Hikvara
Enterprise-grade risk deserves enterprise-grade leadership.
Most organisations of a certain size carry enterprise-grade technology risk without enterprise-grade technology leadership.
Why this practice exists
The large consultancies are unaffordable, and send juniors. Vendors sell you a build, and their incentives are not your incentives. Hiring at CTO level is slow, expensive, and hard to justify full-time. So the risk sits unowned — in the gaps between an IT team doing its best and a board that can't see far enough into the estate to ask the right question.
Hikvara exists in that gap.
What Hikvara is
A boutique executive technology practice. Senior judgment, independent, available fractionally, accountable directly.
Not a software agency. Not a development shop. Not an AI startup. There is no bench to keep billable, no product to push, and no commission on anything I recommend. Advice is the product, which is what makes it possible for the advice to be honest.
What Hikvara stands for
01
Evidence before advice
Recommendations follow from what's been verified — audited, tested, or demonstrated. Not from what a vendor said, and not from what everyone assumes is true about a system nobody has opened in three years.
02
Preservation before repair
In a crisis, the evidence of what broke is the only thing that stops it breaking again. Capture it first. Every time.
03
Independence
No products, no resale, no commissions. If the right answer is a vendor I have no relationship with, that's the answer you get.
04
Confidentiality as standing practice
Client names don't appear on this site. Engagements are described by sector and by what was done. If you'd want that discretion, you have it from the first conversation.
05
Documentation you own
Every engagement ends with the client holding more control than they started with — versioned systems, decision logs, continuity plans, source in their custody. The measure of good work is that it leaves you less dependent, not more.
How Hikvara works
One architect, full accountability. The person who wins the engagement is the person who does the work, and there is nowhere for responsibility to diffuse to.
Engagements run to established frameworks — ITIL, ISO 27001 principles, ISO 38500, ISO 22301, NIST CSF 2.0 — applied at the depth the work actually warrants. Governance is designed in at the first decision rather than bolted on after a failure.
Where AI is part of delivery, it is governed: defined agent roles, human approval gates on every shared component, pinned versions, verification against a design source, regression on every change, and documentation produced as a byproduct of the workflow rather than as a phase that never quite happens. The same tools without that discipline produce fast, confident garbage. The discipline is the difference.
Vision
A technology landscape where governance is designed in from the first decision — not bolted on after failure.
Mission
To give organisations enterprise-grade technology architecture, security and continuity — governed to the standard of a large institution, delivered with the accountability of a single architect who owns every decision end to end.
The principal

Syed Mahfuz Ahmed
Founder and principal consultant
I've spent twenty-one years in enterprise technology, most of it running it rather than advising on it. A 13,000-user enterprise. A twenty-person department led through three managers. Roughly BDT 8 crore of annual technology investment. Strategy and investment cases presented to a Board of Trustees, and Infrastructure Lead on a PwC-led enterprise ERP transformation.
I started in regulated financial services, which is where I learned early that undocumented work isn't finished work. That instinct never left, and it's most of what clients are actually buying.
What's rare at this level isn't the seniority. It's still being hands-on. Most technology leaders stop opening the systems somewhere around the second promotion; most engineers who can open them have never presented to a board. Being both in the same week is the reason this practice works — and the reason I left institutional employment to build it.
Core competencies
- Technology strategy and digital transformation
- Enterprise architecture and platform modernisation
- Technology and engineering leadership
- Cloud architecture and modern deployment practices
- Cybersecurity, risk and governance
- Enterprise applications and ERP programmes
- Infrastructure resilience and business continuity
- AI-augmented engineering and automation
- IT financial management (capex/opex) and procurement
- Vendor and strategic partner management
- Executive stakeholder and board advisory
- IT governance, audits and regulatory compliance
Graduate degree in Telecommunications Engineering and undergraduate degree in Computer Science. ITIL Foundation (EXIN). Cisco Certified Academy Instructor. (ISC)² CISSP training programme completed. Cybersecurity commentator on ATN Bangla national television.
Technology, governed.
