4+ years embedding security into cloud-native infrastructure, CI/CD pipelines, and compliance programmes. I also spend time researching vulnerabilities in the wild — some of which have been acknowledged by organisations like Mastercard, Sony, and Skyscanner.
MSc Information Security
Stockholm University, 2026
I'm a DevSecOps engineer who finds what's broken before it becomes a problem. I've built auditable, locked-down environments from the ground up — enforcing access controls, secrets management, and vulnerability management across Kubernetes and AWS workloads.
Currently completing my MSc in Information Security at Stockholm University (2024–2026). Comfortable owning security as a first dedicated hire. AWS Certified Solutions Architect.
Poridhi.io · Stockholm, Sweden
Evident Bd Ltd · Dhaka, Bangladesh
Animagus Research · Dhaka, Bangladesh
A deliberately vulnerable PDF watermarking platform for AppSec research and penetration testing training. 8+ realistic vulnerability scenarios mirroring production code patterns. 112 commits.
Open-source security research tool covering 8 real-world vulnerability classes — SSTI, SQLi, insecure deserialization, XSS. Independently forked and deployed by security teams worldwide.
Architected and secured CI/CD pipelines and AWS infrastructure for a live HRM SaaS scaling to 5,000+ users. GDPR-compliant controls for biometric and location data — zero data breaches.
Cloud Security
Container Security
CI/CD Security
Compliance
Infrastructure
Programming
Hosted at Accenture Sweden HQ, Stockholm. Cloud security CTF targeting real-world cloud misconfigurations using the Wiz platform — placed against Nordic security teams.
Responsibly disclosed vulnerabilities in production systems via Bugcrowd & HackerOne.
Open to DevSecOps, cloud security, and security engineering roles in Stockholm and remotely. Also available for freelance security assessments.
send me an email