
Muhammad Rehan
Information Security Expert
Compétences

Voir mes services


Expérience professionnelle
Manager Information Security
Banking Sector • Temps plein
Dec 2023 - Present • 2 yrs 5 mos
Managing All Cyber/ Information Security tasks like Security Operation Center, Governance, Compliance, Risk assessments and leading Vulnerability Assessment and Penetration Testing departments. • Performing Web, Mobile, Servers, Network devices, ATMs, POS, APIs Vulnerability Assessment and Penetration Testing. • Leading Offensive Security Team. • Managing IS Audits, Vendors, And Internal & External teams. • Finding Vulnerabilities and managing the reports/Trackers with details. • Managing UAE, Bahrain, Pakistan and Sri-Lanka PT activities. • Performing Risk Assessments • Performing Security Hardening of MDM devices. • Performing Red Teaming activity.
Information Security Compliance Officer & VA/PT Analyst
NRSP Microfinance Bank Pakistan • Temps plein
Dec 2021 - Jun 2023 • 1 yr 6 mos
• Worked in the Information Security Risk Management. • Performed Mobile & web applications, ATM’s, Servers (Windows & Linux), Switches, Routers, Firewalls, End Users Vulnerability Assessment. • Finding Vulnerabilities and manage the reports with details. • Created VA/PT LAB for SOC and VAPT activities. • Change and Exception requests handling through Helpdesk. • SOP’s management and development. • User’s access rights review of Applications (AD, SHF, AML, Helpdesk, ELA, Flexcube etc) and Compliance. • IS management and password envelop procedure. • Initiates and facilitates activities to foster information security awareness • Information Security policy compliance. • Performed SOC L1 Support (IBM QRadar). • Performed Threat detections, Incident management activities. • Using SIEM, Monitoring bank network and systems, detecting and analyzing security events & reporting all threats. • Managed State Bank Pakistan Information security advisories. • Coordination with internal & external audit and vendors. • Troubleshooting of NESSUS professional. • Executing the risk assessment exercises of Information/IT Systems/Infrastructure/Database and maintain IS risk register. • Participating in IT and Cyber Incident Table Top Exercises as a Player & Note Taker and maintain the Minutes and Action Plans. • Performed Secondary Servers DB Backup Tape-Exchange activities. • Security Configurations Reviews of Firewalls, Switches, Routers, AD. • Phishing Simulation and Campaigns against bank employees • Performed other tasks from assigned Information Security Manager and Head Risk Management.
40 Avis
| (37) | ||
| (0) | ||
| (0) | ||
| (2) | ||
| (1) |
Détails de la notation
- Niveau de communication avec le freelance
- Qualité de la livraison
- Valeur de la livraison
Trier par
advice_tornado

Singapour
I would say that the task have been completed, but only after revisions, which I appreciate, but still it fell below expectations. There have been a severe lack of communication while doing the work. I have had to keep checking on him and asking on the status, which I was reassured everything was...
8 jours
Durée

Gouvernance des données
Réponse du freelance

holidaefiver
Client récurrent

Thaïlande
Réponse du freelance

holidaefiver
Client récurrent

Thaïlande
Réponse du freelance

holidaefiver
Client récurrent

Thaïlande
Réponse du freelance
devlearn
Client récurrent

États-Unis
Réponse du freelance


