Summary
Overview
Work History
Education
Skills
Timeline
Generic

Muhammad Jahangir

Senior Manager Tech Compliance
Lahore

Summary

Summary:

Results-driven Senior Manager with over 15 years of experience in technical compliance, risk management, and regulatory adherence within Fin tech. Adept at leading compliance programs, developing and implementing policies and procedures, and ensuring alignment with both internal and external standards. Proven track record in enhancing operational efficiency, mitigating risks, and driving organizational compliance through strategic planning and cross-functional collaboration.

Having experience in designing & implementation of DATA Center including Routing & switching, Security, Servers, Storage for Fin tech Applications. Also an expert in designing and implementation of security solution for complex application in Data Center & AWS Cloud. Design & Implement Disaster Recovery Plan. . Detailed technical knowledge and experience of implementing PCI DSS 4.0 & ISO 27001 certification.

Management of Amazon web services IAM, EC2, S3 storage, EBS volumes, load balancer, VPC, RDS, cloud Watch.

Design and Deploy security in AWS as well in local DATA Center.

Experienced in managing, preparing and deploying releases.

Self-motivated, Detail-oriented Professional with an ability to liaison effectively.

Overview

17
17
years of professional experience
4
4
years of post-secondary education

Work History

Senior Manager Tech Compliance

Qenta Pakistan
Lahore, Punjab
07.2024 - Current
  • Develop and implement a robust technology compliance program, including policies, procedures, and standards.
  • Compliance with industry standards such as ISO 27001, PCI-DSS, SOC2.
  • Strong attention to detail and accuracy when conducting assessments,
  • Conduct regular risk assessments to identify potential compliance issues and develop mitigation strategies. •
  • Collaborate with other departments to ensure alignment with company goals. •
  • Stay updated on evolving technology, data privacy, and cybersecurity regulations.
  • Provide guidance and support to business units on compliance matters.
  • Conduct internal audits, technical reviews and compliance reviews to ensure adherence to policies and regulations.
  • Scheduling and managing frequency-based management reviews for ISO27001, PCI-DSS and SOC2
  • Manage and respond to regulatory inquiries and audits.
  • Collaborate with legal and IT teams to address compliance challenges.
  • Develop and deliver compliance training programs to employees.
  • Monitor industry best practices and emerging trends in technology compliance.
  • Lead incident response and remediation efforts related to compliance breaches.
  • Build and maintain strong relationships with internal and external stakeholders.
  • Supporting audits related to security conducted by clients/customers.
  • Stay current on IT security trends and news.
  • Established strong relationships with clients and stakeholders, ensuring long-term partnerships and repeat business.
  • Implemented and developed operational standards, policies and procedures.
  • Provided strong leadership to enhance team productivity and morale.

Senior Manager Devops

Qenta Pakistan Limited
04.2019 - 06.2024
  • Develop and maintain DevOps roadmap that defines and communicates strategic direction for DevOps in support of business strategies
  • Ensure DevOps teams are adequately managing of high and critical priority incidents in production
  • Planning mechanism and outlining necessary steps to achieve and retain PCI-DSS v3.2
  • Planning mechanism and outlining necessary steps to achieve and retain ISO 27001 compliance
  • Designing Infrastructure to be Highly Available, Secure, Fault Tolerant, Scalable, and Cost-Effective for complex application
  • Designing, Configuring and maintaining complex Routed LAN/WAN (Cisco 2950, ASA5525), TP load balancer, Servers & Dell storage, Wireless Access point Management through WLC
  • Planning and implementing Centralized logging for monitoring services including AWS, Servers, Fortinet Firewall with the help of AWS cloud watch & Event log Analyzer
  • Design & Implement Security solution for complex application with Next Generation Fortinet Firewall including Network Segregation with DMZ, Traffic Policies, Web filtering, Application Filtering, IPS/IDS as well as the constituent components to prevent and mitigate Cybersecurity threats
  • Managing PFsense firewall & Untangle Firewall in Production Environment
  • Managing PTCL, Nayatel Cloud & Hetzner Cloud
  • Provision, installation and configuration of windows 2016/2019 servers, Linux/Red Hat Enterprise Linux
  • Design MFA (Multifactor authentication) and FIM (File integrity monitoring) solutions for infrastructure
  • Identifying possible vulnerabilities in design of Infrastructure and take necessary steps to mitigate them
  • Optimizing end-user experience based on metrics gathered from monitoring mechanisms
  • Overseeing and observing any Cybersecurity incident occurred and draft plan on successful mitigation and relevant follow-up with sources to mitigate future identical incidents
  • Overseeing and finalizing Risk Assessment process, Planning Risk Mitigation policies/controls and finalizing Risk Acceptance
  • Responsible to keep & track Infrastructure Documents including Network Diagrams.

