Results-oriented Technology and Cybersecurity Audit Manager with over 8 years of expertise in auditing IT systems, evaluating cybersecurity threats, and executing robust risk management strategies.
Overview
10
10
years of professional experience
1
1
Certification
Work history
Technology & Cybersecurity Audit Manager
sirar by stc
Riyadh, Saudi Arabia
02.2024 - 07.2025
Prepared, presented, and reviewed audit materials for audit committee meetings.
Led team of auditors to achieve higher productivity and effectiveness.
Developed comprehensive internal audit strategy aligned with organisational goals.
Spearheaded implementation of continuous audit framework for ongoing risk assessment.
Contributed to defining operating model for fraud management and whistle-blowing functions.
Streamlined audit processes to enhance operational efficiency.
Internal Audit Expert
sirar by stc
Riyadh , Saudi Arabia
08.2022 - 02.2024
Conducted IT and cybersecurity audits to evaluate risk management and compliance.
Maintained and assessed audit universe, developing a comprehensive internal audit plan.
Advised on operational processes, policies, and compliance guidelines to enhance efficiency.
Internal Audit Expert
Ministry of Communication & Information Technology
Riyadh , Saudi Arabia
01.2022 - 08.2022
Established Technology audit function by defining IT audit universe and conducting risk assessment.
Executed IT and Cybersecurity audits to evaluate compliance and effectiveness.
Assistant Audit Manager
Arab National Bank
Riyadh
04.2019 - 12.2021
Conducted IT and Cybersecurity audits independently and collaboratively.
Determined scope, developed audit planning memorandums, and performed audit tests.
Produced detailed working papers and comprehensive reports on findings.
Organised audit files systematically with cross-referencing of findings to work programmes.
Discussed deficiencies, potential risks, and results with key stakeholders.
Recorded, tracked, and ensured closure of audit findings with supporting evidence.
Technology Risk Officer
Bank Saudi Fransi
Riyadh
03.2017 - 04.2019
Conduct detailed Risk Assessments on the bank's infrastructure/systems.
Proactively managing regulatory and operational risks.
Develop and maintain Risk profiles.
Assist in analyzing risks pertaining to new projects.
Review and propose new Key Risk indicators (KRIs) for the business units in accordance to the new system and new operational risk.
Information Security Analyst
Riyad Bank
Riyadh
12.2015 - 03.2017
Conducted information security risk assessments and compliance reviews for banking systems.
Led Vulnerability Management team to identify and mitigate security threats.
Created, updated, and maintained information security policies and procedures.
Enhanced and enforced security standards to protect sensitive data.
Recorded, tracked, and monitored security risks alongside non-compliance exceptions.
Education
Bachelor - Networking & Telecommunication Systems
Princess Noura University
Riyadh, Saudi Arabia
01.2010 - /2015
Skills
Microsoft Office
Internal control evaluation
IT auditing techniques
Project management experience
Internal and external audits
ERP systems knowledge
Compliance assessment strategy
Certification
Finance and Accounting for the Nonfinancial Professional, Columbia Business School
Corporate Leadership Program, IE Business School - Madrid, Spain