Nexora Icon
Nexora
Home/Team/Mehedi
←Back to All Team Members
Available for Architectural Review
Cyber Security Analyst & Perimeter DefenderComputer Science & Technology (CST)

Mehedi

Mymensingh Polytechnic Institute • Mymensingh, Bangladesh

Proactive network monitoring, firewall architecture, vulnerability assessment, and defending enterprise digital perimeters.

30+Perimeter Audits
100%Intrusion Defense Rate
< 15mIncident Resolution
Zero-TrustSecurity Compliance

Engineering Background & Focus

Mehedi is an integral member of Nexora's cyber resilience and defensive operations squad. Learning alongside his fellow classmates in the Computer Science & Technology (CST) department at Mymensingh Polytechnic Institute, he is committed to building unbreachable infrastructure.

His focus centers on blue-team defense: security perimeter configurations, stateful firewall rules, intrusion detection systems (IDS/IPS), network segmentation, and incident response readiness. He monitors web server telemetry to identify emerging attack vectors before they disrupt live systems.

At Nexora, Mehedi collaborates with the development and deployment teams to enforce zero-trust access controls, verify security posture compliance, and ensure every client web asset is safeguarded against modern cyber threats.

Professional Philosophy

“The best cybersecurity is proactive, not reactive. You don't wait for an alarm to sound; you fortify the perimeter, monitor the traffic flows, and eliminate every single vulnerability before it can be leveraged.”

Core Domain Expertise & Specializations

A rigorous breakdown of technical areas where Mehedi engineers production solutions.

Perimeter Security

Network Perimeter Defense & Firewall Configuration

Configuring stateful firewall rules, port isolation, anti-spoofing policies, and access-control lists across production cloud droplets.

UFW & IptablesNetwork SegmentationPort HardeningAccess Control ListsTraffic Filtering
Threat Assessment

Threat Analysis & Vulnerability Assessment

Executing regular system audits, scanning network services for unpatched flaws, checking cipher suites, and validating TLS implementations.

NmapOpenVASVulnerability AuditingTLS 1.3 CiphersAttack Surface Mapping
Blue Team Defense

Intrusion Detection & Traffic Telemetry

Deploying automated intrusion monitoring (Fail2ban, Snort), analyzing packet anomalies, and establishing incident response playbooks.

Fail2banPacket InspectionTraffic Anomaly DetectionIncident ResponseSecurity Monitoring
Application Defense

Web Application Armor & Secure Configuration

Implementing defensive HTTP security headers (CSP, HSTS, X-Frame-Options), cookie flags, and protecting against common client-side threats.

Security HeadersHSTS / CSPCookie SecurityCORS HardeningOWASP Defensive Standards

Key Architectural Milestones & Deliverables

Proven platforms, infrastructure, and audit projects delivered with verified outcomes.

Cloud Server Perimeter Lockdown & Defense

Cyber Security Analyst

Implemented comprehensive network segmentation and automated firewall rules for a multi-tenant client production infrastructure.

Outcome:Deflected 20,000+ unauthorized brute-force and port probe attempts with 100% service uptime.
LinuxUFWFail2banNginx HardeningSyslog Analysis

Enterprise Web App Security Posture Audit

Defensive Security Auditor

Conducted exhaustive defense-in-depth reviews, auditing server headers, cipher suites, SSL/TLS handshake latency, and internal access privileges.

Outcome:Attained an A+ rating on SSL Labs and certified zero-trust perimeter verification.
SSL Labs AuditNmapWiresharkHTTP Header Hardening

Zero-Trust Incident Response Playbook

Threat Defender

Architected rapid-containment workflows and automated notifications for detecting abnormal traffic spikes and unauthorized administrative attempts.

Outcome:Reduced average threat containment response time to under 12 minutes.
Incident ResponseBash ScriptsMonitoring DaemonsAlert Webhooks

Collaborate Directly

Need Mehedi's specialized expertise on your web application architecture, security audit, or design sprint?

Direct engineering consultation
Tailored sprint & project quote
Zero detached middle managers

Technical Arsenal

Network Defense & Perimeters

UFW & IptablesNetwork SegmentationPort IsolationTLS / SSL StandardsReverse Proxy Protection

Threat Management & Monitoring

Threat AnalysisFail2ban DefenseTraffic TelemetryIncident Response PlaybooksLog Auditing

Auditing & Assessment Tools

Nmap Network ScanningWireshark Packet AnalysisSSL Labs AuditingVulnerability Mapping

Security Standards

Zero-Trust ModelDefense-in-DepthSecurity Headers (CSP/HSTS)OWASP Blue Team Standards

Academic & Credentials

Diploma in Engineering (Computer Science & Technology)Ongoing / CST Division

Mymensingh Polytechnic Institute

Specializing in computer networks, telecommunications, distributed systems security, and hardware architecture.

Certified Network Defense & Cyber Threat Analysis2024 - Present

Information Security Practical Certification

Comprehensive training in perimeter hardening, threat monitoring, incident response, and defensive cyber resilience.

Full Engineering Team

Ready to Build With Our CST Engineering Core?

Whether you need high-performance Next.js full-stack development, modern Figma UI/UX design systems, or rigorous penetration testing, our team delivers with zero overhead.