Cybersecurity Expertise Meets Technical Innovation

I’m M Afzal Yousaf Cybersecurity Engineer. Compliance Consultant. Technical Consultant. PMP Project Manager. Entrepreneur.

I provide expert cybersecurity consulting, compliance solutions, and technical strategies to help businesses achieve resilience, secure infrastructure, and drive digital transformation with confidence.

Connect With Me

About Muhammad Afzaal - Journey Section

About Muhammad Afzaal

Building credible cybersecurity & compliance outcomes across regulated environments

The Journey So Far

I began my professional journey after moving to Dublin At 18, building experience over time at the intersection of cybersecurity, ICT risk, and regulatory compliance.

My current focus is on cybersecurity, ICT risk, and regulatory compliance., I hold an MSc in Cybersecurity from University College Dublin, and a Level 9 micro‑credential specialising Cyber Risk & Digital Operational Resilience (DORA) from Munster Technological University. I’m pursuing CISA to deepen governance and audit rigor. In parallel, I’m developing CTechSol, an applied consultancy uniting legal, technical, and AI governance for regulated sectors.

mafzaal.com is where I share what I’m learning: practical DORA implementation, GDPR alignment roadmaps, AI governance frameworks, and lessons from building while studying and working full‑time.

6+ Years Consulting
Experience
Irish Industry
2 Master's
Degrees
50+ Projects
Delivered
5+ Professional
Certifications

Education & Credentials

MSc Cybersecurity

University College Dublin

2024 - 2026

Advanced cybersecurity, risk management, and compliance frameworks

Level 9 Micro Credential - DORA

Munster Technological University

2025 - 2026

Specialisation in ICT Risk & EU Regulatory Compliance

Professional Certifications

Multiple Bodies

Ongoing

CISA, ISO 27001 Lead Implementer, and more

Community & Mentoring

Volunteer Leadership

Rent Ireland Community – Co‑Founder & Admin

Dublin, Ireland · 2021 – Present · 1,000+ members

After arriving in Dublin as a student and experiencing the housing challenges first‑hand, I co‑founded Rent Ireland to help Pakistani students and professionals find safe, fair accommodation.

  • Built and moderate a 1,000+ member community connecting newcomers with verified housing options.
  • Facilitated 200+ successful accommodation matches, reducing settlement time from 6+ weeks to 2–3 weeks.
  • Defined and enforce anti‑fraud rules to prevent exploitation and scams in a high‑risk rental market.
Career Mentoring

CV, LinkedIn & Career Guidance – Volunteer Mentor

Remote / Dublin · 2023 – Present · 100+ students mentored

Provide free, practical career guidance for Pakistani students and professionals entering the Irish job market—covering CV review, LinkedIn optimisation, interview prep and settlement support.

  • Mentored 100+ students and early‑career professionals with personalised CV and LinkedIn reviews.
  • Coached candidates for behavioural and technical interviews, helping many secure roles in tech, finance and compliance.
  • Created reusable templates and checklists that are now used across wider Pakistani‑Irish student networks.
What I Do Section
What I Do

Expertise & Solutions

Empower your business with expert Cybersecurity and Compliance Consulting combined with Technical Solutions for Digital Transformation. We help organizations strengthen resilience through DORA and GDPR compliance, secure infrastructure engineering, and advanced network security. From audits and risk management to cloud security and infrastructure design, our solutions turn compliance into a competitive advantage.

Cybersecurity Audits & Assurance

Strengthen security with ISO 27001 and NIST CSF audits, Gap analysis, and actionable remediation plans for compliance and resilience.

DORA Readiness & Gap Assesment

Achieve DORA and NIS2 compliance with expert guidance on ICT risk, incident reporting, and resilience testing for EU regulatory readiness.

GDPR Compliance Audit for SMEs

End‑to‑end GDPR review covering data mapping, lawful basis, DPIAs, records of processing, data subject rights, and security of processing, delivered as a prioritised action plan for Irish/EU SMEs.

Data Protection Impact Assessments (DPO)

Outsourced DPO services for GDPR compliance, DPIAs, and governance to safeguard data and reduce regulatory risk. .

Cloud & Identity Security

Protect cloud environments and identities with MFA, Zero Trust, and advanced security controls for resilience and compliance.

