Cybersecurity Audits & Assurance
Strengthen security with ISO 27001 and NIST CSF audits, Gap analysis, and actionable remediation plans for compliance and resilience.
I provide expert cybersecurity consulting, compliance solutions, and technical strategies to help businesses achieve resilience, secure infrastructure, and drive digital transformation with confidence.
Building credible cybersecurity & compliance outcomes across regulated environments
I began my professional journey after moving to Dublin At 18, building experience over time at the intersection of cybersecurity, ICT risk, and regulatory compliance.
My current focus is on cybersecurity, ICT risk, and regulatory compliance., I hold an MSc in Cybersecurity from University College Dublin, and a Level 9 micro‑credential specialising Cyber Risk & Digital Operational Resilience (DORA) from Munster Technological University. I’m pursuing CISA to deepen governance and audit rigor. In parallel, I’m developing CTechSol, an applied consultancy uniting legal, technical, and AI governance for regulated sectors.
mafzaal.com is where I share what I’m learning: practical DORA implementation, GDPR alignment roadmaps, AI governance frameworks, and lessons from building while studying and working full‑time.
Afzaal was an exemplary student, with self motivation and organisational levels second to none. He undertook an almost global commercial launch while holding down a job and self-financing his studies. It will be astounding the level of work that he will produce.
Afzaal has worked for me for 3 months as a deskside engineer, he had big shoes to fill, and succeeded to do so. He has a great attitude towards work and his ability to adapt to the situation he gets put into. Flexible, reliable and a keenness to learn new things, and giving new challenges a shot. Having not worked in a high passed environment before he proved himself to work as a team member, on his own, and keeping a professional and courteous attitude though out. Well done!
Excellent and enthusiastic project manager working with my team taking ownership of full life cycle IT projects showing a desire to embrace new challenges and technologies.
University College Dublin
2024 - 2026
Advanced cybersecurity, risk management, and compliance frameworks
Munster Technological University
2025 - 2026
Specialisation in ICT Risk & EU Regulatory Compliance
Multiple Bodies
Ongoing
CISA, ISO 27001 Lead Implementer, and more
Dublin, Ireland · 2021 – Present · 1,000+ members
After arriving in Dublin as a student and experiencing the housing challenges first‑hand, I co‑founded Rent Ireland to help Pakistani students and professionals find safe, fair accommodation.
Remote / Dublin · 2023 – Present · 100+ students mentored
Provide free, practical career guidance for Pakistani students and professionals entering the Irish job market—covering CV review, LinkedIn optimisation, interview prep and settlement support.
Empower your business with expert Cybersecurity and Compliance Consulting combined with Technical Solutions for Digital Transformation. We help organizations strengthen resilience through DORA and GDPR compliance, secure infrastructure engineering, and advanced network security. From audits and risk management to cloud security and infrastructure design, our solutions turn compliance into a competitive advantage.
Strengthen security with ISO 27001 and NIST CSF audits, Gap analysis, and actionable remediation plans for compliance and resilience.
Achieve DORA and NIS2 compliance with expert guidance on ICT risk, incident reporting, and resilience testing for EU regulatory readiness.
End‑to‑end GDPR review covering data mapping, lawful basis, DPIAs, records of processing, data subject rights, and security of processing, delivered as a prioritised action plan for Irish/EU SMEs.
Outsourced DPO services for GDPR compliance, DPIAs, and governance to safeguard data and reduce regulatory risk. .
Protect cloud environments and identities with MFA, Zero Trust, and advanced security controls for resilience and compliance.
Reduce human risk with cybersecurity training, phishing simulations, and awareness programs tailored to your organization.
Discover and fix vulnerabilities with expert penetration testing and validation for stronger security and compliance.
Develop and implement robust security policies, risk registers, and governance frameworks aligned with ISO 27001, NIS2, and leading cybersecurity standards to ensure compliance and resilience
Reduce supply chain risk with vendor assessments, compliance checks, and continuous monitoring for third-party security assurance
Build secure IT infrastructure with advanced firewalls, network hardening, and optimized configurations for resilience and performance.
