Imad Aldhfiri, Head of Cybersecurity Risk Monitoring

Imad Aldhfiri

Head of Cybersecurity Risk Monitoring

Saudi Aramco

Lieu
Arabie Saoudite - Dammam
Éducation
Master, Computer Science
Expérience
12 years, 7 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :12 years, 7 Mois

Head of Cybersecurity Risk Monitoring à Saudi Aramco
  • Arabie Saoudite - Province de l'Est
  • Je travaille ici depuis octobre 2018

- Responsible for establishing a vision and strategy for the risk monitoring function to ensure team effectiveness.

- Lead a team of experts with the objective to assess, track, monitor, and manage cybersecurity risks across the global enterprise.

- Monitor and report the company’s and its affiliate's information security risk profile in accordance with the risk appetite to achieve optimal balance between business risk and opportunities.

- Lead and manage top corporate risk across the enterprise and maintain a global risk register

Cyber Security Analyst à Saudi Aramco
  • Arabie Saoudite - Province de l'Est
  • juillet 2016 à septembre 2018

Severed as a risk officer with tracking record of improving overall cybersecurity risk management efforts across the company through conducting high-profile risk assessments and security architecture for major initiatives and projects. Managed all the aspect of monitoring, maintain, and presenting Information Security Risk Profile for the organizations and the company security posture to key stakeholders

Risk Professional à Saudi Aramco
  • Arabie Saoudite - Province de l'Est
  • juillet 2015 à juillet 2016

Spearheaded all aspects of risk management efforts enterprise-wide working in partnership with administrative staff and executive leadership. Gathered feedback to identify, analyze, and plan risk mitigation procedures and reported key findings to management to drive compliance and ERM implementation

IT System Analyst à Saudi Aramco
  • Arabie Saoudite - Province de l'Est
  • octobre 2013 à juin 2015

- Championed relationships with management to provide them with tools for proper decision making.

- Performed risk assessments to gather metrics and security findings for reporting and key decision making to reduce risk, elevate cybersecurity infrastructure to secure assets, financials, critical data, and intellectual property.

- Coordinated and prioritized risk-driven IT projects in conjunction with cross-functional teams and stakeholders per business requirements and long-term needs; owned IT risk security adjuster tasks to mitigate risk.

International Peer Mentor à California Lutheran University
  • Etats Unis
  • janvier 2010 à janvier 2011
Information Technology Supporter à Energy Power Service
  • Arabie Saoudite - Dammam
  • novembre 2008 à mai 2009
Technical Support and Help Desk à Saudi Aramco
  • Arabie Saoudite - Province de l'Est
  • juillet 2008 à octobre 2008

Éducation

Master, Computer Science
  • à California Lutheran University
  • août 2013

•Graduated with a high GPA of 3.8 out of 4 with HONORS.

Baccalauréat, Computer Information System
  • à California Lutheran University
  • décembre 2011

•Graduated from California Lutheran University in December of 2011. •Graduated with a GPA of 3.6 out of 4 with HONORS. •Been listed in the (Dean's List) during the Spring Semester of 2011. .

Baccalauréat, Information Technology System Support
  • à Jubail Industrial College
  • octobre 2008

•The main language in the college is English and it is a technical college with three years Associated Degree. •Graduated with a GPA of 3.7 out of 4. •Been awarded from the college as the “Top 1 student in my major with Highest GPA” •Been nominated to get full scholarship paid by my government to get higher studies in my field or related one as a reward for my achievements.

Tests de Bayt.com

IQ Test
IQ Test
Score 106%

Specialties & Skills

Information Security Management
IT Risk
Leadership
Enterprise Risk Management
Cyber Security
Leadership, Team Building, Motivation, Communication, Ability to work under pressure
Knowledge of Java and Python Programming, Software Development Life Cycle (SDLC),UML,Design Patterns
Computer Related Skills: MS Office (Word, Excel, PowerPoint, Visio, MS Project and MS Outlook)
Professional Counseling, Education Initiatives, Relationship Management
Knowledge of Windows and Mac OSX, Linux/Unix Environments and Internet Applications
IT Administration, Technical Management, Technical Policies and Procedures, Technical Support
Analytical Ability, Critical Thinking, Decision Making and Problem Solving, Time Management
Databases Application: MS Access, MySQL and Oracle SQL Developer, Excellent Typing skills 60-65 WPM
Network Security
Information Security
Risk Assessment and Governance
Risk Management
Cybersecurity
Team Management
Governance, Risk and Compliance (GRC)
People Management
Leadership
Project Management

Langues

Espagnol
Débutant
Arabe
Expert
Anglais
Expert

Adhésions

CompTIA
  • Security+ Member
  • February 2012
ISACA
  • Member
  • October 2016

Formation et Diplômes

Leadership Principles (Formation)
Institut de formation:
Harvard Business School
Date de la formation:
September 2019
Certified Information Security Manager (CISM) (Certificat)
Date de la formation:
August 2018
Valide jusqu'à:
August 2021
Motivating Employees (Formation)
Institut de formation:
SA Leadership Center
7 Habits for Highly Effective People (Formation)
Institut de formation:
SA Leadership Center
Problem Solving (Formation)
Institut de formation:
SA Leadership Center
Project Management Essentials (Formation)
Institut de formation:
SA Leadership Center
Executive Management Presentations (Formation)
Institut de formation:
SA Leadership Center
GIAC Systems & Network Auditor (GIAC/GSNA) (Certificat)
Date de la formation:
November 2017
Valide jusqu'à:
December 2021
Certified in Risk and Information Systems Control (CRISC) (Certificat)
Date de la formation:
June 2017
Valide jusqu'à:
June 2020
Certificate in Information Security Management Principles (Certificat)
Date de la formation:
May 2016
Valide jusqu'à:
May 2019
Enterprise Risk Management Certified Professional (ERMCP) (Certificat)
Date de la formation:
September 2015
Valide jusqu'à:
September 2018
GIAC Security Essentials (GIAC/GSEC) (Certificat)
Date de la formation:
June 2015
Valide jusqu'à:
June 2019
CompTIA Advance Security Practitioner (Certificat)
Date de la formation:
December 2014
Valide jusqu'à:
December 2017
Cisco Certified Entry Networking Technician Certificate (Certificat)
Date de la formation:
August 2014
Valide jusqu'à:
August 2017
IT Risk Management (Formation)
Institut de formation:
Saudi Aramco
Durée:
40 heures
Huawei Firewall Operation & Maintenance (Formation)
Institut de formation:
Huawei
Date de la formation:
March 2014
Durée:
40 heures
Cisco ICND 1 Training (Formation)
Institut de formation:
Cisco
Date de la formation:
April 2014
Durée:
40 heures
PKI (Public Key Infrastructure) and HSM (Hardware Security Module) (Formation)
Institut de formation:
Microsoft
Date de la formation:
October 2014
Durée:
40 heures
Technical Support and IT Services Training (Formation)
Institut de formation:
Saudi Aramco
Date de la formation:
May 2008
CompTIA Security+ Certificate (Certificat)
Date de la formation:
December 2011
Valide jusqu'à:
January 2012

Loisirs

  • Travelling and Reading
    Some of my Accomplishments during my studies were: 1. I was awarded as the Top 1 student in Jubal Industrial College 2. As a result of the previous achievement, I was nominated to study abroad and pursue my education to obtain Bachelor and Masters degrees. 3. I graduated with high GPA (dean list) (Cum Laude) during my bachelor program studying Computer Information system.