كلما زادت طلبات التقديم التي ترسلينها، زادت فرصك في الحصول على وظيفة!

إليك لمحة عن معدل نشاط الباحثات عن عمل خلال الشهر الماضي:

عدد الفرص التي تم تصفحها

عدد الطلبات التي تم تقديمها

استمري في التصفح والتقديم لزيادة فرصك في الحصول على وظيفة!

هل تبحثين عن جهات توظيف لها سجل مثبت في دعم وتمكين النساء؟

اضغطي هنا لاكتشاف الفرص المتاحة الآن!
نُقدّر رأيكِ

ندعوكِ للمشاركة في استطلاع مصمّم لمساعدة الباحثين على فهم أفضل الطرق لربط الباحثات عن عمل بالوظائف التي يبحثن عنها.

هل ترغبين في المشاركة؟

في حال تم اختياركِ، سنتواصل معكِ عبر البريد الإلكتروني لتزويدكِ بالتفاصيل والتعليمات الخاصة بالمشاركة.

ستحصلين على مبلغ 7 دولارات مقابل إجابتك على الاستطلاع.


تم إلغاء حظر المستخدم بنجاح
Haneef Shaik, Cyber Security GRC

Haneef Shaik

Cyber Security GRC·ZeOmega Infotech Pvt Ltd,

المملكة العربية السعودية

بكالوريوس, Mechanical Engineering

الخبرة العملية

مجموع سنوات الخبرة: 14 سنوات, 0 أشهر

Cyber Security GRC

مارس 2023 - سبتمبر 2025

ZeOmega Infotech Pvt Ltd,

بنغالورو، الهند

مارس 2023 - سبتمبر 2025

• Evaluate and assess existing governance, risk management, and compliance frameworks within client organizations
• Develop and implement GRC strategies, policies, and procedures aligned with best practices and regulatory requirements
• Conduct risk assessments, internal audits, and compliance reviews to identify deficiencies and recommend corrective actions
• Collaborate with cross-functional teams to promote a risk-aware culture and ensure compliance with relevant laws and regulations
• Responsible in analysing security data to detect and investigate and monitor using Splunk.
• Responsible to get Risk assessment done as per the HIPAA standards.
• Collaboration with SOC and InfoSec on incident detection and mitigation and ensuring swift
response to emerging threats.
• Perform Source Code Assessment on internal product, ensuring coding practices and
identifying vulnerabilities before production.
• Client communications with reports drafting along with False Positive demonstrations
• Responsible for handling exception process, approvals and mitigation timelines.

مجال الشركة:
خدمات تكنولوجيا المعلومات
الدور الوظيفي:
تكنولوجيا المعلومات

Senior Analyst – Application Security

يونيو 2022 - ديسمبر 2022

EXL Service,

Noida، الهند

يونيو 2022 - ديسمبر 2022

• Led application security initiatives across 8 Business Unit applications, enhancing overall security posture.
• Prepared Non-Disclosure Agreements (NDAs) and gathered critical project information to ensure compliance and security.
• Reviewed application architecture to identify potential security flaws and recommend improvements.
• Executed comprehensive network penetration testing to uncover vulnerabilities and strengthen defenses.
• Demonstrated security checks and best practices to development teams, fostering a culture of security awareness.
• Assisted developers in understanding and mitigating vulnerabilities, enhancing application security knowledge.
• Analyzed Application Requirements Documents (ARDs) and Requirements Traceability Artifacts (RTAs) for all Business Units, ensuring security considerations are integrated.
• Developed tailored test plans aligned with project scope, ensuring thorough security assessments.
• Conducted application security assessments to identify risks and recommend actionable solutions.

مجال الشركة:
الاستعانة بالمصادر الخارجية لخدمة العملاء

Lead Consultant

مايو 2021 - مايو 2022

Aujas Cybersecurity,

بنغالورو، الهند

مايو 2021 - مايو 2022

• Developed and executed Non-Disclosure Agreements (NDAs) to safeguard project information.
• Crafted comprehensive test plans aligned with project scope to ensure thorough security assessments.
• Conducted rigorous application security testing for both internal and external applications, identifying vulnerabilities.
• Led end-to-end penetration testing on Application Control Objects (ACOs), enhancing security posture.
• Compiled detailed reports with actionable recommendations, driving improvements in security measures.
• Coordinated follow-ups on patching updates to ensure timely resolution of identified vulnerabilities.
• Monitored emerging vulnerabilities, proactively addressing issues impacting Amadeus business operations.
• Engaged in continuous research to stay ahead of cybersecurity trends and threats.

