Summary
Overview
Work History
Education
Certification And Training
Technical Skills
Accomplishments
Timeline
Generic

Ibrahim M. Alrumayh

Threat Intelligence Lead Specialist
Riyadh - Al Nada - Quryat St

Summary

Experienced cybersecurity analyst with over 10 years of experience in Information Technology. Dedicated infoSec professional with history of meeting company goals utilizing consistent and organized practices. Skilled in working under pressure and adapting to new situations and challenges to best enhance the organizational brand.

Overview

13
13
years of professional experience

Work History

Cybersecurity Operation Manager

Confidential Government
02.2024 - Current
  • Accomplished multiple tasks within established timeframes.
  • Enhanced Employer satisfaction resolving problem promptly, maintaining open lines of communication, and ensuring high-quality service delivery.
  • Developed and maintained relationships with vendors and suppliers through account development.
  • Managed budget allocations to prioritize spending on high-impact projects, optimizing resource utilization.
  • Managed budgets effectively, ensuring optimal financial performance while investing in necessary resources for business growth.
  • Achieved unit goals by developing and executing strategic plans and performance metrics.
  • Mentored junior team members for career advancement, fostering a pipeline of future leaders within the organization.
  • Coordinated with IT department to upgrade technology infrastructure, enhancing operational efficiency and data security.
  • Defined clear targets and objectives and communicated to other team members.
  • Make sure of cybersecurity operational projects are in harmony with other departments project in the organization.
  • integrate cybersecurity operation functions with other stake holders within the organization to make sure fast and high quality outcomes.

Cyber Security Lead Specialist

Zakat, Tax And Customs Authority
8 2022 - 02.2024
  • Led a team of DFIR professionals to investigate and respond to security incidents, ensuring timely and effective resolution.
  • Developed and implemented incident response procedures.
  • Collaborated with cross-functional teams, including IT, identity, and business, to coordinate incident response efforts and ensure compliance with regulatory requirements.
  • Oversaw the collection, preservation, and analysis of digital evidence using industry-standard forensic tools and techniques.
  • Managed relationships with external vendors and consultants to enhance incident response capabilities and leverage external expertise as needed.
  • Led incident response planning and preparedness activities, including tabletop exercises, simulations, and incident response drills.

Cyber Security Specialist

General Authorities Of Military Industries
04.2022 - 08.2022
  • Developed security metrics and technical analysis to response on threats and security incidents.
  • Reviewed policies and procedures for emerging security technologies and proposals.
  • Alined with third parties to identify security events and understand threat landscape.
  • Performed network troubleshooting to diagnose common problems.
  • Assisted with day-to-day operations, working efficiently and productively with all team members.

Senior Cyber Security Analyst

ELM
07.2019 - 03.2022

- Participated in creation of device hardening techniques and protocols.

- Selected and installed PoC SIEM solutions.

- Recommend improvements in security systems procedures.

- Performed risk analyses to identify appropriate security countermeasures.

- Conducted testing for security incident handling process to identify weakness.

Cyber Security Analyst

STC
07.2018 - 07.2019

- Monitoring security incidents through SIEM solution.

- Fine tuning use cases.

- Incidents response to security events.

- Planing for incident remediation and closer.

- Firewalls policy review.


IT Supervisor

Wall Street English
12.2011 - 05.2018

- Oversaw daily performance of computer systems and immediately responded to workstation and lab issues to keep network up and running.
- Managed network and system performance, conducting troubleshooting, security patching and maintenance.
- Installed and managed IT equipment.
- Maintained camera and physical security systems.
- Supported phone, photocopier and other physical equipment.
- Built, customized and repaired technology based on company requests.
- Monitored networks and network devices to resolve technical problems quickly.

Education

Bachelor of Science - Information Technology

Qassim University

Certification And Training

  • CISSP
  • Security Operations and Defensive Analysis
  • GIAC GCDA
  • SANS FOR500
  • Splunk Fundamentals
  • CCNA R&S
  • Security+

Technical Skills

· Investigating and utilizing different SIEM solutions.

· Ability to optimize and fine tune SIEM solution.

· Skilled in rules update and modification for EDR.

· Analyzing APT threats.

· Threat Hunting.

· E-mail analysis.

· Digital forensics.

· Pcap analysis.

· Threat Intell optimization.

· Vulnerability Assessment "Nessus".

· Risk and compliance support.






Accomplishments


  • Achieved SIEM PoC through effectively helping with implementation.
  • Achieved numerous incidents detection by optimizing incidents handling playbook with accuracy and efficiency.
  • Documented and resolved monitoring and incident handling issues which led to more effective and accurate incidents handling.

Timeline

Cybersecurity Operation Manager

Confidential Government
02.2024 - Current

Cyber Security Specialist

General Authorities Of Military Industries
04.2022 - 08.2022

Senior Cyber Security Analyst

ELM
07.2019 - 03.2022

Cyber Security Analyst

STC
07.2018 - 07.2019

IT Supervisor

Wall Street English
12.2011 - 05.2018

Cyber Security Lead Specialist

Zakat, Tax And Customs Authority
8 2022 - 02.2024

Bachelor of Science - Information Technology

Qassim University
Ibrahim M. AlrumayhThreat Intelligence Lead Specialist