Cybersecurity Training & Awareness

Reduce human risk with cybersecurity training, phishing simulations, and awareness programs tailored to your organization.

Penetration Testing & Validation

Discover and fix vulnerabilities with expert penetration testing and validation for stronger security and compliance.

Policy, Risk & Governance

Develop and implement robust security policies, risk registers, and governance frameworks aligned with ISO 27001, NIS2, and leading cybersecurity standards to ensure compliance and resilience

Vendor & Third-Party Risk 9

Reduce supply chain risk with vendor assessments, compliance checks, and continuous monitoring for third-party security assurance

Infrastructure & Network Engineering

Build secure IT infrastructure with advanced firewalls, network hardening, and optimized configurations for resilience and performance.

AI Software Development

Build AI-powered applications for automation, analytics, innovation, and agentic workflow systems with secure, scalable software development.

Secure Digital Transformation

Drive secure technical transformation with cloud migration, architecture reviews, and modernization strategies for resilience.

Features

What I Do

Web Development

a one-sentence blurb.

Web Development

a one-sentence blurb.

Web Development

a one-sentence blurb.

Web Development

a one-sentence blurb.

Web Development

a one-sentence blurb.

Web Development

a one-sentence blurb.

Resume Section for WordPress
Professional Profile

Cybersecurity and digital operational resilience professional with a structured background in computer science, cybersecurity, ICT risk management, and EU regulatory compliance. Experience spans regulated environments, governance‑driven security programmes, and applied risk management aligned with DORA, NIS2, and ISO/IEC 27001.

2017 - 2026

Education & Professional Training

M.Sc in CyberSecurity (Level 9)

University College Dublin, Ireland (UCD) | (2024 - 2026), 2 Year Programme - 118th QS World Ranking

Core Modules: Cyber Risk Assessment & Standards, Information Security Management, Applied Cryptography, Network Security, Ethical Hacking, Incident Response, Cybersecurity Law, Secure Software Engineering Principles, Leadership in Cybersecurity.

Certificate in Digital Operational Resilience (DORA) & ICT Risk Management (Level 9)

Munster Technological University (MTU), Ireland | (2025 - 2026)

Focus areas: EU ICT risk management frameworks, Digital Operational Resilience Act (DORA), NIS2 Directive, GDPR, ISO/IEC 27001 alignment, ICT governance and third‑party ICT risk management, and regulatory compliance implementation.

B.Sc(hons) in Computer Science (Level 8)

Griffith College Cork, Ireland (2017 - 2020)

Focus areas: Linux Administration, Software Development, Data Analytics, Cyber Security & Ethical Hacking, Advanced Networking.

Professional Diploma in Project Management

IBAT College Dublin (2021 - 2021)

Specialisation: End-to-end project delivery, risk management, Agile & Waterfall methodologies, budgeting and scheduling for regulated IT and cybersecurity programmes in Ireland.

Professional Training – Risk Management

International Business Management Institute (IBMI - Germany Remote) Jul 2022

Focus areas: Risk identification, risk evaluation, risk treatment strategies, and continuous risk monitoring in organisational and operational contexts.

Job Experience

Sr. System Engineer

DBFL Consulting Engineers — Dublin, Ireland | (2023 - Present)

Responsible for day‑to‑day operation and security of enterprise IT across Microsoft 365, Azure AD, endpoints, and networks in a professional services environment. Lead incident response, access control, vendor coordination, backup/BCP hygiene, and implementation of governance‑aligned controls (ISO‑style) to keep operations resilient. .

IT Project Manager (Contract)

IN2 Engineering — Dublin, Ireland | (Jan 2023 – Apr 2023)

Led IT service delivery and operations in a fast‑paced engineering environment, owning incident, request, and escalation processes with KPI/SLA accountability. Coordinated third‑party providers while stabilising core infrastructure, hardening email/security controls, and improving documentation, DR, and asset governance.

Project Manager Engineer

EVAD IT Solutions — Dublin, Ireland | (Sep 2021 – Jan 2023)

Delivered IT & cybersecurity projects end‑to‑end across client environments—planning, execution, stakeholder coordination, risk & issue tracking, and progress reporting. Bridged technical teams and business functions, applying PMO discipline to infrastructure, security hardening, and service‑management initiatives.

Early Career & Supporting Experience

Freelance Software/Field Services Engineer (2019 – 2021) | Concurrent Technical Consulting (Part‑time) | Earlier roles (Desktop Support, Junior PM)

Freelance Software/Field Services Engineer (2019 – 2021) — Delivered software and on‑site technical work, building a foundation in systems, networking, and client delivery.

Concurrent Technical Consulting (Part‑time) — Provided targeted advisory while at DBFL (scope‑bound, non‑conflicting).

Earlier roles (Desktop Support, Junior PM) — Entry‑level delivery and support experience that under

Profile

About Me

M Afzaal is a cybersecurity & operational resilience professional in Ireland. I focus on DORA, NIS2, ISO 27001 and ICT risk turning regulation into practical controls, clear remediation roadmaps, and resilient operations for SMEs. Currently building a DORA assessment tool alongside MSc Cybersecurity (UCD) and leading Microsoft 365/Azure security and incident response.

I thrive on turning complex security and compliance challenges into clear, actionable solutions. I value clean execution, secure‑by‑design thinking, and measurable outcomes. My goal is to help Irish SMEs strengthen resilience with practical roadmaps and calm, dependable delivery.

Regulatory Compliance

GDPR DORA ISO 27001 NIST CSF PCI DSS ICT Risk Management Regulatory Gap Analysis Compliance Readiness

Cybersecurity Operations

Risk Assessment Security Audits Threat Analysis Incident Response Security Monitoring Security Hardening Control Effectiveness Review

Cloud & Identity Security

AWS Security Azure Security Cloud Architecture IAM Microsoft 365 Security Endpoint Security Conditional Access Zero Trust Principles

Operational Resilience

Digital Operational Resilience Business Continuity Planning ICT Incident Preparedness Resilience Testing Disaster Recovery Planning Service Continuity Operational Risk Mitigation Vulnerability Scanners

Governance & Risky

ICT Governance Risk Registers Policy & Control Design Control Mapping Third‑Party Risk Management Oversight Risk Treatment Planning

Security Platforms & Tooling

SIEM Platforms Firewalls IDS / IPS Email Security Platforms Endpoint Protection Vulnerability Scanners Risk Treatment Planning WireShark

Project & Delivery Management

Project Governance Agile & Waterfall Delivery Risk & Issue Tracking PMO Reporting Change Management Cross‑Team Coordination Delivery Assurance

Architecture & Infrastructure

Network Infrastructure Network Security Automation Active Directory VPN & Remote Access Asset Management Endpoint & Device Management
Insights & Stories

Cybersecurity & Founder Insights

Explore practical security guidance and behind‑the‑scenes founder stories designed to help you build resilient, compliant digital operations.

Blog
🔧 Technical

The Hidden Costs of GDPR Compliance in 2026: What Companies Overlook Until It’s Too Late

📅 Jan 15, 2026 ⏱️ 8 min read

Deep dive into Digital Operational Resilience Act requirements and how financial institutions can implement robust security frameworks.

Read Article
Blog
✍️ Founder Diary

Building a Cybersecurity Consultancy in Ireland

📅 Dec 10, 2025 ⏱️ 6 min read

Lessons learned from the first year of CTechSol: navigating client expectations, building trust, and staying ahead in a fast-paced industry.

Read Article
Blog
🔧 Technical

How Irish Construction SMEs Can Outsmart DDoS Attacks Before It’s Too Late

📅 Jan 25, 2026 ⏱️ 11 min read

Deep dive into Digital Operational Resilience Act requirements and how financial institutions can implement robust security frameworks.

Read Article
Get In Touch

Let's Work Together

Have a project in mind? Let's discuss how I can help secure your organization and strengthen your compliance posture.

Contact Information

Ready to enhance your cybersecurity and compliance posture? Reach out to discuss your specific needs and challenges.

📧
📞
Phone
+353 XX XXX XXXX
📍
Location
Dublin, Ireland
Quick Response I typically respond to all enquiries within 24 hours during business days. For urgent security matters, please mention it in the subject line.
Schedule a Call 📅