Syed Shoaib Hasan, IT Quality Assurance & Compliance

Syed Shoaib Hasan

IT Quality Assurance & Compliance

Dubai Financial Market

Location
United Arab Emirates - Sharjah
Education
Diploma, Information Security
Experience
25 years, 4 Months

Share My Profile

Block User


Work Experience

Total years of experience :25 years, 4 Months

IT Quality Assurance & Compliance at Dubai Financial Market
  • United Arab Emirates - Dubai
  • My current job since June 2007

Responsible to maintain the Quality of the IT systems and Compliance with respective processes, developing & implementing of IT and Information Security related policies, controls, processes and procedures. Being a Service manager responsible to develop and implement Service Management related processes and procedures in compliance with ITIL.
Maintaining Quality: Provided leadership and direction to project teams in analyzing, studies, developing test by developing relevant business procedure and plans, Implementing controls following the COBIT guidelines.
Implementation of ISO 27001: Responsible to comply with ISO 27001 standards. Being a CISO, responsible to assign BISOs and create & publish IS related policies to IT and business units. Performing Risk Analysis, Carrying out IT and Security Risk Assessment of Software Assets, Physicals Assets, Information Asset and Service Asset and suggesting related mitigation plans.
Established an Organization Wide Information Security Policy and experienced in developing IS Matrix and implementing it for major applications.
Business Continuity Plan :Responsible of creating BCP, with the major stake holders of business and supporting IT units, also responsible to carry out subsequent tasks and frequent testing and training plans in coordination with HR.
Service Level Manager (ITIL Implementation):Involved in the preparation and implementation of ITIL processes and procedures, responsible for the day to day process related activities and developing and maintaining relationships with customers and IT Department & related service providers.
Responsible to develop and maintain, SLA (Service Level Agreement), Service Catalogues.
Information Security: Responsible of managing logical access control, creating, implementing and compliance of Information Security related policies and control procedures. Perform Risk Assessment of new / ongoing applications in terms of Information Security and Audit requirement.

IT Quality Control Analyst at Abu Dhabi Commercial bank
  • United Arab Emirates - Abu Dhabi
  • June 2005 to May 2006

Developed and implemented the Software Change Management Plan.
Being QC Analyst I have to do all necessary coordination with Business Users and Development Manager. Very closed co ordination with the business to understand the business needs and do the requirement gathering, also involved in managing the UAT for new development or products.

Card Migration Project
Worked very closely in UAT with the Card Center team in Card Migration Project and was also responsible to maintain the Quality Standards by strictly following processes and procedures. Received an appreciation shield from the department.

Co ordination with Audit
Coordination with the external Auditors on COBIT based audit of controls and work closely with the development team to implement Audit identified issues, design and implement appropriate controls..
Responsible to frequently perform Functional and Physical Audits, to ensure the correctness and the efficiency of the solution.

GAP Analysis
Closely involve in Gap Analysis of IT Department in order to identify the gaps for BS 7799.

Service Desk Procedure Implementation
Responsible to write the IT Business processes and procedures for the Service Desk. Service Desk Procedure Includes Change Management, Emergency Changes and Incident Management.
Involved in the designing of new version of Service Desk Cycle in Remedy Service Desk Application. Keep an eye on the IT Services and generate a report of the IT Service activity that becomes IT KPIs.

Coordination with Information Security Unit.
Closely worked with the Information Security Unit in order to derive the IS related activities and developing IS related procedures and processes. Also responsible for the implementation of password policy and password handling.

PIR (Post Implementation Review)
Responsible to perform the PIR after the completion of the projects and do the IS related gap analysis with IS unit.

IT Software Consultant at Commercial Bank of Dubai
  • United Arab Emirates - Dubai
  • January 2004 to January 2005

Engaged with Commercial Bank of Dubai as a Consultant.

Maintaining Quality
Provided leadership and direction to project teams by understanding business processes, gathering requirements, identifying potential usability issues, managing scope, and ensuring that an appropriate level of application quality was maintained at all times.

