Rima Kobrosly , Senior IT Audit Officer CISA Certified

Rima Kobrosly

Senior IT Audit Officer CISA Certified

First National Bank

Lieu
Liban - Beyrouth
Éducation
Baccalauréat, ITC Information Technology & Computing
Expérience
16 years, 4 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :16 years, 4 Mois

Senior IT Audit Officer CISA Certified à First National Bank
  • Liban - Beyrouth
  • Je travaille ici depuis septembre 2018

- Examine internal IT controls, evaluate the design and operational effectiveness, determine exposure to risk and develop remediation strategies.
- Respond to all system and/or network security breaches.
- Plan, implement, monitor and upgrade security measures for the protection of the organization’s data, systems and networks.
- Participate in the change management process.
- Conduct efficient and effective IT audit procedures.
- Perform regular audit testing and provide recommendations.
- Review, evaluate and test application controls.
- Provide recommendations and guidance on identified security and control risks.
- Develop a strong understanding of business and system processes.
- Determining internal audit scope and developing annual plans.
- Perform and control the full audit cycle including risk management and control management over operations’ effectiveness, financial reliability and compliance with all applicable directives and regulations.
- Prepare the IT audit engagement plan and IT audit work program.
- Determine internal audit scope and develop annual plans.
- Obtain, analyse and evaluate accounting documentation, previous reports, data, flowcharts etc.
- Prepare and present reports that reflect audit’s results and document process
- Act as an objective source of independent advice to ensure validity, legality and goal achievement.
- Maintain open communication with management and audit committee.
- Conduct follow up audits to monitor management’s interventions.
- Engage to continuous knowledge development regarding sector’s rules, regulations, best practices, tools, techniques and performance standards.
- Manage ACL (Audit Command Language) and TeamMate Audit Management software for the Internal Audit Department.

Social media Marketing à freelance
  • Liban - Beyrouth
  • Je travaille ici depuis juin 2011

- SSM (Facebook- twitter -YouTube …) and SEO (google analytics) plus online campaigns and ads (Facebook ad and google AdSense) for the company and for another clients like Unesco and others... (http://www.hawer.org/)

Technical Organization & Methods Analyst à First National Bank
  • Liban - Beyrouth
  • juin 2016 à août 2018

- Develop and Maintain policies and procedures Manuals for the IT and the IT Security departments based on ITIL and ISO 27001-27002.
- Gather and maintain knowledge of industry best practices to support business process improvement and/or re-engineering projects. Promote process improvement and optimized efficiency.
- Elicit requirements using interviews, document analysis, requirements workshops, surveys, site visits, business process descriptions, use cases, scenarios, business analysis, task and workflow analysis
- Analyse business requirements and technical specifications of applications in development and evaluating current systems and structures.
- Develop test scripts and test scenarios.
- Document test results, and compile results of other testers into consolidated report for management and client staff.
- Identify process and systems gaps and determine potential improvement opportunities; and collaborate with stakeholders to design appropriate solutions.
- Suggesting process as well as organization related improvement opportunities and provide practical solutions to problems taking into consideration the limitations related to human capital and information technology and ensures compliance with Bank’s internal policy & procedures, BDL, BCCL, and Lebanese laws and regulations.
- Prepare and recommend proposals to revise methods and procedures, alter work flows, redefine job functions and resolve organizational problems.
- Assist in implementing approved recommendations, issuing revised instructions and procedure manuals, and drafting other documentation.

Technical Organization & Methods Analyst à First National Bank
  • Liban - Beyrouth
  • juin 2016 à août 2018

- Develop and Maintain policies and procedures Manuals for the IT and the IT Security departments based on ITIL and ISO 27001-27002.
- Gather and maintain knowledge of industry best practices to support business process improvement and/or re-engineering projects. Promote process improvement and optimized efficiency.
- Elicit requirements using interviews, document analysis, requirements workshops, surveys, site visits, business process descriptions, use cases, scenarios, business analysis, task and workflow analysis
- Analyse business requirements and technical specifications of applications in development and evaluating current systems and structures.
- Develop test scripts and test scenarios.
- Document test results, and compile results of other testers into consolidated report for management and client staff.
- Identify process and systems gaps and determine potential improvement opportunities; and collaborate with stakeholders to design appropriate solutions.
- Suggesting process as well as organization related improvement opportunities and provide practical solutions to problems taking into consideration the limitations related to human capital and information technology and ensures compliance with Bank’s internal policy & procedures, BDL, BCCL, and Lebanese laws and regulations.
- Prepare and recommend proposals to revise methods and procedures, alter work flows, redefine job functions and resolve organizational problems.
- Assist in implementing approved recommendations, issuing revised instructions and procedure manuals, and drafting other documentation.

IT Head à IFC International Finance Company Lebanon
  • Liban - Beyrouth
  • janvier 2010 à mai 2016

- Maintain organization's effectiveness and efficiency by defining, delivering, and supporting strategic plans for implementing information technologies.
- Directs technological research by studying organization goals, strategies, practices, and user projects.
- Complete projects by coordinating resources and timetables with user departments and data center.
- Verify application results by conducting system audits of technologies implemented.
- Preserve assets by implementing disaster recovery and back-up procedures and information security and control structures.
- Recommend information technology strategies, policies, and procedures by evaluating organization outcomes; identifying problems; evaluating trends; anticipating requirements.
- Accomplish financial objectives by forecasting requirements; preparing an annual budget; scheduling expenditures; analyzing variances; initiating corrective action.
- Maintain quality service by establishing and enforcing organization standards.
- Assist with the development and implementation of data security standards and guidelines for the protection of computer resources, data confidentiality and integrity
- Maintain backups and recovery plans.

Member in IT Security Committee à IFC-lebanon
  • Liban - Beyrouth
  • janvier 2013 à mai 2016

Create and maintain the enterprise’s security architecture design.
Create, and maintain the enterprise’s security awareness training program.
Create and maintain the enterprise’s security documents (policies, standards, baselines, guidelines and procedures).
Create and maintain the enterprise’s Business Continuity Plan and Disaster Recovery Plan.

Administrative And IT Officer à IFC International Finance Company Lebanon
  • Liban - Beyrouth
  • janvier 2008 à janvier 2010

- Install and upgrade database server and application tools (SQL 2008, oracle 9i 10 g and 11)
- Maintaining archived data
- Perform backups and recovery plans
- Apply operating system updates, patches, and configuration changes.
- Insure that the network infrastructure is up and running.
- Install and maintain network security equipment; enforce security guidelines for access, passwords, and security levels.
- Configure Emails on Exchange server.
- Assist with the development and implementation of data security standards and guidelines for the protection of computer resources, data confidentiality and integrity; installs and maintains network security equipment; enforces security guidelines for access, passwords, and security levels.
- Direct implementation of new tools and modules for the database and assists in establishing processes for data flow within the organization.
- Oversee network infrastructure, data integrity and data security.
- Install and Maintain Virtual Machine (Hyper-V) and replication on Window server.
- Domain controller administrator, adding users, computers and setting domain policies.

Éducation

Baccalauréat, ITC Information Technology & Computing
  • à AOU Arab Open University
  • octobre 2006

Specialties & Skills

Langues

Anglais
Expert

Formation et Diplômes

programming, networking and analyzing (Formation)
Institut de formation:
Beirut Governmental Hospital , Beirut
Date de la formation:
March 2005