Skip to content
24/7 prioritized emergency intake for critical business security incidents and web application compromises.
People behind Nexus

Meet the people responsible for every security, recovery, development and client-delivery decision.

The site now reflects the 16-person core roster plus dedicated Secure Web Development leadership, with public-facing responsibilities for every named person.
Leadership and ownership

Central accountability supported by specialist decision-making.

Nexus uses a 16-person core operating roster, while Secure Web Development is led by Mahfuz with Jannatun Nahar contributing cross-functionally and the VAPT team reviewing Premium builds.

One accountable company

Clients do not need to coordinate separate specialists or repeat the same context across departments.

Specialist ownership

Relevant leads and practitioners contribute wherever their subject knowledge is required.

Visible communication

Client communication stays tied to clear decisions, progress, risks and next actions.

Full team roster

Clear ownership across every operating team.

The first five rows total the official 16-person core roster. Secure Web Development is cross-functional and adds Mahfuz as delivery lead while Jannatun remains part of WordPress Recovery.

TeamLeadMembersSize
LeadershipTanvir1
VAPTMd Touhidul IslamRatul Islam Sikder, ISMAIL SARKER, Afran Robi, Maksuda Akter5
OSINT & ITShahin RubelAfroza Akter, Naima Akther Sukhi3
LLM & AI Security OperationsMd Shohidul IslamNiaz Uddin2
Hacked website RecoveryTasnimul HasanJannatun Nahar Siddika, Al Abid Khan3
Client SuccessMD. ARMAN ALI1

Roster rows, leads and member counts update automatically from published Team Members and their assigned departments.

Individual profiles

Leadership first, followed by every specialist and delivery member.

Four core delivery leaders are presented first. The remaining profiles follow beneath them with the same image, role, biography and social-link structure.

Core leadership

Meet the leaders guiding strategy, technical quality and delivery.

These four profiles represent the principal company, VAPT, OSINT and AI delivery leaders.

Tanvir — Founder & Chief Executive OfficerVAPT • MALWARE REMOVAL

Tanvir

Founder & Chief Executive Officer

Areas of Expertise: Enterprise Vulnerability Assessment & Penetration Testing (VAPT) | Cloud Infrastructure Security | Strategic SOC Operations | Digital Forensics | Specializations: Ethical Hacking | Core Networking | Bug Bounty Research | Experience: 5+ Years of Leadership in Cybersecurity | Education: BTECH in Cyber Security from Regent University.

Md Touhidul Islam — Co founder & MDCore Leader · VAPT

Md Touhidul Islam

Co founder & MD

Areas of Expertise: Enterprise Vulnerability Assessment & Penetration Testing (VAPT) | Red Teaming | Adversarial Simulations | Technical Oversight: Ethical Hacking | Cloud Penetration Testing | Bug Bounty Research | Advanced Network Exploitation | Experience: 6+ Years of Offensive Security Leadership.

MD. ARMAN ALI — Co-Founder & CRMClient Success

MD. ARMAN ALI

Co-Founder & CRM

Areas of Expertise: Strategic Relationship Governance | Account Management | Post-Assessment Advisory | Technical Oversight: Technical Report Simplification | Project Timeline Alignment | Remediation Advisory Facilitation | Experience: 3+ Years of Enterprise Client Success Experience

Specialists and delivery team

The people executing security, recovery, development and client success.

Every remaining named professional is shown below, including additional functional leads and cross-functional specialists.

Shahin Rubel — OSINT & IT Support LeadCore Leader · OSINT · IT

Shahin Rubel

OSINT & IT Support Lead

Areas of Expertise: Threat Intelligence Pipeline Management | Asset Discovery | Corporate IT Operations | Technical Oversight: Surface-Area Reconnaissance | External Infrastructure Mapping | Strategic Technical Operations | Experience: 4+ Years of Threat Intelligence & IT Experience

Md Shohidul Islam — AI, Data & Automation LeadCore Leader · AI · Automation

Md Shohidul Islam

AI, Data & Automation Lead

Areas of Expertise: Machine Learning Threat Profiling | Secure AI Integration | LLM Defense Architecture | Technical Oversight: AI Security Operations Strategy | Algorithmic Vulnerability Assessments | Secure Deployment Frameworks | Experience: 4+ Years of AI Security Operations Experience

Ratul Islam Sikder — Penetration Testing SpecialistVAPT

Ratul Islam Sikder

Penetration Testing Specialist

Areas of Expertise: Infrastructure Exploitation | Network Penetration Testing | Attack Path Mapping | Technical Oversight: Active Directory Assessment | Network Layer Auditing | Firewall Bypass Testing | Experience: 3+ Years of Network Penetration Testing Experience

