كلما زادت طلبات التقديم التي ترسلينها، زادت فرصك في الحصول على وظيفة!

إليك لمحة عن معدل نشاط الباحثات عن عمل خلال الشهر الماضي:

عدد الفرص التي تم تصفحها

عدد الطلبات التي تم تقديمها

استمري في التصفح والتقديم لزيادة فرصك في الحصول على وظيفة!

هل تبحثين عن جهات توظيف لها سجل مثبت في دعم وتمكين النساء؟

اضغطي هنا لاكتشاف الفرص المتاحة الآن!
نُقدّر رأيكِ

ندعوكِ للمشاركة في استطلاع مصمّم لمساعدة الباحثين على فهم أفضل الطرق لربط الباحثات عن عمل بالوظائف التي يبحثن عنها.

هل ترغبين في المشاركة؟

في حال تم اختياركِ، سنتواصل معكِ عبر البريد الإلكتروني لتزويدكِ بالتفاصيل والتعليمات الخاصة بالمشاركة.

ستحصلين على مبلغ 7 دولارات مقابل إجابتك على الاستطلاع.


تم إلغاء حظر المستخدم بنجاح
Hamza Aslam, Network & Security Engineer (GRC)

Hamza Aslam

Network & Security Engineer (GRC)·Kloud 7

المملكة العربية السعودية

بكالوريوس, Information Technology

الخبرة العملية

مجموع سنوات الخبرة: 2 سنوات, 7 أشهر

Network & Security Engineer (GRC)

أغسطس 2024 - يناير 2026

Kloud 7

ألاباما، الولايات المتحدة عن بُعد

أغسطس 2024 - يناير 2026

• Assisted in developing security governance documentation, including Acceptable Use, Password, and Access Control policies across
multiple client environments, supporting consistent policy enforcement.
• Supported incident response documentation aligned with NIST SP 800-61r3, helping define structured response procedures and
improving incident response readiness.
• Performed risk assessments across client environments, identifying security gaps and documenting risks in risk registers with risk matrix
evaluation and mitigation tracking.
• Conducted NIST CSF 2.0 gap analysis to assess security controls, supporting remediation recommendations and documenting findings to
improve compliance posture.
• Supported ISO/IEC 27001 compliance and audit activities, assisting in control validation for regulatory audit requirements in alignment with
British Council IELTS compliance for MCG Technologies.
• Assisted in implementing endpoint security controls such as removable media restrictions and access control enforcement, contributing to
up to 20% reduction in policy violations and improved compliance adherence.
• Supported Business Continuity Plan (BCP) documentation by contributing to recovery procedures and continuity planning activities,
including defined recovery objectives (RTO: 15 minutes).
• Delivered 6+ security awareness training sessions to 40+ employees on phishing, password hygiene, physical security, and acceptable use
policies, improving user security awareness and compliance behavior.
• Remediated 20, 000+ vulnerabilities through patching, system hardening, and configuration management, reducing organizational risk
exposure and ensuring alignment with security baseline requirements.

مجال الشركة:
خدمات تكنولوجيا المعلومات

SOC Analyst | Network & Security Engineer

يناير 2024 - يناير 2026

Kloud 7

Alabaster، الولايات المتحدة

يناير 2024 - يناير 2026

• Remediated 20, 000+ vulnerabilities across multiple client environments, reducing attack surface and improving overall security posture.
• Implemented patch management and system hardening in collaboration with cross-functional teams, consistently meeting SLA targets.
• Triaged 10-30 daily alerts using Splunk SIEM and SentinelOne EDR in a 24/7 SOC environment.
• Reduced false positives by 25% through SIEM tuning and improved alert analysis.
• Developed and tuned Splunk queries (SPL) to detect phishing, DDoS and brute-force attacks.
• Investigated 25+ confirmed security incidents with SOC L2 team, performing containment and root cause analysis.
• Mapped threats to MITRE ATT&CK framework to enhance detection accuracy and alert context.
• Supported end-to-end incident response, including detection, investigation, containment, and reporting.
• Analyzed system logs and network traffic to identify threats and vulnerabilities across multiple environments.
• Developed and improved incident response playbooks aligned with NIST CSF 2.0 and SP 800-61.
• Strengthened security controls in alignment with NIST and ISO 27001 standards.
• Documented incidents and vulnerabilities to support audits, compliance, and continuous improvement.

