Summary
Overview
Work History
Education
Skills
Certification
Businessobjective
Languages
Projects
Timeline
Generic

Mohammed Balsharaf

Sr. Cybersecurity Analyst
Riyadh,01

Summary

Master of Computer Science - Cybersecurity with 8 years of experience in Information Technology and over 4 years in Cybersecurity, safeguarding critical infrastructure. Expertise in incident response, threat hunting, and enhancing organizational security posture. Proven ability to lead teams, reduce downtime, and ensure compliance with industry standards.

Overview

7
7
years of professional experience
8
8
years of post-secondary education
10
10
Certifications

Work History

Senior Cybersecurity Analyst

Elm Company | Haj and Umrah Information Center (HUIC)
Jeddah, Mecca Region
3 2023 - Current
  • Conduct Incident Response (IR) for confirmed incidents
  • Administer Endpoint Detection and Response (EDR) and Network Detection and Response (NDR) systems
  • Analyzed security incidents post-resolution, identifying areas for improvement in both technical controls and incident response processes
  • Conduct Risk Assessments for Business Change requests
  • Manage Vulnerability Assessment (VA) on +1500 server and prioritize remediation efforts
  • Handle Attack Surface Management (ASM) alerts
  • Participate in Essential Cybersecurity Controls (ECC) and Critical Systems Cybersecurity Controls (CSCC)
  • Analyze security logs and events using SIEM solutions.

Cybersecurity Analyst

Elm Company | Haj and Umrah Information Center (HUIC)
11.2021 - 03.2023
  • Analyzed security logs and events using SIEM solutions
  • Conducted Incident Response (IR) for confirmed incidents
  • Performed threat hunts based on Indicators of Compromise (IOCs) and malicious hashes provided by National Cybersecurity Authority.
  • Led cybersecurity awareness training sessions, increasing staff vigilance against phishing and social engineering attacks.

Cybersecurity Analyst

Sejel Company | Haj and Umrah Information Center (HUIC)
03.2020 - 11.2021
  • Analyzed security logs using LogRhythm SIEM
  • Conducted email analysis for spam and potential threats
  • Created daily shift reports summarizing events and IOCs.
  • Conduct Incident Response (IR) when analysis confirms actionable incident.
  • Analyzed security incidents post-resolution, identifying areas for improvement in both technical controls and incident response processes.
  • Performed risk analyses to identify appropriate security countermeasures.

Business Operations Specialist

Sejel Company | Haj and Umrah Information Center (HUIC)
04.2019 - 03.2020
  • Managed Ministry of Haj and Umrah applications
  • Maintained system functionality, data validation, and system integration
  • Investigated and resolved technical issues via HP Service Desk System
  • Generated SQL queries and statistics reports for Ministry of hajj.
  • Ensure data is delivered to competent authorities through integration systems.

Sr. Network & System Administrator

ASCOTT Hotels
01.2019 - 04.2019
  • Managed Cisco network devices and 4 data centers.
  • Administered VEEM backups and Microsoft Servers.
  • Troubleshot network and system errors.
  • Managed onboarding and offboarding of employees.
  • Installed important security and functionality patches to maintain optimal protections against intrusion and system reliability.
  • Completed reports detailing network and systems performance and downtime issues.
  • Simplified troubleshooting processes by creating detailed documentation for system configurations, procedures, and best practices.

Network Engineer

Ctelecoms Company
07.2017 - 01.2019
  • Configured Cisco devices for customers.
  • Managed Ctelecoms company datacenter.
  • Provided network support services for devices such as hubs, bridges, routers, and other hardware.
  • Administered Microsoft system servers and Hyper-V configuration.
  • Delivered end-user support by troubleshooting connectivity issues and providing guidance on proper usage of networking equipment.

Education

Master of Science - Cybersecurity

King Abdelaziz University
Jeddah
04.2021 - 04.2024

Bachelor of Science - Information Technology

King Abdelaziz University
Jeddah
04.2012 - 04.2017

Skills

Governance

Project Management

Awareness Programs

Risk Assessment

Incident Response

Security Logs and Events Analysis

Vulnerability Assessment

Problem Solving

Vulnerability Assessment Nexpose, Nessus

FortSandBox Analysis Malware, phishing

Incident Response VMware Carbon Black Response EDR, Trellix HX EDR

SIEM analysis using LogRhythm

Risk assessment and management

SIEM use case development and enhancement

Attack surface management

Teamwork and collaboration

Professional self-learning

Incident Response Management

Threat Intelligence

Phishing Detection

Endpoint Protection

SIEM management

User Awareness Training

Digital Forensics

Log Analysis

Database Security

Security Operations Center

IoT Security

DDoS Mitigation

Certification

Cisco Certified Networking Professional Security | 07/2020

Businessobjective

To leverage my expertise in threat hunting, incident response, and risk assessment to proactively identify and mitigate cyber threats, minimizing downtime and protecting sensitive data. I aim to contribute to the profitability and operational resilience of the organization by translating complex security concepts into actionable insights.

Languages

Arabic
English

Projects

· Trellix EDR implementation and operation (2023).

· Darktrace NDR enhancement and tuning project (2023)

· Darktrace Attack surface management enhancement

· Essential Cybersecurity Controls ECC 2022 and (2023)

· Critical Systems Cybersecurity Controls CSCC (2023).

· Darktrace NDR implementation and operation (2022).

· Haj and Umrah Information Center Awareness Programs (2023)

· Nususk Mobile Application (Etamrna) (2021-2024)

· External Hajj Portal Readiness (2019-2023) Season.

· Local Hajj Portal Readiness (2019 - 2024) Season.

· Economic Cities Authorities ECA Network SLA

· SALAM Insurance Company LAN Network configuration project

· OSOUL Modern Company LAN Network configuration and Cisco voice project

· RAWEC Rabigh Arabian Water & Electricity Company

Timeline

Cybersecurity Analyst

Elm Company | Haj and Umrah Information Center (HUIC)
11.2021 - 03.2023

Master of Science - Cybersecurity

King Abdelaziz University
04.2021 - 04.2024

Cybersecurity Analyst

Sejel Company | Haj and Umrah Information Center (HUIC)
03.2020 - 11.2021

Business Operations Specialist

Sejel Company | Haj and Umrah Information Center (HUIC)
04.2019 - 03.2020

Sr. Network & System Administrator

ASCOTT Hotels
01.2019 - 04.2019

Network Engineer

Ctelecoms Company
07.2017 - 01.2019

Bachelor of Science - Information Technology

King Abdelaziz University
04.2012 - 04.2017

Senior Cybersecurity Analyst

Elm Company | Haj and Umrah Information Center (HUIC)
3 2023 - Current
Cisco Certified Networking Professional Security | 07/2020
Fortinet NSE 4 Network Security Professional | 06/2020
CompTIA CySA+ Cybersecurity Analyst | 12/2020
CompTIA Security+ Certified | 04/2021
Darktrace NDR Cyber Analyst | 01/2023
EC-Council Certified Incident Handler | 12/2021
CompTIA Security Analytics Professional | 04/2021
Certified Network Security Specialist | 05/2020 (ICSI, UK)
Cisco Certified Networking Professional Enterprise | 07/2020
eCTHP Certified Threat Hunter Professional | 01/2024
Mohammed BalsharafSr. Cybersecurity Analyst