Sayed Rejwanur Rahman
Sayed Rejwanur Rahman

Security Researcher and AI Cybersecurity Engineer

Actively looking · Member since 25 Aug 2026
Message
Location
Dhaka, Bangladesh
Desired salary
Unspecified
Work preference
Hybrid / Full Time, Part Time, Contract, Freelance
Experience level
Mid

About

Professional summary

I am a security researcher and Python engineer focused on vulnerability discovery, AI-native security tooling, and adversarial robustness. I build practical systems that help identify root-cause vulnerabilities across large and complex attack surfaces.

I architect and lead NIGHTSHADE, an AI-powered cyber operations platform that combines LLM orchestration, structured reasoning, and security automation. My work includes bespoke AST parsers, fuzzers, CVSS evaluators, and asynchronous analysis pipelines.

I have conducted independent security research with confirmed findings affecting Netflix, Circle (USDC/CCTP), and Lightspark. My research experience spans ReDoS, authorization and authentication bypasses, rate-limit failures, denial-of-service risks, and smart-contract security.

I am experienced in applied machine learning and AI security, including PyTorch, TensorFlow, transformers, RAG systems, NLP, adversarial ML, and LLM red teaming. I also developed medical AI research using Swin Transformer and DenseNet-169 for bone-fracture detection and adversarial robustness evaluation.

My engineering background includes Python, Flask, REST APIs, PostgreSQL, Docker, Linux, CI/CD, and cloud platforms. I hold CompTIA CySA+ and PenTest+ certifications and have achieved a Top 1% global ranking on TryHackMe.

I am based in Dhaka, Bangladesh, and am focused on cybersecurity engineering, security research, AI security, and security automation opportunities.

Skills

29 capabilities

Tech stack & tools

Working toolkit

Experience

Career history

Architect & Lead Developer NIGHTSHADE

Architecting and leading development of NIGHTSHADE, an AI-powered security operations platform for structured, multi-step analysis of large enterprise attack surfaces.

Built Python-native security tooling including AST parsers, fuzzers, automated CVSS evaluators, and AI-assisted pattern-recognition workflows to surface root-cause vulnerabilities.

Backend Engineer Malware & Protocol Analysis Engine

Engineered binary and protocol triage capabilities using entropy scanning, PE parsing, dynamic network interception, and command-and-control lookup workflows.

Implemented thread-safe asynchronous Python pipelines for parallel analysis and PDF report generation.

Full-Stack Developer FreshaFlask

Designed and deployed a production Flask application with authentication, PostgreSQL, REST APIs, and Docker.

Implemented secure authentication flows and RESTful endpoints following application-security best practices.

Independent Security Researcher HackerOne

Conducted vulnerability research and submitted confirmed findings affecting Netflix, Circle (USDC/CCTP), and Lightspark.

Identified a ReDoS issue at Netflix, fail-open rate-limit and cross-domain DoS issues in Circle MessageTransmitter, and an authorization bypass in a Lightspark treasury.move smart contract with a fund-drainage proof of concept.

Researcher X-BONE v2

Developed a multi-task bone-fracture detection system using Swin Transformer and DenseNet-169 on MURA X-ray data.

Performed adversarial robustness evaluation with AutoAttack, with research reported as under review at IEEE JBHI.

Education

Learning history
No education data available.

This professional hasn’t added portfolio projects yet.

This professional hasn’t listed any services yet.

People also viewed

All talent ›
Jobs Talent AI Tools Salaries
Menu