Haneen Iemeir, Information Security Specialist

Haneen Iemeir

Information Security Specialist

Ministry of information and Communication Technology

Location
Jordan - Amman
Education
Bachelor's degree, Computer Engineering
Experience
17 years, 6 Months

Share My Profile

Block User


Work Experience

Total years of experience :17 years, 6 Months

Information Security Specialist at Ministry of information and Communication Technology
  • Jordan - Amman
  • My current job since April 2015

- Building capacity among government employees (ISOs) especially in information security via training
- Providing consultation services to government entities related to info security
- Assessing the information security status in various government entities in light of both ISO 27001 standard and the National Policy of Information Security.
- Enforcing information security in the early phases of the project management.
- Awareness sessions for senior management in government entities.
- Participating in the improvement of the current legislative framework.
- Improving the current eGov infrastructure in order to fulfill security demands of to-be implemented electronic services; i.e. PKI.
- Acquiring solutions needed to fulfill and implement the security policies and requirements.

Senior Information Security Officer at King Hussein Cancer Center
  • Jordan - Amman
  • September 2009 to March 2015

- Planning for and enforcing compliance with ISO27000s standards.
- Risk assessment for all IT assests.
- Conducting risk-based audits.
- Project manager of implementation of Business Continuity and disaster recovery Plans.
- Planning, implementation and enforcing of a comprehensive Information Security Policy.
- A member in the many Project Management Teams.
- Enforcing Incident Handling and Change Management policies and procedures
- Controlling access to Information System assets.
- Monitoring GW security (FW, URL Filter, and Antispam) log files.
- Conducting vulnerability assessment tests.
- Preparing of backup strategies and co-administration of backup procedure/tool.
- Planning and enforcing security controls in network, systems, DBMS and application levels.
- Conduct IT Security awareness training for employees
- Administrator of SIEM solution (Information Security and Event Management solution)
- Implement security audits.
- Manager of service level agreements between IT department as the service provider and the business departments as the customers.
- Administrator of Change management and Service Level modules in HP service Desk (ITIL based)

Network Security Engineer at University of Jordan - Computer Center
  • Jordan - Amman
  • April 2007 to August 2009

- Planning, design and implementation of IT Security Policy (systems, network devices, users, data and database systems)
- Derivation of business procedures to comply with the Information security policy.
- Administration of Cisco PIX FW solution; design, planning, development and maintenance.
- Preparing security recommendations for the purchasing committee of Oracle DB systems tender.
- Administration of Cisco IPS and Cisco MARS appliances.
- Administration of URL Filter solution
- Administration of Microsoft ISA FW.
- Administration of Cisco Content Engine.
- Configuring AAA protocols to control access of IT resources.

Robot experiments designer and trainer at THINK for Robotics Technology
  • Other
  • November 2006 to March 2007

- Designing educational experiments using robots.
- Training of both end users and instructors.

Education

Bachelor's degree, Computer Engineering
  • at University of Jordan
  • May 2006
High school or equivalent, Science
  • at Jubilee School for Gifted and Talented
  • June 2002

Specialties & Skills

Risk Management
Information Security Management
ISO 27001
CISA certified
ITIL, Change Management and Incident Handling
ISO 27001 Lead Implementer

Languages

Arabic
Expert
English
Expert

Memberships

ISACA
  • member
  • August 2011

Training and Certifications

(Certificate)
(Certificate)
ISO 27001 Lead Implementer (Certificate)
Date Attended:
April 2013
Valid Until:
April 2013
CISA (Certificate)
Date Attended:
February 2012
Valid Until:
April 2012
Change Managment (Certificate)
Date Attended:
April 2010
Valid Until:
April 2010