Student Information
Graduate StudentGlobal Security (Cybersecurity)
The College of Lib Arts & Sci
Senior Technical Specialist leading national cybersecurity initiatives with senior-level expertise in incident response and security operations. Delivered a 50% reduction in incident response time for the Bangladesh Government CIRT and built high-performance CSIRT teams across South Asia. Expert in SIEM, threat detection, digital forensics, and security architecture, driving enterprise-scale security solutions. Seeking to apply proven leadership to enhance organizational resilience and protect critical assets.
Duke University 2023 - 2023
Cybersecurity Leadership Program, Executive Leadership North Carolina, USA
Carnegie Mellon University 2019 - 2021
Cyber Intelligence for Decision Makers USA
The Wharton School Jan 2019 - 2020
Customer Analytics USA
INDEPENDENT UNIVERSITY, Dhaka Jan 2000 - Dec 2004
BSc in Computer Science Bangladesh
Notable Publications
Research Summary:
- Conducted a comprehensive study to identify weakness of cybersecurity infrastructure of ICT sector and government of Bangladesh.
- Provided recommendations to strengthen cybersecurity frameworks and address evolving threats, emphasizing the need for a centralized reporting portal and importance of skilled manpower.
Research Summary:
- Analyzed interoperability challenges in cybersecurity, proposing integrated solutions utilizing 6G, IoE, AI, and WPA3 protocols to enhance protection against zero-day attacks in smart cities.
- Evaluated the role of Explainable Artificial Intelligence (XAI) in improving detection and
- response capabilities, focusing on efficiency in analyzing attack patterns and anomalies.
Research Summary:
- Conducted an in-depth analysis of Bangladesh's cybersecurity landscape, identifying emerging threats and evaluating the effectiveness of regulatory frameworks and technologies like AI in addressing these challenges.
- Recommended a multi-stakeholder approach to enhance cybersecurity capacity, emphasizing the need for increased investment, expanded education and training, and improved legal frameworks to protect against escalating cyber threats.
Research Summary:
- Developed an Android application utilizing MediaPipe solutions to explore facial recognition technology for evaluating character based on facial features.
- Conducted a comprehensive analysis of the benefits and drawbacks of facial recognition in character assessment, focusing on feature extraction methods and evaluation criteria.
- Identified potential areas for future research, emphasizing the need for improved accuracy and reduced bias in facial recognition algorithms.
Research Summary:
- Explored the implications of deepfake technology as a form of synthetic media, highlighting its potential for both harmful disinformation and beneficial applications, such as voice replication for ALS patients.
- Analyzed the mechanisms behind deepfakes, their impact on politics and international relations, and the challenges in detection and regulation, advocating for a multi-faceted approach to mitigate risks and promote awareness.
Summary
The article discusses the critical interdependence between cyber security and outer space security, highlighting the vulnerabilities of space-based assets that support essential infrastructure globally, including communication, defense, and financial services. As reliance on space systems grows, so do the risks associated with cyber attacks.
Key points include:
- Vulnerability of Space Systems: Many space systems were designed without modern cybersecurity considerations, making them susceptible to various forms of cyber threats such as command intrusions, denial of service attacks, and spoofing.
- Geopolitical Risks: Space services are increasingly targeted during geopolitical conflicts. The article cites the cyber attacks on satellite systems in Europe and Ukraine prior to the Russian invasion as a significant example of this risk.
- Emerging Threats: With the rise of commercial space ventures and the sophistication of cyber capabilities, the landscape of potential adversaries has expanded, including state and non-state actors.
- Cyber Kill Chain: The article outlines the stages of the cyber kill chain relevant to space systems, emphasizing the need for robust defenses against potential compromises.
- Recommendations for Improvement: The document suggests enhanced international cooperation, improved regulatory frameworks, and increased investment in cybersecurity measures, such as quantum encryption, to protect space assets.
- Legal and Normative Challenges: It discusses the difficulties in verifying compliance with international laws regarding space security and the need for effective monitoring of counter-space capabilities.
- In conclusion, the article argues for immediate actions to address the vulnerabilities at the intersection of cyber and space security, emphasizing the necessity for states to collaborate and develop comprehensive strategies to safeguard critical space infrastructure.
- Explored Quantum Computing: Discussed the complexities and foundational principles of quantum computing, emphasizing its intersection with quantum mechanics.
Identified Key Challenges:
- Operational and Engineering Issues: Highlighted the unique difficulties of programming with qubits and the challenges of noise reduction in quantum systems.
- Scalability Concerns: Noted the need for increasing the number of qubits on quantum processors to enhance computational power.
Classified Quantum Computing Systems:
- Analog Quantum Computers: Described as more developed but limited in functionality due to noise.
