Framework and Software Architecture for Information Assurance and Regulatory Compliance (FAIR) The European Union (EU) and United States of America (USA) security rule has set standards to be met for the transfer of electronic health information via internet, intranet, and on local networks. FAIR is designed to protect the integrity, confidentiality and availability, authentication and non-repudiation of medical information. FAIR will be applicable for estimating and ensuring the medical billing regulations and standards compliance. FAIR can be adopted by the healthcare industry in developing countries like Pakistan.
[J1] BillingCompliance Assurance Architecture for Healthcare Industry (BCAHI), Syeda Uzma Gardazi and Arshad Ali Shahid, Computer Science Journal(CSJ), April 2011,Volume 1,Issue 1. pp. 16-28.
[J2] Compliance-drivenSoftware Architecture (CSA) for Healthcare Industry, Syeda Uzma Gardazi and Arshad Ali Shahid, International Journal ofAdvanced Computer Science and Applications (IJACSA-listed in theThomson Reuters Master Journal List), Volume 8 No. 5. May 2017. pp.568-577 [ISI Indexed].
[J3]Realizing Compliance Tactic to Support Authentication, Syeda Uzma Gardazi and Shehnila Zardari, International Journal ofComputer Science and Network Security (IJCNS-listed in the ThomsonReuters Master Journal List) May 2017, Vol. 17 No. 5, pp.337-345 [ISI Indexed].
I earned my MS in Computer Science from the National University ofComputer and Emerging Sciences (NUCES/FAST-NU) in 2008. With over 7 years ofteaching experience and 8 years in the industry, I possess strong expertise inanalyzing, developing, and optimizing compliance with information security lawsand standards. My professional background combines academic guidance withmanagerial roles in both academic and private sector institutions.
During my industry tenure at Medical Transcription and BillingCompany (MTBC)—a publicly traded company on the NASDAQ Capital Market (ticker:MTBC) since July 2014—I was responsible for the implementation and assurance ofinternational standards and regulatory frameworks, including ISO 9001, ISO27001, the Payment Card Industry Data Security Standard (PCI-DSS), and theHealth Insurance Portability and Accountability Act (HIPAA).
In academia, I have taught and managed a wide range of ComputerScience and Information Technology courses at reputable universities and organizationssuch as NUCES/FAST-NU, BIIT, Women University of AJK (WUAJK), NICON, CIT, andUAAR, serving as Lecturer, Teaching Assistant, and Coordinator. My academicinvolvement spans more than 8 years.
I am currently pursuing research in the field of InformationSecurity using Software Architecture for Regulatory Compliance, withseveral publications in recognized platforms, including contributions tothe Society of Corporate Compliance and Ethics (SCCE) Compliance &Ethics Professional® magazine.
1) S. U. Gardazi, A unified compliance approach:Strengthening data protection in healthcare, Compliance Today magazine, October2025.
2) S U. Gardazi (2023). Impact of compliance on Pakistan and AJK,Society of Corporate Compliance and Ethics (SCCE) Compliance & EthicsProfessional® (C&EP) magazine, November 2023.
3) S. U. Gardazi, Role of Compliance in Pakistan, Society ofCorporate Compliance and Ethics (SCCE) Compliance & Ethics Professional® (C&EP)magazine (ISSN 1523-8466), June 2018.
4) S. U. Gardazi, Information Security guidelines forPakistani E-Court, Society of Corporate Compliance and Ethics (SCCE) Compliance& Ethics Professional® (C&EP) magazine (ISSN 1523-8466), October 2017.
5) S. U. Gardazi, Brexit Compliance and Pakistan, Society ofCorporate Compliance and Ethics (SCCE) Compliance & Ethics Professional®(C&EP) magazine (ISSN 1523-8466), September 2017.
My project research next three year plan is listed below:
| Project | Start Date | End Date | Research Year |
| E-Court Compliance Architecture | 2025-01-01 | 2025-06-30 | Year 1 |
| Impact of Compliance on Pakistan/AJK | 2025-02-01 | 2025-07-31 | Year 1 |
| Unified Compliance Update | 2025-03-01 | 2025-09-30 | Year 1 |
| Healthcare Compliance Auditing Tool | 2026-01-01 | 2026-08-31 | Year 2 |
| National Compliance Maturity Model | 2026-03-01 | 2026-10-31 | Year 2 |
| Digital Trade Compliance Guide | 2026-05-01 | 2026-12-31 | Year 2 |
| Socio-Legal Compliance Study | 2027-01-01 | 2027-09-30 | Year 3 |
| Unified Compliance Framework | 2027-03-01 | 2027-12-31 | Year 3 |
| Regulatory Compliance Handbook | 2027-06-01 | 2027-12-31 | Year 3 |
[C1]Taking Compliance Patterns and Quality Management System (QMS) FrameworkApproach to Ensure Medical Billing Compliance
SyedaUzma Gardazi, and Arshad Ali Shahid, 2nd InternationalConference on Health Information Science (HIS 2013), HIS Volume 7798 of theseries Lecture Notes in Computer Science, 25-27 March 2013, London, UK, pp78-92.
[C2]HIPAA and QMS based architectural requirements to cope with the OCR auditprogram
SyedaUzma Gardazi, Christine Salimbene and Arshad Ali Shahid, 3rd FTRAInternational Conference on Mobile Ubiquitous, and Intelligent Computing(MUSIC), 26-28 June 2012, Vancouver, Canada, pp. 246-253.
[C3]Email System Architecture for HITECH Compliance
SyedaUzma Gardazi and Arshad Ali Shahid, 2nd InternationalConference on Software Engineering and Data Mining (SEDM), 23-25 June 2010,Chengdu, China, pp. 561-570.
[C4]Software Architecture for Information Assurance
SyedaUzma Gardazi and Arshad Ali Shahid, International Conference on Product FocusedSoftware Development and Process Improvement (PROFES), 21-23 June 2010,Limerick, Ireland, pp. 82-85.
[C5]Survey of Software Architecture Description and Usage in Software Industry ofPakistan
SyedaUzma Gardazi, Arshad Ali Shahid, 5th IEEE InternationalConference on Emerging Technologies (ICET), 19-20 October 2009, Islamabad,Pakistan, pp. 395-402.
[C6]Motivation in Software Architecture and Software Project Management
SyedaUzma Gardazi, Syeda Faiza Gardazi, Haroon Khan and Arshad Ali Shahid, 5th IEEEInternational Conference on Emerging Technologies (ICET), 19-20 October 2009,Islamabad, Pakistan , pp. 403-409.