Available for work

SunnyKumar Jonwal

$ cybersecurity analyst

I build software and then spend my evenings finding out how it fails. Full-stack engineering by day, offensive security and bug hunting by night — the two habits sharpen each other.

whoami — zsh

0+

Years shipping code

0

Projects delivered

0+

Vulnerabilities reported

0

Certifications held

Two disciplines, one toolkit

All services →

01

Build

Product engineering end to end — React front ends, typed APIs, and the boring infrastructure that keeps them up at 3am.

02

Break

Penetration testing and adversarial review of web apps, APIs and cloud accounts. Findings you can actually act on.

03

Harden

Threat modelling, secure code review and CI pipelines that fail the build before an attacker gets a turn.

Selected work

All projects →
Security tool 2026

Sentinel

A continuous attack-surface monitor. It enumerates subdomains, ports and certificates on a schedule, diffs each run against the last, and alerts only on genuine change — new host, new open port, expiring cert.

Go · Postgres · Redis · Docker

Product 2025

Ledgerly

Multi-tenant billing for small SaaS teams: recurring invoices, proration, dunning emails and revenue reporting, with a strict tenant-isolation model enforced at the query layer rather than in application code.

TypeScript · Next.js · Stripe · Prisma