ISMAIL SARKER — JavaScript & API Security SpecialistVAPT

ISMAIL SARKER

JavaScript & API Security Specialist

Areas of Expertise: Web Application Security | Manual Exploit Development | Vulnerability Scanning | Technical Oversight: OWASP Top 10 Audits | Business Logic Testing | API Security Assessments | Experience: 3+ Years of Application Security Experience

Afran Robi — VAPT AnalystVAPT

Afran Robi

VAPT Analyst

Areas of Expertise: Cloud Penetration Testing | Configuration Audits | Access Control Validation | Technical Oversight: Cloud Environment Reviews (AWS/Azure/GCP) | IAM Pentesting | Data Leak Prevention | Experience: 3+ Years of Cloud Security Experience

Maksuda Akter — Penetration Tester & Security AnalystVAPT

Maksuda Akter

Penetration Tester & Security Analyst

Areas of Expertise: Source Code Analysis | Secure Development Lifecycle (SDLC) | Vulnerability Verification | Technical Oversight: Static & Dynamic Code Reviews (SAST/DAST) | Defense Mechanism Hardening | Secure Code Architecture | Experience: 3+ Years of Software Security Experience

Tasnimul Hasan — Malware Recovery SpecialistRecovery

Tasnimul Hasan

Malware Recovery Specialist

Areas of Expertise: Emergency Incident Response | Malware Eradication | Threat Containment Operations | Technical Oversight: Digital Forensics | Breach Root-Cause Analysis | Rapid Disaster Recovery | Experience: 4+ Years of Incident Response & Containment Experience

Jannatun Nahar Siddika — Recovery & Secure Web Development SpecialistRecovery · Web Development

Jannatun Nahar Siddika

Recovery & Secure Web Development Specialist

Areas of Expertise: Forensic Log Auditing | Structural CMS Remediation | Malware Removal | Technical Oversight: Directory Architecture Scrubbing | Web Environment Forensic Deep-Dives | WordPress Recovery Alignment | Experience: 3+ Years of Digital Forensics & CMS Recovery Experience

Al Abid Khan — Website Hardening & Monitoring SpecialistRecovery

Al Abid Khan

Website Hardening & Monitoring Specialist

Areas of Expertise: Infrastructure Post-Breach Hardening | Code Loophole Remediation | Database Cleanup | Technical Oversight: Security Baseline Integration | CMS Fortification | Reinfection Prevention Controls | Experience: 3+ Years of Security Hardening & Recovery Experience

Afroza Akter — OSINT Analyst & Finance CoordinatorOSINT · Finance

Afroza Akter

OSINT Analyst & Finance Coordinator

Areas of Expertise: Digital Footprint Mapping | Passive Reconnaissance | Open-Source Intelligence (OSINT) | Technical Oversight: Dark Web Monitoring | Threat Landscape Indexing | Shadow IT Discovery | Experience: 3+ Years of Advanced OSINT Experience

Naima Akther Sukhi — OSINT Analyst & Finance CoordinatorOSINT · Finance

Naima Akther Sukhi

OSINT Analyst & Finance Coordinator

Areas of Expertise: Surface-Web Profiling | Data Leak Verification | Attack Surface Management | Technical Oversight: Information Exposure Auditing | Vulnerable Public Asset Tracking | Threat Vector Analysis | Experience: 3+ Years of Threat Intelligence Experience

Niaz Uddin — Security Analyst & Python DeveloperSecurity Analyst

Niaz Uddin

Security Analyst & Python Developer

Areas of Expertise: Prompt Injection Mitigation | Data Poisoning Defense | AI Model Boundary Hardening | Technical Oversight: Membership Inference Penetration Testing | Secure AI Implementation | Model Pipeline Security | Experience: 3+ Years of Artificial Intelligence Security Experience

Delivery ownership and capacity safeguards

Responsibilities are visible before client work is accepted.

Same-day finance logging

Afroza Akter and Naima record finance entries the same day, before technical delivery continues.

Load-aware scheduling

Tanvir and Jannatun carry multiple responsibilities, so WordPress Recovery and Secure Web Development work is scheduled against active capacity.

Premium build handoff

Mahfuz and Jannatun scope Premium Secure Web Development jointly with Md Touhidul Islam’s VAPT team before quotation and pre-launch testing.

Team principles

What every person is expected to protect.

Client confidentiality

Sensitive information is discussed only with people who need it for the authorized work.

Accurate communication

Updates distinguish confirmed evidence, informed assessment and unresolved uncertainty.

Documented responsibility

Tasks, findings, decisions and handoffs remain visible throughout an engagement.

Connect with the team through a real security conversation.