Khalid Aldossary, Cyber Security GRC Consultant

Khalid Aldossary

Cyber Security GRC Consultant

Romuz Technologies for Cybersecurity

Lieu
Arabie Saoudite - Riyad
Éducation
Master, Risk Management
Expérience
3 years, 7 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :3 years, 7 Mois

Cyber Security GRC Consultant à Romuz Technologies for Cybersecurity
  • Arabie Saoudite - Riyad
  • Je travaille ici depuis août 2022

Developing ISMS (Policies, Procedures, Standers, Playbook, and Guidelines) that aligns with NCA regulatory requirements (ECC, CSCC, CCC, TCC, OSMACC, OTCC, and DCC) & ISO 27001 Cybersecurity Framework.
Developing ISMS Implementing roadmap with the stockholders
Developing cybersecurity risk methodology that aligns with clients’ risk methodology and ISO 27005.
Planning and performing a cybersecurity gap assessment & risk assessment
Developing a Compliance program that aligns with NCA and other cybersecurity frameworks like SAMA CSF, ISO 27001, ISO 27032, and ISO 22301.
Developing Cybersecurity Awareness & Training Programs.

Cybersecurity GRC Specialist à Malath Cooperative Insurance Company
  • Arabie Saoudite - Riyad
  • octobre 2020 à août 2022

• Developing Malath ISMS (Policies, Procedures, Standers, Playbook, and Guidelines)
• Developing Malath ISMS implementing roadmap with the stockholders
• Developing Malath risk methodology.
• Planning and performing a cybersecurity gap assessment
• Planning and performing risk assessment
• Developing Malath ISMS that aligns with SAMA and NCA
• Developing a Compliance program that aligns with NCA regulatory requirements (ECC, CSCC, CCC, TCC, and OSMACC).
• Developing a Compliance program that aligns with SAMA regulatory requirements (Cybersecurity Framework).
• Developing a cybersecurity awareness program.
• Developing a cybersecurity training program.
• SOC L1: Monitoring McAfee SIEM Solution.
• Developing use cases for the SIEM Solution.

Éducation

Master, Risk Management
  • à Midocean University
  • décembre 2023
Master, Information Security
  • à Naif Arab University For Security Sciences
  • mai 2020
Baccalauréat, Information Technology & Computing
  • à Arab Open University - Saudi Arabia
  • août 2016

Specialties & Skills

Cyber Security
Electronic Security
Information Security
Computer Science
cyber security
risk management
Risk Assessment
Governance
compliance

Langues

Arabe
Langue Maternelle
Anglais
Expert

Adhésions

SANS
  • member
  • May 2020
ISACA
  • member
  • December 2020
Saudi Council of Engineers (SCE)
  • member
  • August 2020

Formation et Diplômes

GRC Audit (Certificat)
Date de la formation:
December 2022
ISO/IEC 27001:2013 Information Security Lead Auditor (Certificat)
Date de la formation:
January 2023
GRC Professional Certification (Certificat)
Date de la formation:
September 2022