Khalid Nazmus Sakib

knsakib@gmail.com

(514) - 994-4521

Online Resume: https://knsakib.github.io/

Github repo: https://github.com/knsakib?tab=repositories

Blog: https://knsakib.com/

StackOverflow: http://stackoverflow.com/users/1877121/khalid/

Linkedin: https://www.linkedin.com/in/knsakib/



Profile

Total 11+ years of professional-level experience as well as 2+ years of Research and Development -

   • 4+ years experience in Application Security and currently working as an Application Security Service and Process Owner in One of the Major Banks in Canada
   • 5+ years experience in Cloud, PAAS, Serverless Orchestration, Server Hardening, Application Security, DevSecOps, Cloud Built Automation System, Pipeline Design, Scaling, Load Balancing, Detailed Server Logging, Monitoring, Alerting, Manage and Report defects
   • 2+ years experience in Modern Web Application Design using Microservice Architecture using NodeJS, NextJS, ReactJS, and Mobile application design using Flutter and React Native.
   • 1+ years experience in IoT and Hardware Programming, MQTT Protocols, Big Data Analysis, and Realtime Solutions.
   • 2+ years experience in Radio and Core Network Planning, Optimization, Home Location Server Logging, and KPI improvements.
   • 2+ years experience in Research and Development, Publishing International Journals, Conference Papers, and Critical problem-solving

Experience

National Bank

Security Service And Process Owner, Application Security

Nov 2021 - Continuing

• Responsible for choosing, benchmarking, and maintaining Container and Kubernetes Security Solution Provider and DevSecOps best practice in Container Orchestration.
• Supporting team to develop reusable Application Security Libraries to standardize end-to-end DevSecOps and SSDLC best practices.
• Responsible for Security Analysis, Benchmarking, and choosing SAST, DAST, and IAST solutions and advisory suggestions in security best practice for Jenkins, shared by major Application Teams in the Bank.
• Guiding different delivery towers and lines of business to remediate vulnerabilities and Application Security findings.
• Supporting teams for Developing and building DevSecOps pipeline and Integration of different security Tools in existing DevOps
• Policy creation for Kubernetes security and container runtime protection
• Working in collaboration with the Pentest team to identify application codebase vulnerabilities and provide solutions to resolve them.
• Responsible for developer training for secure coding practice and training content creation.


National Bank

Senior DevSecOps Advisor

Jan 2019 - Oct 2021

• Responsible for Application and Container Security Best Practice and Automation & Integration of Different Security Tools in DevSecOps context.
• Kubernetes and OpenShift Security Best Practice, Linux Hardening and Secure Implementation of Kafka.
• Advisory Support to different delivery towers or application teams in Security Best Practice, Finding vulnerabilities and Suggestion to resolve those.
• Development Initiative in building DevSecOps pipeline and Integration of different security Tools in existing DevOps
• Runtime protection, policy management in Application and Container level
• Hardening Unix Server, Secure configuration for IBM Barebones in collaboration with IBM team
• Worked in collaboration with the Development teams to identify and secure some major vulnerabilities in secret management and environment configuration in some major and critical applications in the Bank.
• Detailed Security Analysis and Advisory suggestion in security best practice for Jenkins, shared by major Application Teams in the Bank.


Longbow Advantage

Cloud Server Administrator

March 2018 - Jan 2019

• Responsible for Automatic deployment and Rollout Grunt task configuration and troubleshooting.
• Load Balancer configuration, implementation, and infrastructure autoscaling in Google Cloud Platform.
• New Microservice deployment using Docker both in Barebone instance and Kubernetes
• Shell Scripting to automate Cron Jobs
• LDAP server configuration SSO and SAML configuration for unifying Auth service in the infrastructure level
• Using StackDriver as a detailed Log Collection tool, Custom Log generation, and Dashboard Configuration
• Legacy network migration to Modern Virtual Private Cloud
• Linux administration and using it as a development and reproduction environment, shell scripting for automatic backup


Telus Inc.

