عمر صديقي, Senior Cyber SecurityConsultant

عمر صديقي

Senior Cyber SecurityConsultant

Rewterz

البلد
المملكة العربية السعودية - الرياض
التعليم
بكالوريوس, Computer Science
الخبرات
9 years, 7 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :9 years, 7 أشهر

Senior Cyber SecurityConsultant في Rewterz
  • المملكة العربية السعودية - الرياض
  • أشغل هذه الوظيفة منذ يوليو 2022

-Conducting in-depth VAPT(Vulnerability Assessment and Penetration Testing) across web,
mobile, and API platforms, thoroughly addressing OWASP Top 10 vulnerabilities, identifying
business logic flaws, and expertly leveraging application scenarios to uncover potential attack
vectors. Prioritizing risks based on business impact to ensure proactive and impactful security
measures.
-Formulating yearly security plans aligned with SAMA CSF, SAMA ITGF, NCA CSCC, NCA ECC, and
PCI-DSS, ensuring compliance and proactive risk management.
-Collaborating effectively with IT teams to prioritize and remediate vulnerabilities within
established timeframes, exceeding client expectations for responsiveness and resolution.
-Demonstrating expertise in OS-level attacks and various security assessment tools (Core
Impact, Tenable SC, Nessus, Nmap, Metasploit, Acunetix, Appscan, Splunk, QRadar, Volatility,
Hydra, BurpSuite, SonarQube, SQLMap, Fortify) to comprehensively assess and mitigate risks.
-Conducting rigorous network and server configuration reviews for all appliances, adhering to
NIST and CIS benchmarks, or crafting customized Minimum Baseline Security Standards (MBSS)
leveraging whitepapers for non-standard devices, to fortify infrastructure security and minimize
attack surfaces.
-Conducting SIEM audits, threat hunting, and source code reviews to identify integration
issues, potential threats, and codebase vulnerabilities.
-Possess strong communication and interpersonal skills, fostering collaboration and ensuring
effective communication with cross-functional teams during assessments and remediation
efforts.

Bug Bounty Hunter في Freelance
  • باكستان - كراتشي
  • أشغل هذه الوظيفة منذ يونيو 2018

To perform VAPT activities which include: Hunting for OWASP Top 10 over at Web Applications and Mobile Applications which include the use of Tools(Nmap, Metasploit, Nexpose, Nessus, Burp, Hydra, and more.)

Cyber Security Consultant في Rewterz
  • المملكة العربية السعودية - الرياض
  • يوليو 2022 إلى يونيو 2023
Cyber Security Associate في Pwc - Pakistan
  • باكستان - كراتشي
  • يونيو 2021 إلى يونيو 2022

-Perform Threat Hunting Activities to look out for Malicious Actors. Activities include: Hunting for Actors at SIEM(Splunk/Q Radar), Performing thorough Memory Analysis(Volatility), and Searching for any Indicators over at Endpoints.

-To perform VAPT activities which include: Hunting for OWASP Top 10 over at Web Applications and Mobile Applications which include the use of Tools(Nmap, Metasploit, Nexpose, Nessus, Burp, Hydra, and more.)

-Perform ATM Testing in order to look out for any potential malware over at the Critical Endpoint

-To carry out SIEM Audits in order to identify any issues in the integration of SIEM.

الخلفية التعليمية

بكالوريوس, Computer Science
  • في Bahria University
  • يونيو 2024

Activities and societies: -Former Team Lead at Bahria University Debating Society -Brand Ambassador BUMUN'18Activities and societies: -Former Team Lead at Bahria University Debating Society -Brand Ambassador BUMUN'18 Projects: -Real Estate Management System (Back End Developer) i) Based on C++ ii) A Software-based clone of Zameen.com -Inventory Management System (Back End Developer) i) Based on Java ii) Used OOP Concepts -Online Restaurant Management System(Junior Developer) i)Based on Android ii)Similar to Foodpanda -Online Recruitment System(Back End Developer) i)Based on HTML,PHP and JavaScript ii)Similar to Rozee.pk -Custom Language Compiler(Back End Developer) i)To create a Custom Language ii)Creation of Lexical, Semantic and Syntax Analyser -Facial Recognition App(Back End Developer) i)Based on Python ii)To be able to recognize a person accurately -Brain Tumor Detection using Computer Vision and Machine Learning(FYP)(Back End Developer) i)Based on Python and Flask ii)To be able to correctly recognize an Image iii)Be able to correctly segment out the tumour

الثانوية العامة أو ما يعادلها, Computer Science
  • في Al Majd International School
  • يونيو 2024

Specialties & Skills

Vulnerability Scanning
Vulnerability Assessment
Penetration Testing
Cyber Security
Penetration Testing
COLLABORATION
PENETRATION TESTING
Vulnerability Assessment
ACUNETIX
ADAPTABILITY
COMMUNICATIONS
MODIFIED-BARIUM SWALLOW STUDY (MBSS)

حسابات مواقع التواصل الاجتماعي

الموقع الشخصي
الموقع الشخصي
medium.com/@theumar9

فيس بوك
فيس بوك
facebook.com/theumar9


انستغرام
انستغرام
instagram.com/theumar9

ميديوم
ميديوم
medium.com/@theumar9

اللغات

العربية
متوسط
الانجليزية
متمرّس

التدريب و الشهادات

CISM (الشهادة)
تاريخ الدورة:
January 2024
eCTHP (الشهادة)
تاريخ الدورة:
September 2023
CEH Practical (الشهادة)
تاريخ الدورة:
March 2022
صالحة لغاية:
March 2025
eWPT (الشهادة)
تاريخ الدورة:
May 2023

الهوايات

  • Watching Movies
  • Freestyle Football