Waquar Bukhari   CISSP  -  PMP  -  CISA  -  ISMS  -  MS-IT, Specialist Auditor (Information Security Management System)

Waquar Bukhari CISSP - PMP - CISA - ISMS - MS-IT

Specialist Auditor (Information Security Management System)

DEWA (Dubai Electricity and Water Authority)

Lieu
Émirats Arabes Unis - Dubaï
Éducation
Master, Master of Science – Information Technology (MSc-IT)
Expérience
25 years, 6 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :25 years, 6 Mois

Specialist Auditor (Information Security Management System) à DEWA (Dubai Electricity and Water Authority)
  • Émirats Arabes Unis - Dubaï
  • mars 2017 à juin 2020

Performed as the Specialist Auditor for Information Security under the ISO-27001 and other IT and Cyber Security Frameworks. Conducted hands-on testing to explore the hidden Vulnerabilities and Threats within applications, operating systems, network, procedures etc.

The audits cover a large area, including Implementation & Effectiveness of IT Services, IT Controls, ISO 22301 - Business Continuity System, IT Project Management, Configuration and Management of Firewall and Advance Threat Management Systems, Physical Access Controls, Patch Management Systems, Encryption of Data on Transit and Data at Rest, Centralized Log Analyzer (SIEM), MS Exchange, SAP and Cloud Security, other Applications Security, Reviewing Incident Reports etc. Using the best practices and internationally recognized standards

Head of IT Projects (Freelance Projects) à WhiteLabel Projects - Dubai
  • Émirats Arabes Unis - Dubaï
  • janvier 2016 à décembre 2016

• Worked as a freelance IT Consultant, for various clients on Agile Methodology IT projects, including;

 Selection and Implementation of mid-size-ERP. Assessment of Information and Network Security
 Website development, eMarketing Campaigns, YouTube & Facebook Accounts management, Email Campaigns, Infrastructure Designing, Compiling IT Budget, Training for PMP Students etc.

Head of IT Dept. à Burjeel and Medeor Hospitals Dubai
  • Émirats Arabes Unis - Dubaï
  • avril 2015 à novembre 2015

• Implementation of SAP R3, with IS-H module for the Hospitals.
• Infrastructure Planning, Projects Management, I.T Business Analysis, Change Management Process.
• Creation and Implementation of IT Policy to establish Governance at all levels.
• Introduction of Policies, Standards, Processes, Procedures, Technology, Tools and Techniques for supporting Continuous Improvement Activities.
• Planning and implementing Channels of Communications and Continuous Training for staff.
• Selection and Supervision of outsourced Centralized IT Data Center.
• Maintenance of Enterprise level Hospital Information System (HIS), with Centralized Hosting and Multi-tenant structure and Implementation of standards like ICD, CPT, DrugCodes, HCPCS, HL7 etc.
• Testing and Maintenance of IT Disaster Recovery Plan.

Head of Group IT Dept. (AGM - IT) à International Modern Hospital
  • Émirats Arabes Unis - Dubaï
  • novembre 2013 à mars 2015

• Implementation of global Standards in the Processes and Procedures to meet the Govt. Health Authority requirements and to standardize the practices.
• Implementing Continuous Improvements in Policies, Technology, Tools and Techniques.
• Centrally Hosted, Email Server Implementation
• Preparation and presentation of Annual IT Budget.
• Analysis of the Core Business Applications like Finance, HR, Procurement etc, at the Group Level.
• Enhancing the Hospital Information System (HIS), and Implementation of standards like ICD, CPT, DrugCodes, HCPCS, HL7 etc.
• Development of IT Disaster Recovery Plan.

Group IT Head (AGM - IT) à DM Healthcare, LLC.
  • Émirats Arabes Unis - Dubaï
  • novembre 2010 à octobre 2013

• IS Portfolio Management, Infrastructure Planning, Projects Management, I.T Business Analysis, Change Management Process.
• Group Leader for Information Security Management System (ISMS) project and overseeing the implementation on more than 35 sites.
• Creation and Implementation of Group IT Policy to establish Governance at the Enterprise level.
• Introduction of Policies, Standards, Processes, Procedures, Technology, Tools and Techniques for supporting Continuous Improvement Activities.
• Planning and implementing Channels of Communications and Continuous Training for staff.
• Preparation and presentation of Annual IT Budget and a complete IT Roadmap with “Vision 2017” at the Enterprise level.
• Selection and Supervision of outsourced Centralized IT Data Center.
• Introducing the Core Business Applications like Finance, HR, Procurement etc, at the Enterprise Level, maintaining Service Level Agreements (SLAs) for each.
• Selection of Enterprise level Hospital Information System (HIS), with Centralized Hosting and Multi-tenant structure and Implementation of standards like ICD, CPT, DrugCodes, HCPCS, HL7 etc.
• Development of IT Disaster Recovery Plan.
• Optimization of Business Processes for the entire Group.
• Restructuring IT Teams, for Deployment and Maintenance of IT Projects in UAE, India, Oman & KSA.
• Implementation of Centralized Pathological Lab Information System (LIS).
• Implementation of Centralized Tele-Radiology, (Distributed PACS for 14 Clinics and 3 Hospitals).
• Setting up a small Call Centre with 15 agents.

