August 14, 2026
Why I Went Back to University After More Than a Decade in Technology
There comes a point in a technology career when experience alone is no longer enough.

By Mohammed Ashraf Shaikh
6 min read
You can spend years designing systems, solving technical problems, working with cloud platforms, dealing with enterprise environments, and learning new technologies. Yet, with every new project, you discover another layer of complexity. For me, that realization gradually changed the direction of my career.
After more than a decade working in enterprise technology, I have decided to return to university and pursue an MSc in Cyber Security and Digital Forensics at the University of Westminster.
This decision was not made because I felt I was starting over. Quite the opposite. I see it as an opportunity to build on everything I have learned so far and explore the questions that my professional experience has increasingly led me towards.
My Career Has Never Followed a Straight Line
My professional journey has taken me through several areas of technology.
I have worked as a Consultant, Systems Analyst, Technical Cloud Architect, and cybersecurity-focused professional. Along the way, I have worked with enterprise content management, document management, cloud infrastructure, software development, DevOps, records management, and solution architecture.
Some of the technologies and areas I have worked with include:
- Microsoft Azure
- Amazon Web Services
- Enterprise Content Management
- Document and Records Management
- Cybersecurity Architecture
- Cloud Migration
- DevOps
- Full-Stack Development
- ASP.NET MVC
- Enterprise Solution Design
At first glance, these areas might appear to be separate disciplines. In practice, they are increasingly connected.
A business application depends on infrastructure. Infrastructure depends on identity and access management. Data needs protection. Cloud workloads need secure configurations. Enterprise information needs governance. Applications need monitoring. And when something goes wrong, organizations need to understand what happened. The further I progressed, the more I realized that security is woven into every layer of modern technology.
That changed the way I looked at my own career.
The Question That Kept Coming Back
Throughout my career, I have always tried to keep learning.
I have completed professional training and earned certifications across cloud, cybersecurity, enterprise technology, and emerging platforms.
My learning journey has included credentials and programmes such as:
- iManage Certified System Engineer
- iManage Threat Manager Administrator
- iManage Share Administrator
- Zscaler Zero Trust Cyber Associate
- AWS Certified Cloud Practitioner
- AWS Well-Architected Proficient
- AWS Knowledge: Cloud Essentials
- AWS Knowledge: Migration Foundations
- Linux Foundation — Introduction to Kubernetes
- Linux Foundation — Introduction to Serverless on Kubernetes
- ISC2 Candidate
Each certification gave me something valuable. Some introduced me to new technologies. Others helped strengthen areas I was already working with professionally. But eventually I began asking myself a different question:
What comes after professional certification and hands-on experience?
For me, the answer was deeper study. I wanted to move beyond learning how technologies work and spend more time understanding why certain security problems occur, how they can be investigated, and how organizations can develop stronger approaches to managing them.
That is where postgraduate study became the natural next step.
Why Cybersecurity Became the Direction
My interest in cybersecurity did not appear overnight. It developed gradually through years of working with technology. Whenever you work with enterprise systems and information, security inevitably becomes part of the conversation.
Who should have access? Where is information stored? How is it protected? What happens if credentials are compromised? How do we detect unusual activity? What happens when a security control fails?
And perhaps the most important question:
If something goes wrong, how do we find out what actually happened?
That last question is one of the reasons digital forensics became particularly interesting to me. Preventing an attack is obviously critical, but prevention is never guaranteed. When an incident occurs, organisations need people who can investigate the available evidence, establish a timeline, understand the attack, identify affected systems, and extract lessons that can improve future security.
That combination of defense and investigation is what makes the relationship between cybersecurity and digital forensics so compelling.
Technology Is Changing the Security Conversation
The technology landscape I started my career in is very different from the one we have today.
Cloud computing has transformed infrastructure. Containers and Kubernetes have changed how applications are deployed. Zero Trust has changed how organizations think about access. Artificial intelligence is transforming software and business processes. At the same time, attackers are becoming more sophisticated, automated, and persistent.
This creates an interesting challenge. The people responsible for protecting digital environments have to evolve just as quickly as the technologies they are protecting. It is no longer enough to understand a single platform or security product.
