Designed and implemented a centralized Security Operations Center (SOC) with SIEM/SOAR integration for airline, payment gateway, OTA, and eCommerce platforms to improve threat detection and incident response.
PCI DSS Compliance & Security Hardening
SSL Wireless
Led PCI DSS and PA-DSS security implementation for payment systems including vulnerability management, penetration testing, encryption controls, and compliance documentation.
SIEM & Threat Hunting Deployment
Wipro Limited
Managed Splunk SIEM administration, log validation, use-case correlation, and threat hunting operations across Bangladesh and Myanmar customer environments.
Vulnerability Assessment & Penetration Testing Program
ASA NGO
Conducted enterprise-wide VAPT activities, remediation planning, and security hardening for applications, infrastructure, and endpoint systems.
Cybersecurity Governance & Risk Framework
TECHNONEXT
Implemented cybersecurity governance aligned with ISO 27001, NIST CSF, DORA, GDPR, HIPAA, FedRAMP, and PCI DSS frameworks for multinational operations.
Disaster Recovery & Business Continuity Security Project
dgMarket
Developed secure disaster recovery and business continuity plans for global e-GP and procurement platforms serving 65+ countries.
Enterprise Vulnerability Management System
eGeneration PLC
Designed and maintained enterprise vulnerability management processes including automated scanning, remediation tracking, and security reporting.
Security Architecture & Firewall Segmentation
Tech Mahindra
Architected and deployed secure network segmentation, firewall, IPS, DLP, and endpoint security solutions for enterprise infrastructure in Qatar operations.
DevSecOps & Secure SDLC Implementation
TECHNONEXT
Established secure software development lifecycle (SSDLC) practices integrating security controls into DevOps pipelines and development processes.
Identity & Access Management Security Enhancement
dgMarket
Implemented user authentication, authorization, and secure access management systems for global procurement and e-Governance platforms.
Security Awareness & Phishing Simulation Program
ASA NGO
Conducted cybersecurity awareness campaigns, phishing simulations, and staff training programs to improve organizational cyber resilience.
Data Protection & Encryption Implementation
TECHNONEXT
Implemented enterprise encryption and data protection mechanisms including DLP, secure data handling, and compliance-driven security controls.
Third-Party Security Risk Assessment Program
eGeneration PLC
Performed vendor security reviews, risk assessments, and compliance validation for third-party suppliers and technology partners.