مجال الشركة:
خدمات تكنولوجيا المعلومات

Cybersecurity Intern

يونيو 2023 - نوفمبر 2023

Cyber Reconnaissance and Combat Center

إسلام أباد، باكستان هجين

يونيو 2023 - نوفمبر 2023

Security product development, security services, and training lab
• Applied Python for automation, including web scraping and data collection to support security research and analysis tasks.
• Developed understanding of the cyber kill chain and how adversaries exploit system and network weaknesses.

مجال الشركة:
أمن المعلومات و الشبكات

التعليم

Bahria University

ديسمبر 2024

ديسمبر 2024

بكالوريوس، Information Technology

باكستان

Bahria University

ديسمبر 2024

ديسمبر 2024

الثانوية العامة أو ما يعادلها، InformationTechnology

باكستان

المعدل التراكمي (نقاط): 4 من 5

المعدل التراكمي (نقاط): 4 من 5

OPF Boys College Islamabad

سبتمبر 2020

سبتمبر 2020

الثانوية العامة أو ما يعادلها، Computer Science

باكستان

Pakistan International School Jeddah

يوليو 2018

يوليو 2018

الثانوية العامة أو ما يعادلها، Matriculation

المملكة العربية السعودية

Pakistan International School Jeddah - PISJ AZIZIA

مارس 2018

مارس 2018

الثانوية العامة أو ما يعادلها، Matriculation

المملكة العربية السعودية

Skills

OPERATIONS
Intermediate
OPERATIONS
Intermediate
PATCH MANAGEMENT
Intermediate
PATCH MANAGEMENT
Intermediate
PROACTIVITY
Intermediate
PROACTIVITY
Intermediate
RECONNAISSANCE
Intermediate
RECONNAISSANCE
Intermediate
ROOT CAUSE ANALYSIS
Intermediate
ROOT CAUSE ANALYSIS
Intermediate
SYSTEMS ENGINEERING
Intermediate
SYSTEMS ENGINEERING
Intermediate
Threat Detection & Analysis
Intermediate
Threat Detection & Analysis
Intermediate
Security Incident Triage
Intermediate
Security Incident Triage
Intermediate
Risk Management
Intermediate
Risk Management
Intermediate
GOVERNANCE
Intermediate
GOVERNANCE
Intermediate
AUDITING
Intermediate
AUDITING
Intermediate
GOVERNANCE RISK MANAGEMENT AND COMPLIANCE
Intermediate
GOVERNANCE RISK MANAGEMENT AND COMPLIANCE
Intermediate
INTERNAL AUDITING
Intermediate
INTERNAL AUDITING
Intermediate
ISO IEC 27001
Intermediate
ISO IEC 27001
Intermediate
PREPAREDNESS
Intermediate
PREPAREDNESS
Intermediate
RISK ANALYSIS
Intermediate
RISK ANALYSIS
Intermediate
RISK MANAGEMENT
Intermediate
RISK MANAGEMENT
Intermediate
SECURITY CONTROLS
Intermediate
SECURITY CONTROLS
Intermediate
VULNERABILITY MANAGEMENT
Intermediate
VULNERABILITY MANAGEMENT
Intermediate
INCIDENT RESPONSE
Intermediate
INCIDENT RESPONSE
Intermediate
LOG ANALYSIS
Intermediate
LOG ANALYSIS
Intermediate
MITRE ATT&CK FRAMEWORK
Intermediate
MITRE ATT&CK FRAMEWORK
Intermediate
NETWORK SECURITY
Intermediate
NETWORK SECURITY
Intermediate
PHYSICAL SECURITY OPERATIONS
Intermediate
PHYSICAL SECURITY OPERATIONS
Intermediate
RISK ANALYSIS
Intermediate
RISK ANALYSIS
Intermediate
SECURITY INVESTIGATIONS
Intermediate
SECURITY INVESTIGATIONS
Intermediate
SPLUNK
Intermediate
SPLUNK
Intermediate
THREAT ASSESSMENT
Intermediate
THREAT ASSESSMENT
Intermediate
VULNERABILITY MANAGEMENT
Intermediate
VULNERABILITY MANAGEMENT
Intermediate

اللغات

الانجليزية
متمرّس
العربية
متوسط

التدريب و الشهادات

الشهادات
CompTIA Security+ SY0-701 CompTIA Google Cybersecurity Professional Certificate (Risk Management)
CompTIA Security+ SY0-701 CompTIA Google Cybersecurity Professional (Risk Management)
Google Cybersecurity Professional Certificate (Risk Management)
CompTIA Security+ SY0-701
CompTIA
Oct 2025 - Oct 2028
عرض الشهادات