Cybersecurity professionals need to understand systems, networks, identities, data, applications, human behavior, governance, risk, and incident response.
That broader understanding is something I want to develop further.
Why Go Back to University Now?
Returning to university after years in industry is a very different experience from starting a degree at the beginning of your career.
You approach learning differently.
When you have already spent years working on real projects, theoretical concepts often become easier to relate to because you have seen their practical consequences.
You also start asking different questions.
Instead of simply learning a concept for an examination, you begin thinking about where it fits into a real organisation.
- What would this look like at enterprise scale?
- What are the risks?
- What could go wrong?
- How would this work in the real world?
- How could existing approaches be improved?
That is what I am looking forward to most about postgraduate study.
I want to bring my industry experience into the classroom while allowing academic research to challenge and expand my existing perspective.
Choosing the University of Westminster
When I started exploring postgraduate programmes, I was looking for more than a course with cybersecurity in its title.
I wanted a programme that would expose me to different dimensions of the discipline.
The MSc in Cyber Security and Digital Forensics at the University of Westminster particularly appealed to me because it brings together cybersecurity, digital forensics, network security, governance, compliance, and research.
These areas are highly relevant to the direction in which I want my career to develop.
Cybersecurity is not purely a technical discipline.
A technically secure solution can still fail if governance is poor.
A strong security policy can still fail if people do not follow it.
An effective security control can still be undermined by poor architecture.
And after an incident, technical evidence may need to be understood within legal, regulatory, and organisational contexts.
Understanding those relationships is just as important as understanding the underlying technology.
What I Want to Take From the MSc
I am not entering this programme with the expectation that a degree will suddenly make me an expert.
There is no shortcut to expertise.
Instead, I see the MSc as a structured opportunity to deepen my knowledge and develop capabilities that are difficult to gain through professional experience alone.
In particular, I want to strengthen my ability to:
- Analyse complex cybersecurity problems
- Conduct meaningful technical research
- Understand digital forensic methodologies
- Evaluate security risks more critically
- Connect technical decisions with organizational requirements
- Understand emerging cyber threats
- Explore new approaches to security and resilience
- Communicate complex security concepts more effectively
Most importantly, I want to become better at asking the right questions.
Because in cybersecurity, the quality of the questions we ask can be just as important as the tools we use to find the answers.
Bringing Industry and Academia Together
One of the most exciting aspects of this next chapter is the opportunity to combine two different perspectives.
Industry teaches you about reality.
Deadlines exist.
Budgets matter.
Legacy systems cannot always be replaced.
Business requirements can conflict with security recommendations.
People make mistakes.
And the perfect technical solution does not always exist.
Academic study offers something different.
It gives you the space to step back, investigate problems systematically, examine evidence, challenge assumptions, and explore ideas beyond the immediate requirements of a project.
I believe combining those two perspectives can be extremely valuable. My professional experience gives me practical context. The MSc gives me an opportunity to develop deeper academic and research capabilities. Together, they can help me approach cybersecurity challenges from a much broader perspective.
The Road Ahead
I do not know exactly where this journey will take me.
And perhaps that is part of the excitement.
What I do know is that I want to remain involved in technology, cybersecurity, architecture, and digital transformation while continuing to develop my knowledge.
I would also like to contribute more to the cybersecurity community through knowledge sharing, mentoring, research, and practical experience.
The industry needs professionals who are willing to keep learning because cybersecurity itself never stops changing.
New technologies will create new opportunities.
New technologies will create new vulnerabilities.
New attack techniques will emerge.
New defensive strategies will follow.
And the cycle will continue.
A New Chapter, Not a New Beginning
Starting an MSc after more than ten years in technology feels less like changing direction and more like extending the journey.
The projects I have worked on have taught me how technology is built and delivered. The certifications I have completed have helped me expand my technical knowledge. Now I want to develop a deeper understanding of the security challenges surrounding that technology.
For me, this MSc represents curiosity, professional growth, and a willingness to step outside my comfort zone once again. There is still a great deal I do not know. And after more than a decade in technology, I have learned that recognizing what you don't know is often the beginning of the most valuable learning.
So, here I am returning to university, opening a new chapter, and taking another step towards becoming the kind of cybersecurity professional I aspire to be.
The learning continues.