Submitting more applications increases your chances of landing a job.

Here’s how busy the average job seeker was last month:

Opportunities viewed

Applications submitted

Keep exploring and applying to maximize your chances!

Looking for employers with a proven track record of hiring women?

Click here to explore opportunities now!
We Value Your Feedback

You are invited to participate in a survey designed to help researchers understand how best to match workers to the types of jobs they are searching for

Would You Be Likely to Participate?

If selected, we will contact you via email with further instructions and details about your participation.

You will receive a $7 payout for answering the survey.


User unblocked successfully
Majid Khan, Senior Scientific Officer (IT) / Manager

Majid Khan

Senior Scientific Officer (IT) / Manager·Pakistan Nuclear Regulatory Authority (PNRA)

Saudi Arabia

Bachelor's degree, Computer Science

Work experience

Total years of experience: 16 years, 10 months

Senior Scientific Officer (IT) / Manager

December 2018 - August 2025

Pakistan Nuclear Regulatory Authority (PNRA)

Islamabad, Pakistan

December 2018 - August 2025

• Data Security & Risk Management: Implemented security measures, risk analysis, and vulnerability management.

Data Labeling, Classification & Protection: Designed policies with DLP, DAM, and tokenization.

Governance, Risk & Compliance (GRC): Developed policies and architecture aligned with ISO 27001, NIST, and IEC 62443.

Identity & Access Management (IAM) & Privileged Access Management (PAM): Implemented RBAC, MFA, least-privilege, and session monitoring.

Data Protection (On-Prem & Cloud): Designed encryption, cryptography, and key/certificate management.

Security Operations & Continuous Monitoring: Established SOC with SIEM, IDS, NAC, and NG firewalls.

Incident Response & Insider Threat Management: Developed and executed incident response and insider threat plans.

Cybersecurity Project Execution: Executed PNRA cyber capacity and oversight projects, SOC, and CSDS I&C Lab.

Strategic Integration of Security into Business & IT Projects: Embedded security by design into systems and processes.

Dashboards & KPIs: Developed dashboards tracking data security, access protection, KPIs, and KRIs.

Collaboration & Stakeholder Engagement: Maintained strong cross-team working relationships.

Training & Awareness: Conducted awareness programs, mentoring, and promoted security culture.

Procurement & Security Investments: Oversaw IT/security procurement and solution implementation.

Frameworks: Applied SAMA, NCA (ECC-1:2018, CCC-1:2020, CSCC-1:2022, OTCC-1:2022), NDMO, GDPR, PCI-DSS, NIST, CSF, RMF.

Company industry:
Safety & Environment
Job role:
Safety

Scientific Officer (IT) / Assistant Manager (AM)

September 2013 - December 2018

Pakistan Nuclear Regulatory Authority (PNRA)

