An experienced IT Security Officer with the necessary drive and determination needed to resolve complex security networking issues. Possessing effective organizational skills and excellent working knowledge of networking and security technologies and having a commitment to keep up to date with the latest developments.
Overview
18
18
years of professional experience
2
2
Certifications
Work History
CyberSecurity Consultant
Techvisions
10.2023 - Current
Analyze security policies, procedures, and controls, providing recommendations for enhancements and improvements to strengthen overall security posture
Collaborate with clients to develop customized cybersecurity strategies and roadmaps aligned with their business objectives and risk tolerance
Provide expert guidance and support to clients on implementing security best practices, including the deployment of advanced security technologies and tools
Perform penetration testing, vulnerability scanning, and threat modeling to proactively identify and address security gaps
Assist clients in incident response planning and execution, including incident detection, containment, eradication, and recovery
Stay abreast of the latest cybersecurity threats, trends, and technologies, and provide insights and recommendations to clients to mitigate emerging risks
Educate clients and internal stakeholders on cybersecurity awareness, training, and compliance requirements
Support regulatory compliance efforts by ensuring clients adhere to relevant security standards, such as GDPR, HIPAA, PCI DSS, etc
Collaborate with cross-functional teams, including IT, legal, and compliance, to develop holistic security solutions that integrate seamlessly with business operations
Maintain accurate documentation of security assessments, findings, and remediation efforts
Continuously enhance personal and professional skills through training, certifications, and participation in industry conferences and forums.
Senior Security Engineer (Project Manager)
Naizak
Study and perform PEN test services at Marafiq Jubail and Yanbu Sites
Plan and Prepare the team to perform PEN test services
Prepare project plan to deploy the team on the sites
Coordinate with the team to perform Vulnerability assessments for IT infrastructure
Coordinate with the team to perform Network PEN test
Coordinate with the team to perform mobile application PEN test
Coordinate with the team to perform web application PEN test
Coordinate with the team to perform wireless PEN test
Coordinate with the team to perform configuration reviews for the IT core devices
Perform configuration review for external and internal firewalls
Conduct configuration review for Mail gateways
Conduct configuration review for proxies
Conduct configuration review for VPN access
Implement SIEM solutions
Implement IAM solutions
Implement PAM solutions
Implement Trellix solutions
Implement Crowdstrike falcon end point solutions
Perform and run compatibility test pre and post implementation of security solutions
Prepare PEN test reports pre and post assessments
Conduct risk analysis with GRC Archer tool for conduct maturity assessments
Implement patch management system to secure IT infrastructure
Conduct Poc for Security Awareness Sessions for the users.
IT Officer (Senior Network Security)
Al Ahli Takaful Company
02.2015 - 01.2021
Responsible for managing and administrating and leading network & systems in Al Ahli Takaful Company based around different technologies
Working as part of a professional team and operating in a fast paced, changing and challenging 24x7 environment
Study and Support Network & System change process during the transformation
Maintain Vulnerability assessment with Qualys management system
During Post Implementation was directly involved to establish a secure connectivity with the NCB and its interfaces
Involved in third party network penetration testing for ATC core banking applications
Coordinate with vendors for Implementation of Cyber security solutions
Coordinated and participated in the IT transformation, Network and Security Function, Policies and Procedures to maintain efficient operational practices and continuously enhance set of standards
Perform Network and Systems Security implementation and management activities including setup, Installation, Testing, Configuring and fine tuning devices
Monitor Infrastructure traffic and ensure Intrusion Prevention and Intrusion Detection process is well maintained to avoid security breaches in the network
Coordinate with network/system admin team to ensure the efficiency and security of installed products
Applied Advanced Network Security Techniques from Breaches in the ATC Environment
Applied DDOS Techniques to prevent the ATC network from external threats
Design IT Security Architecture to prevent IT infrastructure from critical attacks
Monitor SIEM Solutions for any kind of threat activity in the IT infrastructure
Recommended and implemented WAF solutions to protect against application attacks
Coordinated with external vendors to perform PEN testing
Implemented Fire Eye solutions to prevent against malware attacks
Performed fine tune of security devices and recommended latest patch updates
Performed POC with vendors to check the feasibility and study the integration and compatibility of systems and network and applications in the environment
Performed MDM solution implementation to make sure all the assets accessed securely via Encryption tools.
IT Security Consultant
Philadelphia Consulting Co.ltd
02.2014 - 02.2015
Responsible for working with clients, devising strategies, business analyst, project management and improving the structure & efficiency of IT infrastructure systems, and achieving business objectives
Day to Day Responsibilities
Liaising and working with business clients to define the scope of a project and implementing required solutions and new systems
Clarifying a client's system specifications, understanding their work practices and the nature of their business
Defining software, hardware and network standards and best practices for clients
Preparing and providing IT policies and procedure documentation for clients
Performing Risk Assessments for Network and Security Products
Eliminated bottlenecks in the network and enhanced system and network security
Performed GAP analysis and streamlined internal reporting process.
IT Network and Support Engineer
SAMBA
01.2006 - 01.2014
Responsible for managing and administrating network systems in Enterprise Operations unit of SAMBA based around Cisco and Microsoft technologies
Working as part of a professional team and operating in a fast paced, changing and challenging 24x7 environment
Designing, administrating and troubleshooting LANs
Oversee network and equipment upgrades to include IOS image upgrades and configuration changes
Administered Cisco firewalls throughout LAN to ensure network security
Monitored bandwidth and network activity by analyzing information provided by Solar winds to ensure both efficient and effective network operation
Investigate, diagnose and quickly resolve all network issues to reduce the downtime
Ensure thorough network documentation, backup configurations and network diagrams
Create MIS reports in crystal reports for higher management
Training and educating best practices and guidelines to technical team
Designing and updating disaster recovery plans to support business continuity
Recommending and implementing continuous improvements and efficiencies.