nawwaf alabdulhadi (MSc, CISSP, CISM, CPT), Cyber security specialist

nawwaf alabdulhadi (MSc, CISSP, CISM, CPT)

Cyber security specialist

Saudi Aramco

Lieu
Arabie Saoudite
Éducation
Master, Master of Science in Information Security Policy and Management
Expérience
11 years, 1 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :11 years, 1 Mois

Cyber security specialist à Saudi Aramco
  • Arabie Saoudite - Khobar
  • Je travaille ici depuis juin 2017

A Member of the Red Team assesses Saudi Aramco security countermeasures effectiveness on all layers and access points.

IT System Analyst à aramco
  • Arabie Saoudite - Khobar
  • août 2011 à septembre 2015

IT SYSTEMS ANALYST at Saudi Aramco (Sep 2011 - Jun 2015)
• Handled Web applications, Network devices, servers (windows, UNIX), workstations (windows, UNIX) Penetration testing, Vulnerability Assessment, and technical and managerial Compliance Assessment. In PT and VA, I was working on Burp Suite, metasploit, backtrack 5, Kali, Nessus, Appscan, brute forcing techniques, DbProtect, password cracking techniques, and OWASP ZAP.
• Worked with MacAfee on IT compliance and weakness investigation where it involves interviews with operations’ experts and validation.
• Led, managed, and was a team member of handling awareness campaigns which contained designing brochures, panels, presentations, phishing emails, strategic solutions such as quick comic videos, and booths.
• Deployed and designing windows packages by using SCOM (System Center Operations Manager) and C# codes for windows workstations.
• Was a member of third level support for windows servers where I was involved in sanitizing servers, investigate them, fixing them, and managing them.
• Managed Risk assessments where I was involved in updating risk registry, validate risk inventory, and conducting risk assessment on new IT solutions.
• Worked in SOC (security operation center) where I worked on SIEM (Security Information and event management) and configured and worked with DbProtect to monitor databases and conduct Vulnerability assessment on them.

Éducation

Master, Master of Science in Information Security Policy and Management
  • à Carnegie Mellon University
  • mai 2017

My master degree focuses on the Information Security.

Baccalauréat, Computer Science
  • à Northumbria University
  • juillet 2011

I have been awarded the degree of Bachelor of Science with Second Class Honours (Lower Division) in computer Science. The course included an Internship.

Specialties & Skills

Penetration Testing
Vulnerability Scanning
Vulnerability Assessment
Vulnerability Management
Risk Assessment
Encryption
Internet of things
Oracle database express 11g
Vulnerability Assessment
Forensic examination
Risk Assessment
IT Awareness
Certified ethical hacker
PCI-DSS, HIPAA, COBIT
IT Compliance Assessment
MySQL and PL/SQL

Langues

Arabe
Expert
Anglais
Expert

Adhésions

Keystone
  • graduated from keystone 2013 and I am member of this program for inspiring new generation
  • July 2013
ISACA
  • member
  • March 2012

Formation et Diplômes

Advanced Ethical Hacking Training (Formation)
Institut de formation:
InfoSec
Date de la formation:
September 2013
Ethical Hacking Training (Formation)
Institut de formation:
InfoSec
Date de la formation:
September 2013
in house training in Aramco company (Formation)
Institut de formation:
CobiT 4.1 Foundation Course & exam
Date de la formation:
February 2012
Self study (Formation)
Institut de formation:
self study for Security+ (SY0-301)
Date de la formation:
February 2012
it was by MIS Training Institute and it was seminar in london (Formation)
Institut de formation:
Risk Based IT Auditing
Date de la formation:
March 2012
in house in Aramco Company (Formation)
Institut de formation:
IT Risk Management Course
Date de la formation:
October 2011
in house in Aramco Company (Formation)
Institut de formation:
Interconnecting CISCO networking devices - part 1 & 2
Date de la formation:
March 2013