Ashraf Eltigani Ali Eltom Eltom, Chief Information Security Officer

Ashraf Eltigani Ali Eltom Eltom

Chief Information Security Officer

Qatar Charity

Location
Qatar - Doha
Education
Bachelor's degree, Computer Science
Experience
20 years, 1 Months

Share My Profile

Block User


Work Experience

Total years of experience :20 years, 1 Months

Chief Information Security Officer at Qatar Charity
  • Qatar - Doha
  • My current job since April 2017

A. Daily information security operations management.
B. Ensure the conduct of ISMS review and internal audit.
C. Ensure that the list of risk owners is updated and correct.
D. Maintenance and improvement of ISMS and performance of daily information security tasks assigned by ISMS Manager
E. Update, review information security risk register.
F. Maintain and update the ISO / IEC 27001 Statement of Applicability
G. Conduct information security training and awareness.
H. Ensure implementation of any changes in ISMS recommended by annual report or audit.
I. Management of Information Security Control Tools in ISMS scope in Qatar Charity.
J. Ensure the maintenance of records to demonstrate compliance with relevant policies and procedures.
K. Ensure that internal communication and consultations on information security issues are activated as needed.
L. Communicate with internal functions outside the scope of ISMS about information security matters as appropriate
M. Establish links with external information security professionals such as the executive authority (NSOC-MOI) and communication service providers (Q-Cert), where necessary.
N. Gray penetration testing for network and Application.
O. Notify incidents of dangerous information security and its risks to senior management

Web System and Application Security Engineer at X CORNER for E-Trading LLC
  • United Arab Emirates - Dubai
  • January 2015 to March 2017

A. Design security tools for malicious code scanning.
B. Conduct white box and red team security testing to assess and validate application security.
C. Define, maintain and enforce application security best practices.
D. Monitor and track progress of found vulnerabilities and maintain the history.
E. Explain and demonstrate vulnerabilities to application/system owners, and provide recommendations for mitigation.
F. Issue reporting on assigned application and system scans.
G. Perform secure code development training to developers, employees, quality assurance personnel and relevant staffs.
H. Evangelize security across all teams and influence change where needed.
I. Analyze web server files looking for malicious code and malwares.

E-Commerce Group Project Manager at Unicom Group
  • Egypt - Cairo
  • September 2013 to March 2015
Business Development Manager (Yemen Branch)+E-commerce Project Manager (Group) at UNICOM GROUP (Yemen Branch)
  • Yemen - Sanaa
  • August 2012 to September 2013

- E-Government System analysis.
- Writing Technical Software Proposals.
- Software Development Pricing.
- E-commerce project team management.
- Developing E-commerce System.

Bussiness Development Manager. at Saudi Unicom For Communications and Technology - Sudan Barnch
  • Sudan - Khartoum
  • February 2011 to August 2012

Supervising IT Department.
Software and Data Analysis.
Software Pricing Testing Approval for Sales.
Web Applications Development Consultant..

IT Manager at Redline Company (www.egyptlaptop.com)
  • Egypt - Cairo
  • December 2007 to November 2008

1. Supervising company engineers.
2. Networks designing, planning, implementing and maintenance support (hardware - software_ and data Recovery).
3. Customer technical assistance (Help Desk Support).
4. Website Administering.
5. Consults and coordinates with other areas of the departments, as needed to resolve hardware and/or software problems, as well as plan and coordinate software and hardware upgrades.

Tech Engineer & Website Administrator at Sudanese Embassy Cairo
  • Egypt - Cairo
  • February 2006 to November 2007

1. Maintain computer networks hardware and software, link new points and nodes when required.
2. Website designer and Supervisor.

IT Manager at (Java Home ) Ashawa International Co. - Sudan
  • Sudan - Khartoum
  • February 2002 to November 2004

1. Supervising company engineers.
2. Networks designing, implementing and maintenance (hardware - software_ and data Recovery).
3. Customer technical assistance.
4. Diagnoses problems and repair.

Technical and Maintenance Engineer at Sunset Company for Trading & Tech - Sudan
  • Sudan - Khartoum
  • January 2000 to March 2001

1. Maintenance Computers and accessories.
2. Networking and maintenance network hardware and software (LAN).
3. Installing and repairing the operating system (MS Windows - Linux).
4. Repair and maintenance computers hardware

Education

Bachelor's degree, Computer Science
  • at College for Technological Sciences
  • July 2002
Diploma, Computer Egineer
  • at Faculty of Engineering & Technology, Gazeera University
  • January 2001

Specialties & Skills

E commerce
Software Analysis
Web Security
Configuring and installing Cisco and Huawei routers.
Internet: ( FTP- Publishing – Designing –Managing – website security )
Search Engine Optimization (SEO).
Investigate and repair computer hardware (Help Desk Support).
Graphic design with Adobe Photoshop and CorelDraw Suite.
Web Projects Management
Customer needs and proposals
Reparing MySQL Databases
E-Commerce and ecommerce sites building
Web Security and Anti Hacking
Good Knowledge and Using web Scriptig (HTML-CSS- Java Script - Cpanles)
Web Application Anaysis and Design
Good Coding With PHP Editors

Languages

Arabic
Expert
English
Intermediate

Memberships

Zend
  • Zend Certified Engineer for PHP5.3
  • March 2011

Training and Certifications

Computer Hacking Forensic Investigator-CHFI (Certificate)
Date Attended:
August 2019
Certified Ethical Hacker CEH (Certificate)
Date Attended:
April 2019
MySQL and PHP Certificate (Certificate)
Date Attended:
February 2010
Valid Until:
March 2010

Hobbies

  • Internet Browsing
    Hacking and anti Hacking exprience