تنوير أحمد, Cybersecurity Consultant

تنوير أحمد

Cybersecurity Consultant

Sirar by STC (Flint Consulting)

البلد
المملكة العربية السعودية - الرياض
التعليم
دبلوم عالي, Cyber Security
الخبرات
20 years, 11 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :20 years, 11 أشهر

Cybersecurity Consultant في Sirar by STC (Flint Consulting)
  • المملكة العربية السعودية - الرياض
  • أشغل هذه الوظيفة منذ يونيو 2021

Steering efforts towards implementation of Cybersecurity requirements to enhance efficiency and effectiveness of cyber risk, governance, processes, and operations.

Designing, developing, implementing, and maintaining elements of Cybersecurity Governance framework based on Channels standards and best practices.

Assisting in establishing and implementing cybersecurity strategy and providing support to team members during the compliance assessment initiatives, GUARD KPIs, and measurement.

Collaborating with cross-functional teams and defining the Cybersecurity Strategy; planning & implementing to address the concerns over governance risk, regulatory requirements, and compliance.

Getting ready the evidence for NCA & GUARD Assessment.

Validating and assisting the Channels team to implement the recommended controls for open cybersecurity risks.

Work on day-to-day activities as per the requirement of the function and share knowledge to build up channels team capabilities.

Cybersecurity Consultant في Solution by STC
  • المملكة العربية السعودية - الرياض
  • يونيو 2020 إلى يونيو 2021

Identified steering efforts towards implementation of Cyber Security Management System (CSMS) to enhancing efficiency and effectiveness of cyber risk, governance, processes, and operations

Assisting in establishing Cyber Security Compliance strategy and providing support to all team members during the compliance assessment initiatives, KPIs developing and measurement

Collaborating with cross-functional teams and business leaders to provide Cybersecurity vision and define the Cybersecurity Strategy; planning & implementing to address the concerns over governance risk, regulatory requirements, and compliance.

Support in implementation of NCA Compliance across the organization; developing standards, processes, and guidelines as per requirement.

Overseen and Assist the team for NCA ECC Assessment.

Senior Information Security Consultant في Saudi Basic Industries Corporation - Sabic
  • المملكة العربية السعودية - الجبيل
  • يناير 2017 إلى مايو 2020

Identified the security risks on time, performed threat assessment, and mitigated the identified weaknesses

Spearheaded the activities related to RCA Management and steering actions for the same until closure

Directed Information Security Audits and supervised the service delivery teams

Evaluated new information feeds and threat actor activities; developed an executive report and proactive action list

Reported high severity incidents to management with a progress update and followed-up the actionable items with different teams until closure; managed dashboard preparation and enhanced existing reporting structure (daily, weekly, and monthly)

Maintained Security Compliance Framework as per policy & directives; developed control framework for health checks monitoring

Information Security Advisor في IBM INDIA PVT LTD
  • الهند - بنغالورو
  • مارس 2014 إلى ديسمبر 2016

Extended security advisory services with a focus on the regional management through effective strategic planning and project management

Collaborated with Customer Security Officers and communicated security knowledge and security activities

Recognized for leading global teams and reported KPIs to Security and Compliance Executive; proactively contributed to the IBM Regional Security Plan; directed information security audits and supervised the service delivery teams

Manager IT - Security في IREO MANAGEMENT PVT LTD.
  • الهند - دلهي
  • أبريل 2010 إلى مارس 2014

Developed and executed IT network architecture and security architecture involving activities like monitoring, compliance audits and security projects implementation

Designed process & policies as per requirement of the organization based on security standards like ISO27001

Drove Information Security and Business Continuity compliance for creation/ maintenance/ update/ review of security and BCP documentation

Coordinated with IT Team for incident resolution, maintenance of security log, access log and internet usage log

Liaised with various IREO teams and vendors to design network solution for Data Center renovation

AM IS Audit في Technologics and Controls
  • الهند
  • فبراير 2008 إلى مارس 2010
Security Consultant في Imagination InfoTech (India) Pvt. Ltd.
  • الهند
  • سبتمبر 2006 إلى ديسمبر 2007
Security Engineer في Tvisha Technologies Pvt. Ltd
  • الهند - دلهي
  • يونيو 2003 إلى أغسطس 2006

الخلفية التعليمية

دبلوم عالي, Cyber Security
  • في MIT
  • نوفمبر 2021
ماجستير, MBA Information Technology
  • في Kalinga University, Raipur Chhattisgarh, India
  • يونيو 2015
ماجستير, CYBER LAW, IT ACT
  • في ASIAN SCHOOL OF CYBER LAW
  • أبريل 2012

cyber law , It act

دبلوم, Advance Computer Diploma
  • في National Institute of Information and Technology
  • أغسطس 2001

software development, database, front end backend connectivity

بكالوريوس, Accounts
  • في Vanijaya Maha Vidalya
  • يونيو 1999

accountancy honors

Specialties & Skills

Auditing
Governance
Information Assurance
Enterprise Risk Management
Information Security Management
Information Security
Vulnerability & GAP Assessment
IT Governance / IT Audit
Risk & Compliance Management
Cross-functional Coordination
Consultation/ Advisory Services
Threat Management
DLP Management
Security Policy Implementation

اللغات

الانجليزية
متمرّس
الأوردو
متمرّس
الهندية
اللغة الأم

العضويات

ISACA
  • Member
  • October 2018

التدريب و الشهادات

Certified in Risk & Information System Controls (CRISC) (الشهادة)
تاريخ الدورة:
March 2022
صالحة لغاية:
March 2025
ISO/IEC 27001:27005 Lead Auditor (LA) (الشهادة)
تاريخ الدورة:
December 2010
ISO/IEC 27001:2013 Lead Implementer (LI) (الشهادة)
تاريخ الدورة:
July 2014
Certified Data Privacy Solution Engineer (CDPSE) (الشهادة)
تاريخ الدورة:
June 2020
Certified Information Security Manager (CISM) (الشهادة)
تاريخ الدورة:
November 2018
صالحة لغاية:
October 2023
Information Technology Infrastructure Library (ITIL Foundation@ V3) (الشهادة)
تاريخ الدورة:
June 2009
Checkpoint Certified Security Administrator NG (CCSA) (الشهادة)
تاريخ الدورة:
April 2003
Certified of Cloud Security Knowledge (CCSK) (الشهادة)
تاريخ الدورة:
August 2015
Certified Ethical Hacker (CEH) (الشهادة)
تاريخ الدورة:
May 2008
Cisco Certified Network Associate (CCNA) (الشهادة)
تاريخ الدورة:
December 2002
Certified Sarbanes-Oxley Expert (CSOE) (الشهادة)
تاريخ الدورة:
January 2010

الهوايات

  • Playing Cricket
  • Listening Music