Syed Muhammad Taimoor, Senior Cybersecurity Consultant (GRC)

Syed Muhammad Taimoor

Senior Cybersecurity Consultant (GRC)

Dimension Data

Location
Saudi Arabia - Riyadh
Education
Master's degree, Information Technology
Experience
13 years, 7 Months

Share My Profile

Block User


Work Experience

Total years of experience :13 years, 7 Months

Senior Cybersecurity Consultant (GRC) at Dimension Data
  • Saudi Arabia - Riyadh
  • My current job since April 2022

Currently working as Senior Cyber Security Consultant (GRC) having more than 10 years of experience. I have worked with National and Multinational Organizations on several projects like ISO 27001:2013 certification projects, SAMA Cyber Security Framework, NCA-ECC Framework, NIST standard Assessment, Risk Assessments, and IT Security Audits.

Executive IT Security at waridtelecom
  • Pakistan - Lahore
  • My current job since March 2014

-> Development of policies and procedures & review of existing policies & procedures according to ISO 27001 standard.
-> Vulnerability Assessment of IT Machines
-> PKI (Public Key Infrastructure) Management
-> Security awareness in the organization

Information Security Consultant at Innovative solutions
  • Saudi Arabia - Riyadh
  • April 2016 to April 2022

Currently working in Innovative Solutions as an Information Security Consultant, having 8+ years of experience. I have worked with National and Multinational Organizations on several projects like ISO 27001:2013 certification projects, SAMA Cyber Security Maturity Assessment, Risk Assessments, IT Security Audit, PCIDSS Audits and physical security review.

Information Security Officer at USA based Healthcare IT company (MTBC)
  • Pakistan - Rawalpindi
  • December 2011 to March 2014

-> Organization wide Implementation of ISO 27001:2005 Standard
-> Annual Internal Audit of IT infrastructure
-> Vulnerability Assessment of IT Machines
-> Management of GFI End Point Security to enforce Access Control Policies.
-> Review firewall logs of internet usage (web logs)
-> Email logs Analysis(Exchange Server)
-> VPN and FTP logs Analysis
-> Assist compliance department to develop security policies
-> Basic level Application security testing
-> Intermediate level Penetration testing of Internal Network
-> Management of Surveillance system
-> Any duty assigned by management

Junior Information Security Analyst at National institute of Management & Information Security
  • Pakistan - Islamabad
  • October 2010 to November 2011

-> Undertaking acceptance tests, installation, programme loading, commissioning of computer and data communications equipment.
-> Participating in demonstrating the use of computer equipment to staff, assisting in the maintenance of computer equipment.
-> Technical support, development and management of communication services such as fixed and wireless data networks, telephone systems, and high speed access to the internet
-> Co-ordination of organization wide IT support through an IT Help Desk which assists users to make best use of the ICT environment
-> To review and revise information and communication technology policies as required over time

Education

Master's degree, Information Technology
  • at University Of Arid Agriculture
  • August 2010

Master of Information Technology Principal subjects: Higher level Programming Languages (C#, Java, C++), Networking, Network Security, Operating System, System Administration, Databases, Management

Bachelor's degree, Commerce
  • at Punjab College of Commerce
  • August 2007

Bachelor of Commerce in 2007. Major Subjects were: Financial and advances accounting, Audit, Human Resource, Tax, Economics, Management, Mathematics

High school or equivalent, Pre-engineering
  • at Sirsyed science college
  • August 2005

(HSSC) Higher school secondary certificate in 2005 with major in Pre-Engineering. Major Subjects were: Mathematics, Physics, Chemistry

Diploma, Science
  • at Mannar Public School
  • April 2003

(SSC) Secondary school certificate in 2003. Major subjects were: Mathematics, Physics, Biology, Chemistry

Specialties & Skills

Databases
System Administration
Windows Network Administration
Linux Server
Vulnerability Scanning
ASP.NET
EXCHANGE
FIREWALL
INFORMATION SECURITY
RISK ANALYSIS
SECURITY
SECURITY POLICIES

Languages

English
Expert
Urdu
Expert

Training and Certifications

Certified Information Security Manager (CISM) (Certificate)
Date Attended:
March 2022
Valid Until:
January 2026
Certified Information System Security Professional (CISSP) (Certificate)
Date Attended:
December 2022
Valid Until:
November 2025
Payment card industry professional (PCIP) (Certificate)
Date Attended:
August 2018
Valid Until:
December 2021
Qualified Security Assessor (QSA) (Certificate)
Date Attended:
August 2018
Valid Until:
August 2022
ISO 27001 :2013 Lead Auditor (Certificate)
Date Attended:
April 2016
ISO/IEC 27001:2013 Information Security Management Systems: Lead Implementer (Certificate)
Date Attended:
October 2016

Hobbies

  • Playing Cricket
    Won a University tournament in 2009