Experience

Head of Technology Risk Management, Arab National Bank

September 2024 – Present

  • Lead strategic initiatives aligning with SAMA’s IT Governance and Cybersecurity frameworks and international standards such as ISO/IEC 27001 and COBIT.
  • Oversee technology risk management and non‑financial risk programmes across people, process, technology and governance.
  • Integrate advanced risk methodologies including third‑party risk management, technology risk governance frameworks and NFR assessments.
  • Drive cross‑functional collaboration and mentor a high‑performing team to address evolving risk landscapes.

Cybersecurity & Technology Advisor (Freelance)

January 2023 – Present

  • Provide advisory services on cybersecurity strategies, risk management and emerging technologies for startups, mid‑sized businesses and large corporations.
  • Help clients develop policies, procedures and solutions to protect digital assets and align with regulatory requirements.
  • Guide integration of advanced technologies to improve security and operational efficiency.

VP – Manager, Information Security Risk, Saudi National Bank

April 2021 – September 2024

  • Implemented and maintained information security risk management and governance methodologies.
  • Conducted comprehensive assessments to identify threats to confidentiality, integrity and availability.
  • Developed security policies and ensured compliance with internal and external regulations.
  • Provided strategic leadership to align information security initiatives with business objectives.

Information Security Risk Senior Officer, National Commercial Bank

April 2020 – April 2021

  • Oversaw strategic implementation and continuous improvement of information security risk management and governance.
  • Conducted risk assessments and managed identified risks to safeguard organizational assets.
  • Developed and enforced security policies, ensuring organizational compliance.

Information Technology Manager, Dabbagh Group

November 2018 – April 2020

  • Led technology operations, infrastructure and applications across diverse business units.
  • Devised IT policies and systems supporting strategies set by management.
  • Analyzed departmental requirements, identified upgrades and built relationships with vendors.
  • Managed IT staff, budgets and ensured data and network security.

Network & Security Manager, United Matbouli Group

July 2014 – November 2018

  • Headed network and security departments for five diverse companies, ensuring operational documents were up to date.
  • Designed and implemented VPNs, IP addressing revamp and WAN link migrations to reduce costs and improve performance.
  • Participated in data‑centre migration, virtualization and Office 365 migration.
  • Led security projects covering endpoints, internet and data centre firewalls, and managed Cisco voice projects.

Project Manager – Network, Al Azizia Panda United Co.

December 2011 – June 2014

  • Managed incident management department and analysed incidents and escalation calls.
  • Led WAN link migration across more than 150 locations, increasing bandwidth and reducing costs.
  • Managed networks, routers and switches; participated in data‑centre virtualization and network design for new headquarters.
  • Developed policies, procedures and yearly projects and budgets.

Engineer, Wipro Arabia Ltd.

June 2008 – December 2011

  • Built IT infrastructure and services for Saudi Airlines’ Tamkeen project.
  • Managed Cisco routers and switches across the kingdom, ensuring reliable network performance.
  • Oversaw north and south terminal networks and migrated infrastructure to new Cisco platforms.

Education & Certifications

Professional Certificate in Cybersecurity, MIT xPRO

August 2022

Bachelor’s in Business Administration, King Faisal University

June 2014 – December 2019

Associate Degree in Computer & IT, King Abdulaziz University

June 2005 – June 2008

Certifications

  • SANS Security Leadership Essentials for Managers (Oct 2022)
  • SANS Implementing and Auditing the Critical Security Controls (Jan 2021)
  • PMP, Project Champions Academy (Mar 2019)
  • CISM, The Knowledge Academy (Jan 2016)
  • COBIT 5, APMG International (Aug 2015)
  • ITIL Foundation, ITpreneurs (Feb 2014)