Iftikhar Ali, Information Security Analyst

Iftikhar Ali

Information Security Analyst

Banque Saudi Fransi

Location
Saudi Arabia
Education
Bachelor's degree, Software Engineering
Experience
9 years, 9 Months

Share My Profile

Block User


Work Experience

Total years of experience :9 years, 9 Months

Information Security Analyst at Banque Saudi Fransi
  • Saudi Arabia - Riyadh
  • My current job since October 2020

Perform Source Code review as part of the risk management process.
Implement DevSecOps to secure the CI/CD pipline.
Conduct vulnerability assessment and penetration test on systems, servers, network devices, conduct rule set reviews for the firewalls, routers.
Define minimum security baselines / hardening standards for the various technology components, conduct configuration reviews as per the defined security baselines.
Work with the IT team and guide them in mitigating identified vulnerabilities/risks.
Track and report the status of the identified risks on a periodic basis as per the vulnerability management process.
Automate the vulnerability management process to efficiently perform daily tasks
Perform cyber-threat hunting to proactively identify internal and external risks.
Handle and meet the SAMA, PCI-DSS and internal audit requirements.

Information Security Engineer at Comspots
  • Saudi Arabia - Riyadh
  • August 2014 to September 2020

Lead investigations of security violations and breaches and recommend solutions, repare reports on intrusions as necessary, and provide an analysis summary for management.
Company-wide technical security Risk Management
Establishing and overseeing the organization's ISA (Information Security Architecture).
Perform Penetration Testing, vulnerability analysis, code review (maintain secure coding standards).
Write unit tests, security testing, benchmarking of REST APIs
Compliance of the requirements for mobile and web applications with IT security

Education

Bachelor's degree, Software Engineering
  • at University Of Engineering And Technology Taxila
  • August 2008

FYP : GIS

Specialties & Skills

PCI DSS
Penetration Testing
Risk Assessment
Vulnerability Management
Code Review
risk assessment
Risk management
Pen Testing
Web Services API
Software Development
Vulnerability Assessment

Languages

English
Expert

Training and Certifications

CISSP (Certificate)
Date Attended:
April 2017
Valid Until:
April 2020

Hobbies

  • Table Tennis