When I was involved in a flood mitigation project and risk assessment, the emphasis was largely on engineered solutions. The measures included flood gates and high-capacity pump systems to manage peak flows and tidal backflow, detention ponds for temporary stormwater storage etc. Rubber dams were also suggested to regulate river levels. Drainage systems were upgraded, and steel bridges were improved to increase hydraulic capacity and reduce debris blockages. Road designs were revised, including widening carriageways and improving turning radii, enhancing runoff management and reduce flow constrictions.
DISCLAIMER - NIKZAFRI.BLOGSPOT.COM
The information comprised in this section is not, nor is it held out to be, a solicitation of any person to take any form of investment decision. The content of the nikzafri.blogspot.com does not constitute advice or a recommendation by the author and should not be relied upon in making (or refraining from making) any decision relating to investments or any other matter. You should consult your own independent financial adviser and obtain professional advice before exercising any investment decisions or choices based on information featured in this.
The author of nikzafri.blogspot.com can not be held liable or responsible in any way for any opinions, suggestions, recommendations or comments made by any of the contributors to the various columns on nikzafri.blogspot.com nor do opinions of contributors necessarily reflect those of http://www. nikzafri.blogspot.com
CONSTRUCTION - WHAT A WORLD The construction industry especially building or civil works may be complex and demanding, but to me it remains the most rewarding of all. Once a project is completed, teams disperse, some retire, others move on to the next site. Sometimes we bump into each other again on another project, and some just disappear into thin air.
In no event shall the author be liable for any damages whatsoever, including, without limitation, direct, special, indirect, consequential, or incidental damages, or damages for lost profits, loss of revenue, or loss of use, arising out of or related to the nikzafri.blogspot.com or the information contained in it, whether such damages arise in contract, negligence, tort, under statute, in equity, at law or otherwise.
.jpg)
The post-handover phase often feels quiet.
The real excitement lies in watching a project rise from the ground up. No matter our role or level, those of us in construction can always take pride in what we’ve built whenever we see a structure come to life and serve its purpose
A THOUGHT
I identify myself as a Lifelong Learner and a Thought Leader
BIODATA - NIK ZAFRI

https://nikzafri.wixstudio.com/nikzafriv2
Kelantanese, Alumni of Sultan Ismail College Kelantan (SICA), Business Management/Administration, IT Competency Cert, Certified Written English Professional US. Has participated in many seminars/conferences (local/ international) in the capacity of trainer/lecturer and participant.
Affiliations :- Council/Network Member of Gerson Lehrman Group, Institute of Quality Malaysia, Auditor ISO 9000 IRCAUK, Auditor OHSMS (SIRIM and STS) /EMS ISO 14000 and Construction Quality Assessment System CONQUAS, CIDB (Now BCA) Singapore),
* Possesses almost 30 years of experience/hands-on in the multi-modern management & technical disciplines (systems & methodologies) such as Knowledge Management (Hi-Impact Management/ICT Solutions), Quality (TQM/ISO), Safety Health Environment, Civil & Building (Construction), Manufacturing, Motivation & Team Building, HR, Marketing/Branding, Business Process Reengineering, Economy/Stock Market, Contracts/Project Management, Finance & Banking, etc. He was employed to international bluechips involving in national/international megaprojects such as Balfour Beatty Construction/Knight Piesold & Partners UK, MMI Insurance Group Australia, Hazama Corporation (Hazamagumi) Japan (with Mitsubishi Corporation, JA Jones US, MMCE and Ho-Hup) and Sunway Construction Berhad (The Sunway Group of Companies). Among major projects undertaken : Pergau Hydro Electric Project, KLCC Petronas Twin Towers, LRT Tunnelling, KLIA, Petronas Refineries Melaka, Putrajaya Government Complex, Sistem Lingkaran Lebuhraya Kajang (SILK), Mex Highway, KLIA1, KLIA2 etc. Once serviced SMPD Management Consultants as Associate Consultant cum Lecturer for Diploma in Management, Institute of Supervisory Management UK/SMPD JV. Currently – Associate/Visiting Consultants/Facilitators, Advisors/Technical Experts for leading consulting firms (local and international), certification bodies including project management. To name a few – Noma SWO Consult, Amiosh Resources, Timur West Consultant Sdn. Bhd., TIJ Consultants Group (Malaysia and Singapore), QHSEL Consultancy Sdn. Bhd.
