12 years of IT risk analysis, IT Security Management & Compliance, IT security assessment, vulnerability management & pen-testing, incident response and IT Security awareness activities
Speaker and panelist in different IT Security Events (ITU, FIRST, OIC-CERT, Universities, CERT-IST Forum)
Pre-selling and IT Security services management
Member of the security team of the world summit for the information society WSIS Tunis 2005, WSIS -1 and WSIS+1
Spécialisations :Security standards and IT governance (ISO 27001, ISO 27002, ISO 27005, PCI DSS, NIST 800-53, HIPAA, ITIL, CoBIT, SANS)
Security Operation Center (SIEM, Incident Response, Vulnerability Management)
Excellent knowledge of CERT/CSIRT activities
Risk Analysis methods (MEHARI,EBIOS, Octave)
Pentesting methodologies skills (OSSTMM, OWASP)
Open Security Standards (XCCDF, OVAL, CCE, CWE, CPE, CVSS, SCAP, NIST), Business Continuity and Data Recovery Planning
Mes compétences :
Audit
CEH
CISA
CISSP
COBIT
Owasp
Pentest
RSA
RSA Envision
Sarbanes oxley
Security
SIEM
SIM
Soc