Summary
Overview
Work History
Education
Skills
Certification
Additional Information
Timeline
Generic
Abdullah Sarhan

Abdullah Sarhan

Cyber Security Engineer

Summary

Highly skilled cybersecurity engineer with 1 year of experience in developing and implementing comprehensive security solutions. Conducts proactive web application penetration testing to safeguard against potential web attacks, ensuring maximum protection for web application security. Enhances overall security posture and minimizes the impact of security incidents. Proficient in vulnerability assessments and network security, demonstrating dedication to staying updated with the latest security trends and technologies.

Overview

2
2
years of professional experience
4
4
Certifications
2
2
Languages

Work History

Cybersecurity Internship

SABIC COMPANY
06.2022 - 08.2022


A lot of skills that I have gained during my internship at the cyber security department of the SABIC Company include:


  • OT Cybersecurity and architecture
  • Vulnerability assessment
  • Risk assessment
  • Penetration testing
  • Information security management system
  • Regulatory requirements and compliance

Trainee

Tuwaiq Cyber Security Bootcamp
05.2023 - 11.2023



studying the OSCP certification materials that includes:


  • information gathering
  • Common Web Application Attacks
  • Password Attacks
  • Windows Privilege Escalation
  • Linux Privilege Escalation
  • Port Redirection and SSH Tunneling
  • Active Directory Introduction and Enumeration
  • Attacking Active Directory Authentication



Cyber Security Engineer

ELM Company
11.2023 - Current


Responsibilities:


  • Performing web application penetration testing activities to ensure that the web applications are secure and following the security best practices .
  • Performing vulnerability assessments to ensure that the environment is safe and not vulnerable to any attacks.
  • Managing the bug bounty platform and handling the vulnerabilities discovered to fix it and validating that the vulnerabilities have been resolved.
  • DLP admin: monitoring the data transferred in all channels in order to prevent any data leakage or data exfiltration outside the organization environment.
  • configuring Firewalls and security controls hardening
  • Creating security policies and manage the access in the enterprise
  • security policies review to fix any failures or gaps exist in the security rules
  • Dealing with: VPN,SSL Inspection,SSL certificate, source NAT, Destination NAT.
  • DLP admin: monitoring the data transferred in all channels in order to prevent any data leakage or data exfiltration outside the organization environment.
  • Implementing and dealing with the Zero Trust Network Access (ZTNA) to continuously monitor all the activities during remote access to the organization environment.

Education

Bachelor's Degree in CyberSecurity

University of Jeddah
09.2018 - 2023.03

Skills

penetration testing

Certification

Cisco Certified Network Associate - CCNA

Additional Information

  • Cryptography
  • Information Security Management
  • Cybersecurity Engineering and Architecture
  • Red Hat System Administration I
  • EC‑Council ‑ Certificated Network Defender (CND)
  • EC‑Council ‑ Computer Hacking Forensic Investigator (CHFI)

Timeline

OSCP Certification

01-2024

Cyber Security Engineer

ELM Company
11.2023 - Current

Trainee

Tuwaiq Cyber Security Bootcamp
05.2023 - 11.2023

Cybersecurity Internship

SABIC COMPANY
06.2022 - 08.2022

Cisco Certified Network Associate - CCNA

10-2021

Bachelor's Degree in CyberSecurity

University of Jeddah
09.2018 - 2023.03
Abdullah SarhanCyber Security Engineer