Principal Network Engineer

Digital commerce & Payment Limited
05.2016 - 03.2019
  • Designing & implementing of Networks /systems solution according to application requirement including IP addressing scheme, Routing, Switching, and Security
  • Configure routing, switching and security according to design & requirement
  • Design & implement security through Cisco Firewall ASA 5525 including DMZ creation according to system application requirement, Inter VLAN routing, IPSEC VPN, IPS Source fire, VLAN, and ACLS
  • Maintain disaster recovery procedures and contingency plans during system failures
  • Respond promptly during outages and recommend solutions for performance issues
  • Perform root cause analysis of network issues and recommend corrective actions
  • Design & Implement Remote Access VPN (Cisco any connect) on Cisco ASA 5525 to access different servers by different users
  • Design & Implement IPS (Source fire) on cisco next generation firewall including rules to redirect traffic of Web server towards IPS for intrusion detection & prevention
  • Design & implement L2/L3 links & IPSEC VPN for clients with service provider according to application requirement
  • Monitor traffic through Cacti, Kiwi sys log server, Net flow, scrutinizer for analyses
  • Coordinate with different clients, vender and service provider
  • Installation and configuration of Red Hat and ESXi on several Cisco/HP Blades as required for DEV/TST/UAT/PROD environment
  • Actively work to ensure smooth and timely software builds, release management and software deployments on development, QA, staging and production systems keep tracking Records of SVN Revisions at QA, Staging and Production Levels for Every Deployment
  • Troubleshoot and fixes configuration and deployment issues using appropriate tools
  • Acting as liaison with Developers, QA Engineers and NOC/IT Teams to resolve live production issues
  • Also worked with system implementation team including different kind of servers
  • JBOSS, Apache Web server, Kannel, USSD, SVN server
  • Deploy and configure ESX hosts in vCenter including setting up v-Switch, rules, Storage etc
  • Integration of PHP, Apache and Mysql on Linux/Unix based System
  • Automated Backups of Applications, Configurations, and Logs on Running Production Servers
  • Monitors configurations and production systems with real time monitoring and alert systems to proactively predict, figure out and address impending problems with software system
  • Projects:
  • Fonepay, Paymax (Askari & Zong), Soneri Bank Falcon,BOP Branchless Banking, JS bank Branchless banking

Senior Network /System Engineer

Wateen
03.2013 - 04.2016
  • Provision, installation and configuration of windows 2008/2008 R2/2012 servers, SUSE Linux/Red Hat Enterprise Linux, upgrading windows 2003 on both physical and virtual machine
  • Performance monitoring and tuning of ESX servers, VCenter Server and Virtual machines
  • Installation of ESXi 4.1/5 hosts, VCenter Server, VCenter Update manager and administration of VMs
  • Creating virtual switch and configuring virtual switch setting and policies
  • Build configure and deploy Linux based VMs and Templates and cloning virtual machines
  • Involved in provisioning, configuring and deploying new windows server 2008 R2/ server 2012 and joining Domain
  • Monitoring through Cacti and troubleshooting of file batches and providing incident resolution in defined SLA
  • Administration, Designing, Configuration and Maintaining Complex Routed LAN/WAN/VPN/IPS Networks
  • Managing routing & switching
  • Working on security devices Including Cisco PIX, Cisco ASA, and IPS IDS
  • Configuring IPSEC tunnel with different clients.

Senior Network Engineer

Inov8 Limited
04.2007 - 03.2013
  • Provision, installation and configuration of windows 2008/2008 R2/2012 servers, SUSE Linux/Red Hat Enterprise Linux, upgrading windows 2003 on both physical and virtual machine
  • Performance monitoring and tuning of ESX servers, vCenter Server and Virtual machines
  • Installation of ESXi 4.1/5 hosts, VCenter Server, VCenter Update manager and administration of VMs
  • Creating virtual switch and configuring virtual switch setting and policies
  • Build configure and deploy Linux based VMs and Templates and cloning virtual machines
  • Involved in provisioning, configuring and deploying new windows server 2008 R2/ server 2012 and joining Domain
  • Monitoring through Cacti and troubleshooting of file batches and providing incident resolution in defined SLA
  • Administration, Designing, Configuration and Maintaining Complex Routed LAN/WAN/VPN/IPS Networks
  • Managing routing & switching
  • Working on security devices Including Cisco PIX, Cisco ASA 5525, and IPS IDS.

Education

AIOU
01.2000 - 01.2004

Skills

Technical trainings

AWS, RHCE, DevOps , CCNA/CCNP R&S, CCNP Security, MCSE

ISO-27001

Timeline

Senior Manager Tech Compliance

Qenta Pakistan
07.2024 - Current

Senior Manager Devops

Qenta Pakistan Limited
04.2019 - 06.2024

Principal Network Engineer

Digital commerce & Payment Limited
05.2016 - 03.2019

Senior Network /System Engineer

Wateen
03.2013 - 04.2016

Senior Network Engineer

Inov8 Limited
04.2007 - 03.2013

AIOU
01.2000 - 01.2004
Muhammad JahangirSenior Manager Tech Compliance