AbdulHai SaadAldin, IT Audit Manager

AbdulHai SaadAldin

IT Audit Manager

Bank Of Khartoum

Lieu
Émirats Arabes Unis - Dubaï
Éducation
Baccalauréat, Mathematics
Expérience
4 years, 9 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :4 years, 9 Mois

IT Audit Manager à Bank Of Khartoum
  • Soudan - Khartoum
  • décembre 2021 à janvier 2022

• Leading the IT audit team in the various audit tasks to Identify root cause and opportunities for improvement of internal controls and acquire consensus on remediation plan with key business partners.
• Developing and drafting of the report, discussion with management to ensure factual accuracy and concurrence and coordination with Management to obtain written responses to Audit's recommendations; Introducing and follow-up of the audit's findings with the upper-management and top executives.
• Leading Internal IT audit risk's assessments and following the enterprise IT Audit plan.
• Leading technical assessments and technical of the different information systems from core banking, mobile banking applications, CRM systems besides the supporting infrastructure and network.
• Leading internal & overseas subsidiaries IT audit projects and against external regulations such as UAE-NESA, SWIFT-CSP, etc.

Information Technology Audit Officer à Bank Of Khartoum
  • Soudan - Khartoum
  • août 2020 à novembre 2021

Responsible for leading various Audit projects for the bank internal related IT assets in addition to guiding and leading follow assistant auditors in the various tasks.
Developing, presenting and finalizing audit reports. This process entails initial drafting of the report, discussion with management to ensure factual accuracy and concurrence and coordination with Management to obtain written responses to Audit's recommendations. Introducing and follow-up of the audit's findings with the upper-managment in techno-business approach. Leading and conducting Internal IT audit risk's assessments and followingly the enterprise IT Audit plan. Leading and conducting technical assessments and technical of the different information systems from core banking, mobile banking applications, CRM systems besides the supporting infrastructure and network. Introduced an independent 'Cyber Security Assessment Program' within the Internal Audit department. Execution of the different audit program such as the ISMS Framework and ensure it's compliance with the different standards such as ISO 27001 and PCI-DSS.

Senior IT Security Engineer à USETEK Co. Ltd.
  • Soudan - Khartoum
  • décembre 2017 à mai 2020

Provide security consultancies for major projects of 70% of the banking and financial industry.
Perform security assessments, (Vulnerability scans & Penetration testing).
Configure and troubleshoot UTM's from different vendors "Fortinet, Rohde & Schwarz / GateProtect".
Configuring and troubleshooting Mail security appliances “FortiMail, based on physical appliances and
virtualized environment, Web security appliances “FortiWeb” and various Fortinet Appliances such as
FortiSIEM, FortiVoice, etc…
Responsible to conducting Information Security training and supervising the implementation of the
different security measures for various number of clients, provide solution for different migration and
critical incidents for the various systems.
Lead Major Deployment of FortiSIEM and all the SIEM's projects aspects

Information Security Consultant - Contractor à Consulsat Co. Ltd.
  • Soudan - Khartoum
  • juillet 2019 à décembre 2019

- Lead different information security projects such as penetration testing for "E-Commerce" applications, compliance process for the related systems.

System & Security Engineer à Morgan Zone Co. Ltd
  • Soudan - Khartoum
  • mai 2017 à novembre 2017

Designing and implementation of different solutions such as Enterprise-level VOIP systems, public hotspot
management solution.
Maintaining Data Security and providing alternative fail-over solutions in case of Data-loss incidents.
Configuring and implementing IT services and providing automation solutions in order to keep the
business continuity intact and speed up the management process.
Conducting vulnerability & performance assessment of the whole systems and providing mitigation to the
different issues from point-of-failures to hardware, software, services alternative solutions of the current
system.
Auditing different systems and service logs and troubleshoot possible issues that may affect the business
continuity flow.

Security Administrator à AACID holdings Co. Ltd
  • Soudan - Khartoum
  • mars 2017 à juin 2017

Conducted several security assessments on some of the company web-applications and patched some
main security issues such as missing encryption, backup and failover solutions.

Involved in different information security tasks varying from performing vulnerability assessment and
penetration testing of the company network, firewall, and applications security.

Éducation

Baccalauréat, Mathematics
  • à University of Khartoum - Faculty of Mathematical Science
  • novembre 2015

Second-Class Degree

Specialties & Skills

Fortinet
PCI DSS
Network Security
Scripting
Penetration Testing
Penetration Testing
Shell Scripting
Web-Application Secuirty
System Engineering
Fortinet Security Appliance
vulnerability assessment
web application security
cyber security
firewalls
vulnerability management
IT AUDIT
Netwrok Security

Langues

Arabe
Langue Maternelle
Anglais
Expert

Formation et Diplômes

Certified Ethical Hacker - EC COUNCIL (Certificat)
Date de la formation:
November 2016
Valide jusqu'à:
November 2019
FORTINET NSE4 (Certificat)
Date de la formation:
September 2018
Valide jusqu'à:
May 2020
Comptia Security+ (Certificat)
Date de la formation:
August 2016
Valide jusqu'à:
August 2019

Loisirs

  • INFORMATION TECHNOLOGY
    EMPLOYEE OF THE YEAR - GROUP INTERNAL AUDIT BANK OF KHARTOUM
  • RED TEAM OPS