Rishad Ashraf, IT Security Engineer

Rishad Ashraf

IT Security Engineer

Dar Al Handasah

Location
United Arab Emirates - Dubai
Education
Master's degree, Computer Systems Management
Experience
13 years, 11 Months

Share My Profile

Block User


Work Experience

Total years of experience :13 years, 11 Months

IT Security Engineer at Dar Al Handasah
  • United Arab Emirates
  • My current job since June 2012

Serve as a primary SPOC for investigating security cases, performing root cause analysis, and offering in-depth solutions.

Monitor and review reports/logs from Antivirus Solution, EDR, Vulnerability Assessment Tools, SIEM and other sources. Potential security threats are then triaged and mitigated.

Configure and administer Antivirus solution with EDR to provide whitelisting, device control, web control, malware prevention, anomaly monitoring and real time metrics reporting.

Contribute to the development and maintenance of ISMS including information security policies, procedures and guidelines based on industry standards such as ISO 27001, ISO 22301, CIS and NIST.

Act as the primary point of contact within the organization for members of staff, regulators, and any relevant public bodies on issues related to Data Protection & Privacy, in-line with ISO 27001.

Possess broad knowledge on data protection regulations such GDPR.

Attend and support internal and external Information Systems Audit engagements.

Maintain audit tracker, conduct regular follow up with stake holders and ensure the closure of audit gaps within the agreed timelines.

Perform Business Impact Analysis within the business domain with an understanding of Confidentiality, Integrity and Availability.

Serve as SME for core IT Risk, Compliance, and Assurance with a good understanding of threats, vulnerabilities, risks and possible countermeasures.

Conduct periodic risk assessments to identify, assess and document third-party risks in-line with defined policies and procedures.

Communicate the compliance posture with the management.

Measure and ensure security baseline documents are defined, communicated, and updated covering critical IT assets.

Conduct security program assessments and build roadmaps to improve business’ security posture.
Carry out other enterprise security duties that may be assigned by management.

Technical Consultant at Sutherland Global Services - India
  • India - Cochin
  • December 2011 to May 2012

Analyze, troubleshoot and resolve technical issues for voice, internet or data installation, email clients, VOIP and connection issues for one of the largest Internet Services Provider in United States.

Deliver service and support to end-users using and operating automated call distribution phone software, via remote connection or over the Internet.

Accurately process and record transactions using a computer and designated tracking software.

Trainee Engineer at Hash Solutions
  • India - Cochin
  • June 2010 to November 2011

Assisting with implementing installation projects, maintenance and fault rectifications at customer sites.

Providing first line technical and applications support to customers and distributors via email, telephone and team viewer sessions.

Occasional on-site service support and maintenance of the Company's products.

Assist in the documentation and organization of the internal systems.

Education

Master's degree, Computer Systems Management
  • at Heriot-watt University Dubai
  • November 2018

Courses Taken : Software Engineering, Digital and Knowledge Economy, Project Management, Information Systems Methodologies, Databases and Information Systems, Computer Network Security, Big Data Management, Research Methods and Project Planning, Masters Project and Dissertation (Facial Emotion Recognition using Deep Learning)

Specialties & Skills

ISO Auditor
IT Audit
IT Security
ANTI VIRUS
COMPUTER HARDWARE
INFORMATION SYSTEMS
NETWORKING
ISO 27001
Oracle Cloud
Deep Learning
ISO 22301
Computer Vision
Google Cloud
Tensorflow
R Programming
Machine Learning
security
risk management
auditing
cyber security
security audits
it risk

Social Profiles

Personal Website
Personal Website

URL removed due to policy violation. Please contact support for further information.

Languages

English
Expert
Arabic
Beginner
Hindi
Intermediate
Malayalam
Native Speaker

Training and Certifications

Certified Information Systems Security Professional (CISSP) (Certificate)
Date Attended:
October 2022
CCNA (R&S) (Certificate)
Date Attended:
June 2015
Valid Until:
June 2019
Oracle Cloud Infrastructure Certified Associate (Certificate)
Date Attended:
June 2020
Valid Until:
July 2022
Google Cloud Platform : Associate Cloud Engineer (Certificate)
Date Attended:
December 2019
Valid Until:
December 2021
Microsoft Certified : Azure Fundamentals (Certificate)
Date Attended:
September 2020
Valid Until:
September 2022
ISACA Certified Information Systems Auditor (CISA) (Certificate)
Date Attended:
January 2022
Valid Until:
January 2026
Microsoft Certified : Azure Administrator (Certificate)
Date Attended:
September 2020
Valid Until:
September 2022
ISO 27001 Lead Auditor (Certificate)
Date Attended:
February 2020