
Muhammad Rehan
Information Security Expert
Habilidades

Conheça meus serviços


Experiência profissional
Manager Information Security
Banking Sector • Período integral
Dec 2023 - Present • 2 yrs 5 mos
Managing All Cyber/ Information Security tasks like Security Operation Center, Governance, Compliance, Risk assessments and leading Vulnerability Assessment and Penetration Testing departments. • Performing Web, Mobile, Servers, Network devices, ATMs, POS, APIs Vulnerability Assessment and Penetration Testing. • Leading Offensive Security Team. • Managing IS Audits, Vendors, And Internal & External teams. • Finding Vulnerabilities and managing the reports/Trackers with details. • Managing UAE, Bahrain, Pakistan and Sri-Lanka PT activities. • Performing Risk Assessments • Performing Security Hardening of MDM devices. • Performing Red Teaming activity.
Information Security Compliance Officer & VA/PT Analyst
NRSP Microfinance Bank Pakistan • Período integral
Dec 2021 - Jun 2023 • 1 yr 6 mos
• Worked in the Information Security Risk Management. • Performed Mobile & web applications, ATM’s, Servers (Windows & Linux), Switches, Routers, Firewalls, End Users Vulnerability Assessment. • Finding Vulnerabilities and manage the reports with details. • Created VA/PT LAB for SOC and VAPT activities. • Change and Exception requests handling through Helpdesk. • SOP’s management and development. • User’s access rights review of Applications (AD, SHF, AML, Helpdesk, ELA, Flexcube etc) and Compliance. • IS management and password envelop procedure. • Initiates and facilitates activities to foster information security awareness • Information Security policy compliance. • Performed SOC L1 Support (IBM QRadar). • Performed Threat detections, Incident management activities. • Using SIEM, Monitoring bank network and systems, detecting and analyzing security events & reporting all threats. • Managed State Bank Pakistan Information security advisories. • Coordination with internal & external audit and vendors. • Troubleshooting of NESSUS professional. • Executing the risk assessment exercises of Information/IT Systems/Infrastructure/Database and maintain IS risk register. • Participating in IT and Cyber Incident Table Top Exercises as a Player & Note Taker and maintain the Minutes and Action Plans. • Performed Secondary Servers DB Backup Tape-Exchange activities. • Security Configurations Reviews of Firewalls, Switches, Routers, AD. • Phishing Simulation and Campaigns against bank employees • Performed other tasks from assigned Information Security Manager and Head Risk Management.
40 Avaliações
| (37) | ||
| (0) | ||
| (0) | ||
| (2) | ||
| (1) |
Classificação detalhada
- Nível de comunicação do freelancer
- Qualidade da entrega
- Valor da entrega
Ordenar por
advice_tornado

Singapura
I would say that the task have been completed, but only after revisions, which I appreciate, but still it fell below expectations. There have been a severe lack of communication while doing the work. I have had to keep checking on him and asking on the status, which I was reassured everything was...
Resposta do freelancer

holidaefiver
Cliente recorrente

Tailândia
Resposta do freelancer

holidaefiver
Cliente recorrente

Tailândia
Resposta do freelancer

holidaefiver
Cliente recorrente

Tailândia
Resposta do freelancer
devlearn
Cliente recorrente

Estados Unidos
Resposta do freelancer



