CSE Undergraduate · Chittagong University of Engineering & Technology (CUET)
Security-Focused Backend & Systems Developer · Competitive Programmer
Penetration Testing · Networking · DevOps · Linux & Cloud Infrastructure
Computer Science undergraduate building and securing real-world systems across backend engineering, penetration testing, networking, DevOps, and self-hosted AWS infrastructure. I work with Linux, Docker, Git, reverse proxies, databases, and cloud services to build, deploy, operate, and harden systems.
My competitive programming background shapes a systems-first approach to security: understand how software and infrastructure work internally, then test, improve, and secure them.
- Deepening my Django knowledge for secure backend architecture and rapid development
- Progressing through TryHackMe's Junior Pentester path
- Practicing on Hack The Box and picoCTF
- Designing and self-hosting full-stack applications on AWS EC2
- Building repeatable CI/CD workflows with GitHub Actions to automate testing and application delivery
| Project | What it demonstrates | Core stack |
|---|---|---|
| Real-Time Cyber Attack Monitoring & Threat Intelligence Platform | Self-hosted pipeline that detects SQLi, XSS, brute-force, and DDoS activity with a hybrid rule and ML engine, then streams findings to a live dashboard | TypeScript, WebSocket, ML |
| CinemaSeat | Concurrency-safe booking using Redis atomic holds and PostgreSQL constraints; a 100-buyer contention test produced one success, 99 clean conflicts, and zero oversells, with validation and delivery automated through GitHub Actions CI/CD | FastAPI, React, PostgreSQL, Redis, GitHub Actions, CI/CD |
| Full Custom DNS Spoofer with Scapy | Authorized-lab toolkit covering network discovery, ARP spoofing, packet inspection, and targeted DNS interception | Python, Scapy, ARP, DNS |
| Self-Hosted Cloud Server | Private, containerized cloud with file sync, HTTPS, local DNS, and zero-trust remote access | Docker, Nextcloud, Pi-hole, Twingate |
| Basilisk Shell | Natural-language terminal assistant with audited command generation, layered safety checks, and risk-gated execution | Python, Bash, Linux |
Languages — Python, TypeScript, C, C++, C#, Java, Bash
Backend & Data Engineering — FastAPI, Django, Spring Boot, PostgreSQL, MySQL, Redis, SQL, ETL, data modeling, data cleaning, data validation
Security & Networking — Penetration testing, network traffic analysis, threat detection, Scapy, eBPF/BCC, DNS, TCP/IP
DevOps, Systems & Infrastructure — Linux, Docker, AWS EC2, Git, GitHub Actions, CI/CD, Nginx Proxy Manager, Twingate
| Highlight | Evidence | Date |
|---|---|---|
| 1st Runner-Up — Zero to Production | Built CinemaSeat with team Cuet cryptic_knights at the IEEE Computer Society CUET × Poridhi.io hackathon | Aug 2026 |
| TryHackMe: MAGE · Top 4% | Hands-on security rooms spanning offensive and defensive topics | Jul 2026 |
| Associate Data Engineer | DataCamp credential covering SQL, ETL, data modeling, cleaning, and validation | Feb 2026 |
| CUET IUPC 2025 — Team Rank 111 | Competed against university teams from across Bangladesh as part of CUET_DEBUGFORCES | Dec 2025 |
| CompTIA Network+ (N10-009) Course Completion | Completed the CBT Nuggets course covering networking and troubleshooting fundamentals | Dec 2025 |
| Codeforces Pupil | Rating 1201, maximum 1226; 500+ problems solved across online judges | Mar 2025 |
| ICPC Asia Dhaka Preliminary 2024 | Competed as part of CUET_DEBUGFORCES | Nov 2024 |
| 7th Place — Junior Programming Contest | Intra-university contest organized by the CUET Computer Club | Mar 2024 |
- DNS Spoofing in a Lab: What Scapy Teaches You About Trust — lessons from building an isolated, authorized DNS-interception lab
I'm open to internships and entry-level roles in security, backend engineering, DevOps, and infrastructure. Explore my portfolio, view my resume, or reach out through LinkedIn or email.