- Noisy Intermediate-Scale Quantum (NISQ): Positioned as a promising evolution, capable of tolerating noise better than analog systems.
- Fully Error-Corrected Quantum Computers: Discussed as complex systems that can emulate noiseless conditions but require significant advancements.
National Security Implications:
- Analyzed potential applications in intelligence, encryption, and military communications, emphasizing the need for preparedness against quantum threats.
Geopolitical Context:
- Compared the current quantum race to historical technological competitions, stressing its importance for national security and global power dynamics.
- Highlighted investments by nations (U.S., China, etc.) in quantum technology, indicating its strategic significance.
- Call to Action for Leaders: Encouraged government officials to understand quantum technology's implications for security and to prepare for its impact on global stability.
Transparency and Corruption:
- Technology enhances transparency, making it harder for corruption to thrive.
- Digital-savvy citizens are less tolerant of corruption and have tools to uncover it.
Challenges and Considerations:
- Regulatory Uncertainty:
- Governments must navigate the rules surrounding blockchain governance and its application.
- Reliability of Data:
- The accuracy of data entered into blockchain systems is crucial; "garbage in, garbage out" applies.
- Cost and Scalability:
- High costs and scalability issues may hinder widespread adoption in the public sector.
Conclusion:
- While blockchain holds immense potential to enhance public integrity and reduce corruption, it is not a panacea.
- Effective implementation requires strong existing systems and careful management of expectations.
Ethical and Legal Concerns:
- Data brokerage operations are generally legal, especially with public data.
- Lack of comprehensive federal regulation in the U.S. contrasts with laws like GDPR in the EU.
Risks of Data Breaches:
- High-profile data breaches have exposed sensitive information of millions.
- The potential for misuse of personal data poses significant risks to individuals and democracy.
Impact on Democracy:
- The sale of personal data threatens civil rights and national security.
- Data brokers can target vulnerable populations and manipulate public opinion through precise profiling.
Recommendations for Privacy Protection:
- Understand local data privacy laws and rights.
- Limit personal information shared online and use privacy settings on social media.
- Use web browsers with ad and tracker blocking features.
Rapid Growth of Startups:
- Startups often grow quickly, making it hard to correct course after missteps.
- Many lack a coherent framework for transitioning into successful ventures.
Key Activities for Scaling:
- Hiring functional experts.
- Establishing management structures for growth.
- Building planning and forecasting capabilities.
- Reinforcing cultural values within the organization.
Cultural Mindsets:
- In Bangladesh, traditional career paths (e.g., engineering, medicine) are preferred, leading to fewer entrepreneurs.
- Limited interest in entrepreneurship among youth, particularly without a business background.
Challenges Faced by Startups:
- Issues with supply chain, inventory, sales, and cash flow.
- Limited business knowledge and experience among founders.
- Predominant management styles suited only for small operations.
Impact of COVID-19:
- The e-commerce sector thrived during the pandemic, serving as a lifeline for the economy.
- Growth in e-commerce sites and platforms, with high activity concentrated in major cities.
E-commerce Growth:
- The sector has seen rapid growth, with a significant number of SMEs involved.
- Bangladesh's retail e-commerce is growing at a remarkable rate.
Investment and Infrastructure Needs:
- The need for secure payment processes and consumer protection in e-commerce.
- Calls for improved internet infrastructure and logistics for delivery and customer service.
- Member of The Professional Association of CISOs (PAC), Nov 2024 – Present
- Member of the International Association of Directors of Law Enforcement Standards and Training, 2022 - Present
- Member of The Association of Data Protection Officers, Jun 2021 – Present
- Member of the Young Professionals in Foreign Policy, Nov 2020 – Present
- Social Media Advocate – ISACA, Apr 2020 - Present
- Member of the World Institute for Nuclear Security (WINS), Dec 2019 – Present
- International Volunteer – Cyber Security Forum Initiative, May 2020 - Oct 2020
- Member of the International Association of Cyber & Economic Crime Professionals (IACECP)
- Member of The Chartered Society of Forensic Sciences
- Member of the International Institute of Certified Forensic Investigation Professionals, Inc. (IICFIP)
- Member of the ICTTF International Cyber Threat Task Force
- Member of the International Association of Computer Investigative Specialists (IACIS)
- Member of the High Technology Crime Investigation Association (HTCIA)
- Member of the Global Forum on Cyber Expertise (GFCE)
- Member of Harvard Business School
CVS Health | 03/2025 - Present
Shift Manager Farmingville, NY
Results-driven retail supervisor with expertise in managing store operations and leading teams to deliver outstanding customer service. Proven ability to oversee cash management, ensure strict policy compliance, and resolve customer relations issues effectively. Adept at training and coaching team members, facilitating communication between staff and management, and collaborating with external partners to enhance community outreach and support pharmacy operations.
