Thamer AlHarbi, Cyber Security Operation Manager

Thamer AlHarbi

Cyber Security Operation Manager

Tabadul

Location
Saudi Arabia - Riyadh
Education
Bachelor's degree, Information Technology
Experience
13 years, 9 Months

Share My Profile

Block User


Work Experience

Total years of experience :13 years, 9 Months

Cyber Security Operation Manager at Tabadul
  • Saudi Arabia - Riyadh
  • My current job since March 2021

• Built Cyber Defense Capabilities, including security operation, active-defines, and threats intelligence centers

• Lead and drive the achievement of Cybersecurity Department Strategy, Objective and KPI within the accountabilities of the department

• guide, mentor and develop the cybersecurity operation team as part of their continuous development

• develop cybersecurity incidents response plan, playbooks and escalation procedures

• Leading the cybersecurity function and ensuring compliant with all cybersecurity regulations such as NCA ECC, CSCC, ISO

• Leading cybersecurity incident response engagements covering incident handling and coordination, in-depth technical analysis, and investigation through to

• Describe the current security solutions architecture for enhancements or different approaches

• Provide input and suggestion in improving and enhancing Information Security policies, procedures and security controls, and prepare / update documents

• implement and maintain corporate security policies and procedures

• Conduct vulnerability assessments and oversee the findings through mitigation or closure

• Develop a regular report on work progress and outputs to be shared with relevant stakeholders in line with reporting requirements

• Work with other teams to design, develop and provide identity and access management solution

• Oversee collecting and analyzing threat intelligence from a variety of source

• Assess the effectiveness of cybersecurity controls

• Manage cybersecurity department budgeting cycle and provide input to the budgeting process

• Ensure effective utilization of cybersecurity budget and report accurately on progress made and challenges encountered

Security Operation & Incident Response Team Leader at Advanced Electronics Company AEC
  • Saudi Arabia - Riyadh
  • August 2019 to February 2021

• Lead and manage Security Operations Center for 24/7 monitoring service .
• Ensure incident identification, assessment, quantification, reporting, communication, mitigation and
monitoring.
• Ensure compliance to SLA, process adherence and process improvisation.
• Lead SOC analysts during incident response actions, advise and coordinate with leadership during
active incidents
• Revise and develop processes to strengthen the current Security Operations Framework, review
policies and highlight the challenges in managing SLAs.
• Responsible for team management, overall use of resources and initiation of corrective action
where required for Security Operations Center.
• Management, administration & maintenance of security devices within security monitoring.
• Perform threat management, threat modelling, identify threat vectors and develop use cases for
security monitoring.
• Responsible for integration of standard and non-standard logs in SIEM.
• Creation of reports, dashboards, metrics for SOC operations.
• Coordination with stakeholders, build and maintain positive working relationships with them.
• Implement standards and procedures to ensure alerts are addressed with relevancy, accuracy and in
a timely manner
• Define protocols and maturing of 'playbooks' for operational response to cyber threats

Senior Security Engineer at Confidential
  • Saudi Arabia - Riyadh
  • December 2018 to August 2019

security analysis and scanning and assessment for information security risks, threats and vulnerabilities, Monitor the Security Information and Event Management System, Define security standards & incident response, Develop security policies and procedures, Configuration and administration of security systems and tools, Malware Analysis, Antivirus, Application Control Whitelisting, Device Control, SIEM Solution, Data Loss Prevention DLP, Risk Assessment and Risk Management

Security Engineer at International Systems Engineering -ISE
  • Saudi Arabia - Riyadh
  • July 2015 to December 2018

security analysis and scanning and assessment for information security risks, threats and vulnerabilities, Monitor the Security Information and Event Management System, Define security standards & incident response, Develop security policies and procedures, Configuration and administration of security systems and tools, Malware Analysis, Antivirus, Application Control Whitelisting, Device Control, SIEM Solution, Data Loss Prevention DLP, Risk Assessment and Risk Management

Computer & Network Engineer at National Gas & industrialization company
  • Saudi Arabia - Riyadh
  • September 2010 to June 2015

Education

Bachelor's degree, Information Technology
  • at Midocean University
  • March 2025
Diploma, Computer Science
  • at Institute of Public Administration
  • June 2010

Specialties & Skills

IT Security
Security Architecture Design
Risk Management
Cyber Security
Management
Risk Assessment and Risk Management
Leading Security Operation Center Team and Incident Response Team
Implementing security Solutions
Endpoint Security
Identity and Access Management
management and leadership
Netwrok Security
Implementing and improving cyber security measures
Leading Security Project for Implementing and enhancing Security Solutions and controls
Cyber security Architecture
Strong knowledge of NCA regulation such as ,ECC , TCC , CSCC
Define and Develop cyber Security Policy and Process and procedures
Application Security

Languages

English
Expert
Arabic
Native Speaker

Training and Certifications

NCA Cyber Pro (Training)
Training Institute:
NCA
SANS SEC503: Intrusion Detection In-Depth (Training)
Training Institute:
SANS
Project Management PMP (Training)
Training Institute:
PMP
Microsoft System Center Operations Manager (Training)
Training Institute:
Neuhoraizen
Date Attended:
October 2015
Duration:
40 hours
CompTIA Security Plus (Training)
Training Institute:
Udemy
McAfee Web Gateway (Training)
Training Institute:
McAfee
Date Attended:
March 2018
PaloAlto Firewall (Training)
Training Institute:
PaloAlto
Date Attended:
December 2016
ArcSight ESM 6.5 Logger (Training)
Training Institute:
HP
Date Attended:
November 2016
ArcSight ESM 6.5 Administrator and Analyst (Training)
Training Institute:
HP
Date Attended:
October 2016
Microsoft Certified IT Professional (MCITP) (Training)
Training Institute:
Abad Traning Center
Date Attended:
November 2012
Duration:
59 hours