Thamer AlHarbi, Cyber Security Operation Manager

Thamer AlHarbi

Cyber Security Operation Manager

Tabadul

Lieu
Arabie Saoudite - Riyad
Éducation
Baccalauréat, Information Technology
Expérience
13 years, 9 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :13 years, 9 Mois

Cyber Security Operation Manager à Tabadul
  • Arabie Saoudite - Riyad
  • Je travaille ici depuis mars 2021

• Built Cyber Defense Capabilities, including security operation, active-defines, and threats intelligence centers

• Lead and drive the achievement of Cybersecurity Department Strategy, Objective and KPI within the accountabilities of the department

• guide, mentor and develop the cybersecurity operation team as part of their continuous development

• develop cybersecurity incidents response plan, playbooks and escalation procedures

• Leading the cybersecurity function and ensuring compliant with all cybersecurity regulations such as NCA ECC, CSCC, ISO

• Leading cybersecurity incident response engagements covering incident handling and coordination, in-depth technical analysis, and investigation through to

• Describe the current security solutions architecture for enhancements or different approaches

• Provide input and suggestion in improving and enhancing Information Security policies, procedures and security controls, and prepare / update documents

• implement and maintain corporate security policies and procedures

• Conduct vulnerability assessments and oversee the findings through mitigation or closure

• Develop a regular report on work progress and outputs to be shared with relevant stakeholders in line with reporting requirements

• Work with other teams to design, develop and provide identity and access management solution

• Oversee collecting and analyzing threat intelligence from a variety of source

• Assess the effectiveness of cybersecurity controls

• Manage cybersecurity department budgeting cycle and provide input to the budgeting process

• Ensure effective utilization of cybersecurity budget and report accurately on progress made and challenges encountered

Security Operation & Incident Response Team Leader à Advanced Electronics Company AEC
  • Arabie Saoudite - Riyad
  • août 2019 à février 2021

• Lead and manage Security Operations Center for 24/7 monitoring service .
• Ensure incident identification, assessment, quantification, reporting, communication, mitigation and
monitoring.
• Ensure compliance to SLA, process adherence and process improvisation.
• Lead SOC analysts during incident response actions, advise and coordinate with leadership during
active incidents
• Revise and develop processes to strengthen the current Security Operations Framework, review
policies and highlight the challenges in managing SLAs.
• Responsible for team management, overall use of resources and initiation of corrective action
where required for Security Operations Center.
• Management, administration & maintenance of security devices within security monitoring.
• Perform threat management, threat modelling, identify threat vectors and develop use cases for
security monitoring.
• Responsible for integration of standard and non-standard logs in SIEM.
• Creation of reports, dashboards, metrics for SOC operations.
• Coordination with stakeholders, build and maintain positive working relationships with them.
• Implement standards and procedures to ensure alerts are addressed with relevancy, accuracy and in
a timely manner
• Define protocols and maturing of 'playbooks' for operational response to cyber threats

Senior Security Engineer à Confidential
  • Arabie Saoudite - Riyad
  • décembre 2018 à août 2019

security analysis and scanning and assessment for information security risks, threats and vulnerabilities, Monitor the Security Information and Event Management System, Define security standards & incident response, Develop security policies and procedures, Configuration and administration of security systems and tools, Malware Analysis, Antivirus, Application Control Whitelisting, Device Control, SIEM Solution, Data Loss Prevention DLP, Risk Assessment and Risk Management

Security Engineer à International Systems Engineering -ISE
  • Arabie Saoudite - Riyad
  • juillet 2015 à décembre 2018

security analysis and scanning and assessment for information security risks, threats and vulnerabilities, Monitor the Security Information and Event Management System, Define security standards & incident response, Develop security policies and procedures, Configuration and administration of security systems and tools, Malware Analysis, Antivirus, Application Control Whitelisting, Device Control, SIEM Solution, Data Loss Prevention DLP, Risk Assessment and Risk Management

Computer & Network Engineer à National Gas & industrialization company
  • Arabie Saoudite - Riyad
  • septembre 2010 à juin 2015

Éducation

Baccalauréat, Information Technology
  • à Midocean University
  • mars 2025
Diplôme, Computer Science
  • à Institute of Public Administration
  • juin 2010

Specialties & Skills

IT Security
Security Architecture Design
Risk Management
Cyber Security
Management
Risk Assessment and Risk Management
Leading Security Operation Center Team and Incident Response Team
Implementing security Solutions
Endpoint Security
Identity and Access Management
management and leadership
Netwrok Security
Implementing and improving cyber security measures
Leading Security Project for Implementing and enhancing Security Solutions and controls
Cyber security Architecture
Strong knowledge of NCA regulation such as ,ECC , TCC , CSCC
Define and Develop cyber Security Policy and Process and procedures
Application Security

Langues

Anglais
Expert
Arabe
Langue Maternelle

Formation et Diplômes

NCA Cyber Pro (Formation)
Institut de formation:
NCA
SANS SEC503: Intrusion Detection In-Depth (Formation)
Institut de formation:
SANS
Project Management PMP (Formation)
Institut de formation:
PMP
Microsoft System Center Operations Manager (Formation)
Institut de formation:
Neuhoraizen
Date de la formation:
October 2015
Durée:
40 heures
CompTIA Security Plus (Formation)
Institut de formation:
Udemy
McAfee Web Gateway (Formation)
Institut de formation:
McAfee
Date de la formation:
March 2018
PaloAlto Firewall (Formation)
Institut de formation:
PaloAlto
Date de la formation:
December 2016
ArcSight ESM 6.5 Logger (Formation)
Institut de formation:
HP
Date de la formation:
November 2016
ArcSight ESM 6.5 Administrator and Analyst (Formation)
Institut de formation:
HP
Date de la formation:
October 2016
Microsoft Certified IT Professional (MCITP) (Formation)
Institut de formation:
Abad Traning Center
Date de la formation:
November 2012
Durée:
59 heures