كلما زادت طلبات التقديم التي ترسلينها، زادت فرصك في الحصول على وظيفة!

إليك لمحة عن معدل نشاط الباحثات عن عمل خلال الشهر الماضي:

عدد الفرص التي تم تصفحها

عدد الطلبات التي تم تقديمها

استمري في التصفح والتقديم لزيادة فرصك في الحصول على وظيفة!

هل تبحثين عن جهات توظيف لها سجل مثبت في دعم وتمكين النساء؟

اضغطي هنا لاكتشاف الفرص المتاحة الآن!
نُقدّر رأيكِ

ندعوكِ للمشاركة في استطلاع مصمّم لمساعدة الباحثين على فهم أفضل الطرق لربط الباحثات عن عمل بالوظائف التي يبحثن عنها.

هل ترغبين في المشاركة؟

في حال تم اختياركِ، سنتواصل معكِ عبر البريد الإلكتروني لتزويدكِ بالتفاصيل والتعليمات الخاصة بالمشاركة.

ستحصلين على مبلغ 7 دولارات مقابل إجابتك على الاستطلاع.


تم إلغاء حظر المستخدم بنجاح
Noorul أمين, Sr SOC Delivery & Operations Manager – CDC Delivery

Noorul أمين

Sr SOC Delivery & Operations Manager – CDC Delivery·CISCO

المملكة العربية السعودية

ماجستير, Defence And Security

الخبرة العملية

مجموع سنوات الخبرة: 16 سنوات, 6 أشهر

Sr SOC Delivery & Operations Manager – CDC Delivery

أبريل 2024 - حتى الآن

CISCO

الرياض، المملكة العربية السعودية

أبريل 2024 - حتى الآن

• SOC Management: Oversee and manage an CDC account, ensuring optimal service
delivery and customer satisfaction. Led and developed high-performing teams, including
SOC, IR, Platform admins, and IAM Team, comprising 40+ skilled professionals and
managers.
• Operational Efficiency: Implement and maintain robust security strategies, including
incident response, threat detection, and vulnerability management. Optimize IT
operations, reduce costs, and enhance overall system performance..
• Quality Assurance: Ensured 100% SLA adherence and optimized operational efficiency.
Prioritized customer satisfaction by ensuring zero SLA breaches and delivering
exceptional service. Orchestrating complex SOC projects, including SIEM migration, XDR
deployment, and IAM automation, resulting in improved security and operational
efficiency.
• Incident Response Optimization: Reduced MTTR and MTTD, significantly improving
our incident response capabilities and strengthened our detection capabilities to identify
and mitigate threats proactively.
• Client Relationship Management: Serve as the primary point of contact for clients,
fostering strong relationships and ensuring their needs and expectations are met. Work
closely with clients to understand their business objectives and tailor services to meet
their specific requirements.
• Incident and Problem Management: Oversee the resolution of incidents and problems,
ensuring timely and effective responses to minimize impact on business operations.
Implement robust problem management processes to prevent recurrence and enhance
service reliability.
• Strategic Planning and Execution: Develop and execute strategic plans to enhance
service delivery capabilities and support business growth. Align operational strategies
with overall business objectives, ensuring the delivery of value-added services to clients.

