r
rehan703

Muhammad Rehan

@rehan703
4.7(40)

Information Security Expert

Pakistan
English
About me
I am a Certified Penetration Tester & GRC Expert with 5+ years of experience in information/cyber security, specializing in the security of web/mobile applications, APIs, endpoints, network infrastructures and Servers as well as security reviews and risk assessments. My background includes leading VA/PT for highly regulated financial institutions, where I developed comprehensive security capabilities from the ground up. In my role as Penetration Tester / VAPT Unit Lead, I have successfully conducted 5000+ penetration tests. I help businesses protect their digital assets from cyber threats.... Read more

Skills

r
rehan703
Muhammad Rehan
Offline • 
Average response time: 5 hours

See my services

Security
I will perform vulnerability assessment and penetration testing
5.0(20)
Data Governance & Protection
I will perform cybersecurity governance, risk, and compliance tasks
4.7(14)

Work experience

Manager Information Security

Banking Sector • Full-time

Dec 2023 - Present2 yrs 5 mos

Managing All Cyber/ Information Security tasks like Security Operation Center, Governance, Compliance, Risk assessments and leading Vulnerability Assessment and Penetration Testing departments. • Performing Web, Mobile, Servers, Network devices, ATMs, POS, APIs Vulnerability Assessment and Penetration Testing. • Leading Offensive Security Team. • Managing IS Audits, Vendors, And Internal & External teams. • Finding Vulnerabilities and managing the reports/Trackers with details. • Managing UAE, Bahrain, Pakistan and Sri-Lanka PT activities. • Performing Risk Assessments • Performing Security Hardening of MDM devices. • Performing Red Teaming activity.

Information Security Compliance Officer & VA/PT Analyst

NRSP Microfinance Bank Pakistan • Full-time

Dec 2021 - Jun 20231 yr 6 mos

• Worked in the Information Security Risk Management. • Performed Mobile & web applications, ATM’s, Servers (Windows & Linux), Switches, Routers, Firewalls, End Users Vulnerability Assessment. • Finding Vulnerabilities and manage the reports with details. • Created VA/PT LAB for SOC and VAPT activities. • Change and Exception requests handling through Helpdesk. • SOP’s management and development. • User’s access rights review of Applications (AD, SHF, AML, Helpdesk, ELA, Flexcube etc) and Compliance. • IS management and password envelop procedure. • Initiates and facilitates activities to foster information security awareness • Information Security policy compliance. • Performed SOC L1 Support (IBM QRadar). • Performed Threat detections, Incident management activities. • Using SIEM, Monitoring bank network and systems, detecting and analyzing security events & reporting all threats. • Managed State Bank Pakistan Information security advisories. • Coordination with internal & external audit and vendors. • Troubleshooting of NESSUS professional. • Executing the risk assessment exercises of Information/IT Systems/Infrastructure/Database and maintain IS risk register. • Participating in IT and Cyber Incident Table Top Exercises as a Player & Note Taker and maintain the Minutes and Action Plans. • Performed Secondary Servers DB Backup Tape-Exchange activities. • Security Configurations Reviews of Firewalls, Switches, Routers, AD. • Phishing Simulation and Campaigns against bank employees • Performed other tasks from assigned Information Security Manager and Head Risk Management.

40 Reviews
4.7

(37)
(0)
(0)
(2)
(1)
Rating Breakdown
  • Seller communication level
    4.7
  • Quality of delivery
    4.7
  • Value of delivery
    4.7
1-5 out of 40 Reviews
Sort By
Most relevant
    A

    advice_tornado

    SG

    Singapore

    2

    I would say that the task have been completed, but only after revisions, which I appreciate, but still it fell below expectations. There have been a severe lack of communication while doing the work. I have had to keep checking on him and asking on the status, which I was reassured everything was...

    Up to $50

    Price

    8 days

    Duration

    gig

    Data Governance & Protection

    R

    Seller's Response

    Helpful?
    Yes
    No
    H
    image-docs

    holidaefiver

    Repeat Client

    TH

    Thailand

    5

    Excellent support !

    Up to $50

    Price

    6 days

    Duration

    gig

    Software Testing

    Helpful?
    Yes
    No
    H
    image-docs

    holidaefiver

    Repeat Client

    TH

    Thailand

    5

    Excellent , Good support !

    Up to $50

    Price

    8 weeks

    Duration

    gig

    Security

    Helpful?
    Yes
    No
    H
    image-docs

    holidaefiver

    Repeat Client

    TH

    Thailand

    5

    Excellent ! Good support !

    Up to $50

    Price

    8 weeks

    Duration

    gig

    Security

    Helpful?
    Yes
    No
    D

    devlearn

    Repeat Client

    US

    United States

    5

    Good work and will keep working

    Up to $50

    Price

    10 days

    Duration

    gig

    Mobile App Bug Fixes

    Helpful?
    Yes
    No