Mostafa Khalil, IT Internal Audit Supervisor

Mostafa Khalil

IT Internal Audit Supervisor

Egyptian Gulf Bank

Location
Egypt - Cairo
Education
Bachelor's degree, Computer Science and Information Systems
Experience
14 years, 7 Months

Share My Profile

Block User


Work Experience

Total years of experience :14 years, 7 Months

IT Internal Audit Supervisor at Egyptian Gulf Bank
  • Egypt - Cairo
  • My current job since May 2017

Leading the IT audits across 54 branches in Egypt, also I’m in charge of preparing the IT audit risk assessment, annual IT audit plan (Audit Universe), managing the field work including integrated audits with the banking operation audit teams and IT standalone audits i.e. Information Security and IT Governance using frameworks such as COBIT5 & ISO27001. My role is also extended to act as a trusted advisory over the Information Security, a process through which vulnerabilities and threats to information assets are continuously assessed, and the appropriate protective security controls are recommended. And then decided on and applied by management. Recent selected assignments include:

• IT controls review in regards to:
o Access to Programs and Data: Access management policies & procedures, periodic access reviews, password controls, privileged users’ accounts, physical access, SOD, audit logs, encryption & cryptography.
o IT projects and System Development Life Cycle.
o IT Operations: Batch processing & job scheduling, backup & recovery procedures, incident & problem management, IT service continuity & disaster recovery planning, patch management, IT service assets & configuration management, change management process, capacity planning and performance measurement.
• Review controls over information security function to evaluate information security policies, information classification and labelling, assets and media handling, existence of antimalware software, confidentiality agreements, hardening standards and configuration reviews, running vulnerability assessments and penetration tests in the proper schedules as per the regulations and internal information security policies, security awareness programs, physical and environmental controls for IT facilities.
• Governance and management of IT: reviewed the IT strategy to ensure its alignment with the business strategy, IT organizational structure, IT key performance indicators and SLAs, evaluated IT risk management practices, reviewed the existence of a formalized process for maintaining IT policies and procedures.
• Business automated controls over the critical bank systems.

Database Senior Supervisor at AXA Egypt
  • Egypt - Cairo
  • July 2015 to May 2017

Ownership and management of Release & Deployment processes.


Coordinated annual audit reviews for PwC / PCI-DSS / ISO20000- 1 / ISO27001 / AXA Group
Managed to annually renew licenses and support contracts for (Oracle DB\RAC\BI, MS GP, HR System, and SMS Gateway).

Established new semi-annual objectives for database team members and follow up.


Created and maintained database Team SLA and OLA's.


Monitored team performance and analyzed the results to ensure enhancement of team capabilities.

Performed database team joiner’s interviews and created technical exams.

Senior Database Administrator at Commercial International Life Insurance
  • Egypt - Cairo
  • November 2011 to July 2015

Administering Oracle DB 11g


Administering MS SQL Server and MS Great Plains


Administrating IIS and web services configuration


Administrating Oracle Business Intelligence


Running\Monitoring End-of-Day operation and night jobs
Access management over all applications


Providing support to end-users and QA team

Database Administrator at JOR International
  • Egypt - Cairo
  • April 2011 to November 2011

Manage system backup and restore strategy in a SQL Server environment


Implementing uses access, monitoring performance and database maintenance


Performing daily replication from several databases to the main office database


Administrating the financial application “Segment”

Application Administrator at Armed Forces
  • Egypt - Hurghada
  • October 2009 to April 2011

Utilizing and administrating a radar software application in a Linux environment


Receiving, logging, and modifying flights information


Troubleshooting and analysis software problems

Education

Bachelor's degree, Computer Science and Information Systems
  • at Zagazig University
  • July 2008

Major: Information Systems

Specialties & Skills

IT Audit
Databases
IT Service Management
Performance Management
Project Management
Information Systems Assessment & Auditing (Risk Based)
IT Risk Assessment
Information Security
Team Work
Accuracy & Detail Oriented
Projects Management
IT Service Management
Negotiation & Problem Solving
Leadership

Social Profiles

Personal Website
Personal Website

URL removed due to policy violation. Please contact support for further information.

Languages

Arabic
Native Speaker
English
Expert

Training and Certifications

Administering Microsoft SQL Server 2012 Database (Certificate)
Oracle Database 11g Administrator Certified Professional (OCP) (Certificate)
Oracle Database 11g Administrator Certified Associate (OCA) (Certificate)
COBIT5 Foundation (Certificate)
Prince2 Foundation (Certificate)
ITIL V3 Foundation (Certificate)
Certified Information Systems Auditor (CISA) (Certificate)

Hobbies

  • Traveling
  • Fitness.
  • Reading\Writing.