Independent security & technology consulting

Independent assessment.
Actionable defense.

Offensive testing, continuous monitoring, secure code review, and executive advisory โ€” delivered with discretion and rigor.

Clients

British American Tobacco
Pintro
Achiko
Benemica
IA-CEPA Katalis
Aeroconnect
Services

Four disciplines, one standard of work.

01

Penetration Testing

Adversarial assessment of networks, applications, and people. Findings are validated, prioritized, and mapped to remediation.

  • Network penetration testing โ€” internal & external
  • Web application penetration testing
  • Mobile application security testing
  • API security assessment
  • Social engineering assessment
Pricing
Starting from IDR 29.000.000 / project
Deliverables
Executive summary ยท Technical report ยท Remediation roadmap
Standards
OWASP
02

Website & Domain Monitoring

Continuous visibility across uptime, certificates, reputation, and integrity. Anomalies surface before they become incidents.

  • 24/7 uptime and availability monitoring
  • SSL/TLS certificate expiry monitoring
  • Domain reputation and blacklist monitoring
  • Web defacement detection
  • DNS change alerting
  • Performance baseline and anomaly detection
Pricing
Starting from IDR 4.000.000 / month (min 6 months)
Reporting
Monthly security posture reports
03

Software Testing & Code Review

Code is examined statically, dynamically, and by hand. Security gates are embedded directly into delivery pipelines.

  • Static Application Security Testing (SAST)
  • Dynamic Application Security Testing (DAST)
  • Manual secure code review
  • DevSecOps pipeline integration consulting
  • CI/CD security gate implementation
  • Software composition analysis (SCA) for open-source dependencies
Pricing
Starting from 24.000.000 / project
Alignment
Functionality Testing ยท OWASP Top 10
04

Advisory โ€” Virtual CISO / CTO

Strategic security and technology leadership without a full-time hire. Governance, architecture, and internal capacity building.

  • Fractional CISO โ€” strategy, governance, risk management
  • Fractional CTO โ€” technology roadmap, architecture review
  • Data and AI governance
  • Internal team capacity building
  • Security policy and procedure development
  • Board and executive briefings
  • Vendor assessment
Pricing
Starting from IDR 14.000.000 / month (min 3 months)
Engagement
Retainer
How engagements run

A predictable, simple process.

  1. 01

    Discovery & Scoping

    Objectives, assets, and constraints are mapped. Rules of engagement are signed before any work begins.

  2. 02

    Execution & Assessment

    Systems are assessed using established methodologies. Activity is logged; communication stays open throughout.

  3. 03

    Reporting & Recommendations

    Findings are delivered with technical evidence, business impact, and a prioritized remediation roadmap.

  4. 04

    Ongoing Support

    Optional retainer for retesting, advisory hours, and continuous monitoring as your environment evolves.

Credentials

Recognized industry certifications.

Snowflake

Snowflake SnowPro Associate

Snowflake Platform, Warehouse and AI Certification

Nutanix

Nutanix Certified Professional

Deploy, configure, migrate, and troubleshoot Nutanix Multicloud Infrastructure

eLearnSecurity

eMAPT

eLearn Mobile Application Penetration Tester

EC-Council

ECSA/LPT

EC-Council Certified Security Analyst / Licensed Penetration Tester

EC-Council

ECSP

EC-Council Certified Secure Programmer

EPI

CDCP

Certified Data Centre Professional

EPI

CDFOM

Certified Data Centre Facilities Operations Manager

LPI

LPIC-1/CLA

Linux Professional Institute Certification / Certified Linux Administrator

Engage

Start with a scoped conversation.

Share a brief outline of the environment and objective. A response will follow within 24 business hours to align on scope, timing, and engagement model.

Response time
Within 24 business hours
Email Address
Email us at ask@flakesync.com
Confidentiality
All engagements proceed under NDA