With over 10 years of diverse work experience in information security, IT governance, networking, and software programming, I bring a comprehensive skill set in information technology and cyber security. Expertise lies in proactively identifying risk and compliance gaps, evaluating risk scenarios, and enhancing internal capabilities. Excels at defining new risk and data management frameworks to identify potential threats. Proven track record of driving organizational efficiency through the implementation of effective governance practices.
Overview
11
11
years of professional experience
5
5
Certification
Work History
Assistant Manager IT GRC
Watania Takaful
11.2024 - Current
Overseeing the implementation and management of IT Governance, Risk, and Compliance (GRC) programs
Ensuring compliance with regulatory requirements and internal policies
Conducting risk assessments and developing mitigation strategies
Performing Data Privacy Impact Assessment
Managing IT audits and ensuring timely resolution of audit findings
Collaborating with various departments to enhance IT security and compliance
Developing and maintaining IT policies, procedures, and standards
Monitoring and reporting on IT GRC metrics and performance
Managing the outsourced SOC and developing SIEM use cases
Information Security Specialist
Abu Dhabi Housing Authority
07.2023 - 03.2024
Integrated security protocols to protect client data and enhance service reliability
Designed and implemented security controls, including access management, encryption, and vulnerability assessments
Led incident response efforts, ensuring timely resolution of security incidents
Conducted comprehensive IT audits to assess compliance with policies, standards, and regulatory requirements
Collaborated with internal and external audit teams to address control deficiencies and improve processes
Assisted in ISO 27001 and ISO 20000 compliance efforts, ensuring proper documentation and testing of the controls
Collaborated with auditors to address control deficiencies and enhance control environment
Implemented GRC and DLP solutions
IT Governance Officer
Statistics Center Abu Dhabi
10.2022 - 06.2023
Monitored and evaluated security threats, implementing measures to mitigate risks
Developed and monitored control objectives and key performance indicators (KPIs) based on COBIT principles
Conducted risk assessments to identify vulnerabilities and gaps in IT processes
Collaborated with cross-functional teams to mitigate risks and enhance security controls
Engaged IT Process owners in regularly scheduled IT governance activities
Maintained policy and procedure documentation on a regular basis
Prepared for and participated in internal and external audits related to IT governance, ensuring adherence to policies and standards
Addressed audit findings and implemented corrective actions
Senior IT Auditor
HLB Hamt Chartered Accountants
11.2019 - 09.2022
Performed comprehensive IT audits, evaluating the effectiveness of controls and compliance with policies
Identified risks and provided recommendations to improve IT governance and control processes
Developed audit reports highlighting findings and suggesting corrective actions
Conducted comprehensive vulnerability assessments and penetration testing to identify security risks
Implemented security measures to protect sensitive information and prevent unauthorized access
Assessed the adequacy of disaster recovery and business continuity plans
Drafted IT policies, procedures, and guidelines, incorporating industry best practices and regulatory requirements
Communicated policies to stakeholders and facilitated training sessions on the value of IT Governance
Evaluated third-party vendors for compliance with security and governance standards
Negotiated contracts and service-level agreements (SLAs) to minimize risk exposure
Analyzed customer feedback and service data to identify trends and recommend improvements
Collaborated with cross-functional teams to mitigate risks and enhance security controls
Analyzed incident response plans, refining procedures to effectively manage potential cybersecurity events and minimize damage.
IS Auditor
Qadit System and Solutions
01.2018 - 11.2019
Played a key role in:
Conducted IT audits to ensure adherence to regulatory requirements and company policies
Evaluated the effectiveness of internal controls, identifying areas for improvement
Collaborated with stakeholders to implement audit recommendations, enhancing system security
Prepared detailed audit reports to communicate findings and corrective actions to management
Performing OS, DB, Web server and Firewall hardening based on CIS, STIG, and SANS compliance
Team Member
Nexexpert Technologies
10.2017 - 01.2018
Software Engineer
DKSoft India Pvt Ltd
06.2014 - 08.2017
Education
Bachelor of Engineering - ECE
Anna University
01.2012
Skills
Experienced in implementing COBIT and ITIL best practices
Information technology audit
Risk assessment
Compliance and audit management
Data privacy management
Team leadership
Customer relations
Time management
Vulnerability analysis and reporting
Certification
Certified in Risk and Information Systems Control (CRISC)-2024
ITIL Foundation v4 by Axelos-2024
ABCP by DRI International-2024
Certified Information Security Manager (CISM)-2022
Certified Information Systems Auditor (CISA)-2022
Certified Blockchain Security Expert by 101 Blockchain -2022
CQI/IRCA-ISO/IEC 27001:2013 ISMS Lead Auditor-2021
Certified Risk Professional by BSI-2020
Certified Ethical Hacker by EC – Council-2017
Cisco Certified Network Associate – 2012
Timeline
Assistant Manager IT GRC
Watania Takaful
11.2024 - Current
Information Security Specialist
Abu Dhabi Housing Authority
07.2023 - 03.2024
IT Governance Officer
Statistics Center Abu Dhabi
10.2022 - 06.2023
Senior IT Auditor
HLB Hamt Chartered Accountants
11.2019 - 09.2022
IS Auditor
Qadit System and Solutions
01.2018 - 11.2019
Team Member
Nexexpert Technologies
10.2017 - 01.2018
Software Engineer
DKSoft India Pvt Ltd
06.2014 - 08.2017
Bachelor of Engineering - ECE
Anna University
Similar Profiles
Allan WilliamsAllan Williams
Assistant Manager - IT Services at Watania Takaful InsuranceAssistant Manager - IT Services at Watania Takaful Insurance