مجال الشركة:
خدمات تكنولوجيا المعلومات
الدور الوظيفي:
تكنولوجيا المعلومات

Head of SOC Operations

يناير 2022 - أبريل 2024

BeyonCyber

اَلرِّفَاع، البحرين

يناير 2022 - أبريل 2024

مجال الشركة:
الاتصالات والشبكات
الدور الوظيفي:
تكنولوجيا المعلومات

Cyber Security Manager

سبتمبر 2018 - فبراير 2022

Bnet | Batelco

المنامة، البحرين

سبتمبر 2018 - فبراير 2022

• Managing 9x5 and 24x7 outsourced operations and team,
• Being part of strategic cybersecurity initiatives, development and continuous improvement of the Telco’s Cyber Defenses.
• Advanced and multi-context cyber threat analysis to identify deep seated and hard to detect security threats through the use of custom use cases, external cyber threat indicators, and patterns of complex threat actor behavior.
• Evaluated and acquired the SIEM, Endpoint Detection and Response (EDR), APT (Sandboxing), AEP (Advanced Endpoint Protection) .
• Project manager for SIEM, EDR and TIP product deployment for Batelco and Bent Telco infrastructure.
• Expertise in security functions; Security Incident management, Risk Assessment, Security Advisories, Security dashboards and scorecards, KPI/KRI.
• Maintain awareness of up-to-date threat and vulnerability profiles, including respective countermeasures.
• Knowledge of deployment and mitigating techniques against zero day vulnerabilities, Unknown threats based on heuristics and behavior analysis.
• Investigate the document gaps in security controls, event data, and working with internal teams for resolution.
• Develop security reporting dashboards for Technical, Executive and Board of Directors
• Research and Develop technology requirements to provide architecture reviews pertinent to the operation of the SOC.
• Driving IRs for the true positive compromises and engaging with external IR team for mitigation.
• Handling Security operations and CIRT.
• Planning and executing security projects.

مجال الشركة:
الاتصالات والشبكات
الدور الوظيفي:
تكنولوجيا المعلومات

IT Technical Security Specialist

أكتوبر 2016 - سبتمبر 2018

OSN

دبي، الإمارات العربية المتحدة

أكتوبر 2016 - سبتمبر 2018

• Incident Response, malware Analysis, Threat Intelligence
• Vulnerability Assessments & Penetration testing
• Security Incident Analysis & threat management, risk-mitigation, Includes timely review of normalized alerts generated by security devices, assessment of the situation, and possible escalation to the client.
• Involved in protection of the OSN Infrastructure from Known & Emerging Threats, enabling them to protect their information assets and demonstrate compliance with industry regulation by understanding Threat Landscape and Researching on Zero- day attacks, malwares.

 Highly appreciated by D levels for mitigating the bruteforce attack by auto blocking from SIEM alert

 Successfully handled & implemented the Security Projects (DLP, PAM, CT, APT)

 Appreciated for creating use case and rules in SIEM tools for proactive monitoring.

مجال الشركة:
الترفيه
الدور الوظيفي:
تكنولوجيا المعلومات

IT Security professional

نوفمبر 2014 - أكتوبر 2016

Injazat Data Systems

أبو ظبي، الإمارات العربية المتحدة

نوفمبر 2014 - أكتوبر 2016

• Incident Monitoring, Investigation and reporting the incidents to customers (Government Entities, Power & Oil Sector and Bank)
• Performing Network/Digital forensic using EnCase & Wireshark
• Investigating on SPAM Emails, and malware analysis on suspicious files.
• Organizing the threat feeds and providing customized threat intelligence feeds to SOC,
• Updating the Use Case based on threat indicators
• Providing recommendation on threat mitigation.
• Helping customer to build the new rule to increase the Anomalies & APT detection efficiency.
• Predictive analysis on APT/Attack with Logs and Events by threat Intelligence.
• Preparing the executive incident reports with key points
• Providing Intelligence to preventing the cyber-attack.
• 24/7 monitoring the network and responding the alerts and analyzing the true /false positive and true/false negative
• Successfully organized the team on incident response and maintaining the incident template for all customer, Fine-tuned and created threat indicators and detecting McAfee WG, NSM and Cisco IronPort for investigation and configuration changes.
• Posting security news about latest vulnerabilities and attacks to customers
• Performing Vulnerability assessment and penetration testing on customer environment based on the request.
• Coordinating with Network & server team to mitigate the risk.
• Providing recommendation to setup SOC by considering the Industry best practices.
• Keeping SIEM rules up to date based on expected attacks on critical servers.
• Performing update, Administrator activities on SIEM solution

