Building Secure, Scalable &
High-Performance Software Systems.
Software engineer and security professional with 8+ years of experience designing production-grade platforms, cloud-native systems, and secure mission-critical infrastructure. I build resilient engineering organizations, establish architectural standards, and deliver scalable solutions that drive business outcomes across enterprise, government, and high-growth technology environments.

Production systems, not demos.
A snapshot of recent engagements where architectural decisions made the difference between a system that scales and one that doesn't.
Centralized Queue Management System
Problem. Branch-based customer service required better visibility into customer queues, waiting times, service counters, and service-delivery performance.
Solution. Contributed to the development of a centralized queue-management platform for managing customer queues, service counters, real-time queue information, and operational service monitoring across banking branches.
- Improved visibility into customer queues and branch service activity.
- Enabled centralized monitoring of customer service operations.
Bangladesh Investment Development Authority
Problem. Investment-related government services required a centralized digital platform to reduce manual processing and improve transparency, accessibility, and service tracking.
Solution. Contributed to the development and integration of digital government services through APIs, backend business workflows, database services, external integrations, and application-processing modules.
- Enabled investors and businesses to submit investment-related applications online.
- Streamlined digital processing of industrial investment, work permit, visa, branch/liaison office, project, IRC and related services.
Smart Land Service Delivery System
Problem. Land-related government services involved complex manual processes, fragmented information, paperwork, and limited visibility into application progress.
Solution. Contributed to the development and integration of a centralized digital land-service platform covering online applications, service workflows, document processing, verification, GIS-related capabilities, and application tracking.
- Enabled citizens to access land-related government services through online channels.
- Digitized application and approval workflows for multiple land-related services.
A full-stack practice grounded in security and scale.
Eight years across backend, frontend, cloud, and security — combined into systems that hold up in production.
Backend Engineering
API-first services, domain modeling, performance.
Frontend Engineering
Type-safe interfaces, SSR, design systems.
Cloud & DevOps
Reliable delivery pipelines and elastic infrastructure.
Cyber Security
Designing systems that resist real-world threats.
Systems Architecture
From monolith to distributed, with discipline.
AI & Automation
LLM-powered features and engineering workflows.
Data & Messaging
Streams, queues, and orchestration at scale.
Observability
Knowing what production is doing, always.
Databases
Relational, in-memory, and tuned for the workload.
Selected experience.
Senior roles across regulated, enterprise, and high-traffic environments.
Architectural decisions, the trade-offs they make, and the results that follow.
Scaling a Payments Ledger to 10K TPS
Replacing a legacy ledger with an event-sourced core capable of sustaining mission-critical transaction throughput.
┌────────────┐ ┌──────────────┐ ┌──────────────┐
Client ─▶│ API Edge │───▶│ Command Bus │───▶│ Aggregates │
└────────────┘ └──────────────┘ └──────┬───────┘
│ events
┌──────▼───────┐
│ Kafka │
└──┬────┬───┬──┘
│ │ │
┌─────────▼┐ ┌─▼─┐ ▼─────────┐
│ Balances │ │AML│ │ Reports │
│ Project. │ │ │ │ Project.│
└──────────┘ └───┘ └─────────┘Zero-Trust Architecture for Citizen Services
Designing a national-scale services platform that met a strict security audit on the first attempt.
┌──────────┐ ┌──────────────┐ ┌────────────────┐
│ Citizen │────▶│ Edge GW │────▶│ Policy Engine │
└──────────┘ │ + mTLS │ └──────┬─────────┘
└──────┬───────┘ │
│ signed JWT │ allow/deny
▼ ▼
┌──────────────────────────────┐
│ Ministry Service Mesh │
│ (per-service mTLS + OTel) │
└──────────┬───────────────────┘
▼
┌───────────────┐
│ Audit Ledger │
└───────────────┘Real-Time Fleet Tracking for 50K Vehicles
Re-platforming a polling-based tracker into a streaming pipeline that ingests 200K location events per second with sub-second dashboards.
┌──────────┐ ┌──────────┐ ┌───────────────┐ ┌──────────┐
│ Vehicles │───▶│ MQTT │───▶│ Stream Proc │───▶│ Redis │
└──────────┘ │ Broker │ │ (geofence + │ │ (live) │
└──────────┘ │ enrichment) │ └────┬─────┘
└──────┬────────┘ │
▼ ▼
┌────────────┐ ┌──────────────┐
│ ClickHouse │ │ Dispatch UI │
│ (history) │ │ (websocket) │
└────────────┘ └──────────────┘Modernizing a Hospital EHR Without Downtime
Strangling a 15-year-old monolithic EHR into HIPAA-compliant services while keeping clinicians on the floor and patients on schedule.
┌──────────┐ ┌──────────────┐
│ Clients │───▶│ Façade / │
└──────────┘ │ Feature Flg │
└──┬────────┬──┘
old │ │ new
▼ ▼
┌──────────┐ ┌────────────────┐
│ Monolith │ │ Domain Service │
│ (EHR) │ │ (Scheduling…) │
└────┬─────┘ └────────┬───────┘
▼ ▼
┌─────────────────────────────┐
│ HL7 / FHIR Translation │
└─────────────────────────────┘Self-Serve Feature Platform for 40 ML Teams
Cutting feature-to-production time from 6 weeks to 2 days with a unified offline/online feature store and contract-based ownership.
┌────────────────────┐
│ Feature Registry │
│ (typed contracts) │
└─────────┬──────────┘
│
┌───────────┴───────────┐
▼ ▼
┌─────────────┐ ┌─────────────┐
│ Offline │ │ Online │
│ (Parquet, │ │ (KV store, │
│ Spark) │ │ <10ms) │
└──────┬──────┘ └──────┬──────┘
▼ ▼
┌─────────────┐ ┌─────────────┐
│ Training │ │ Serving │
└─────────────┘ └─────────────┘Sharing the practice openly.
Articles, talks, and videos on backend engineering, distributed systems, and security.
Designing Event-Driven Systems That Survive Production
Idempotency, outbox patterns, and the boring decisions that separate event-driven systems that scale from those that collapse under load.
Identity and Access Management
Users, Groups, and Policies
Trusted by engineering leaders.
“One of the strongest engineers I've worked with. Arif brings the rare combination of architectural depth, security instinct, and the calm to lead under pressure.”
“Architected a platform that passed our national security audit on the first attempt. His designs are pragmatic, defensible, and built to last.”
“Delivered a payments core that has been flawless in production. We trust his judgement on the hardest design calls.”