Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
OLATUNDE.O OGUNDELE

OLATUNDE.O OGUNDELE

Dubai,United Arab Emirates

Summary

I am an experienced and certified Information/Cyber Security professional with over 15 years of experience in various industries such as aviation, power and water utilities, telecommunications, professional consulting, managed services, and training. My expertise includes cybersecurity architecture and design, governance, risk management, compliance, OT/ICS/SCADA cybersecurity, network security, application security, vulnerability management, and incident response. Additionally, I have hands-on experience in wireless security, database security, business continuity, disaster recovery, security awareness, policy and procedure development, Windows server administration, virtualization, and cloud computing. I possess extensive knowledge of various information security frameworks and standards, such as ISO27001/27019, ISA/IEC 62443, ISO 31000, COBIT 5, PCI-DSS, NIST Cybersecurity framework, SP 800 series, and Dubai Electronic Security Center (DESC) ISR/ICS Standards.

Overview

15
15
years of professional experience
1
1
Certification

Work History

Cybersecurity Resilience Manager - OT/IoT/ET

Emirates Airlines
Dubai, UAE
12.2023 - Current

Senior Product Cybersecurity Engineer

Emirates Airlines(Contract)
04.2022 - 12.2023
  • Spearheading the ongoing development and implementation of comprehensive OT/IIoT cybersecurity strategies, policies, and standards for Emirates Group
  • Successfully establishing and managing an efficient asset management solution, facilitating comprehensive asset discovery, and maintaining an updated inventory of all connected OT/IIoT assets within the Emirates Group environment
  • Leading the design and deployment of cutting-edge, highly secure system architectures tailored to the unique requirements of the OT/IIoT environment, translating cybersecurity needs into practical and effective security designs and principles
  • Conducting in-depth risk assessments and thorough security reviews on OT/IIoT systems and environments, proactively identifying vulnerabilities, and proposing targeted changes to enhance the overall OT/IIoT security architecture
  • Assessing the security implications of adopting new OT/IIoT technologies and providing recommendations to ensure secure integration and deployment
  • Analyzing threat intelligence data from various sources to identify potential threats and vulnerabilities in the OT/IIoT infrastructure and taking proactive measures to mitigate risks
  • Collaborating closely with the Group GRC team to co-define and refine robust OT/IIoT cybersecurity standards and frameworks (IEC/ISA 62443 & NIST CSF), fostering cohesive alignment between IT and OT cybersecurity teams
  • Staying at the forefront of cybersecurity advancements, continuously implementing the latest technological advances and industry best practices within Emirates Group's OT/IIoT systems to maintain a proactive security posture

OT Security Analyst Policy & Standard (Strategy & Compliance)

Dubai Electricity and Water Authority (DEWA)
12.2019 - 03.2022
  • Demonstrated exceptional skills in developing and maintaining highly effective OT/ICS security policies, standards, and procedures, ensuring adherence to rigorous risk and cybersecurity standards
  • Proactively conducted cybersecurity gap assessments, effectively identifying areas for improvement, and implementing enhancements to strengthen the overall cybersecurity management system
  • Played a pivotal role in co-leading strategic initiatives, driving OT/ICS cybersecurity development in alignment with corporate governance requirements
  • Acted as a trusted consultant on OT/ICS cybersecurity issues, maintaining regular communication with organizational stakeholders to ensure ongoing policy compliance and effective policy communications
  • Provided expert guidance to nine functional departments, ensuring the successful implementation of security policies and standards (DESC ICS Standard) while maintaining regulatory compliance

Acting Head, Control | Compliance | Audit

Huawei Technologies Company Limited
11.2018 - 11.2019
  • Exercised strong leadership in designing and implementing robust security controls for the organization, ensuring a resilient security posture
  • Orchestrated a comprehensive risk assessment process for the operation group, identifying critical areas of risk and implementing targeted risk mitigation measures