مجال الشركة:
البنوك
الدور الوظيفي:
الهندسة

Cyber Security Analyst

أبريل 2013 - نوفمبر 2014

symantec

تشيناي، الهند

أبريل 2013 - نوفمبر 2014

• Worked in the integration part of various network/security devices with SIEM tool.
• Taking care of 450 customer network security.
• Identifying security incidents by analyzing network traffic and logs data.
• SOC operations include log analysis and finding anomalies, designing new correlation rules, setting up dashboards, generating audit reports, fine-tuning existing correlation rules to reduce false-positives and responding to incidents in ARC and Event Explorer.
• Correlating events/activities observed from a host and providing detailed analysis to the customer.
• New Threats identification and enabling detection methodology for the same.
• Observe attack pattern and preparing threat report.
• Writing Regular Expressions for new threats detection based on its traffic pattern.
• Reviewing and suggesting improvements in security posture of the client based on attack pattern/threats observed in the customer network.
• Reviewing customer queries and guiding customers with threat remediation strategies and best security practices.
• Querying database to address customer arbitrary queries, for complex reports generation etc.
• Experienced in manual vulnerability assessment using Backtrack, Burp suite and other open source security suites.
• Experienced in identifying various Web based and network based vulnerabilities.
• Log analysis for the following device
• FireEye, Snort, McAfee intrushield, checkpoint, Cisco IDS, Fortinet, Palo Alto, Websense
• Tuning the signature by identifying the FP.
• Identifying malicious IPs & submit for blacklist.
• Updating the Global SOC with latest threat.
• Worked with Intelligence to preventing the cyber-attack.

مجال الشركة:
خدمات تكنولوجيا المعلومات
الدور الوظيفي:
تكنولوجيا المعلومات

Senior information security engineer

مايو 2012 - أبريل 2013

infosys

تشيناي، الهند

مايو 2012 - أبريل 2013

• Worked in the integration part of various network/security devices with RSA envisions.
• SOC operations include log analysis and finding anomalies, designing new correlation rules, setting up dashboards, generating audit reports, fine-tuning existing correlation rules to reduce false-positives and responding to incidents in envision and Event Explorer.
• Investigating the Security incidents and following the same until closure.
• Analysis on incidents that includes collecting evidence, maintaining integrity between procedures, maintaining chain of custody, documenting the findings, submitting corporate reports and taking it to closure.
• Identifying malicious hits from Websense report and proceeding the investigation on infected machine
• Investigating Malware Incidents to identify the root cause (RCA) of infection on host machines in the network by visual and behavioral analysis
• Analyzing Symantec Vontu - DLP system incidents
• Audit the incidents reported in Symantec DLP and take necessary steps to reduce false positives by fine tuning the rules.
• Part of server and peripheral device compliance tuning

مجال الشركة:
خدمات تكنولوجيا المعلومات
الدور الوظيفي:
تكنولوجيا المعلومات

IT Security Delivery Specialist

ديسمبر 2009 - مايو 2012

IBM India Pvt Ltd

بنغالورو، الهند

ديسمبر 2009 - مايو 2012

• Log review, Policy creation and report generation
• Ensure scheduled tasks like log collection and GEM loading occurred successfully.
• Creation of policies and configuring grouping.
• Assess the Scan report and prioritize the Non Compliance
• Create vulnerability scans in the tools like ISS, McAfee Foundstone
• Add new event sources when they come online and remove retired event sources.
• Assist other security teams to pinpoint cause and do impact analysis
• Recommends, develops, and monitors security and compliance policies by using TCIM features like policies, grouping, and special attentions alerts.
 Subject matter expert responsible for defining, implementing and assuring security policies, processes, tools that encompass: - Logical controls - Network security controls - Physical controls & Issue management - Security status checking.
 Have knowledge over several Audits performed and have experience of handling/performing Audits
 OS Servers, Application servers, Network Device Security Analysis & Management (across all Platforms). Security Assessing and identifying of Non Compliances. Ticketing these non compliances.
 Have knowledge over several Audits performed and have experience of handling/performing Audits
 Knowledge on GSD331 Customer Security Standards and ITCS104 standards IBM Standards.
 Handling Escalations.