مجال الشركة:
أمن المعلومات و الشبكات

Lead QA

يوليو 2020 - أبريل 2021

Encora,

بنغالورو، الهند

يوليو 2020 - أبريل 2021

• Design and execute security testing strategies to identify vulnerabilities in applications and systems.
• Collaborate with development and product teams to ensure security requirements are integrated into the software development lifecycle.
• Oversee the management of security testing environments, ensuring they mirror production settings for accurate assessments.
• Engage in risk assessment and threat modeling sessions to proactively address security concerns.
• Analyze security testing efforts by estimating resource requirements and planning for comprehensive security evaluations.
• Advocate for best practices in application security and contribute to the development of security policies and procedures.

مجال الشركة:
خدمات تكنولوجيا المعلومات

Specialist Engineer

أغسطس 2011 - يونيو 2020

Causeway Software Technologies,

بنغالورو، الهند

أغسطس 2011 - يونيو 2020

• Analyze security requirements, user stories, and technical specifications to develop comprehensive security test plans.
• Define security strategy, scope, objectives, resources, timelines, and risk areas related to application security.
• Participate in sprint planning, backlog grooming, and requirement clarification sessions to ensure security considerations are integrated.
• Execute security assessments, including manual penetration tests, vulnerability scans, and risk assessments.
• Maintain and update security test suites as application features and security threats evolve.
• Identify and document security vulnerabilities with clear steps for remediation, enhancing overall application security posture.
• Collaborate with cross-functional teams to promote security best practices and compliance.

مجال الشركة:
خدمات تكنولوجيا المعلومات

التعليم

JNTU Anantapur

يونيو 2009

يونيو 2009

بكالوريوس، Mechanical Engineering

الهند

المعدل التراكمي (نسبة مئوية): 60%

المعدل التراكمي (نسبة مئوية): 60%

Skills

PENETRATION TESTING
Intermediate
PENETRATION TESTING
Intermediate
STATIC APPLICATION SECURITY TESTING SAST
Intermediate
STATIC APPLICATION SECURITY TESTING SAST
Intermediate
CYBER SECURITY
Expert
CYBER SECURITY
Expert
DAST
Expert
DAST
Expert
Application Security
Expert
Application Security
Expert
Vulnerability Management
Expert
Vulnerability Management
Expert
Architecture Review
Intermediate
Architecture Review
Intermediate
Network Penetration Testing
Expert
Network Penetration Testing
Expert
SCA
Expert
SCA
Expert
Cloud Security
Intermediate
Cloud Security
Intermediate
MITRE
Expert
MITRE
Expert
OWASP
Expert
OWASP
Expert
HIPAA
Expert
HIPAA
Expert
GDPR
Expert
GDPR
Expert
ISO 27001
Intermediate
ISO 27001
Intermediate
Security
Expert
Security
Expert
Web Security
Expert
Web Security
Expert
BurpSuite
Expert
BurpSuite
Expert
Fortify
Expert
Fortify
Expert
Checkmarx
Expert
Checkmarx
Expert
Blackduck
Expert
Blackduck
Expert

اللغات

الانجليزية
متمرّس
الهندية
متمرّس
التاغالوغية
متمرّس
الأوردو
متمرّس
الكانادا
متمرّس

التدريب و الشهادات

الشهادات
CISSP
ISC

الهوايات

  • Cyber Security
    Capture The Flag (CTF) competitions Application Security research (OWASP, SANS, MITRE ATT&CK) Penetration testing labs (HackTheBox, TryHackMe) Vulnerability research & analysis of new CVEs Secure SDLC & DevSecOps best practices Exploring SAST/DAST/SCA tools (BurpSuite, Fortify, Checkmarx, BlackDuck) Cloud Security (AWS, Azure) hands-on learning