Khandaker Md. Al-Amin

Cryptographer in Berlin. PhD in pairing-based cryptography, then three years shipping lattice-based homomorphic encryption and secure multi-party computation. Post-quantum cryptography is where I am taking that next.

  • A Study of Efficient Pairing Computation Algorithm Using KSS Curves

    Ph.D. dissertation, Okayama University, 2019

  • Efficient Optimal Ate Pairing at 128-Bit Security Level

    Progress in Cryptology - INDOCRYPT 2017, Springer LNCS, December 2017, pp. 186–205

    doi:10.1007/978-3-319-71667-1_10

  • An Improvement of Scalar Multiplication by Skew Frobenius Map with Multi-Scalar Multiplication for KSS Curve

    IEICE Transactions on Fundamentals E100.A(9), 2017, pp. 1838–1845

    doi:10.1587/transfun.E100.A.1838

  • ELiPS

    Efficient library for pairing-based cryptography on BN and BLS curves.

    2016–2019GitHub

  • DataArmor Gate DB

    Database proxy that runs SQL over encrypted data without giving the server the key.

    2020–2023Product page

Cryptography & secure computing

Work I have actually done. Doctoral research, and three years building these into shipping systems.

  • Pairing-based cryptography and elliptic curves (KSS, BN, BLS families)
  • Lattice-based homomorphic encryption: BFV, BGV and CKKS on Ring-LWE, noise budgets and parameter selection
  • Secure multi-party computation and private set intersection
  • Privacy-preserving machine learning
  • Encrypted-database and secure-computing product engineering
  • Implementation in Rust and C, with an eye on constant-time behaviour

Security engineering & compliance

My current day-to-day at ITK Engineering.

  • EU Cyber Resilience Act readiness and conformity assessment routes
  • SBOM management: SPDX, CycloneDX, provenance and signing in CI/CD
  • Coordinated vulnerability disclosure (ISO/IEC 29147, 30111) and PSIRT operating models
  • Incident response readiness aligned with NIST SP 800-61
  • Automotive cybersecurity: ISO/SAE 21434 TARA, UN R155, secure boot, HSM integration

Where I am taking this next

Self-directed rather than paid work, and written up as I go.

  • Post-quantum standards in practice: ML-KEM and ML-DSA, and what migration costs at the protocol layer
  • Hybrid key exchange and the transition problem for long-lived systems
  • Zero-knowledge proof systems and the pairing-based components I already know well