Among Nik Zafri’s clients : Adabi Consumer Industries Sdn. Bhd, (MRP II, Accounts/Credit Control) The HQ of Royal Customs and Excise Malaysia (ISO 9000), Veterinary Services Dept. Negeri Sembilan (ISO 9000), The Institution of Engineers Malaysia (Aspects of Project Management – KLCC construction), Corporate HQ of RHB (Peter Drucker's MBO/KRA), NEC Semiconductor - Klang Selangor (Productivity Management), Prime Minister’s Department Malaysia (ISO 9000), State Secretarial Office Negeri Sembilan (ISO 9000), Hidrological Department KL (ISO 9000), Asahi Kluang Johor(System Audit, Management/Supervisory Development), Tunku Mahmood (2) Primary School Kluang Johor (ISO 9000), Consortium PANZANA (HSSE 3rd Party Audit), Lecturer for Information Technology Training Centre (ITTC) – Authorised Training Center (ATC) – University of Technology Malaysia (UTM) Kluang Branch Johor, Kluang General Hospital Johor (Management/Supervision Development, Office Technology/Administration, ISO 9000 & Construction Management), Kahang Timur Secondary School Johor (ISO 9000), Sultan Abdul Jalil Secondary School Kluang Johor (Islamic Motivation and Team Building), Guocera Tiles Industries Kluang Johor (EMS ISO 14000), MNE Construction (M) Sdn. Bhd. Kota Tinggi Johor (ISO 9000 – Construction), UITM Shah Alam Selangor (Knowledge Management/Knowledge Based Economy /TQM), Telesystem Electronics/Digico Cable(ODM/OEM for Astro – ISO 9000), Sungai Long Industries Sdn. Bhd. (Bina Puri Group) - ISO 9000 Construction), Secura Security Printing Sdn. Bhd,(ISO 9000 – Security Printing) ROTOL AMS Bumi Sdn. Bhd & ROTOL Architectural Services Sdn. Bhd. (ROTOL Group) – ISO 9000 –Architecture, Bond M & E (KL) Sdn. Bhd. (ISO 9000 – Construction/M & E), Skyline Telco (M) Sdn. Bhd. (Knowledge Management),Technochase Sdn. Bhd JB (ISO 9000 – Construction), Institut Kefahaman Islam Malaysia (IKIM – ISO 9000 & Internal Audit Refresher), Shinryo/Steamline Consortium (Petronas/OGP Power Co-Generation Plant Melaka – Construction Management and Safety, Health, Environment), Hospital Universiti Kebangsaan Malaysia (Negotiation Skills), Association for Retired Intelligence Operatives of Malaysia (Cyber Security – Arpa/NSFUsenet, Cobit, Till, ISO/IEC ISMS 27000 for Law/Enforcement/Military), T.Yamaichi Corp. (M) Sdn. Bhd. (EMS ISO 14000) LSB Manufacturing Solutions Sdn. Bhd., (Lean Scoreboard (including a full development of System-Software-Application - MSC Malaysia & Six Sigma) PJZ Marine Services Sdn. Bhd., (Safety Management Systems and Internal Audit based on International Marine Organization Standards) UNITAR/UNTEC (Degree in Accountacy – Career Path/Roadmap) Cobrain Holdings Sdn. Bhd.(Managing Construction Safety & Health), Speaker for International Finance & Management Strategy (Closed Conference), Pembinaan Jaya Zira Sdn. Bhd. (ISO 9001:2008-Internal Audit for Construction Industry & Overview of version 2015), Straits Consulting Engineers Sdn. Bhd. (Full Integrated Management System – ISO 9000, OHSAS 18000 (ISO 45000) and EMS ISO 14000 for Civil/Structural/Geotechnical Consulting), Malaysia Management & Science University (MSU – (Managing Business in an Organization), Innoseven Sdn. Bhd. (KVMRT Line 1 MSPR8 – Awareness and Internal Audit (Construction), ISO 9001:2008 and 2015 overview for the Construction Industry), Kemakmuran Sdn. Bhd. (KVMRT Line 1 - Signages/Wayfinding - Project Quality Plan and Construction Method Statement ), Lembaga Tabung Haji - Flood ERP, WNA Consultants - DID/JPS -Flood Risk Assessment and Management Plan - Prelim, Conceptual Design, Interim and Final Report etc., Tunnel Fire Safety - Fire Risk Assessment Report - Design Fire Scenario), Safety, Health and Environmental Management Plans leading construction/property companies/corporations in Malaysia, Timur West Consultant : Business Methodology and System, Information Security Management Systems (ISMS) ISO/IEC 27001:2013 for Majlis Bandaraya Petaling Jaya ISMS/Audit/Risk/ITP Technical Team, MPDT Capital Berhad - ISO 9001: 2015 - Consultancy, Construction, Project Rehabilitation, Desalination (first one in Malaysia to receive certification on trades such as Reverse Osmosis Seawater Desalination and Project Recovery/Rehabilitation), ABAC Centre of Excellence UK (ABMS ISO 37001) Joint Assessment (Technical Expert)
He is also rediscovering long time passions in Artificial Intelligence, ICT and National Security, Urban Intelligence/Smart Cities, Environmental Social and Governance, Solar Energy, Data Centers - BESS, Tiers etc. and how these are being applied.
* Has appeared for 10 consecutive series in “Good Morning Malaysia RTM TV1’ Corporate Talk Segment discussing on ISO 9000/14000 in various industries. For ICT, his inputs garnered from his expertise have successfully led to development of work-process e-enabling systems in the environments of intranet, portal and interactive web design especially for the construction and manufacturing. Some of the end products have won various competitions of innovativeness, quality, continual-improvements and construction industry award at national level. He has also in advisory capacity – involved in development and moderation of websites, portals and e-profiles for mainly corporate and private sectors, public figures etc. He is also one of the recipients for MOSTE Innovation for RFID use in Electronic Toll Collection in Malaysia.
Note :

Monday, May 25, 2026
BEYOND ENGINEERING - Hidden Drivers of Flood Risk
HYDROELECTRIC DAMS - FRIEND OR FOE?
Yes, I've been witnessing endless debates even school nowadays somehow was taught that hydroelectric dam construction left impact ecosystems through habitat disruption, altered river flows, effects on aquatic life, sediment changes, and, in some cases, the relocation of local communities. These concerns are real and should never be ignored. However, completely rejecting hydroelectric development also brings other serious challenges, including higher reliance on fossil fuels, increased carbon emissions, energy insecurity, and limitations on long-term national development. Being directly involved in the industry, I understand both the strengths and shortcomings of such projects. Despite the environmental concerns, hydroelectric development has contributed significantly to stable energy generation, rural electrification, infrastructure growth, employment opportunities, and improved living conditions in remote areas. Many rural communities that once lacked basic necessities now benefit from electricity, better roads, improved communication access, healthcare, education, and economic opportunities. The real issue is therefore not whether development should exist, but how it is implemented. Responsible planning, proper environmental assessments, biodiversity protection, community engagement, continuous monitoring, and sustainable engineering practices are essential to ensure development and environmental protection can coexist in a balanced and responsible manner.
