Meet the people responsible for every security, recovery, development and client-delivery decision.
Central accountability supported by specialist decision-making.
Nexus uses a 16-person core operating roster, while Secure Web Development is led by Mahfuz with Jannatun Nahar contributing cross-functionally and the VAPT team reviewing Premium builds.
One accountable company
Clients do not need to coordinate separate specialists or repeat the same context across departments.
Specialist ownership
Relevant leads and practitioners contribute wherever their subject knowledge is required.
Visible communication
Client communication stays tied to clear decisions, progress, risks and next actions.
Clear ownership across every operating team.
The first five rows total the official 16-person core roster. Secure Web Development is cross-functional and adds Mahfuz as delivery lead while Jannatun remains part of WordPress Recovery.
| Team | Lead | Members | Size |
|---|---|---|---|
| Leadership | Tanvir | — | 1 |
| VAPT | Md Touhidul Islam | Ratul Islam Sikder, ISMAIL SARKER, Afran Robi, Maksuda Akter | 5 |
| OSINT & IT | Shahin Rubel | Afroza Akter, Naima Akther Sukhi | 3 |
| LLM & AI Security Operations | Md Shohidul Islam | Niaz Uddin | 2 |
| Hacked website Recovery | Tasnimul Hasan | Jannatun Nahar Siddika, Al Abid Khan | 3 |
| Client Success | MD. ARMAN ALI | — | 1 |
Roster rows, leads and member counts update automatically from published Team Members and their assigned departments.
Leadership first, followed by every specialist and delivery member.
Four core delivery leaders are presented first. The remaining profiles follow beneath them with the same image, role, biography and social-link structure.
Meet the leaders guiding strategy, technical quality and delivery.
These four profiles represent the principal company, VAPT, OSINT and AI delivery leaders.
VAPT • MALWARE REMOVALTanvir
Founder & Chief Executive Officer
Areas of Expertise: Enterprise Vulnerability Assessment & Penetration Testing (VAPT) | Cloud Infrastructure Security | Strategic SOC Operations | Digital Forensics | Specializations: Ethical Hacking | Core Networking | Bug Bounty Research | Experience: 5+ Years of Leadership in Cybersecurity | Education: BTECH in Cyber Security from Regent University.
Core Leader · VAPTMd Touhidul Islam
Co founder & MD
Areas of Expertise: Enterprise Vulnerability Assessment & Penetration Testing (VAPT) | Red Teaming | Adversarial Simulations | Technical Oversight: Ethical Hacking | Cloud Penetration Testing | Bug Bounty Research | Advanced Network Exploitation | Experience: 6+ Years of Offensive Security Leadership.
Client SuccessMD. ARMAN ALI
Co-Founder & CRM
Areas of Expertise: Strategic Relationship Governance | Account Management | Post-Assessment Advisory | Technical Oversight: Technical Report Simplification | Project Timeline Alignment | Remediation Advisory Facilitation | Experience: 3+ Years of Enterprise Client Success Experience
The people executing security, recovery, development and client success.
Every remaining named professional is shown below, including additional functional leads and cross-functional specialists.