Analysis and Development:
Design and Development of Client Server Applications and part of Web Applications team according to defined business objectives and requirements.
Design and develop the architecture of the application. Development and documentation methodology for the team members.

Tools:
The product is developed in Visual Basic 6.0, COM, DCOM & SQL Server, and Web part was done in .Net Technology using ASP.NET and VB.NET.

Automation of Immigration Branch
This Automation involves developing some new systems for Dubai Immigration and also to provide technical support to the presently running systems in Immigration Branch

New Systems are:
• Web Service that provides direct debit functionality to CBD client.
• Salary System for Dubai Immigration.

Currently running applications at Dubai Immigration are Deposits, Refunds, and Deposit Balances for companies, Cheques printing program.
VB 6.0, ASP and SQL Server are used to develop these applications.

Working with e-banking team:
Involved in the designing and development of Direct Debit option for Dubai Immigration.
Worked on the process flow diagrams and also involve in the development of several modules of Direct Debit.

Report Development:
Also involved in the report development of ‘ATM department‘and ‘Retail and Commercial department’.
We are using Business Objects as a reporting tool.

Business Analyst & Project Manager at DEFLOG (Pvt.) Ltd.
  • Pakistan - Karachi
  • October 2000 to October 2003

Building and leading a team. Analyzing, planning, scheduling, and co-ordinating multiple projects. Learning, documenting, and teaching new technologies. Gathering and documenting user requirements, developing software models with the UML, writing functional specification, developing testing and software
Analysis/Development:Provided leadership and direction to project teams by understanding business processes, gathering requirements, identifying potential usability issues, managing scope, and ensuring that an appropriate level of application quality was maintained at all times.
Documentation Tools:Rational Rose's RUP (Rational Unified Process) was strictly followed and all the four phases of RUP were properly documented.
Parts Management System (PMS):Object oriented version of OMTS, in this version we converted the whole application in a generic product. The purpose of this application is to cater complete requirements of all users and OEMs of our parent company.This application is designed to automate the whole procurement process of parts that includes Request, Proposals, Orders, Shipments, Repairs, Services, Discrepancies, tracking and statuses of parts.
OMTS (Order Management and Tracking System):I have worked as a team leader of the development team of OMTS.This is a n-tier application, few modules are developed in JSP & Java Beans for web access, this application was developed to provide online functionality, to our client, to process their orders to Paris and their Data Base will be maintained at our office. The OMTS is designed and developed using. Three-tier architecture was adopted. The three packages were Business package, User interface package and database package.OMTS is generalized software and can provide online functionality to Order management and tracking. The product is deployed at client site in Pakistan and at our parent company in Paris.

Software Engineer at Academia
  • Pakistan - Karachi
  • June 1997 to September 2000

during my work experience at Academia I have developed and designed various web based applications and business applications as a part of their development team.

Attendance system
Involved in Analysis and development that also include support and modification as and when required by the clients of Attendance system The system was developed on Microsoft platform using Visual Basic 6.0, MS Access and Data Reports were extensively used as a reporting tool. This covers all the basic and advanced features of a management system.

Vehicle management
Developed a Web Based Vehicle Management System, software was developed using Active Server Pages and Visual Basic 6.0 with SQL Server as the backend database. It is a client server product that automates all the major activities of Vehicle management at the client side It includes Billing, Status Tracking, Reporting, History and Treatment Modules. Proper ERD, Vision Statement and different project documentation were maintained through out the development process. Worked extensively on database administration and troubleshooting. Used COM and ActiveX technologies.

Education

Diploma, Information Security
  • at ISACA
  • August 2008

CISA, COBIT

Diploma, ITIL
  • at Axin
  • August 2008

ITIL Service Manager

Master's degree, IT
  • at Newport University
  • December 2000

Specialties & Skills

Gathering
Gap Analysis
Immigration