
ISO 27001 ISMS Lead Implementer and IT Operations Lead with expertise in cybersecurity operations, vulnerability assessments, and managed services for 60+ clients across the UAE Government, Insurance, Healthcare, and Finance sectors. Proven track record leading 40+ engineers, implementing security controls, incident response, disaster recovery, and ensuring UAE regulatory compliance (UAE IA, NESA, ISO 27001).
Serve as ISO 27001 ISMS Lead Implementer, managing cybersecurity operations across IT infrastructure, networks, servers, security systems, email, telephony, and wireless environments
Conduct monthly, quarterly, and bi-annual vulnerability assessments (VA scans) to comply with UAE security regulations (UAE IA, NESA) for managed services clients across Government, Insurance, Healthcare, and Finance sectors
Implement and maintain security controls, including next-generation firewalls, encryption protocols, IAM solutions, and data protection measures aligned with ISO 27001, NIST, and CIS Controls
Continuously monitor security systems via NOC/SOC, lead incident response efforts, and perform threat hunting to detect, contain, and remediate security threats
Oversee disaster recovery, replication strategies, and IT business continuity planning, ensuring RTO/RPO compliance and conducting regular DR drill activities
Manage and lead a team of 40+ engineers across NOC & SOC monitoring, end-user support, network, system, and cloud engineering disciplines
Oversee service delivery for 60+ Managed/AMC services clients, ensuring high-quality security support, SLA compliance, and customer satisfaction
Perform comprehensive cyber risk assessments, develop mitigation strategies, and implement security controls to protect against IT and cyber threats
Manage internal and external IT/security audits, including ISO 27001, develop remediation plans, and ensure closure of audit observations
Led IT security-critical projects, including Data Center migration, cloud migration with security hardening, and Disaster Recovery drill activities
Develop and implement comprehensive IT security policies, procedures, and governance frameworks aligned with organizational objectives and UAE regulatory requirements
Conduct regular service review meetings with clients to discuss security performance, VA scan results, identify improvement areas, and ensure satisfaction
Oversaw IT General Controls, including change management, asset management, performance monitoring, vulnerability management, and compliance reporting
Negotiate vendor contracts to secure cost-effective security services, optimize resource allocation, and ensure SLA compliance
Streamline IT and security processes, automate security monitoring workflows, and enhance operational efficiency through strategic IT operations planning
Deliver end-user security awareness training programs as part of ISO 27001 ISMS implementation and compliance initiatives