TAX INCENTIVES AND SOCIAL SECURITY SCAM
Both emails exhibit clear indicators and red flags characteristic of scam, phishing, or unsolicited spam attempts. Here is a detailed analysis of the scam elements found in each email:
Email 1 (Left): "IAB-Investition ohne Genehmigungs- und Netzanschlussrisiken"
Sender Name Misalignment/Informality: The sender display name is "......." (capitalized) (not to mention using free @ outlook [dot] mail which is bizarre), but the sign-off at the bottom is typed entirely in lowercase as "....". While seemingly minor, professional business solicitations rarely contain basic capitalization errors in the sender's own name.
Generic Greeting ("Sehr geehrte Damen und Herren"): Mass-scale phishing or spam operations use generic greetings because they do not have your actual name. True investment offers or professional business inquiries are typically personalized.
Too-Good-To-Be-True Tax/Financial Incentives: The email heavily pushes a financial loophole using rapid-composting machines to instantly claim an investment tax deduction (Investitionsabzugsbetrag) with "immediate commissioning." Scams often rely on lucrative, low-risk, high-reward financial schemes to lure victims.
Vague and High-Pressure "Benefits": It promises complete "independence from authorities and grid operators" and "high planning security." These are vague buzzwords designed to bypass critical thinking by offering an easy solution to complex regulatory hurdles.
Lack of Contact Details or Corporate Footprint: Professional investment proposals in Germany/Europe are legally required to have an Impressum (corporate footprint) containing the company name, registered address, managing directors, and commercial register number. This email contains absolutely no company information - only an invitation to reply for more details.
Email 2 (Right): "SSA: Case 2611"
This email shows severe indicators of a highly dangerous Phishing Scam designed to steal personal identifiable information (PII) or login credentials.
Suspicious Sender Address Name: The sender is listed as "......". The official United States Social Security Administration sends automated emails from standard governmental extensions (like ssa [dot] gov) and does not typically identify its department as "Certs". (also using free @ outlook [dot] mail which is a redflag)
Fake Urgency/Pressure Tactics: The yellow warning box explicitly states: "Delayed access may result in processing setbacks or missed deadlines." Creating artificial urgency or fear of missing out/getting penalized is a classic social engineering tactic used to force victims into clicking links without thinking.
Vague "Case Number" Tracking: The subject line uses a generic "Case 2611". Government agencies track files via specific social security identifiers or highly structured application codes, not random short digits in an email subject line.
Call-to-Action Link (The Big Yellow Button): The entire email builds up to a massive, bright yellow button: "VIEW YOUR 2026 STATEMENT". Hovering over or clicking buttons like this in phishing emails usually directs the user to a spoofed, look-alike website designed to harvest your Social Security Number (SSN), banking information, or login passwords.
Generic Security Assurances: Phrases like "Secure connection - Takes less than 5 minutes" are used to lower your guard and make the malicious action seem safe, quick, and official.
Privacy Block Triggered: The email client itself has flagged the message by blocking remote resources ("To protect your privacy remote resources have been blocked"). This occurs when an email system detects tracking pixels or unverified external links often associated with malicious spam networks.
Sunday, May 24, 2026
ANOTHER SCAM DISGUISING AS METAMASK/CONSENSYS
PUBLIC AWARENESS: POSSIBLE INVESTMENT & FUNDING SCAM
Please be careful with unsolicited emails claiming to represent “high-net-worth investors”, “private funding groups”, or “international investment brokers”, especially when they come from free email services such as Outlook, Gmail, or Yahoo.
Saturday, May 23, 2026
HIGH RETURNS - SMALL CAPITAL?
Be cautious of investment apps that promise “high returns with very small capital” or claim you can become wealthy quickly with minimal effort.
IMPORTANCE OF A PROPER MONITORING SYSTEM
The images shown reflect actual incidents where TM responded promptly. In one case, suspects fled after nearby residents raised alarms. Permission was obtained before taking the photographs, including a still image captured from my concealed CCTV system.
DON'T DO OTHER PEOPLE'S JOB
In a management and leadership context, this principle is about role clarity, accountability, and respect for organizational structure and it's not about avoiding teamwork.
