About me

Hi, I’m Enrique!

I hold a BSc in Computer Science and have a deep passion for technology, especially when it comes to software engineering and Android. In fact, I built my own app called PenStar which allows users to fully customize Bluetooth S Pen gestures on their Samsung devices.

I'm a naturally curious person and a hacker at heart. I’m experienced in web application penetration testing and hold the BSCP certification. When I’m not diving into security testing, I’m usually exploring something new to learn, improve, or break.

I love to code and automate anything I can. Over the past few years, I’ve written hundreds of scripts for my phone and PC, creating new functionality, shortcuts, and tools that improve efficiency and my life. I’m also excellent with regular expressions (trust me).

Beyond tech, I’m highly organized. I verify information from multiple sources, keep detailed lists, and always look for better ways to do things I’ve already done. I take time to understand and customize the tools I use, and my ability to spot patterns helps me quickly learn new abilities and operate at high levels of efficiency.

Have a look at my résumé and message me on LinkedIn if you'd like to connect.

What I'm doing

  • design icon

    Cybersecurity

    Penetration testing, vulnerability assessments, and consultation.

  • Web development icon

    Software Engineering

    Android applications, backend development, and infrastructure.

Résumé

Awards

  1. Code.Sprint National Programming Competition

    2020

    Achieved first place in the 2020 edition of Malta’s national programming competition. The competition involved developing commercial Java applications under strict time constraints.
    View Award

Certifications

  1. Burp Suite Certified Practitioner

    2025

    The BSCP covers web application security testing skills using Burp Suite. It demonstrates the ability to detect, exploit, and report a wide range of vulnerabilities in real-world scenarios.
    View Certification

  2. Cisco Certified Network Associate

    2022

    The CCNA covers the fundamentals of networking, including topics such as IP connectivity, network access, security fundamentals, automation, and troubleshooting.
    View Certification

  3. CompTIA Security+

    2022

    The Security+ covers the skills necessary to perform core security functions, including topics such as network security, compliance, identity management, threats, and risk mitigation.
    View Certification

Education

  1. University of Malta: BSc in Computing Science

    2020 — 2023

    My thesis, "Memory Forensics of Android Backdooring Based on App Virtualization", focused on developing an Android-based tool to detect and extract virtualized app code from memory for malware analysis.

    View Thesis

Experience

  1. Independent: Android Developer

    2024 — Present

    Created PenStar, an application that allows users to fully customize Bluetooth S Pen gestures on their Samsung devices.

    View App
  2. PwC Malta: Offensive Cybersecurity Consultant

    2021 — Present

    • Reduced a week-long data collection and reporting process to just under one hour by fully automating the complex workflow.

    • Built and operationalized a leaked credentials database after sourcing dozens of terabytes of leaked data. Using efficient code to process the data and a graphical application to facilitate lookup, our red teaming capabilities were significantly improved.

    • Established the team’s structure and methodology for web penetration testing by mastering Burp Suite, integrating external tools, documenting vulnerability classes, and creating checklists to aid during engagements.

    • Increased efficiency across the team by standardizing our lab environment, including device configuration, access protocols, networking, and credential management. Additionally, I implemented customized scripts and shortcuts tailored to our internal needs, reducing context-switching and downtime.

    • Improved the security posture of in-house software by conducting internal penetration tests and advising the development team on secure coding practices and design improvements.

    • Automated administrative tasks across multiple teams, such as reporting, data analysis, and web scraping. These initiatives saved significant time and reduced costs across the firm.

Blog

Contact

Contact Form