Digital Bangladesh (ICT Division) Jun 2019 - Nov 2024
Senior Technical Specialist Bangladesh
- Lead South Asia’s Computer Security Incident Response Team (CSIRT), overseeing investigations and breach resolution while applying NIST guidelines, which strengthened the national cyber-defense strategy and reduced incident response time
- Developed and implemented cybersecurity policies, digital forensic procedures, and compliance frameworks based on NIST standards, resulting in consistent security practices across the agency
- Administered security infrastructure-including SIEM, IDS/IPS, next-generation firewalls, and endpoint protection-across government networks, which improved threat visibility and reduced detection gaps
- Designed digital forensics techniques using reverse-engineering tools that increased investigation efficiency and enhanced threat detection capabilities
- Conducted security awareness training programs reaching 1,000+ government personnel, elevating organizational security posture
- Led contributions to national digital development initiatives and helped shape cybersecurity policy using NIST guidelines and reverse-engineering techniques, resulting in a standardized security framework adopted by the ICT Division
UNODC Jan 2022 - Jul 2022
Senior Consultant, Ransomware Vienna
- Delivered hands-on training on cybercrime investigation and ransomware standards to law-enforcement officers in Southeast Asia and Pacific countries, using Python scripts and IDS/IPS labs, which increased participants’ ability to identify ransomware incidents
- Organized a series of expert meetings with regional analysts and law-enforcement leaders to share ransomware tactics, technical requirements, and collaboration strategies, resulting in a joint regional response framework
- Produced an analytical report on the ransomware threat landscape, including case studies and mitigation approaches, using threat-intel tools and Python analysis, which guided regional stakeholders in updating their security policies
- Provided bilateral technical consultations with national cyber units, applying incident-response procedures and reverse-engineering techniques to strengthen their ransomware response and prevention capabilities, leading to improved national readiness
The World Bank Jul 2015 - Jun 2019
Team Leader, National CIRT Bangladesh Bangladesh
- Reduced incident response time by 50% by building and directing a CIRT team, using NIST guidelines and Python automation to streamline investigation and response workflows
- Increased security effectiveness by 30% by implementing continuous monitoring with a SIEM platform, conducting intrusion detection analysis, and deploying security controls aligned with ISO 27001
- Enhanced cyber defense capabilities by refining incident response processes, leading security engineering projects, and launching awareness initiatives
- Managed SOC activities such as threat hunting, forensic analysis, and vulnerability management, which improved detection of critical threats and reduced unresolved vulnerabilities by 20%
- Member of the Young Professionals in Foreign Policy, Nov 2020 – Present
- Adviser – ISACA, NY, Apr 2020 - Present
- Member of the World Institute for Nuclear Security (WINS), Dec 2019 – Present
- International Volunteer – Cyber Security Forum Initiative, May 2020 - Oct 2020
- Member of the International Association of Cyber & Economic Crime Professionals (IACECP)
- Member of The Chartered Society of Forensic Sciences
- EnCE (EnCase Certified Examiner) - PCSS - ACE - CFIP - 3CE - CIMP - CECFE - SCCISP - GDPR Certified - Level 1 Intelligence Analyst,• Frameworks & Standards: NIST, ISO 27001, GDPR, MITRE ATT&CK, Cybercrime Investigation
- Leadership: CSIRT Operations, Security Strategy, Team Building, Cross-functional Collaboration, Training & Mentorship, Draft Policy
- Certified Networks Forensics Examiner (C)NFE, Mile2, 2024
- Certified Digital Forensics Examiner (CDFE), Mile2, 2024
- Passware Certified Examiner, Passware, 2024
- Certified Identity Management Professional (CIMP), IMI, 2024
- Qualified Counterintelligence Threat Analyst (Q|CTA), 2024
- Qualified Cyber Intelligence Professional (Q|CIP), 2024
- Certified Cyber Crime Examiner, NW3C, 2024
- Smart Cities & Critical Infrastructure Security Professionals (SCCISP), 2024
- Oxygen Forensic Expert User, Oxygen, 2024
- Certified Economic Crime Forensic Examiner (CECFE), NW3C, 2024
- OpenText Certified—EnCase Certified Examiner (EnCE), OpenText, 2023
- AccessData Certified Examiner (ACE) , AccessData, 2023
- Data Governance and Privacy: Data Democratization, 2021
- Qualified Cyber Intelligence Professional (QICIP), McAfee Institute, 2021
- GDPR Data Protection Officer Skills, UK, 2020