Islamabad, Pakistan

September 2013 - December 2018

• Network Infrastructure Management: Designed, deployed, and
managed large-scale network infrastructures across multiple sites,
ensuring high availability, performance, and security. Expertise in
network routing protocols (BGP, OSPF, EIGRP), switches, firewalls
(Palo Alto, Cisco ASA, FortiGate, Sophos), VPNs (IPSEC), and
IAM/PAM solutions.
• Implemented
• Planned and designed scalable network architectures,
integrating on-premise, cloud, and hybrid environments while
ensuring compliance with industry standards.
• Network Performance & Monitoring: using tools like PRTG,
proactively identifying potential issues to minimize downtime and
enhance operational efficiency. Optimized network traffic routing,
load balancing, and bandwidth management to support high-demand
applications.
• Security Management: Design, implement and manage corporate
security strategies, measures, including Email Security appliance
(ESA), Proxy, Next Generation Firewalls (Palo Alto, Cisco ASA,
FortiGate, Sophos), encryption protocol, VPNs (IPSEC), IPS/IDS and
DLP.
• Troubleshooting: Troubleshoot and resolved complex network
connectivity issues, diagnosing hardware, software, and protocol
related failures across diverse network environments
• Documentation: Maintain comprehensive documentation of the
network infrastructure, configurations, and procedures. Create and
update network HLD/LLD diagrams and topologies.
• Upgrades and Maintenance: Plan and execute network upgrades
and maintenance activities. Ensure systems are up-to-date with the
latest security patches and updates.
• Voice Network Management: SDH connectivity with service
provider. PABX (AVAYA) installation, configuration and maintenance
• Support: Provide technical support and training to end-users and
other IT staff. Assist in the development and implementation of IT
policies and procedures.
• Collaboration: Worked closely with ISPs, content delivery networks
(CDNs), and cross-functional teams, ensuring seamless network
connectivity, performance, and customer-facing services.
• Backups & Patch Management: Maintain backups of configuration,
IOS
• Experience with cloud networking and virtualization, integrating
network automation and infrastructure-as-code (IaC) principles to
streamline deployments. Strong Linux server environment knowledge,
ensuring seamless network services and performance optimization.
• Proficient in Python for scripting, network automation, and
troubleshooting, improving network management efficiency through
custom automation tools.
• Supported IT procurement processes, from vendor evaluation to
tender management, ensuring optimal infrastructure investments.
• Event Management: Video conferencing, conduct virtual training
and meetings etc.

Company industry:
Safety & Environment

Datacom Engineer - NOC

June 2013 - August 2013

Huawei,

Kabul, Afghanistan

June 2013 - August 2013

• Daily inspection and health check of network equipment.
• Network optimization, documentation, and reporting.
• Ticket resolution and Escalation of TT to Tier3 and Huawei GTAC
• Service verification of new service and technical discussions for
network performance.
• Emergency fault handling and change requests.
• Complete network monitoring of IP/MPLS core network
• Emergency Handling of critical and emergency fault with end-to-end
progress update
• Keep tracking & verification after the network fault has been resolved
• Priorities faults to meet SLA/WLA.
• Involved in upgrade/updates of live nodes.

Company industry:
Telecommunications

Network Engineer / CSR

July 2009 - September 2012

Etisalat CCC,

Ajman, United Arab Emirates

July 2009 - September 2012

• Configuring & Manage TCP/IP-base, routing and network
management protocols (OSPF, EGIRP, BGP)
• Configuration of high availability protocols including HSRP, VRRP and
configuration of DHCP, DNS, and VPNs (IPsec).
• Design and deploy VLAN infrastructure
• IP Management and Reporting
• Network upgrades as per business requirements.
• Configuration of Access point, routers and IPTV, WIMAX services.
• Configuration of wireless encryption WPA2 and TKIP setting.
• Configure and Manage SNMP, NetFlow, Syslog and TACACS+
• DNS resolution and hosting issues
• Escalation of billing issues
• Ticket Resolution and Escalation.
• Ticket follow up

Company industry:
Telecommunications

Network Engineer

October 2007 - January 2009

Pakistan Revenue Automation Ltd (PRAL)

Rawalpindi, Pakistan

October 2007 - January 2009

• Daily financial reconciliation of toll.
• Toll Management
• Active Directory management.
• User Group policy implementation and maintenance.
• Reporting and Documentation
• Installation, Configuration and Maintenance of Network and System
Equipment