- Respect defined roles and responsibilities
- Every team member is assigned specific duties. Overlapping or bypassing roles without consent can disrupt workflow and accountability.
- Maintain clear accountability
- When someone else’s task is done by another person unofficially, it becomes unclear who is responsible for outcomes, errors, or decisions.
- Avoid undermining authority structures
- Taking over tasks without permission can unintentionally weaken supervisors, team leads, or assigned owners of the work.
- Prevent confusion and duplication of work
- Uncoordinated intervention can lead to conflicting decisions, rework, or inconsistent outputs.
WARNING: Possible Scam Loan Offer Using Government Email Identity
Friday, May 22, 2026
PROJECT MANAGEMENT 101 : WORK IN A TEAM
Project Management 101:
Yes, there are moments when independent work is necessary, but in construction, those situations are rare. Most of the time, the nature of the industry demands collaboration, coordination, and constant communication across multiple disciplines. Very few tasks can truly be done in isolation. One common mistake during construction meetings or consultancy work is the moment someone assumes they can handle the assigned task alone. The first and most critical failure is the inability or unwillingness to work effectively with others. In most cases, it is already foreseeable, without even a formal risk assessment, that the assignment will fail regardless of how competent one believes they are. - Overconfidence leads to isolation in decision-making - Lack of collaboration weakens project execution - Ignoring team input increases avoidable errors and rework - Technical skill alone is not enough without coordination - Early warning signs of failure are often visible but overlooked - Successful delivery depends on shared responsibility, not individual dominanceThursday, May 21, 2026
This scammer is really getting on my nerves
There are several strong signs this could be a phishing or scam email impersonating LEMBAGA HASIL DALAM NEGERI Malaysia/HM Revenue & Customs (HMRC) style tax authorities.
Tuesday, May 19, 2026
DIRECTOR RESPONSIBILITY UNDER GOOD GOVERNANCE
As a Director, we need to fully understand the responsibilities, fiduciary duties, and legal accountabilities entrusted upon us under the law. It is not merely a title, but a serious obligation that requires continuous learning, awareness, and ethical governance.
Monday, May 18, 2026
FAKE PROFILES AND FAKE SERVICE REQUESTS
Been dealing with a growing number of fake accounts and impersonators on my service request page lately. Most of them are not even within my network or professional circle. I’ve blocked many of these accounts, reported several, yet more continue to appear.
Some of these are clearly the same individuals operating multiple fake LinkedIn accounts often without profile photos, using suspicious job titles, copied profiles, or recycled information from legitimate users. That’s one of the reasons why I prefer proper email communication and PMs, as it makes tracing and verification much easier.
What’s interesting is that many of these accounts appear to originate from the same country, while some pretend to be from other countries, including Malaysia. Unfortunately, online impersonation and social engineering tactics are becoming more common nowadays.
They probably assumed they were targeting an ordinary user this time. Instead, they attempted to deceive someone already familiar with cyber security, digital footprints, impersonation patterns, and verification methods.
Always verify before trusting. A professional profile does not always mean a genuine person behind it.
To everyone engaging online, please verify profiles carefully before interacting, especially when it involves business, services, or professional matters. The digital space is becoming increasingly vulnerable to scams, fake identities, and misleading accounts. Stay alert, protect your information, and always exercise caution.
Sunday, May 17, 2026
PREPARING A PROPOSAL/QUOTATION - Things you need to be aware of. (from my own experience)
Disclaimer: The following tips may not apply universally to every consultant or consultancy firm. However, many of the points highlighted here represent common industry practices, professional expectations, and generic fundamentals that consultants should generally be aware of.
Different consultants may have different approaches, methodologies, and working styles depending on their field, experience, and organisational culture. Nevertheless, there are also many similarities in terms of professional conduct, commercial practices, project management, client engagement, ethics, and risk management much of which is reflected in my own experience and practice.