مجال الشركة:
خدمات تكنولوجيا المعلومات
الدور الوظيفي:
تكنولوجيا المعلومات

التعليم

ECCU University

يناير 2024

يناير 2024

ماجستير، Defence And Security

الولايات المتحدة

Crescent Engineering College

أبريل 2009

أبريل 2009

بكالوريوس، Information Technology

الهند

المعدل التراكمي (نسبة مئوية): 70%

المعدل التراكمي (نسبة مئوية): 70%

70 % in B.tech IT

Crescent Engineering

يناير 2009

يناير 2009

بكالوريوس، Information Technology

الهند

Polytechnic

يناير 2005

يناير 2005

دبلوم عالي، Information Technology

الهند

Skills

Testing
Expert
Testing
Expert
IT
Expert
IT
Expert
KPI
Expert
KPI
Expert
Reporting
Expert
Reporting
Expert
Policy
Expert
Policy
Expert
ITIL
Intermediate
ITIL
Intermediate
GCIA
Expert
GCIA
Expert
CYBER SECURITY
Intermediate
CYBER SECURITY
Intermediate
LEADERSHIP
Intermediate
LEADERSHIP
Intermediate
BUSINESS CONTINUITY
Intermediate
BUSINESS CONTINUITY
Intermediate
INCIDENT RESPONSE
Intermediate
INCIDENT RESPONSE
Intermediate
DIGITAL FORENSICS
Intermediate
DIGITAL FORENSICS
Intermediate
AUDITING
Intermediate
AUDITING
Intermediate
SECURITY MANAGEMENT
Intermediate
SECURITY MANAGEMENT
Intermediate
CRISIS MANAGEMENT
Intermediate
CRISIS MANAGEMENT
Intermediate
THREAT ASSESSMENT
Intermediate
THREAT ASSESSMENT
Intermediate
RISK MITIGATION
Intermediate
RISK MITIGATION
Intermediate
CCNA
Intermediate
CCNA
Intermediate
IDS/IPS
Beginner
IDS/IPS
Beginner
Vulnerablity Assessment
Expert
Vulnerablity Assessment
Expert
SIEM
Intermediate
SIEM
Intermediate
Malware Analysis
Expert
Malware Analysis
Expert
Incident Analyst
Expert
Incident Analyst
Expert
SOC
Expert
SOC
Expert
Security Operation Center
Expert
Security Operation Center
Expert
SOC Operations
Expert
SOC Operations
Expert
Testing
Expert
Testing
Expert
IT
Expert
IT
Expert
KPI
Expert
KPI
Expert
Reporting
Expert
Reporting
Expert
Policy
Expert
Policy
Expert

اللغات

الانجليزية
متمرّس
التاميلية
متمرّس
العربية
مبتدئ
الهندية
مبتدئ

التدريب و الشهادات

الشهادات
AWS - Certified Security - Specialty
Dec 2020
GCDA - GIAC Certified Detection Analyst
Jun 2020
GCIA
Feb 2014 - Feb 2022
GCFA
Jan 2018 - Jan 2022
Symantec Certified DLP Engineer
Jun 2014
ITILv3
Apr 2010
Symantec SEP Technical Profesional
Jul 2014
CCNA
May 2010 - Dec 2016

التدريب
ArcSight ESM 6.5 Administrator and Analyst - ATP
HP
Nov 2015

الهوايات

  • CyberWar Hacking Competition & Capture the Flag
    Participated in Cyber War competition and demonstrated my Hacking Skills reached up to 6th Stage and secured 40th position among 600 participants • Appreciated by customer for Submitting Predictive Analysis report based on their previous undergone attack and prevented the expected DDos and other Exploit activities • Participated in APT detection campaign and given presentation to the team