntu/Kali).
  • Networking: TCP/IP, network topology, and enterprise hardware deployment.

📈 Current Operations


📂 Active Projects

A production-ready multi-tenant SaaS platform with isolated workspaces, role-based access control, and a scalable backend architecture designed for teams.

A lightweight JSON file converter utility — supports format transformation, schema validation, and batch processing with a clean CLI interface.

A self-hostable mock API server with team workspaces, rule engine, OpenAPI import, and AI-powered response generation.


I build it. I break it. I secure it.

Pinned Loading

  1. Jray Jray Public

    Flatten, filter, and reconstruct JSON from the command line. A modern alternative to gron.

    TypeScript 2

  2. savor savor Public

    Savor- Multi- Tenant Restaurant PLatform

    JavaScript

  3. portfolio portfolio Public

    personal portfolio react build

    TypeScript

  4. Mock-API Mock-API Public

    TypeScript