
Data Security Officer at Abu Dhabi Islamic Bank
Egypt

Data Security Officer at Abu Dhabi Islamic Bank
Egypt
A qualified technical professional with 12 years of experience, exceptional track record of driving & managing large key projects, and hands-on experience in information communications & technology industry. Seeking a senior position with decision/support role in a multinational organization to contribute to its tangible & intangible objectives.
This experience is a hybrid of troubleshooting, development, networking, systems, project management, and information security in army, development, banking, and data & telecommunication sectors demonstrated by industry certification.
My roles have included Technical Support, Systems Manager, MIS Security Manager, MIS Operations & Security Manager, MIS Manager, Systems & Security Manager, and eventually a Data Security Officer.
I have provided technical oversight to all areas within the departments for IT technologies and strategy. Identified and analyzed business drivers and their potential to adversely affect the environment. Created and developed security policies, requirements, technical instructions, architecture, and solution road maps to provide an environment that protects its assets and maintains operational effectiveness.
This resulted in saving millions of money for my employers as I have accomplished these tasks using latest open source and commercial solutions. Also I have helped most of the teams that worked with me to become certified.
• Building SOA platforms using state-of-the-art open source solutions.
• Professional experience in open source world and applications.
• Developing, planning, and supervising flexible and powerful IT/IS policies with programming skills.
• Red Hat Certified Engineer (RHCEv3) 100%.
• EC-Council's Certified Ethical Hacker (CEHv6) 96%, Security Analyst (ECSA), Hacking Forensic Investigator (CHFI) & Licensed Penetration Tester (LPT).
• StoneGate SMC Administrator & Firewall/VPN Architect.
(Public Company; Banking industry)
March 2009 — Present (5 months)
- Information Security Assessment.
- Design & review of the NBD's DC, HQ, and branches security measures.
- Pinpointing & hardening of the core banking application platform.
(Telecommunications industry)
November 2008 — January 2009 (3 months)
- Design and presentation for Atheeb's 3 data centers' security and systems in Riaydh, Jeddah, and Dammam. Based on
Secure Computing, Juniper, and Foundry boxes. Atheeb is Saudi Arabia's 3rd Data Service Provider (DSP).
- Operation and support for Saudi Telecom Company's (STC) Security Operation Centre (SOC) which is composed of
Secure Computing's CyberGuard TSP firewalls and IronMail anti spam systems.
- Operation and support for several Saudi banks' security systems which is composed of Secure Computing's SideWinder
firewalls and WebWasher URL & Content filtering, and IronMail anti spam systems.
(Privately Held; 201-500 employees; Internet industry)
May 2007 — November 2008 (1 year 7 months)
• Run and supervised a GRE tunnel between PBX & some access servers for PBX offloading.
• Implemented IPSec VPN in a site-to-site setup.
• Implemented a transparent anti spam gateway with detection accuracy nearly 98%, & anti virus scanning.
• Implemented an IM based on Jabber protocol with Yahoo, IRC, MSN, & GTalk.
• Run & secured BlackBerry push email.
• Run & supervised movement of 150+ employees to a new branch over WiFi with IEEE 802.1x PEAP authentication with layer 2 connection through a WiMax link to the HQ with another copper link for load-balancing & fail-over.
• Implemented a pass-through web content filter project which can be integrated with any web proxy sever.
• Implemented a wired and WiFi roaming for employees across the corporate using IEEE 802.1x protocol for port authentication against RADIUS using PEAP and MS' ADS.
• Secured Billing, CRM, TTS, and Orders tools running on IIS, Apache, Tomcat, GlassFish, PHP, .NET, Java, PostgreSQL, MySQL, MSSQL, and Oracle.
(Public Company; 201-500 employees; Internet industry)
March 2005 — May 2007 (2 years 3 months)
• Integrated 7 branches & 20 CSOs over SSL/TLS VPN with X.509 certificates & MS' ADS credentials.
• Secured MS' ADS, SMS, WSUS, SPS, & Exchange.
• Implemented several LAN security measures from port security to storm controls.
