I am a Senior Information Security Specialist with more than 8 years of experience helping organizations improve security posture, compliance readiness, and risk reduction.
I have led and supported major certification initiatives, including ISO 27001, ISO 27701, and ISO 9001, and I have helped organizations maintain international compliance standards across financial, government, and consulting environments.
My background is centered on GRC, risk management, security governance, vulnerability management, and audit readiness. I have worked across multi-regional environments and have built practical governance frameworks that strengthen operational security.
In my recent roles, I have improved compliance posture by identifying gaps, implementing corrective controls, coordinating external audits, and developing enterprise security policies and governance structures.
I have also contributed to vendor risk management, security awareness programs, internal audit processes, and the implementation of ISMS, PIMS, and QMS frameworks to support sustainable compliance outcomes.
My experience includes cybersecurity consulting, threat intelligence, vulnerability analysis, and IT/IS operations, with a strong focus on reducing risk, improving visibility, and supporting regulatory and certification requirements.
I hold a Master of Information Technology and professional certifications including ISO 27001 Lead Auditor, ISO 22301 Lead Auditor, CEH, and CISM training completion.
Strengthened ISO 27001 compliance posture by identifying gaps and implementing corrective controls, improving audit readiness. Reduced third-party security risks by establishing structured vendor risk assessment and evaluation processes. Improved organizational security maturity by developing and enforcing enterprise security policies and governance frameworks. Enhanced employee security awareness through structured training programs and compliance communications. Enabled successful external audit coordination, ensuring compliance with regulatory and certification requirements.
Led organization to successful ISO 27001, ISO 27701, and ISO 9001 certifications by implementing full compliance frameworks. Improved risk visibility by implementing structured risk assessment and internal audit programs. Strengthened organizational governance by developing comprehensive ISMS, PIMS, and QMS policies. Increased compliance awareness and adoption through company-wide security and compliance training initiatives. Ensured successful external certification audits with zero major non-conformities.
Enabled clients to achieve ISO 27001 compliance by implementing security controls and governance frameworks. Improved client security posture by identifying and mitigating vulnerabilities through regular assessments and penetration testing. Enhanced cybersecurity awareness across multiple international clients through structured awareness programs. Delivered gap analysis and actionable remediation plans for organizations across Qatar, UAE, Jordan, and Egypt.
Strengthened security posture across multi-country banking infrastructure by implementing vulnerability management programs. Supported PCI-DSS and SWIFT compliance by identifying and remediating critical vulnerabilities. Improved executive risk visibility through vulnerability dashboards and security reporting. Contributed to improved compliance outcomes by aligning policies with ISO 27001 standards.
Improved endpoint security by implementing patch management and antivirus deployment strategies. Strengthened infrastructure security by securely deploying and configuring new branch systems. Improved IT governance and operational stability through secure administration of critical infrastructure systems. Supported successful IT audit and compliance initiatives.
Jobicy
617 professionals pay to access exclusive and experimental features on Jobicy
Free
USD $0/month
For people just getting started
Plus
USD $8/month
Everything in Free, and: