Josemaria
Osuorah

Josemaria Osuorah

Cybersecurity researcher · Systems engineer · Author and mentor

About

Security research that survives contact with production.

I am a PhD researcher at Prairie View A&M University, working where machine learning meets cybersecurity. The question I keep coming back to is how systems stay secure at scale without giving up the performance they were built for.

My work covers security for networks and IoT deployments. Protocol-layer weaknesses in low-power wireless systems, adaptive machine learning adversaries against hardware-rooted authentication, provenance across edge-to-cloud data paths. Most of it gets built and tested on real hardware sitting on a bench rather than only in simulation, which is slower but tends to surface the problems that actually matter.

Before this I spent years in industry, supporting enterprise Azure and Microsoft 365 environments at Tek Experts and working on telecommunications infrastructure at Nigeocom for Huawei projects across major mobile networks. That shaped how I think about research. Security work that ignores operational reality tends to stay in the paper, and engineering that ignores the research tends to repeat mistakes someone already documented.

I came to Houston from Nigeria, and a good part of my time outside the lab goes into helping people making a similar move find their footing in security and engineering.

Right now
Building a provenance-aware LoRaWAN testbed on physical hardware, tracking device identity and packet lineage from sensor to cloud
Looking at what changes when the attacker on a hardware authentication system can learn and adapt
Writing about cloud security and identity on my blog
Running the Secure Mentorship Network
Research

Three threads.

Adaptive adversaries against hardware authentication

JADA uses a reinforcement learning agent, trained with Proximal Policy Optimization, to decide which Physical Unclonable Function challenges carry the most learning value under a restricted query budget. Random Forest models then learn device behaviour from what it collects.

The finding matters for how PUF security gets evaluated. Measured against a passive attacker, PUF strength looks better than it is. An attacker that chooses strategically changes the threat model.

69%
prediction accuracy on a 5% query budget, against 61.67% for random sampling

Layered security in low-power wide-area networks

LoRa and similar LPWAN technologies are built for long range and minimal power draw, and that lightweight design leaves exposure across the whole protocol stack. My survey work maps those weaknesses layer by layer rather than treating the stack as one surface.

  • Physical jamming, eavesdropping, radio-level replay
  • MAC join procedure and key reuse weaknesses
  • Application packet injection and payload trust

Provenance and trust across edge-to-cloud paths

A provenance-aware LoRaWAN platform built on physical hardware, combining Heltec end devices, a Dragino gateway, ChirpStack, MQTT, containerised services and Python processing, to verify device identity, packet lineage and payload integrity from sensor to cloud.

Resilient acquisition for critical infrastructure

An automated, fault-tolerant data acquisition framework for the Prairie View A&M Microgrid Testbed, supporting continuous edge-to-cloud telemetry and secure storage of energy-system measurements for monitoring and analytics.

Papers

What I have published.

2026
JADA: Joint Adaptive Data Acquisition for PUF Modeling
IEEE NAECON Best paper nominee With Idowu, Ajike, Aderinto, Kulkarni, Chouikha and Annamalai
2026
Attack Surfaces and Trust Gaps in Edge-Assisted LoRaWAN Systems
IEEE ISCAIE With Ahmed, Annamalai and Acharya
2026
Architectural Security Risks in Edge-Assisted LoRaWAN Data Pipelines
IEEE BigDataSecurity With Ahmed, Annamalai and Acharya
Books

Written for people who have to use this.

2022

Cybersecurity Fundamentals: Protecting Networks and Data in a Digital World

A practical introduction to digital security covering network protection, encryption, malware, access control and safe online practice, with equal weight given to the human behaviour that most breaches actually turn on.

2025

The Modern Security Playbook

On contemporary network security and evolving cyber threats, with practical approaches to protecting modern digital systems. Written for practitioners working with systems already in production.

Mentorship

The Secure Mentorship Network.

I started the Secure Mentorship Network to help people find a way into cybersecurity and solutions engineering, especially those without an obvious route in. Most of it is unglamorous. Reading CVs, explaining what a job posting is actually asking for, talking someone through their first time on call.

I also review papers for IEEE Access and for the SATC and ISBCom conferences, which is its own kind of mentorship and a good way to stay honest about my own writing.

Along the way
  • 2026Best paper nomination at IEEE NAECON for JADA
  • 2024Tech Innovation of the Year at the Crest Africa Awards, for the mentorship network
  • 2023Recognised for work in cybersecurity education and digital protection at the Scream Awards and the Africa Choice Awards
Press

Interviews and coverage.

Blog

Writing.

Notes on cloud security, identity and the operational side of the research. Mostly things I worked out the hard way and wrote down so the next person does not have to.

Read the blog
Contact

Say hello.

Always glad to hear about research collaborations, speaking, or anything security related worth talking through. Email reaches me fastest.