Core Leader · OSINT · ITShahin Rubel
OSINT & IT Support Lead
Areas of Expertise: Threat Intelligence Pipeline Management | Asset Discovery | Corporate IT Operations | Technical Oversight: Surface-Area Reconnaissance | External Infrastructure Mapping | Strategic Technical Operations | Experience: 4+ Years of Threat Intelligence & IT Experience
Core Leader · AI · AutomationMd Shohidul Islam
AI, Data & Automation Lead
Areas of Expertise: Machine Learning Threat Profiling | Secure AI Integration | LLM Defense Architecture | Technical Oversight: AI Security Operations Strategy | Algorithmic Vulnerability Assessments | Secure Deployment Frameworks | Experience: 4+ Years of AI Security Operations Experience
VAPTRatul Islam Sikder
Penetration Testing Specialist
Areas of Expertise: Infrastructure Exploitation | Network Penetration Testing | Attack Path Mapping | Technical Oversight: Active Directory Assessment | Network Layer Auditing | Firewall Bypass Testing | Experience: 3+ Years of Network Penetration Testing Experience
VAPTISMAIL SARKER
JavaScript & API Security Specialist
Areas of Expertise: Web Application Security | Manual Exploit Development | Vulnerability Scanning | Technical Oversight: OWASP Top 10 Audits | Business Logic Testing | API Security Assessments | Experience: 3+ Years of Application Security Experience
VAPTAfran Robi
VAPT Analyst
Areas of Expertise: Cloud Penetration Testing | Configuration Audits | Access Control Validation | Technical Oversight: Cloud Environment Reviews (AWS/Azure/GCP) | IAM Pentesting | Data Leak Prevention | Experience: 3+ Years of Cloud Security Experience
VAPTMaksuda Akter
Penetration Tester & Security Analyst
Areas of Expertise: Source Code Analysis | Secure Development Lifecycle (SDLC) | Vulnerability Verification | Technical Oversight: Static & Dynamic Code Reviews (SAST/DAST) | Defense Mechanism Hardening | Secure Code Architecture | Experience: 3+ Years of Software Security Experience
RecoveryTasnimul Hasan
Malware Recovery Specialist
Areas of Expertise: Emergency Incident Response | Malware Eradication | Threat Containment Operations | Technical Oversight: Digital Forensics | Breach Root-Cause Analysis | Rapid Disaster Recovery | Experience: 4+ Years of Incident Response & Containment Experience
Recovery · Web DevelopmentJannatun Nahar Siddika
Recovery & Secure Web Development Specialist
Areas of Expertise: Forensic Log Auditing | Structural CMS Remediation | Malware Removal | Technical Oversight: Directory Architecture Scrubbing | Web Environment Forensic Deep-Dives | WordPress Recovery Alignment | Experience: 3+ Years of Digital Forensics & CMS Recovery Experience
RecoveryAl Abid Khan
Website Hardening & Monitoring Specialist
Areas of Expertise: Infrastructure Post-Breach Hardening | Code Loophole Remediation | Database Cleanup | Technical Oversight: Security Baseline Integration | CMS Fortification | Reinfection Prevention Controls | Experience: 3+ Years of Security Hardening & Recovery Experience
OSINT · FinanceAfroza Akter
OSINT Analyst & Finance Coordinator
Areas of Expertise: Digital Footprint Mapping | Passive Reconnaissance | Open-Source Intelligence (OSINT) | Technical Oversight: Dark Web Monitoring | Threat Landscape Indexing | Shadow IT Discovery | Experience: 3+ Years of Advanced OSINT Experience
OSINT · FinanceNaima Akther Sukhi
OSINT Analyst & Finance Coordinator
Areas of Expertise: Surface-Web Profiling | Data Leak Verification | Attack Surface Management | Technical Oversight: Information Exposure Auditing | Vulnerable Public Asset Tracking | Threat Vector Analysis | Experience: 3+ Years of Threat Intelligence Experience
Security AnalystNiaz Uddin
Security Analyst & Python Developer
Areas of Expertise: Prompt Injection Mitigation | Data Poisoning Defense | AI Model Boundary Hardening | Technical Oversight: Membership Inference Penetration Testing | Secure AI Implementation | Model Pipeline Security | Experience: 3+ Years of Artificial Intelligence Security Experience
Responsibilities are visible before client work is accepted.
Same-day finance logging
Afroza Akter and Naima record finance entries the same day, before technical delivery continues.
Load-aware scheduling
Tanvir and Jannatun carry multiple responsibilities, so WordPress Recovery and Secure Web Development work is scheduled against active capacity.
Premium build handoff
Mahfuz and Jannatun scope Premium Secure Web Development jointly with Md Touhidul Islam’s VAPT team before quotation and pre-launch testing.
What every person is expected to protect.
Client confidentiality
Sensitive information is discussed only with people who need it for the authorized work.
Accurate communication
Updates distinguish confirmed evidence, informed assessment and unresolved uncertainty.
Documented responsibility
Tasks, findings, decisions and handoffs remain visible throughout an engagement.
