CV in PDF here
Career Summary: I Started my career working as a Software programmer in 1997 , during my under graduate education i inlvolved in development for Software solution based on Cobol, FoxPro, C++ and Visual C for SME. Later on 2002-2003 i achieved International certifications from SUN Microsystems and IBM Corporation which were focused on JAVA, XML, UML and J2EE. Thereafter i was involved in MNC to develop enterprise applications. For last three years i have been working in the area of IT and Communication Security. Below is the brief summary of some of my academics and professional achievements. Career Objective:The endeavor in a result-oriented organization that seeks an ambitious and career conscious person, where acquired skills and education will be utilized toward continued growth and advancement. Area of Interest: Information and Communication security engineer -.
Soft Skills: Team player: Performed collaboratively with international SCRUM team within EU and cross Atlantic organizations. Collaborative skills: Enabled management, planning, and organizational skills to recognize problems and execute IT security solutions that streamline operations and achieve business objectives. Corporate skills: Not only understand ethical hacking and penetration testing, but knows how security is applied in the business and government, such as legislation and industrial domains. Communication skills: Expressed research and recommendations in an articulate, clear, concise, and effective manner in English and Swedish Network Security ISS (Siteprotector), BlueCoat Proxy, Snort, VPN, IPSEC,
Firewall, HoneyPot, TarPit, Kerberos, SNMP, VOIP, Nessus, SARA, TLS, SSL RADUIS, Reverse Proxy. | Hardening Operation Systems Linux (Fedora, Gentoo, Debian, SUSE, uBuntu). Windows (XP, 2000 pro, Advanced Server 2000, 2003) | Wireless/Mobile WLAN 802.11x (WPA, WEP, RSN), CDMA 3G, GSM Security Architecture, RFID, J2ME Ad-Hoc Networks, Bluetooth Wireless Sensors. | Email Security/Agents Secured Sendmail, PostFix QMail, Microsoft Exchange PGP, S-MIME, Self learning anti-spammers, anti-viruses. | Corporate Security/Risk Management COBIT, OCTAVE, ITIL, NIST Risk management Framework SOX(404), ISO 17799, BASEL II | E-Commerce Security Smart Cards, PCI SET(secure electronic transaction), Digital signatures, PKI, SSO J2EE, Web services Security | Database Security/Servers MySQL, Postgre, Derby MS SQL Server, ORACLE Hypersonic SQL eXist | Open Distributed Systems Globus Toolkit, Unicore, gLite Grid Security Infrastructure. Secure Software Development Java (6 yrs) .Net (1yr) PHP (2yrs) Common Criteria, Static Code Analysis, Penetration testing. |
Education and Professional development: ACADEMIC DEGREES- courses detail here • Master of Science in Information and Communication Systems Security. Department of computer and system sciences, KTH (Royal Institute of Technology), SWEDEN. Completed 2007. • Master of Computer Science in Software Engineering (Gold Medalist) SZABIST* , PAKISTAN Pass Out: July-04 GPA: 3.8/4.0 (* Shaheed Zulfiqar Ali Bhutto Institute of Science and Technology) INTERNATIONAL CERTIFICATIONS• CISA (Certified Information Systems Auditor) exam cleared. (ISACA - Sweden Chapter-Information Systems Auditor Control Association) • IBM Certified XML Solution Developers (IBM Corp USA). • IBM Object Oriented Analysis & Design Using UML (IBM Corp USA). • IBM Enterprise Connectivity with J2EE (IBM Corp USA). • SUN Certified Java Programmer (SUN Microsystems Inc USA). Career History: | Self employed as a security engineer with Vigiltek and as a Security officer for EGEE iII. (15th July 08-Current) |
Task: Self employed as IT Security Engineer with Vigiltek and security officer for EGEE III. Here i am working on the following areas:
- IT Security Risk Management
- Application security
- System development , Software security
- Forensics and Penetration testing
- Managing the securtiy and operation of high end clusters
| H&M Hennes & Mauritz AB Sweden (March 08-15th July 08) | Task: Working as IT Security Engineer within the field of IT Security. Here i am working on the following areas:
- IT Security Risk Management
- IS Audit and Rules
- Incident Handling
- ePO McAfee
- New Core Network design of Data center with CISCO.
- Network Security
- Blue Coat proxy
- ISS (Site protector)
- etc ...
| Center of Parallel Computing (System developer – Grid Security) – KTH Stockholm, SWEDEN (March 07-March 08) | Task: Working with PDC in the area of distributed systems security and developed a system for OMII Europe project. In this work I am providing my services mainly within areas of IT security and development of components for grid computing.
| TranaDirect AB (System Architect) – Stockholm, SWEDEN | Task: Architected the Enterprise class J2EE application for Health profile management domain, Here i used all of my core Software engineering and IT Security skills to maintain the stream of secure coding and engineering best practices. I have also managed the SCRUM team of around six developers . | Catalysis Consulting AB (Software Security Engineer) – Stockholm, SWEDEN |
Task: Architected the J2EE based enterprise application based on Security development lifecycle and performed Information systems auditing for trusted information system consists on Fedora, MySQL and Java web server and is the backbone of catalysis consulting. Implemented test data procedures, proposed and implemented the secure architecture for Linux based virtual private server.
| ETradeit AB, Tranadirekt AB (Security Consultant) – Stockholm, SWEDEN | Task: Managed eCommerce servers for Tranadirekt AB and ETradeiT AB along with administrating and maintaining security of their domain and email servers.
| FOI – Swedish Defense Research Agency (Research) – Stockholm, SWEDEN | Task: FOI is Swedish Defense Research Agency and operate as the military organization of Sweden. I worked as the researcher of specializing in Information Security with in distributed and parallel computing and developed authorization engine for their deployed project.
| TRAKKER Direct (Senior Software Architect) – Karachi, PAKISTAN | Task: Developed a Information Management System which is a distributed system for managing complex domain of General Insurance, as system was designed in layers front end (JSP) and backend servers (J2EE) this system manage modules of Policy Management, Claim Handling to Financial Analysis allowing Role based access control security mechanism as followed in legacy Insurance Domain.
| AKQS (IT Manager) – Karachi, Pakistan | Task: Controlled and administered nodes consist on Linux and Windows servers. Administered virtual private server with numerous server appliances. Implemented corporate and enterprise policies for governing according to COBIT guidelines.
| BadarSoft Consulting (Software Developer) | Task: Health Care Management System based HL7.HL7 is a framework for health care industry we developed the Health care Management System for local hospital, the reason for using Hl7 is to incorporate standardized way of integrating between heterogeneous health care centers. We designed the over all architecture of the application, Client/Jsp were written using Struts which communicates to the Front-Controller
References:(Due to privacy i cannot post the email and contact addresses, please ask me if you need.) Academics: - Asst Prof. Vladimir Vlassov (KTH)
- Prof. Rassul Ayani (KTH)
- Marianela Garcia Lozano (FOI)
- Dan Nordviqst (FOI) security division Linkoping
- Prof. Sead Muftic KTH
- Prof. Louis Yongstorm KTH
Busines/Professional: - Roland Brandhild (H&M) Infra Security Division
- Fredrik Hedman PDC-KTH
- Dani Ada – Project Manager Catalysis Consulting
- Richard Gabler – CEO Catalysis Consulting
- Maria Westerlind – CEO Tranadirekt AB
- iristina Westerlind – CEO Etradeit AB
- Faisal Mansori – Secretary – AKQS
|