• Implemented RIP among 5 gateways with Multicast & MD5 digests.
• Deployed a Layer-7 P2P traffic filter.
• Designed and implemented MS Exchange 2003 with OWA using MS' NLB, and SAN storage for backend servers with firewall in between.
• Built an automatically detectable web proxy based on WPAD facility & DHCP Option 252.
• Secured Cisco's IPT, and Avaya's IPT & CCE. The system is distributed among an HQ, 7 branches, & 20 CSOs serving 250+ call centre agents & 500+ IP phones.
• Automated the IP address assignment through using DHCP classes for 100+ VLANs. Also automated setting of the voice VLAN for Avaya & Cisco's IP phones. Also implemented PXE server for RHEL installations.
• Secured Oracle Financial, Oracle HR, Tivoli management & monitoring systems.
(Public Company; 201-500 employees; Internet industry)
February 2004 — March 2005 (1 year 2 months)
• Designed and implemented a highly-available LDAP directory service with multi-master support.
• Setup of TE Data's Jordan branch. A setup for a mini ISP plus technical training.
• Implemented TE Data's broadband SOAP web services using NuSoap implementation.
• Designed and implemented TE Data & Vodafone's SkyPass authentication and billing system in PHP. The system supports 2 major access gateways; the USG & HSG models from NOMADIX & D-Link. In addition to the authentication and billing; it also featured the auto-sensing of the type of the hot-spot gateway which reduced
administration and setup headache.
• Migration of our old qmail-ldap system into a clustered one for high availability and high capacity. The cluster consisted of 6 nodes, an LDAP directory, and a MS' Windows NAS.
(Public Company; 201-500 employees; Internet industry)
January 2002 — February 2004 (2 years 2 months)
• Deployed the Egyptian Meteorological Authority's qmail-ldap server with a local LDAP directory plus training.
• Implemented Gomhuria's Thanawya A'amma results website on years 2002, 2003, and 2004 using IPVS which consisted of 2 directors serving 4 Apache web servers and 4 MySQL databases respectively with round-robin load-balancing technique.
• Deployed webmail sites of Seven7s, Telecom Egypt, and TE Data using IMP. Also hacked the LDAP module to reduce the number of LDAP queries to 1 per session which greatly reduced loads.
• Developed a prepaid billing freeRADIUS plugin in C for TE Data's SkyPass WiFi service in Cairo ICT 2004 / 2005. It aimed at accurately disconnecting customers when their time expires. The original system had no way to disconnect them and additionally allowed them to use much more time.
(Public Company; 201-500 employees; Internet industry)
April 2001 — January 2002 (10 months)
• Developed an LDAP replication using OpenLDAP which consisted of both an LDAP master and a slave.
• Developed tools in C with shell scripts' wrappers for daily system administration with staff training.
• Deployed and administered TE Data's ADSL resellers' forum using the phpBB bulletin board system.
• Developed PHP scripts for analyzing and reporting accounting information from Cistron & freeRADIUS.
• Configured various Linux servers like Sendmail, qmail, NTP, Apache, BIND, MRTG, MySQL, LDAP, and Cistron & freeRADIUS servers.
• Deployed the Free Internet Project on mid Jan 2002. Migrated the email system from Sendmail with mailbox format to qmail with maildir format with OpenLDAP integration. This saved the company hardware upgrade for at least 5 years.
(Internet industry)
August 1997 — April 2001 (3 years 9 months)
- Designed an AS/400 ODBC Arabic-translation DLL in C. Responsible for the overall product design, including the
user interface of its control panel program to change settings on the fly.
- Setup and operation of a high-speed video tracking system from Mil-Spec, USA & Hadland, UK.
- Brought focus on using computer-aided applications, trained personnel on using computers, and also developed the monthly pay-roll spreadsheet.
- Troubleshooted customers’ dialup problems on phone or on site.
- Configured LAN modems, Analogue / ISDN modems, proxy servers, and firewalls.
- Instructed C and Java languages.
B.Sc. , Electronics & Communications Engineering , 1992 — 1997