nawwaf alabdulhadi (MSc, CISSP, CISM, CPT), Cyber security specialist

nawwaf alabdulhadi (MSc, CISSP, CISM, CPT)

Cyber security specialist

Saudi Aramco

Location
Saudi Arabia
Education
Master's degree, Master of Science in Information Security Policy and Management
Experience
11 years, 1 Months

Share My Profile

Block User


Work Experience

Total years of experience :11 years, 1 Months

Cyber security specialist at Saudi Aramco
  • Saudi Arabia - Khobar
  • My current job since June 2017

A Member of the Red Team assesses Saudi Aramco security countermeasures effectiveness on all layers and access points.

IT System Analyst at aramco
  • Saudi Arabia - Khobar
  • August 2011 to September 2015

IT SYSTEMS ANALYST at Saudi Aramco (Sep 2011 - Jun 2015)
• Handled Web applications, Network devices, servers (windows, UNIX), workstations (windows, UNIX) Penetration testing, Vulnerability Assessment, and technical and managerial Compliance Assessment. In PT and VA, I was working on Burp Suite, metasploit, backtrack 5, Kali, Nessus, Appscan, brute forcing techniques, DbProtect, password cracking techniques, and OWASP ZAP.
• Worked with MacAfee on IT compliance and weakness investigation where it involves interviews with operations’ experts and validation.
• Led, managed, and was a team member of handling awareness campaigns which contained designing brochures, panels, presentations, phishing emails, strategic solutions such as quick comic videos, and booths.
• Deployed and designing windows packages by using SCOM (System Center Operations Manager) and C# codes for windows workstations.
• Was a member of third level support for windows servers where I was involved in sanitizing servers, investigate them, fixing them, and managing them.
• Managed Risk assessments where I was involved in updating risk registry, validate risk inventory, and conducting risk assessment on new IT solutions.
• Worked in SOC (security operation center) where I worked on SIEM (Security Information and event management) and configured and worked with DbProtect to monitor databases and conduct Vulnerability assessment on them.

Education

Master's degree, Master of Science in Information Security Policy and Management
  • at Carnegie Mellon University
  • May 2017

My master degree focuses on the Information Security.

Bachelor's degree, Computer Science
  • at Northumbria University
  • July 2011

I have been awarded the degree of Bachelor of Science with Second Class Honours (Lower Division) in computer Science. The course included an Internship.

Specialties & Skills

Penetration Testing
Vulnerability Scanning
Vulnerability Assessment
Vulnerability Management
Risk Assessment
Encryption
Internet of things
Oracle database express 11g
Vulnerability Assessment
Forensic examination
Risk Assessment
IT Awareness
Certified ethical hacker
PCI-DSS, HIPAA, COBIT
IT Compliance Assessment
MySQL and PL/SQL

Languages

Arabic
Expert
English
Expert

Memberships

Keystone
  • graduated from keystone 2013 and I am member of this program for inspiring new generation
  • July 2013
ISACA
  • member
  • March 2012

Training and Certifications

Advanced Ethical Hacking Training (Training)
Training Institute:
InfoSec
Date Attended:
September 2013
Ethical Hacking Training (Training)
Training Institute:
InfoSec
Date Attended:
September 2013
in house training in Aramco company (Training)
Training Institute:
CobiT 4.1 Foundation Course & exam
Date Attended:
February 2012
Self study (Training)
Training Institute:
self study for Security+ (SY0-301)
Date Attended:
February 2012
it was by MIS Training Institute and it was seminar in london (Training)
Training Institute:
Risk Based IT Auditing
Date Attended:
March 2012
in house in Aramco Company (Training)
Training Institute:
IT Risk Management Course
Date Attended:
October 2011
in house in Aramco Company (Training)
Training Institute:
Interconnecting CISCO networking devices - part 1 & 2
Date Attended:
March 2013