Network Specialist

Nov 2014 - Feb 2018

• Automatic deployment configurations, troubleshooting and best practice suggestion to the users by hands-on reproduction of Jenkins environment with issues.
• Automatic agent configure for Puppet Master, Standalone Configuration, Manifest for Auto-scaling based on CPU and traffic utilization, Modules configuration, Certificate generation, Auto sign certificate configuration
• Using StackDriver as detailed Log Collection tool, Custom Log generation, and Dashboard Configuration
• Using Salesforce and JIRA as IT management tools, Bugenizer to report and monitor bugs
• Using GIT with GitHub, GitLab and Google Cloud repositories for version controlling
• Assisting with Deployment Configuration, troubleshooting coding and runtime issues for Python, Node.JS, and Java
• Big Data warehouse services like Big Query, Dataflow configuration and code troubleshooting in Google Cloud
• Work on and write reproduction code to raise bugs and provides guidelines for resolution
• Using Micro-service architecture in Docker-based environment and Kubernetes Cluster configuration


D3 Innovation Center

Innovation Engineer

Mar 2014 - Oct 2014

•Android App development and Micro-controller coding to collect sensor data to send the notification to the App when data reached a threshold.
• Single-handedly built Complete IOT products from hardware connection, coding microcontroller, built skeleton Andriod and IOS app for SmartWiFi configure, Used Firebase as a Database, visually displayed sensor data in the Web and Mobile and trigger based on the data threshold
• Complete product design experience in Client-Server based application Node.JS running on the Cloud and React in the client.
• Bluetooth Module coding to establish communication between Micro-controller and Bluetooth module attached to sensors
• Provided extensive and bootstrap support in several Startup Companies like Heddoko, Maker Blocks and managed Crowdfunded Project SLA


Concordia University

Research Assistant


Jan 2011 - Nov 2013

Following Publications were published during my research

• K. N. Sakib, M. Z. Kabir, and S. S. Williamson, "Cadmium telluride solar cell: From device modeling to system implementation" 2013 IEEE International Conference on Industrial Technology (ICIT), Cape Town, 2013, pp. 1561-1566.
• K. N. Sakib, M. Z. Kabir, and S. S. Williamson, "Cadmium telluride solar cell: From device modeling to electric vehicle battery management" 2013 IEEE Transportation Electrification Conference and Expo (ITEC), 2013 IEEE, Detroit, MI, USA



Orascom Telecom BD.

Network Subsytem Jr. Engineer

Jul 2009 - Dec 2010

• Developed a tool with VB script for automation of GSM sites creation and configuration in Home Location Server(HLS).
• Troubleshooting Core Network, Analyzing GSM call flow for KPI improvement and Configuring GSM Softswitch.
• Cell/Site configuration, Transmission channel define, Configuring Transceiver
• Conducted Base Station Controller and Site creation in GSM switch/core and E1 addition

Huawei Technologies

Asst. Radio Network Planning Engineer

Apr 2008 - Jun 2009

• Conducted Base Station Controller(BSC) and Location Area Code(LAC) planning
• Optimized Radio network, new site, and TRX planning for swap and expansion project
• Engineered KPI improvement through Drive Test log files and analyzing the results
• Facilitated Base Station Subsystem(BSS) engineers in radio interface problems.

Education

• Master of Applied Science in Electrical and Computer Engineering, Concordia University - Montreal, Canada
• Bachelor of Science in Electrical and Electronic Engineering, Bangladesh University of Engineering and Technology

Extra-Curricular Activities

• Volunteer works and guided students in ISO, Concordia (Certificates)
• Student member of IEEE and awarded in the International Web-page Design Contest
• Served as BUET reporter in a prominent national daily Newspaper for more than 2 years during undergraduate
• Nominated as one of the 2001 World Champion Amateur Poets in 2001 Summer Convention Washington D.C., USA and poem had been recorded in ‘The Sound of Poetry’ released both in CD and Cassette tape.

References

References would be provided upon request.

Khalid Nazmus Sakib — knsakib@gmail.com — (514) - 994-4521