+880 1700 000 000 hello@nexora.io
24/7 SOC Operational Client Portal EN ▾
NEXORA ENTERPRISE IT
— INSIGHTS & RESEARCH

From the engineering desk.
Perspectives that hold up in the field.

Technical deep-dives, architecture guides, and security intelligence from Nexora's practice leads — written for engineers and decision-makers who need substance, not SEO filler.

Filter by:
48Published articles
9Practice areas covered
6Contributing engineers
MonthlyThreat intelligence digest
— BROWSE BY TOPIC
9 practice areas covered
— ALL ARTICLES
Showing 9 of 47 articles
Sort by:
Cyber Security

PCI DSS v4.0 is live: the seven controls that will catch you out in your next QSA audit

Version 4.0 introduced customised approach options, tightened authentication requirements, and shifted the goalposts on e-commerce security. Here's the practical gap analysis our team runs before every QSA engagement.

Cloud

The hybrid-cloud cost trap: a FinOps framework for regulated workloads

How to architect for data sovereignty without paying the egress tax. A practical framework for financial services and healthcare organisations navigating multi-cloud cost structures while satisfying regulators.

WiFi

Wi-Fi 7 is here — but most enterprise sites aren't ready. The survey checklist.

Pre-deployment RF planning for 6 GHz, MLO, and 320 MHz channels. What your existing AP infrastructure actually supports, and where to invest before the upgrade cycle begins.

Networking

SD-WAN vs SASE: choosing the right architecture for 50-site retail and branch deployments

A vendor-neutral decision framework covering total cost of ownership, security posture, and operational complexity — built from deployments across banking, retail, and manufacturing sectors.

Cyber Security

The CISO's guide to ransomware negotiation: what to do in the first 72 hours

Drawing from incident response engagements across healthcare, manufacturing, and government clients — the decisions that determine outcome, and the mistakes that make containment impossible. A frank, operational guide.

Data Center

Tier III vs Tier IV: what the Uptime Institute rating actually means for your SLA commitments

Most organisations over-invest in Tier IV when their workloads don't justify it — and under-invest in the operational practices that make any tier rating meaningful. A quantitative framework for the right decision.

IoT & OT

IEC 62443 in practice: segmenting an OT network without stopping the production line

The Purdue model is the right framework — but applying it to a live factory floor requires sequenced cutover windows, temporary compensating controls, and operator buy-in from day one. Here's how we do it.

Compliance

ISO 27001:2022 Annex A controls: what's changed and what it means for your next surveillance audit

The 2022 revision restructured 114 controls into 93, introduced 11 new ones covering threat intelligence, cloud security, and ICT readiness — and most organisations haven't fully mapped their existing ISMS to the new structure.

Strategy

How to write an IT infrastructure RFP that actually surfaces vendor quality — not just price

Most infrastructure RFPs are written to be easy to score, not to reveal genuine delivery capability. A practical guide to evaluation criteria that separate technical competence from sales performance.

— POPULAR TAGS
— CONTRIBUTING AUTHORS

Written by the engineers
who build it.

Every article is authored by a named practice lead — no ghost-writing, no content farms. The person who wrote it has personally delivered these projects.

MK
Mahbub Karim
VP, Cyber Security

CISSP, OSCP. Former CISO at a regional telco. Writes on threat detection, incident response, and compliance architecture.

14 articles published
SA
Sabina Ahmed
Chief Technology Officer

AWS Pro, Azure Expert. 17 years in cloud architecture. Writes on FinOps, multi-cloud design, and cloud-native security.

9 articles published
TI
Tanvir Islam
Director, Data Center Practice

Uptime Institute ATD. Has commissioned 40+ Tier-III/IV data centers. Writes on facility design, power, and cooling.

8 articles published
RH
Rashed Hossain
Founder & CEO · CCIE

CCIE #21804. 25 years in network engineering. Writes on enterprise networking, SD-WAN, and WiFi design.

7 articles published
— PUT IT INTO PRACTICE

Read enough? Let's talk about
your actual environment.

Our practice leads are the same engineers who write these articles. Book a 30-minute discovery call and get the same candour applied directly to your infrastructure challenges — free, no obligation.

48hResponse SLA
FreeFirst consultation
NDAAvailable on request