Sr. IT Manager à Medcare Hospital
  • Émirats Arabes Unis - Dubaï
  • mars 2007 à novembre 2010

• Chairman, Health Information Management Committee.
• Implementation of IT Governance and Business Service Management to meet Project Delivery Objectives.
• Requirement Detailing of RFPs for Business ERP procurement.
• Selection and Customization of Hospital Information System (HIS / HIMS).
• Effective implementation of Change Management System and Errors Tracking System.
• Scanning and Digitizing the old paper records, and Integration with Hospital ERP.
• Development & Implementation of Errors Tracking System for HIS Software.
• Deployment of Image Archiving & Communication Systems (for Radiology - PACS).
• Continuous Training of staff on Healthcare ERP, including HIS, HRMS, Finance, PACS, LIMS etc.
• Introducing various IT Policies, Standards, Processes, Procedures, Technology, Tools And Techniques.
• Managing and Developing, MIS Reporting for JCIA and Operational purposes.
• Planning & Implementation of IS Management and IT Infrastructure.
• Member of Committee for IT Budgeting, Hardware & Software Procurement with agreed Financial guidelines.
• Management of various Service Level Agreements (SLAs) with external vendors.
• Development & successful implementation of IT Disaster Recovery Plan.

Project Manager à Perheal Pvt. Ltd
  • Pakistan - Karachi
  • septembre 2003 à janvier 2007

Worked as Project Manager for comprehensive network of solutions comprising of vast range of software products and services designed to meet modern healthcare organizations information needs focusing on:

• Medical Transcription Services
• Clinical Informatics Solution
• Dictation & Transcription Services
• Support Services and Service Level Agreements
• E-Marketing Solutions

Here I emphasized on the Team Management parallel to team building activities that includes recruitment of top talent for the organization. Being a customer focused company for Healthcare I have been monitoring strict security policies implementation along with quality control of the software solution to prevent data leakage.

Also responsible for companywide IT backup strategies development along-with continued customer support for 24x7x365 availability.

Asst. Professor à Hamdard University
  • Pakistan - Karachi
  • septembre 2003 à décembre 2006

Worked on: Taught various IT related courses, like; Web Engineering, E-commerce, Visual Basic Programming, Object Oriented Programming etc. Performed as Internal Advisor to many student-groups for their Final Projects

Team Leader à IWAYS Pvt. Ltd.
  • Pakistan - Karachi
  • octobre 2000 à septembre 2003

Team Management Task Prioritization Client Support
Client Co-ordination Coding Development Software Deployment
Team Evaluations System Design Software Testing

Database Programmer à Social Marketing Pakistan
  • Pakistan - Karachi
  • mars 1998 à octobre 2000

Supervisor's Requirements Data Validation Database Programming
Report Designing Database Designing Website Development

Network Administrator, Instructor à InfoTechs Pvt. Ltd.
  • Pakistan - Karachi
  • août 1994 à janvier 1998

Training Network Installation Backup Routines
Students Evaluations Network Security Policies Network Troubleshooting

Éducation

Master, Master of Science – Information Technology (MSc-IT)
  • à Hamdard University Pakistan
  • mars 2001
Diplôme, Diploma in Software Engineering
  • à PETROMAN Institute of Computer Science
  • juillet 1994

Diploma in Software Engineering

Specialties & Skills

IT Audit
IT Management
Healthcare IT
Information Security
Project Management
Project Management
Web Application Development
Hardware Procurement
Establish Policies and Guidelines
Team Management
Network and software Tools
Service Level Agreement
Technology & Infrastructure Management
Risk Assessment
IS Audit
Information Security
IT Audit
Cyber Security

Profils Sociaux

Site Web Personnel
Site Web Personnel

Le lien a été supprimé pour non-respect des conditions d'utilisation. Veuillez contacter l’équipe d'assistance pour plus d'informations.

Langues

Anglais
Expert
Urdu
Expert

Adhésions

PMI (Project Management Institute)
  • Member
  • April 2010
ISACA
  • Member
  • June 2005

Formation et Diplômes

Certified Information System Auditor (CISA) (Certificat)
Certified Lead Auditor ISO 45001 (Certificat)
Certified ISMS - ISO 27001 Lead Implementer (Certificat)
COSO Internal Conrrols Certified (Certificat)
Certified ISO 38500 - IT Corp Governance Manager (Certificat)
Project Management Professional (PMP) (Certificat)
CISSP - Certified Info System Security Professional (Certificat)

Loisirs

  • Exploring Software
    It gives an edge to know the solution for any popping requirement