Ahmed Fathy, Information Security Specialist

Ahmed Fathy

Information Security Specialist

UAE University

Lieu
Émirats Arabes Unis - Al Ain
Éducation
Master, IT(Specialised in Cyber Security) accredited by the Middle States Commission on Higher Education in
Expérience
26 years, 8 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :26 years, 8 Mois

Information Security Specialist à UAE University
  • Émirats Arabes Unis - Al Ain
  • Je travaille ici depuis juillet 2001

• Negotiating terms, conditions, managing the relationships with IT vendors, and ensuring compliance with group policies in this regard.
• Placing PO’s following up on delivery installation, testing, acceptance and providing sign-off to Manager Architecture and Security for approval of payments.
• Updating inventory records and maintaining an up to date record of the IT asset inventory.
• Playing a key role in the compilation of the annual IT budget and tracking actual expenses against budget.
• Controlling, Monitoring and safeguarding of all IT assets - both hardware and software
• Supporting the Manager Architecture & Security in ensuring compliance with group IT Asset Management requirements and software license tracking.
• Consolidating the budgets of operations and tracking the actual vs spend of ops on a consolidated basis so as to facilitate easy compilation of CIO Review pack.
• IT Performance Measurement & Reporting
• Generate / Prepare periodic reports such as User Internet activity, Hardening compliance report, EPO reports etc
• Assist regional IT in providing technical support (also handling users support request)
• Review, design of IT Security infrastructure & Security Operations Center (SOC)
• Vulnerability analysis of critical systems, applications and network entities
• Security for Enterprise Mobility and Cloud Services

• Planning, execution, fact findings with evidences and issuance of report with objectives, scope and audit approach (implemented security frameworks i.e. COBIT, ITGC, ISO/IEC 27001 & GCC)
• Design, review, cost-benefit analysis, operation and monitoring of internal security controls for Cloud Services, Enterprise Mobility, Database Security & Security in new services ).
• Implementation of Control Management System (ICAS) for effective monitoring of controls.
• Design & architecture of security infrastructure (Firewalls, IDS, IPS, AV’s and SIEM) using Zachman framework.
• Establishment of Security Operations Center (SOC) for real-time traffic analysis (NetXMS, WireShark & Splunk), severe security events like APT’s or ATT’s (using CA’s ELM) and penetration attempts (using McAfee IntruShield, Cisco Firewalls & McAfee DLP featuring Device Control, Endpoint, Monitor, Prevent & Discover) for the security of Data Center, GSM Network, Enterprise Data Network & End Point.
• Antivirus administration for all servers & client PCs & ensuring the organization network is free from Viruses
• Support Logging and Monitoring activities by review of system logs on periodic basis and initiating actions / escalation as required
• Work closely with information Security team to implement and maintain system security controls based on group information security policies
• Provide support to the IT Director, CEO and Manager Architecture and Security on projects, documentation, group policy compliance, IT procedure development etc as ad when required. Direct point of contact to the Stakeholders for IT support and services.
• Support the IT planning activity particularly with respect to collation of information documentation.

Computer Lecturer and Curriculum Developer- Part Time à Ajman University
  • Émirats Arabes Unis - Ajman
  • février 2001 à juillet 2001

• Taught multimedia course applications
• Participated in the development of educational technology courses

Network Administartor and IT Instructor à Arab University College
  • Émirats Arabes Unis
  • octobre 2000 à mai 2001

