عبدالله طلبة, Cyber Security GRC Manager

عبدالله طلبة

Cyber Security GRC Manager

Advanced Electronics Company

البلد
المملكة العربية السعودية - الرياض
التعليم
دبلوم, ISO9001 Internal Auditor
الخبرات
13 years, 4 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :13 years, 4 أشهر

Cyber Security GRC Manager في Advanced Electronics Company
  • المملكة العربية السعودية
  • فبراير 2017 إلى فبراير 2019

Managing Cybersecurity GRC Consulting Services

Chief Information Security Officer في Saudi Arabian Mining Company - Ma’aden
  • المملكة العربية السعودية
  • أكتوبر 2016 إلى فبراير 2017
Head of Information Security في Saudi Arabian Mining Company-Ma'aden
  • المملكة العربية السعودية - الرياض
  • يناير 2015 إلى أكتوبر 2016
Information Security Officer في Saudi Arabian Mining Company -Ma'aden
  • المملكة العربية السعودية - الرياض
  • يوليو 2012 إلى يناير 2015

-Defining the information security strategy and roadmap for MA’ADEN Corporate and Affiliates.
-Developing the annual information security goals and objectives.
-Lead MA’ADEN Corporate and Affiliates IT security team: plan, organize, assign, supervise and monitor the work of team members.
-Lead the computer emergency response team across MA’ADEN.
-Establishing and maintaining plans to implement the information security governance in Corporate and Affiliates.
-Managing the information security budget in implementing the information security program.
-Leading the execution of Corporate and Affiliates IT security projects.
-Identifying security risks through suitable and recommended methods.
-Defining the information security policies that support business goals and objectives.
-Ensuring IT services provided to business, including outsourced providers are consistent with established information security policies.
-Manage relationship with business units with regard to information security.
-Conducting Information Security awareness campaign in MA’ADEN.
-Responsible to advice management & provide the overall direction on Information Security initiatives across MA’ADEN.
-Participating in ETGAN Program -MA’ADEN Global Transformation Program.
-Participating in defining and building MA’ADEN-IT world-class institutional capabilities.

Cyber Strategic Program - Transformation Prog في Saudi Arabian Mining Company - Ma’aden
  • المملكة العربية السعودية
  • نوفمبر 2012 إلى فبراير 2014
Information Security Specialist في advanced electronics company
  • المملكة العربية السعودية - الرياض
  • ديسمبر 2011 إلى يوليو 2012

-Establishing and maintaining plans to implement the information security in AEC
-Leading the execution of IT security projects.
-Manage relationship with business units with regard to information security.

Information Security Analyst & IT QA في Saudi Electricity Company
  • المملكة العربية السعودية - الرياض
  • نوفمبر 2005 إلى ديسمبر 2011

+Selected for High Potential Program 2010 for future leader.+
+Ideal employee in 2009.+
+Distinguished employee in 2008+
Information security field:
0 Define and Develop Information Security Strategies and Annual Plans.
1 Evaluate and Recommended Information Security Directions such as: Antivirus, Intrusion Prevention System, Encryptions.
2 Prepare Conceptual Scope of Work for Information Security Projects such as: Antivirus, Intrusion Prevention System, Encryptions.
3 Researching and Studying Information Security Systems.
4 Define and review information security policy and standards for business operations and technology implementations.
5 Define and Implement Information Security Policies.
6 Develop and Execute Information Security Awareness Program ( I established a campaign (ten workshops) on 9-13 May 09 to aware ITC employees for approved IT security policies in 2009 and I'm responsible for organizing and presenting this campaign).
IT Audit field (IT Quality Assurance field):
1 Prepare the Annual Internal Audit Plan.
2 Coordinate and monitor external and internal auditing.
3 Prepares audit report including the weaknesses noted in the systems and services.
4 Excellent knowledge of audit methodology and procedures.
5 Identify IT security risks including IT technical implementations or business processes.
6 Member in Auditing Information Security Systems and IT resources.
7 Enhance IT Quality Assurance by Monitoring and Follow up the Implementation of Recommendations of Internal and External Auditors.
8 Attended workshops competent in Information Security and IT Audit.

الخلفية التعليمية

دبلوم, ISO9001 Internal Auditor
  • في Nexcons
  • يوليو 2011

ISO9001 Internal Auditor: Attendance and Completion Course - IRCA Certified Auditor

دبلوم, ISO27001 Lead Implementer
  • في I(TS)2
  • فبراير 2010

Attendance and Completion Course - IRCA Certified Implementer

دبلوم, CISSP CBK Review Seminar
  • في I(TS)2
  • يوليو 2009

Attendance Course - 5 Days

دبلوم, ISO27001 Lead Auditor
  • في I(TS)2
  • نوفمبر 2008

Attendance and Completion Course - IRCA Certified Auditor

دبلوم, Computer Hacking Forensic Investigation
  • في Techzonecs
  • مايو 2008

Attendance Course - 5 Days

دبلوم, Ethical Hacking And Countermeasures
  • في Techzonecs
  • أبريل 2008

Attendance Course - 5 Days

الثانوية العامة أو ما يعادلها, Report and Business Writing
  • في SEC Partner
  • نوفمبر 2007

Attendance Course - 3 Days

دبلوم, Learning English Language
  • في LSI
  • يونيو 2007

Attendance and Completion Course - 3 Months

دبلوم, Security +
  • في Techzonecs
  • مايو 2007

Attendance Course - 5 Days

دبلوم, Network and Host Security
  • في I(TS)2
  • أبريل 2007

Attendance and Completion Course - 5 Days

دبلوم, Security Principles
  • في I(TS)2
  • فبراير 2007

Attendance and Completion Course - 3 Days

دبلوم, Designing Security for Microsoft Network
  • في New Horizons
  • نوفمبر 2006

Attendance Course - 3 Days

دبلوم, Photoshop
  • في Hasib Institute for Technical Training
  • نوفمبر 2006

Attendance Course - 5 Days

الثانوية العامة أو ما يعادلها, Symantec Client Security
  • في Symantec Training Center
  • أكتوبر 2006

Attendance Course dedicated in Symantec Endpoint Protection - 5 Days

دبلوم, Fundamentals of Incident Handling
  • في I(TS)2
  • يونيو 2006

Attendance Course - 5 Days

بكالوريوس, Information Systems
  • في King Saud University
  • مايو 2005

Bachelor degree in Information Systems with GPA 3,51 King Saud University , College of Computer Sciences & Information - Riyadh, Saudi Arabia 2002 - 2005

Specialties & Skills

Adobe Photoshop
Attendance
Host Security
Prevention
Quality Assurance
System Analysis and Design, Software Engineering
Fast and self-learning
Microsoft Office
Programming Language: ASSEMBLEY, C, Java, XML and Visual Basic .NET
SQL, Oracle DBA, Data warehousing and Data Mining
ERP system, DSS, E-Commerce
Planner in Information Security Strategies
Lead Auditor and managing auditing program
Excellent communication & interpersonal skills
Self-motivated, positive attitude and a team player
Project Management

اللغات

العربية
متمرّس
الانجليزية
متمرّس