Rishad أشرف, IT Security Engineer

Rishad أشرف

IT Security Engineer

Dar Al Handasah

البلد
الإمارات العربية المتحدة - دبي
التعليم
ماجستير, Computer Systems Management
الخبرات
14 years, 0 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :14 years, 0 أشهر

IT Security Engineer في Dar Al Handasah
  • الإمارات العربية المتحدة
  • أشغل هذه الوظيفة منذ يونيو 2012

Serve as a primary SPOC for investigating security cases, performing root cause analysis, and offering in-depth solutions.

Monitor and review reports/logs from Antivirus Solution, EDR, Vulnerability Assessment Tools, SIEM and other sources. Potential security threats are then triaged and mitigated.

Configure and administer Antivirus solution with EDR to provide whitelisting, device control, web control, malware prevention, anomaly monitoring and real time metrics reporting.

Contribute to the development and maintenance of ISMS including information security policies, procedures and guidelines based on industry standards such as ISO 27001, ISO 22301, CIS and NIST.

Act as the primary point of contact within the organization for members of staff, regulators, and any relevant public bodies on issues related to Data Protection & Privacy, in-line with ISO 27001.

Possess broad knowledge on data protection regulations such GDPR.

Attend and support internal and external Information Systems Audit engagements.

Maintain audit tracker, conduct regular follow up with stake holders and ensure the closure of audit gaps within the agreed timelines.

Perform Business Impact Analysis within the business domain with an understanding of Confidentiality, Integrity and Availability.

Serve as SME for core IT Risk, Compliance, and Assurance with a good understanding of threats, vulnerabilities, risks and possible countermeasures.

Conduct periodic risk assessments to identify, assess and document third-party risks in-line with defined policies and procedures.

Communicate the compliance posture with the management.

Measure and ensure security baseline documents are defined, communicated, and updated covering critical IT assets.

Conduct security program assessments and build roadmaps to improve business’ security posture.
Carry out other enterprise security duties that may be assigned by management.

Technical Consultant في Sutherland Global Services - India
  • الهند - Cochin
  • ديسمبر 2011 إلى مايو 2012

Analyze, troubleshoot and resolve technical issues for voice, internet or data installation, email clients, VOIP and connection issues for one of the largest Internet Services Provider in United States.

Deliver service and support to end-users using and operating automated call distribution phone software, via remote connection or over the Internet.

Accurately process and record transactions using a computer and designated tracking software.

Trainee Engineer في Hash Solutions
  • الهند - Cochin
  • يونيو 2010 إلى نوفمبر 2011

Assisting with implementing installation projects, maintenance and fault rectifications at customer sites.

Providing first line technical and applications support to customers and distributors via email, telephone and team viewer sessions.

Occasional on-site service support and maintenance of the Company's products.

Assist in the documentation and organization of the internal systems.

الخلفية التعليمية

ماجستير, Computer Systems Management
  • في Heriot-watt University Dubai
  • نوفمبر 2018

Courses Taken : Software Engineering, Digital and Knowledge Economy, Project Management, Information Systems Methodologies, Databases and Information Systems, Computer Network Security, Big Data Management, Research Methods and Project Planning, Masters Project and Dissertation (Facial Emotion Recognition using Deep Learning)

Specialties & Skills

ISO Auditor
IT Audit
IT Security
ANTI VIRUS
COMPUTER HARDWARE
INFORMATION SYSTEMS
NETWORKING
ISO 27001
Oracle Cloud
Deep Learning
ISO 22301
Computer Vision
Google Cloud
Tensorflow
R Programming
Machine Learning
security
risk management
auditing
cyber security
security audits
it risk

حسابات مواقع التواصل الاجتماعي

الموقع الشخصي
الموقع الشخصي

لقد تم حذف الرابط بسبب انتهاكه لسياسة الموقع. يرجى التواصل مع قسم الدعم لمزيد من المعلومات.

اللغات

الانجليزية
متمرّس
العربية
مبتدئ
الهندية
متوسط
الملايام
اللغة الأم

التدريب و الشهادات

Certified Information Systems Security Professional (CISSP) (الشهادة)
تاريخ الدورة:
October 2022
CCNA (R&S) (الشهادة)
تاريخ الدورة:
June 2015
صالحة لغاية:
June 2019
Oracle Cloud Infrastructure Certified Associate (الشهادة)
تاريخ الدورة:
June 2020
صالحة لغاية:
July 2022
Google Cloud Platform : Associate Cloud Engineer (الشهادة)
تاريخ الدورة:
December 2019
صالحة لغاية:
December 2021
Microsoft Certified : Azure Fundamentals (الشهادة)
تاريخ الدورة:
September 2020
صالحة لغاية:
September 2022
ISACA Certified Information Systems Auditor (CISA) (الشهادة)
تاريخ الدورة:
January 2022
صالحة لغاية:
January 2026
Microsoft Certified : Azure Administrator (الشهادة)
تاريخ الدورة:
September 2020
صالحة لغاية:
September 2022
ISO 27001 Lead Auditor (الشهادة)
تاريخ الدورة:
February 2020