"Do not be too proud or talk in an arrogant manner especially if you've invited into Board Meetings, remember you're just a Consultant, not a CEO or President of a major corporation"
(I’ve seen this mistake happen before, and it can be one of the most damaging ways to engage with clients. Always remain calm and composed, especially when being grilled with questions, the client is often testing your resilience, depth of knowledge, and how you handle pressure in a crisis situation. Remember that today’s knowledge can quickly become yesterday’s. It is important to continuously update yourself with current industry developments, especially in areas such as AI and emerging technologies, to stay relevant and effective.)
PREPARING A PROPOSAL AND QUOTATION
When preparing a proposal and quotation for consultancy services whether in construction, engineering, management, ICT, ESG, training, or any other industry, it is common practice to provide a proper breakdown of the scope of work, deliverables, phases, man-days, and the corresponding cost for each item before arriving at the grand total.
At the proposal stage, you normally do not provide a full detailed schedule or execution programme yet unless the quotation has been officially approved or awarded. The quotation stage is usually part of the commercial evaluation and negotiation process. Clients are expected to negotiate on pricing, scope, duration, or deliverables, so ensure that whatever you quote remains commercially reasonable, technically justifiable, and aligned with current market practices.
Do your homework properly. Conduct market surveys, understand prevailing industry rates, benchmark competitors where possible, and ensure the value you provide matches the fee you are charging. Sometimes providing a few additional value-added services, limited advisory support, or certain minor items on an FOC basis can strengthen client confidence and improve long-term relationships.
It is also common industry practice to request a mobilization fee or upfront payment upon award confirmation. This reflects the consultant’s initial commitment cost such as travelling, accommodation, manpower preparation, preliminary site visits, documentation, insurance, and operational readiness. In some projects, the client may separately cover OPE (Out-of-Pocket Expenses), but in many cases mobilization is necessary before any substantial work begins. From a business and risk management perspective, obtaining the mobilization fee first is important to ensure commitment from both parties.
Another important point, never simply “sub-out” the entire job using your own company name if you do not possess the required competency, technical capability, or experience in the field you are quoting for. But you can collaborate with other experts/consultants in the field that you do not possess the strength. Clients today commonly conduct background screening, capability assessments, financial reviews, and technical evaluations before appointing consultants. If your documentation, experience, certifications, and procedures are genuine, there is nothing to fear.
At the same time, consultants should also conduct their own due diligence on clients discreetly and professionally. Review their company background, annual reports, financial standing, project track record, litigation history if any, ownership structure, and identify who the actual decision makers or PICs are. This is part of proper commercial risk management.
Equally important is maintaining ethical boundaries. Be cautious of red flags that may expose you to bribery, corruption, kickbacks, or disguised “facilitation payments.” Some payments may appear harmless initially but can later create legal, contractual, governance, or reputational problems. Proper documentation, transparency, and compliance with company SOPs and anti-bribery policies are extremely important.
As for marketing commissions, there is a major difference between legitimate business development arrangements and unethical inducements. In my own practice, when a marketer successfully helps secure a project, I normally compensate them through an agreed marketing commission. More importantly, I encourage them to remain involved in the project execution itself so the commission reflects actual contribution and continuing value creation. Additional payments are then tied to actual involvement, phases completed, deliverables, or man-days contributed rather than hidden transactions.
Lastly, from experience, I would strongly advise consultants to be very careful about proceeding with consultancy work, training programmes, or project execution entirely using your own funds first with the intention to “claim later,” even if you have sufficient capital reserves. In reality, this often leads to prolonged disputes over claims, delayed payments, variation disagreements, documentation arguments, strained relationships, and in some cases escalation into legal disputes or court proceedings.
A good consultancy engagement is not only about technical capability. It is also about professionalism, documentation, ethics, commercial awareness, risk management, financial discipline, and protecting both parties through clear procedures and proper agreements from the very beginning.








