Post Job Free

Resume

Sign in

Information/ GRC Security Engineer

Location:
Karachi, Sindh, Pakistan
Posted:
October 01, 2023

Contact this candidate

Resume:

Engr. MARYAM ZAHEER

(COMPUTER ENGR.)

Rafi Banglows Malir city/15

Karachi

034*-*******, 033********

adz2ph@r.postjobfree.com

“To be employed in a challenging role with managerial and technical aspects, seek employment in an organization where high professional standards, efficiency Commitment and integrity are expected and rewarded.” WORKING EXPERIENCE

Cyber Security Specilist at EFU LIFE Insurance pvt. ltd. Currently working (Essential Duties & Responsibility)

- Conducting threat and risk analysis and analyze the business impact of new and existing systems and technologies to eliminate risk, performance, and capacity issues and implement VA and configure audits of OS, web servers, and databases and detect patterns, insecure features, and malicious activities in the infrastructure.

- Perform research, testing, evaluation, and deployment of security technology and procedures.

- Run diagnostics on any changes to data to verify any undetected breaches.

- Developing custom systems for specialized security features and procedures for software systems, networks, data centers, and hardware.

- Develop and implement information security standards, guidelines, and procedures.

- Develop firewalls to secure the network infrastructure.

- Keeping current with new intrusion methods and developing protection plans with in-depth understanding of vulnerabilities, management systems, and common security applications.

- Conducting counteractive protocols and reporting incidents and customized risk ratings for vulnerabilities based on company policies and maintain IT security controls documentation.

- Granting permissions and privileges to authorized users.

- Configuring anti-virus systems and consoles and conduct software upgrades.

- Manage system’s threats and identify and manage incidents to mitigate risks.

- Managing relationships and coordinate with clients and service providers while providing customized security assessments, implementing security policies, designing security training materials, organizing training sessions, providing technical support, and communicating security policies and procedures. Information Security Officer at ZIL LIMITED.

1st FEB 2023 – 6TH JUNE 2023

- Created Data loss/leakage prevention (DLP) policy from an IT perspective.

- Creating IS strategies, both short-term and long-range, in support of the Organization’s goals.

- Directs an ongoing, proactive risk assessment program.

- Maintaining Organization’s IS Framework and underlying policies, procedures, standards and guidelines.

- Communicates risks and recommendations to mitigate risks and ensure security.

- Identifying, introducing and implementing procedures, including checks and balances, are in place on a regular basis.

- Conduct and complete annual reviews and audits as required Internal/External.

- Assist in development, implementation, and maintenance and ensure the company’s IS policies and procedures.

- Coordinates the activities of security decisions while maintaining the CIA of Organizations information.

- Ensure vulnerabilities are managed by directing periodic vulnerability scans of servers connected to Organization networks.

- Develops information security awareness training and education programs.

- Ensuring that proper protections are in place, such as intrusion detection and prevention systems, firewalls, and effective physical safeguards.

- Ensuring a business continuity/disaster recovery.

- Evaluates security incidents and determines what response, if any, is needed.

OTHER COURSES

Computer Networks & Cloud

Computing (CCNA)

From CISCO-SSUET

Cyber Security Course

from CISCO-SWIT

IQ Security Awareness Certified

from INFOSEC

LogRhythm Security Analyst

Training – as a part of

Titanium’s Managed SOC client

enablement program.

From RAPID COMPUTE

Computer Graphics (I.T)

from Computer Universe

Institute of Computer

Graphics Textile & Web Page

Designing

English language course

from DOMINO Language Centre

SKILLS

MS Office (All versions, esp. MS

Word, MS PowerPoint and MS

Excel)

MS Excel (MS Formulae,

Report Automation,

Presentation w.r.t. Analysis)

Software Installation

Installing operating system i.e.

windows 7, 8 &

10

Basic Working i.e.

(Nessus, Nmap, CISCO

PACKETTRACER, AUTOCADE,

ANDROID STUDIO,3D MAX,

ADOBE PHOTOSHOP, ADOBE

DREAMVIEWER, ADOBE

PRO FLASH, PYTHON,

FIREBASE)

Assistant Manager – IS – GRC Analyst at National Institutional Facilitation Technologies (NiFT) Pvt Ltd. khi.

22 FEB 2022 – 31 JAN 2023

- Working with the basic setups for developing a security platform. Working with the activity of certifications:

Payment card industry’s data security standard (PCI - DSS)

ISO – 27001

PSO/PSP (state bank of Pakistan framework)

ETGRM (state bank of Pakistan framework)

- Working on security awareness programs.

- Technical research for security such as logs collection, event ID’s. etc.

- Working on risk management program and updating risk register.

- Complying with internal audit, state bank of Pakistan and other gaps/observations.Working on enhancing servers, firewalls and software’s security checklist documentation.

- Analyzing logs and report (malware).

- Developing and performing compliance hardening quarterly such as systems, software, hardware’s etc.

- Performing VA and enhancing VA program.

- Assist in analysis and developing of organizational cyber security policy programs, and guidelines for implementation.

- Assist in development and implementation of cyber security action plan. INTERNSHIP EXPERIENCE

Technical Cyber Security Internee at Technosol Pvt Ltd. khi. Worked as an intern in a 3-month training program. Internship at Pakistan Civil Aviation Authority (CAA) khi. Basic Learning in OSI Layer, TCP/IP Model, Networking, LAN/WAN, Switching, Routing, Networking Design Concept, Virtualization, Storage, also the visit of Data Center. Internship at Pakistan Meteorological Department (PMD) khi. Visit to PMD Radar, IMG Department, NSMC Earthquake Department, NMCC Department, PMD Workshop.

EDUCATION

B.E in (Computer Engineering),

Sir Syed University of Engineering and Technology — 2017-2021

F.S.C. (Pre-Engineering),

Govt. Model Girls Degree College Mirpurkhas —

2015

S.S.C (Bio-Science),

Gulistan Shah Abdul Latif Girls & Boys High School (S.M.H.S) Karachi — 2013

PROJECT

SMART MART —

ANDROID APPLICATION

This application is made to

facilitate the customers while

shopping in marts/malls by tracking

the location of the desired item in

order to save their time and update

them about any changes made.

Moreover, it will be useful for the

owners to improve their marketing

and sales by adopting different

strategies, promoting good

customer relationships.

Software Specifications:

Android Studio (4.1),

Firebase (authentication and

database) Figma (design layout),

Katlin (java),

Blender (for creating 3D model),

OpenGL (for displaying #D

models in android), Xml (design

layout app), Appium (for testing)

REFERENCE

Would be furnished upon request.



Contact this candidate