• Teach IT Courses
• Lead and manage and report day-to-day backup and recovery support activities.
• Ensuring backup and recovery systems and processes are compliant with corporate policies.
• Help team to monitor and administer BE 2010/2012/2014 Beta1 application, administrative processes such as expirations, migration, reclamation and collocation, offsite vaulting, tape/media rotations, etc
• Detect/diagnose and resolve hardware issues (server, tape library etc) and interface with vendor, manufacturer of H/W and S/W as necessary
• Ensure that all backup servers, tape library hardware and software are maintained at vendor recommended support levels including system firmware code and that all critical hardware and corresponding appropriate software is placed on service/maintenance contracts. Follow up, periodically with software upgrades, scheduling for planned implementation of upgrade activities.
• Ensure all critical systems are backed up and secured. Enforce, review, supplement and update backup and recovery strategies as needed.
• Ensure all hardware, peripherals are maintained in working order and repaired immediately in the event of failures or malfunction, verify and proactively maintain support agreements and contracts.
• Ensure that PCs, notebooks, printers and other IT equipment are set up and configures to standards, the standards are reviewed with respect to changes occurring in technology, and continued compliance is evidenced through periodic checks. (eg w/s back up process, installation of licensed software, hard disk encryption, device hardening standards, remote usage configuration, shared printer connections, patch updates etc)
• Monitor threats such as virus, spam, etc and initiate defensive actions both on a proactive preventative basis as well as on an incident basis.
• Troubleshooting diagnosing and resolving system. Hardware and network failures
• Worked with hardware and software vendors to maintain and support IT systems
• Support Remote (Citrix/checkpoint) VPN Users.
• Ensure access to local and group Intranet applications and actively monitor accessibility. Provide user support for issue resolution witht Intranet application and support the installation and setup of new intranet applications as and when required.
• Support Manager Architecture and Security on activities such as capacity planning, system expansion, resilience reviews, new technology evaluation etc..
• Shadow routine Data Backup and Recovery activities and have full understanding of internal and off site tape management processes to support the activity as and when required.

Electronic Library Director and à Technology Development Center
  • Egypte
  • septembre 1997 à octobre 2000

Electronic Library Director and
Administrator to the Advisor for the Egyptian Ministry of Education

Responsibilities included:
• Managed 28 Technology Development Centers across Egypt
• Supervised a staff of twelve professional and non professional librarians
• Managed all reference and technical services for the Electronic Library
• Performed a needs analysis and adapted the collection accordingly
• Trained all new hires and associates in the use of the library’s electronic and print sources
• Revised and negotiated new contracts with all outside vendors

Éducation

Master, IT(Specialised in Cyber Security) accredited by the Middle States Commission on Higher Education in
  • à Zayed University
  • octobre 2013

Distinction with Honors. Accredited by the Middle States Commission on Higher Education in the United State

Diplôme supérieur, Microsoft Certified System Engineer (MCSE)
  • à AL Khawariznmi International College
  • janvier 2007

Microsoft Certified Professional Microsoft Certified System Administrator Microsoft Certified System Engineer

Diplôme supérieur, Curriculum Development and Planning
  • à Helwan University
  • juillet 2000

Curriculum Development and Planning

Diplôme supérieur, Educational Technology
  • à Helwan University
  • août 1999

Educational Technology Grade : Excellent with HONOR

Baccalauréat, Educational Technology
  • à Helwan University
  • mai 1997

Educational Technology

Specialties & Skills

Network Forensics
Network Engineering
System Administration
Network Security
Administration
Internet / Computer and Digital Cybercrime Investigator
Information Security Officer
Network Security
Computer Lecturer
Database Designer
Multimedia Designer
Network Administrator

Langues

Anglais
Expert
Arabe
Expert
Français
Débutant

Formation et Diplômes

Hands On Training (Formation)
Institut de formation:
MCSE
Date de la formation:
October 2006
Hands on Training (Formation)
Institut de formation:
FTK - EnCase - X-Ways Forensics
Date de la formation:
March 2012
Hands on training (Formation)
Institut de formation:
Information Security , Policy , Ethics and Law
Date de la formation:
November 2011
Hands on trainig (Formation)
Institut de formation:
Cyber Forensics
Date de la formation:
March 2012
Hands on training (Formation)
Institut de formation:
Information Security
Date de la formation:
October 2011
Hands on Training (Formation)
Institut de formation:
Network and Internet Secuirity
Date de la formation:
February 2012
Hands on Training (Formation)
Institut de formation:
Database and Entrerprise Security
Date de la formation:
May 2012