Company industry:
IT Services

Education

University of Malakand

February 2006

February 2006

Bachelor's degree, Computer Science

Pakistan

GPA (percentage): 80%

GPA (percentage): 80%

BS(Hons)CS 4 years Degree

Skills

Network Configuration
Expert
Network Configuration
Expert
Wireless Routers
Expert
Wireless Routers
Expert
Computer Hardware Troubleshooting
Expert
Computer Hardware Troubleshooting
Expert
Email Hosting
Expert
Email Hosting
Expert
Wireless Broadband
Expert
Wireless Broadband
Expert
CYBER SECURITY
Expert
CYBER SECURITY
Expert
INFORMATION TECHNOLOGY
Expert
INFORMATION TECHNOLOGY
Expert
DATA SECURITY
Expert
DATA SECURITY
Expert
PROJECT RISK MANAGEMENT
Expert
PROJECT RISK MANAGEMENT
Expert
VULNERABILITY MANAGEMENT
Expert
VULNERABILITY MANAGEMENT
Expert
DATA CLASSIFICATION
Expert
DATA CLASSIFICATION
Expert
DATA LOSS PREVENTION
Expert
DATA LOSS PREVENTION
Expert
Information Security
Expert
Information Security
Expert
Splunk Enterprise
Expert
Splunk Enterprise
Expert
Splunk Enterprise Security
Expert
Splunk Enterprise Security
Expert
ELK
Intermediate
ELK
Intermediate
Wireshark
Expert
Wireshark
Expert
Snort
Expert
Snort
Expert
Zeek
Expert
Zeek
Expert
NAC
Expert
NAC
Expert
PaloAlto Firewall
Expert
PaloAlto Firewall
Expert
FortiGate
Expert
FortiGate
Expert
Cisco ASA
Expert
Cisco ASA
Expert
Sophos
Intermediate
Sophos
Intermediate
Routing & Switching
Expert
Routing & Switching
Expert
Yara Rule
Intermediate
Yara Rule
Intermediate
SIEM
Expert
SIEM
Expert
Cyber Kill Chain
Expert
Cyber Kill Chain
Expert
MITRE ATT&CK
Expert
MITRE ATT&CK
Expert
VirusTotal
Expert
VirusTotal
Expert
Email Security Appliance
Expert
Email Security Appliance
Expert
Security Onion
Expert
Security Onion
Expert
ISO-27001
Expert
ISO-27001
Expert
IEC 62443
Intermediate
IEC 62443
Intermediate
Linux
Intermediate
Linux
Intermediate
Python
Intermediate
Python
Intermediate
Business Continuity Plan (BCP)
Expert
Business Continuity Plan (BCP)
Expert
Disaster Recovery Plan
Expert
Disaster Recovery Plan
Expert
Backup Plan
Expert
Backup Plan
Expert
Incident Response Plan
Expert
Incident Response Plan
Expert
Disaster Recovery Site
Expert
Disaster Recovery Site
Expert
IT/OT Cyber Audits
Expert
IT/OT Cyber Audits
Expert
OT
Intermediate
OT
Intermediate
Network Configuration
Expert
Network Configuration
Expert
Wireless Routers
Expert
Wireless Routers
Expert
Computer Hardware Troubleshooting
Expert
Computer Hardware Troubleshooting
Expert
Email Hosting
Expert
Email Hosting
Expert
Wireless Broadband
Expert
Wireless Broadband
Expert

Languages

English
Expert
Urdu
Expert
Pushto
Expert

Memberships

ISC2

Professional

May 2024

Training and Certifications

Certifications
MCSE
May 2008
GIAC Continuous Monitoring Certification (GMON)
Aug 2023 - Aug 2027
GIAC Security Operations Certified (GSOC)
Oct 2023 - Oct 2027
CCNA (R&S)
Feb 2012 - Jun 2015
CCNP (Routing & Switching)
May 2012 - Jun 2015
Splunk Core Certified Power User
May 2024 - May 2027
Splunk Enterprise Security Certified Admin
May 2024 - May 2027
ISO/IEC 27001 Lead Implementer
Jan 2023 - Jan 2026
Certified in Cybersecurity (CC)
Jun 2024 - Jun 2027
CISSP
Jun 2024 - Jun 2027
CCIE R&S
Emtech institute Dubai
Jan 2012 - Jun 2012

Training
Advanced Industrial Training Course - PLC SCADA DCS
National Institute of Electronics
Aug 2022
SEC511: Continuous Monitoring and Security Operation
SANS Institute
Feb 2023
SEC450: Blue Team Fundamental Security Operation Center
SANS Institute
Jun 2023
ISO/IEC 27001:2022
GRC Institute
Dec 2022
IAEA training course on “Information and Computer Security for Nuclear Facilities
IAEA
Apr 2017
• Developing and implementing the regulatory framework for extensively digitalized NPPs
CNPO
Apr 2023