
Muhammad Rehan
Information Security Expert
Habilidades

Conheça meus serviços


Experiência profissional
Manager Information Security
Banking Sector • Período integral
Dec 2023 - Present • 2 yrs 6 mos
Managing All Cyber/ Information Security tasks like Security Operation Center, Governance, Compliance, Risk assessments and leading Vulnerability Assessment and Penetration Testing departments. • Performing Web, Mobile, Servers, Network devices, ATMs, POS, APIs Vulnerability Assessment and Penetration Testing. • Leading Offensive Security Team. • Managing IS Audits, Vendors, And Internal & External teams. • Finding Vulnerabilities and managing the reports/Trackers with details. • Managing UAE, Bahrain, Pakistan and Sri-Lanka PT activities. • Performing Risk Assessments • Performing Security Hardening of MDM devices. • Performing Red Teaming activity.
Information Security Compliance Officer & VA/PT Analyst
NRSP Microfinance Bank Pakistan • Período integral
Dec 2021 - Jun 2023 • 1 yr 6 mos
• Worked in the Information Security Risk Management. • Performed Mobile & web applications, ATM’s, Servers (Windows & Linux), Switches, Routers, Firewalls, End Users Vulnerability Assessment. • Finding Vulnerabilities and manage the reports with details. • Created VA/PT LAB for SOC and VAPT activities. • Change and Exception requests handling through Helpdesk. • SOP’s management and development. • User’s access rights review of Applications (AD, SHF, AML, Helpdesk, ELA, Flexcube etc) and Compliance. • IS management and password envelop procedure. • Initiates and facilitates activities to foster information security awareness • Information Security policy compliance. • Performed SOC L1 Support (IBM QRadar). • Performed Threat detections, Incident management activities. • Using SIEM, Monitoring bank network and systems, detecting and analyzing security events & reporting all threats. • Managed State Bank Pakistan Information security advisories. • Coordination with internal & external audit and vendors. • Troubleshooting of NESSUS professional. • Executing the risk assessment exercises of Information/IT Systems/Infrastructure/Database and maintain IS risk register. • Participating in IT and Cyber Incident Table Top Exercises as a Player & Note Taker and maintain the Minutes and Action Plans. • Performed Secondary Servers DB Backup Tape-Exchange activities. • Security Configurations Reviews of Firewalls, Switches, Routers, AD. • Phishing Simulation and Campaigns against bank employees • Performed other tasks from assigned Information Security Manager and Head Risk Management.
40 Avaliações
| (37) | ||
| (0) | ||
| (0) | ||
| (2) | ||
| (1) |
Classificação detalhada
- Nível de comunicação do freelancer
- Qualidade da entrega
- Valor da entrega
Ordenar por

holidaefiver
Cliente recorrente

Tailândia
Resposta do freelancer
advice_tornado

Singapura
I would say that the task have been completed, but only after revisions, which I appreciate, but still it fell below expectations. There have been a severe lack of communication while doing the work. I have had to keep checking on him and asking on the status, which I was reassured everything was...
Resposta do freelancer

holidaefiver
Cliente recorrente

Tailândia
Resposta do freelancer

holidaefiver
Cliente recorrente

Tailândia
Resposta do freelancer
devlearn
Cliente recorrente

Estados Unidos
Resposta do freelancer



