Summary
I have experience in leading design, development, and security implementation of cloud environments, deploying CASB, PAM, and DLP solutions, and managing penetration testing programs. My work experience includes roles as Senior Specialist Cybersecurity and IT Security Officer at Qatar Financial Center, and IT Support Analyst at Marafeq Qatar.
Experience
Senior Specialist Cybersecurity
2025-Present @ Qatar Financial Center
IT Security Officer
2020-2024 @ Qatar Financial Center
- Oversaw compliance and governance for all IT operations by enforcing policies and aligning the organization with recognized standards such as the Qatar Cybersecurity Framework and NIA.
- Managed various aspects of cybersecurity including SOC, change management, vulnerability assessments, penetration testing, incident response, and patch management.
- Evaluated and optimized on-prem and cloud architecture, incident detection, and prevention, fine-tuning security tools (Palo Alto, Tenable, Darktrace, Forcepoint, CrowdStrike, MS365 Defender, Endgame, SCCM) to minimize risk.
- Performed risk assessments, led IT audit engagements, and managed the IT business continuity plan (BCP).
- Fostered collaborative relationships with government agencies, including the National Cyber Security Agency, to acquire crucial threat intelligence & advisories, and facilitated accurate reporting.
- Led implementation of major cybersecurity technologies, managing people, process, and technology across initiatives such as CASB, PAM, DLP, USB controls, Al-based email security, Attack Surface Management (ASM), and Digital Threat Monitoring (DTM).
- Assessed all technical initiatives holistically (System & Compliance).
IT Support Analyst
2014-2020 @ Marafeq Qatar
- Security lead at the organization, managing IT and OT security.
- Implemented robust security controls following a comprehensive risk assessment, incorporating elements like business impact analysis and threat modeling.
- Introduced new tools such as cloud-based patch management, server logging using ELK stack, and Cisco firepower firewall.
- Performed incident management and vulnerability scanning.
- Spearheaded and actively contributed to pivotal projects, reporting to senior management, while fostering effective cross-functional collaboration across multiple departments.
- Formulated IT policies and procedures, ensuring compliance and enhancing security measures.
- Engineered innovative solutions including the creation of the E-Receptionist, Digital Signage, company intranet portal, project management web application, and automation scripts.
- Oversaw the management of critical systems such as Attendance system, CCTV system, Application servers, IP telephone system, Server Backup, and Procurement, ensuring seamless operation and optimal performance.