Build AI-powered applications for automation, analytics, innovation, and agentic workflow systems with secure, scalable software development.
Drive secure technical transformation with cloud migration, architecture reviews, and modernization strategies for resilience.
a one-sentence blurb.
a one-sentence blurb.
a one-sentence blurb.
a one-sentence blurb.
a one-sentence blurb.
a one-sentence blurb.
Cybersecurity and digital operational resilience professional with a structured background in computer science, cybersecurity, ICT risk management, and EU regulatory compliance. Experience spans regulated environments, governance‑driven security programmes, and applied risk management aligned with DORA, NIS2, and ISO/IEC 27001.
Core Modules: Cyber Risk Assessment & Standards, Information Security Management, Applied Cryptography, Network Security, Ethical Hacking, Incident Response, Cybersecurity Law, Secure Software Engineering Principles, Leadership in Cybersecurity.
Focus areas: EU ICT risk management frameworks, Digital Operational Resilience Act (DORA), NIS2 Directive, GDPR, ISO/IEC 27001 alignment, ICT governance and third‑party ICT risk management, and regulatory compliance implementation.
Focus areas: Linux Administration, Software Development, Data Analytics, Cyber Security & Ethical Hacking, Advanced Networking.
Specialisation: End-to-end project delivery, risk management, Agile & Waterfall methodologies, budgeting and scheduling for regulated IT and cybersecurity programmes in Ireland.
Focus areas: Risk identification, risk evaluation, risk treatment strategies, and continuous risk monitoring in organisational and operational contexts.
Responsible for day‑to‑day operation and security of enterprise IT across Microsoft 365, Azure AD, endpoints, and networks in a professional services environment. Lead incident response, access control, vendor coordination, backup/BCP hygiene, and implementation of governance‑aligned controls (ISO‑style) to keep operations resilient. .
Led IT service delivery and operations in a fast‑paced engineering environment, owning incident, request, and escalation processes with KPI/SLA accountability. Coordinated third‑party providers while stabilising core infrastructure, hardening email/security controls, and improving documentation, DR, and asset governance.
Delivered IT & cybersecurity projects end‑to‑end across client environments—planning, execution, stakeholder coordination, risk & issue tracking, and progress reporting. Bridged technical teams and business functions, applying PMO discipline to infrastructure, security hardening, and service‑management initiatives.
Freelance Software/Field Services Engineer (2019 – 2021) — Delivered software and on‑site technical work, building a foundation in systems, networking, and client delivery.
Concurrent Technical Consulting (Part‑time) — Provided targeted advisory while at DBFL (scope‑bound, non‑conflicting).
Earlier roles (Desktop Support, Junior PM) — Entry‑level delivery and support experience that under
M Afzaal is a cybersecurity & operational resilience professional in Ireland. I focus on DORA, NIS2, ISO 27001 and ICT risk turning regulation into practical controls, clear remediation roadmaps, and resilient operations for SMEs. Currently building a DORA assessment tool alongside MSc Cybersecurity (UCD) and leading Microsoft 365/Azure security and incident response.
I thrive on turning complex security and compliance challenges into clear, actionable solutions. I value clean execution, secure‑by‑design thinking, and measurable outcomes. My goal is to help Irish SMEs strengthen resilience with practical roadmaps and calm, dependable delivery.
Explore practical security guidance and behind‑the‑scenes founder stories designed to help you build resilient, compliant digital operations.
Deep dive into Digital Operational Resilience Act requirements and how financial institutions can implement robust security frameworks.
Read Article →Lessons learned from the first year of CTechSol: navigating client expectations, building trust, and staying ahead in a fast-paced industry.
Read Article →
Deep dive into Digital Operational Resilience Act requirements and how financial institutions can implement robust security frameworks.
Read Article →Have a project in mind? Let's discuss how I can help secure your organization and strengthen your compliance posture.
Ready to enhance your cybersecurity and compliance posture? Reach out to discuss your specific needs and challenges.