Rima Kobrosly , Senior IT Audit Officer CISA Certified

Rima Kobrosly

Senior IT Audit Officer CISA Certified

First National Bank

Location
Lebanon - Beirut
Education
Bachelor's degree, ITC Information Technology & Computing
Experience
16 years, 3 Months

Share My Profile

Block User


Work Experience

Total years of experience :16 years, 3 Months

Senior IT Audit Officer CISA Certified at First National Bank
  • Lebanon - Beirut
  • My current job since September 2018

- Examine internal IT controls, evaluate the design and operational effectiveness, determine exposure to risk and develop remediation strategies.
- Respond to all system and/or network security breaches.
- Plan, implement, monitor and upgrade security measures for the protection of the organization’s data, systems and networks.
- Participate in the change management process.
- Conduct efficient and effective IT audit procedures.
- Perform regular audit testing and provide recommendations.
- Review, evaluate and test application controls.
- Provide recommendations and guidance on identified security and control risks.
- Develop a strong understanding of business and system processes.
- Determining internal audit scope and developing annual plans.
- Perform and control the full audit cycle including risk management and control management over operations’ effectiveness, financial reliability and compliance with all applicable directives and regulations.
- Prepare the IT audit engagement plan and IT audit work program.
- Determine internal audit scope and develop annual plans.
- Obtain, analyse and evaluate accounting documentation, previous reports, data, flowcharts etc.
- Prepare and present reports that reflect audit’s results and document process
- Act as an objective source of independent advice to ensure validity, legality and goal achievement.
- Maintain open communication with management and audit committee.
- Conduct follow up audits to monitor management’s interventions.
- Engage to continuous knowledge development regarding sector’s rules, regulations, best practices, tools, techniques and performance standards.
- Manage ACL (Audit Command Language) and TeamMate Audit Management software for the Internal Audit Department.

Social media Marketing at freelance
  • Lebanon - Beirut
  • My current job since June 2011

- SSM (Facebook- twitter -YouTube …) and SEO (google analytics) plus online campaigns and ads (Facebook ad and google AdSense) for the company and for another clients like Unesco and others... (http://www.hawer.org/)

Technical Organization & Methods Analyst at First National Bank
  • Lebanon - Beirut
  • June 2016 to August 2018

- Develop and Maintain policies and procedures Manuals for the IT and the IT Security departments based on ITIL and ISO 27001-27002.
- Gather and maintain knowledge of industry best practices to support business process improvement and/or re-engineering projects. Promote process improvement and optimized efficiency.
- Elicit requirements using interviews, document analysis, requirements workshops, surveys, site visits, business process descriptions, use cases, scenarios, business analysis, task and workflow analysis
- Analyse business requirements and technical specifications of applications in development and evaluating current systems and structures.
- Develop test scripts and test scenarios.
- Document test results, and compile results of other testers into consolidated report for management and client staff.
- Identify process and systems gaps and determine potential improvement opportunities; and collaborate with stakeholders to design appropriate solutions.
- Suggesting process as well as organization related improvement opportunities and provide practical solutions to problems taking into consideration the limitations related to human capital and information technology and ensures compliance with Bank’s internal policy & procedures, BDL, BCCL, and Lebanese laws and regulations.
- Prepare and recommend proposals to revise methods and procedures, alter work flows, redefine job functions and resolve organizational problems.
- Assist in implementing approved recommendations, issuing revised instructions and procedure manuals, and drafting other documentation.

Technical Organization & Methods Analyst at First National Bank
  • Lebanon - Beirut
  • June 2016 to August 2018

- Develop and Maintain policies and procedures Manuals for the IT and the IT Security departments based on ITIL and ISO 27001-27002.
- Gather and maintain knowledge of industry best practices to support business process improvement and/or re-engineering projects. Promote process improvement and optimized efficiency.
- Elicit requirements using interviews, document analysis, requirements workshops, surveys, site visits, business process descriptions, use cases, scenarios, business analysis, task and workflow analysis
- Analyse business requirements and technical specifications of applications in development and evaluating current systems and structures.
- Develop test scripts and test scenarios.
- Document test results, and compile results of other testers into consolidated report for management and client staff.
- Identify process and systems gaps and determine potential improvement opportunities; and collaborate with stakeholders to design appropriate solutions.
- Suggesting process as well as organization related improvement opportunities and provide practical solutions to problems taking into consideration the limitations related to human capital and information technology and ensures compliance with Bank’s internal policy & procedures, BDL, BCCL, and Lebanese laws and regulations.
- Prepare and recommend proposals to revise methods and procedures, alter work flows, redefine job functions and resolve organizational problems.
- Assist in implementing approved recommendations, issuing revised instructions and procedure manuals, and drafting other documentation.

IT Head at IFC International Finance Company Lebanon
  • Lebanon - Beirut
  • January 2010 to May 2016

- Maintain organization's effectiveness and efficiency by defining, delivering, and supporting strategic plans for implementing information technologies.
- Directs technological research by studying organization goals, strategies, practices, and user projects.
- Complete projects by coordinating resources and timetables with user departments and data center.
- Verify application results by conducting system audits of technologies implemented.
- Preserve assets by implementing disaster recovery and back-up procedures and information security and control structures.
- Recommend information technology strategies, policies, and procedures by evaluating organization outcomes; identifying problems; evaluating trends; anticipating requirements.
- Accomplish financial objectives by forecasting requirements; preparing an annual budget; scheduling expenditures; analyzing variances; initiating corrective action.
- Maintain quality service by establishing and enforcing organization standards.
- Assist with the development and implementation of data security standards and guidelines for the protection of computer resources, data confidentiality and integrity
- Maintain backups and recovery plans.

Member in IT Security Committee at IFC-lebanon
  • Lebanon - Beirut
  • January 2013 to May 2016

Create and maintain the enterprise’s security architecture design.
Create, and maintain the enterprise’s security awareness training program.
Create and maintain the enterprise’s security documents (policies, standards, baselines, guidelines and procedures).
Create and maintain the enterprise’s Business Continuity Plan and Disaster Recovery Plan.

Administrative And IT Officer at IFC International Finance Company Lebanon
  • Lebanon - Beirut
  • January 2008 to January 2010

- Install and upgrade database server and application tools (SQL 2008, oracle 9i 10 g and 11)
- Maintaining archived data
- Perform backups and recovery plans
- Apply operating system updates, patches, and configuration changes.
- Insure that the network infrastructure is up and running.
- Install and maintain network security equipment; enforce security guidelines for access, passwords, and security levels.
- Configure Emails on Exchange server.
- Assist with the development and implementation of data security standards and guidelines for the protection of computer resources, data confidentiality and integrity; installs and maintains network security equipment; enforces security guidelines for access, passwords, and security levels.
- Direct implementation of new tools and modules for the database and assists in establishing processes for data flow within the organization.
- Oversee network infrastructure, data integrity and data security.
- Install and Maintain Virtual Machine (Hyper-V) and replication on Window server.
- Domain controller administrator, adding users, computers and setting domain policies.

Education

Bachelor's degree, ITC Information Technology & Computing
  • at AOU Arab Open University
  • October 2006

Specialties & Skills

Languages

English
Expert

Training and Certifications

programming, networking and analyzing (Training)
Training Institute:
Beirut Governmental Hospital , Beirut
Date Attended:
March 2005