Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Bashayer Almuqati

Riyadh

Summary

Senior Cybersecurity Officer with 5+ years of progressive experience in the cybersecurity field. Demonstrate skills in Cybersecurity Risk Management, Penetration Testing, Security Monitoring, Third Party and Cloud. Offer great analytical skills and a strong background in adapting multiple cybersecurity approaches.

Overview

8
8
years of professional experience
7
7
years of post-secondary education
5
5
Certifications

Work History

Head of Counter Fraud Prevention

AlRajhi Bank
10.2023 - Current
  • Oversee regular risk assessment to identify potential areas of vulnerability to fraud and compliance breaches
  • Collaborate with internal stakeholders to develop and implement fraud prevention controls and compliance gaps
  • Provide regular reports and updates to senior management on the organization's fraud risk management and compliance
  • Develop and implement a robust counter fraud technology strategy to enhance fraud detection and prevention capabilities
  • Oversee the training and awareness program to educate customers, employees and third parties.
  • Oversee the evaluation and improvement of counter fraud prevention process to ensure effectiveness and efficiency.
  • Oversee the SAMA counter fraud compliance activities and ensure gaps are addressed in compliance to the framework

Manager Cybersecurity Risk Management & Eng

Banque Saudi Fransi
01.2021 - 09.2023
  • Lead the Application and Infrastructure Security Team that perform Risk Assessments, Penetration Testing and Change Management.
  • Lead the Information Security Assurance Team that identifies, analyzes and reports vulnerabilities.
  • Perform risk analyses to identify gaps and implement appropriate security countermeasures.
  • Perform Third Party and Cloud Assessments, and provided results and recommendations to senior management.
  • participated in regulatory compliance such as SAMA CSF, NCA ECC and CSCC.
  • Perform Penetration Testing activities to detect flaws and weaknesses on Web and mobile Applications.
  • Worked with other teams to enforce security of applications and systems.
  • Plan and oversee configuration changes for security infrastructure platforms.
  • Developed, tested and implemented security policies, plans and procedures for organizational protection.
  • Reviewed violations of cybersecurity procedures and developed mitigation plans.

Senior Soc Analyst

Saudi Standards, Metrology and Quality Organization
03.2020 - 12.2020
  • Performed real-time security monitoring, reporting, and analysis of security events using SIEM, application logs, and custom monitoring tools.
  • Handled major penetration testing and Risk Assessment projects
  • Investigated and resolved incidents of unauthorized access to sensitive information.
  • Detected potential, successful, and unsuccessful intrusion attempts by analyzing relevant event details.
  • Lead and respond to security incidents by investigating and reviewing of suspect areas.
  • Designed company-wide policies to bring operations in line with globally known cybersecurity standards.
  • Executed penetration testing activities to identify security weaknesses and develop remediation plans.
  • Conducted security audits to identify compliance gaps against NCA.
  • Verified strength of network security measures such as firewall and IPs through external intrusion testing services.

Information Security Analyst

Riyad Bank
08.2016 - 08.2018
  • Worked in a 24/7 Security operation center.
  • Performed analysis of network traffic to identify potential threats or anomalies within the environment.
  • Analyzed system logs to identify trends and potential security issues by using SIEM.
  • Analyzed security appliance logs and Endpoint logs to identify anomalies, malicious or potential threats.
  • Investigated various incidents, including phishing emails, data leaks and malware analysis.
  • Conduct research on new and evolving threats and vulnerabilities using security blogs.
  • Worked with other departments in resolving cyber vulnerabilities to improve operations and provide secure Applications.
  • Performed various penetration testing tasks, including web application and mobile Applications.
  • Implemented security measures to reduce threats and damage related to cyber attacks.

Education

Master of Science - Cyber Security

University of Southampton
Southampton, United Kingdom
01.2018 -

Bachelor of Science - Information Systems

Princess Nourah Bint Abdul Rahman University
Riyadh, Saudi Arabia.
05.2011 -

Skills

Penetration Testing

Enterprise Fraud Management Solutions

Security Monitoring Tools

Risk Management Procedures

Vulnerability Assessment

Certification

SANS GIAC Enterprise Vulnerability Assessor (GEVA)

Timeline

Head of Counter Fraud Prevention

AlRajhi Bank
10.2023 - Current

SANS GIAC Enterprise Vulnerability Assessor (GEVA)

04-2022

SANS GIAC Cloud Security Essentials (GCLD)

09-2021

Manager Cybersecurity Risk Management & Eng

Banque Saudi Fransi
01.2021 - 09.2023

ELearnSecurity Junior Penetration Tester (eJPT)

08-2020

Senior Soc Analyst

Saudi Standards, Metrology and Quality Organization
03.2020 - 12.2020

Master of Science - Cyber Security

University of Southampton
01.2018 -

CompTIA Security+

01-2018

EC-Council Computer Hacking Forensic Investigator (CHFI)

11-2017

Information Security Analyst

Riyad Bank
08.2016 - 08.2018

Bachelor of Science - Information Systems

Princess Nourah Bint Abdul Rahman University
05.2011 -
Bashayer Almuqati