Information Security Specialist, Control | Compliance| Audit

Huawei Technologies Company Limited
06.2016 - 11.2019
  • Coordinated and managed interactions between IT operations, IT audit teams, and client's Huawei Cyber Security team
  • Effectively resolved IT audit exceptions within stipulated timelines, minimizing discrepancies through continuous self-assessment
  • Ensured compliance with client's information security policies, Huawei cybersecurity processes, and technical controls, meeting service level agreement requirements
  • Enhanced the effectiveness of technical security controls, including Network Security Control, Endpoint Security Control, and Operating Systems Control
  • Collaborated with Operations Group to remediate vulnerabilities and improve email security infrastructure
  • Co-led a security assessment during the migration of Microsoft Exchange 2013 to Azure cloud
  • Contributed to Cloud Security Architecture and Infrastructure design, implementing security controls for Azure enterprise environment
  • Worked with Windows Infrastructure Team to extend and integrate On-premises Active Directory and Azure Active Directory
  • Managed Microsoft Enterprise Mobility security cloud applications (Azure ATP, ATA, Intune) for cloud infrastructure monitoring and protection
  • Provided subject matter expertise on information technology security projects
  • Advised on information security controls and managed Network Security Incident Response
  • Managed Data Leakage Prevention (DLP) and acted as the first level DLP incident responder
  • Utilized Kaspersky Endpoint Security management for continuous antivirus adherence
  • Coordinated with Windows Infrastructure team to ensure effective patching and compliance with patch management policy

Assistant Manager - Core Infrastructure Security Services

Soft Solutions Limited
04.2015 - 06.2016
  • As the Assistant Manager of Core Infrastructure Security Services at Soft Solutions Limited, I demonstrated strong leadership by leading the implementation, configuration, and support for diverse enterprise security solutions
  • Collaborated closely with the Core Infrastructure Security Services Manager, Sales Manager, and the COO to align the company's business technologies with strategic goals and direction
  • Utilized strategic thinking to develop solution designs and create comprehensive implementation plans, ensuring seamless execution of security projects
  • Played a key role in pre-sales activities, delivering compelling technical presentations at various client sites, both for new clients and existing clients, to showcase the effectiveness and benefits of the security solutions offered by the company

Senior ITS/Product Specialist

Soft Solutions Limited
11.2012 - 04.2015
  • Demonstrated expertise as a Senior ITS/Product Specialist at Soft Solutions Limited, where I spearheaded the implementation, configuration, and deployment of various infrastructure security solutions products

IT Director

Henvik Computer Institute
07.2010 - 03.2011
  • Served as the IT Director at Henvik Computer Institute, where I effectively managed IT operations, projects, and personnel to ensure seamless information technology operations

Education

Postgraduate Degree - Technology Management

National Centre for Technology Management
Lagos State, Nigeria
/2018 -

Bachelor of Science - Computer Science

Olabisi Onabanjo University
Ogun State, Nigeria
/2004 - /2009

Skills

  • OT/ICS cybersecurity architecture
  • Leadership in diverse environments
  • Influential communication
  • Mentoring and coaching
  • Risk management and compliance
  • Cybersecurity policy development
  • Network and cloud security
  • Incident response & business continuity
  • OT & IoT asset visibility
  • NIST CSF, ISA/IEC 62443 frameworks
  • Agile & SAFe product management
  • Stakeholder & vendor management
  • Microsoft office suite proficiency

Certification

CISSP – Certified Information Systems Security Professional

GICSP – Global Industrial Cyber Security Professional
ISA/IEC 62443 Expert

CISM – Certified Information Security Manager
CCISO – Certified Chief Information Security Officer

CISA – ICS Cybersecurity Analysis & Evaluation (401V)
CISA – Industrial Control Systems Cybersecurity ‐ 301V
CEH – Certified Ethical Hacker
CCSK – Certificate of Cloud Security Knowledge

COBIT 5 IT Governance – Foundation
BS ISO/IEC 27001:2013 Information Security Management System (Lead Implementer)
VCP5 & 6 -DCV – VMware Certified Professional

CCNA – Cisco Certified Network Associate
MCITP – Microsoft Certified IT Professional
MCTS – Microsoft Certified Technology Specialist

Timeline

Cybersecurity Resilience Manager - OT/IoT/ET

Emirates Airlines
12.2023 - Current

Senior Product Cybersecurity Engineer

Emirates Airlines(Contract)
04.2022 - 12.2023

OT Security Analyst Policy & Standard (Strategy & Compliance)

Dubai Electricity and Water Authority (DEWA)
12.2019 - 03.2022

Acting Head, Control | Compliance | Audit

Huawei Technologies Company Limited
11.2018 - 11.2019

Information Security Specialist, Control | Compliance| Audit

Huawei Technologies Company Limited
06.2016 - 11.2019

Assistant Manager - Core Infrastructure Security Services

Soft Solutions Limited
04.2015 - 06.2016

Senior ITS/Product Specialist

Soft Solutions Limited
11.2012 - 04.2015

IT Director

Henvik Computer Institute
07.2010 - 03.2011

Postgraduate Degree - Technology Management

National Centre for Technology Management
/2018 -

Bachelor of Science - Computer Science

Olabisi Onabanjo University
/2004 - /2009
OLATUNDE.O OGUNDELE