Mohammed Alomari, IT Security Risk & Compliance Specialist

Mohammed Alomari

IT Security Risk & Compliance Specialist

BAE Systems

Location
Saudi Arabia - Riyadh
Education
Bachelor's degree, Computer Engineer
Experience
12 years, 11 Months

Share My Profile

Block User


Work Experience

Total years of experience :12 years, 11 Months

IT Security Risk & Compliance Specialist at BAE Systems
  • Saudi Arabia - Riyadh
  • My current job since October 2015

Complaince lead for DEFARS, DCPP, Global IT SS, Suplly chain Cyber Security.
GRC for KSA Network.
Governance over IT Security Projects.
IT Security Improvment lead.

IT Security - Secondee at BAE Systems
  • United Kingdom
  • April 2015 to October 2015

Working with the UK team to understand, evaluate and improve their IT Security practices and bring the knowledge back to KSA.

IT Security practices include, Risk management, IT Security Operations, incident handling, vulnerability scanning, accreditation and architecture & design.

IT Security at BAE systems
  • Saudi Arabia - Riyadh
  • November 2013 to March 2015

1- Management of IT related risks by assessing, analyzing and mitigating risks to bring it down to the organization defined acceptable risk level.
2- Coordinating the implementation of identified IT security controls with IT service providers and/or internal parties.
3- Ensuring compliance with global IT security policies and Standards and coordinate with relevant stakeholders to close any identified non-compliance.
4- Work closely with business unite heads to ensure/agree appropriate risk response.

Information Security Analyst at Almarai Comapny
  • Saudi Arabia - Riyadh
  • September 2011 to November 2013

• Participate to maintain ISO27001 / ISMS accreditation.
• Assist in testing, implementation, documentation, operation, maintenance and auditing of business systems and applications.
• Identify risks and system needs, define solutions and appropriate standards and procedures.
• Prepare audit reports and follow-up non-compliance.
• Maintain and preserve information security records/logs.
• Implement, support, maintain, troubleshooting Anti-Virus tools.
• Auditing SAP application systems.
• Handling Information Security Incidents.
• Awareness and training
• Physical security audit and assessment for All Almarai Locations
• Access rights management over Almarai infrastructure.

Trainee at stc (saudi telecom company )
  • Saudi Arabia - Riyadh
  • July 2010 to September 2010

Practical training, AD administrator, manage

Education

Bachelor's degree, Computer Engineer
  • at king saud university
  • February 2011

Specialties & Skills

Information Security Management
Security Audits
Security Policy
Risk Management
IT Audit
Physical Security assessment and audit
Network & System Security
Management of Enterprise Anti Virus (Kaspersky)
SAP Audit
ISO27001 / ISMS
Risk Management
DLP management
IT aduit

Languages

English
Expert
Arabic
Expert

Training and Certifications

yes (Certificate)
Date Attended:
August 2013
Valid Until:
September 2013
ITIL V3 (Certificate)
Date Attended:
August 2013
Valid Until:
August 2013
CompTIA - Security+ (Certificate)
Date Attended:
July 2013
Valid Until:
July 2013
MCSA 2012 (Certificate)
Date Attended:
February 2013
Valid Until:
March 2013
MCITP 2008 (Certificate)
Date Attended:
November 2012
Valid Until:
February 2013
(Certificate)
Date Attended:
July 2012
Valid Until:
July 2012
(Certificate)
Date Attended:
November 2012
Valid Until:
November 2012
from university of Central Missouri. (Certificate)
Date Attended:
November 2011
Valid Until:
August 2012