Summary
Overview
Work History
Education
Skills
Certification
Languages
Timeline
Generic

Fidan Mammadova

Baku

Summary

Regional IT Security Officer for the provision and control of requirements at SGS International.


Control of IT Security activities of companies cooperating with SGS Azerbaijan and ensuring IT Security requirements in the contract with partners and ensuring mutual compliance with these requirements (based on international standards and SGS Global internal Information Security standards).
Inform all employees within the scope of the project about IT Security based on international standards and SGS Global internal Information Security standards.

Overview

7
7
years of professional experience
1
1
Certification

Work History

Information Security Manager

SGS International
05.2024 - Current
  • Conduct risk assessments to assess the organization’s exposure to information security threats.
  • Actively participate in cross-functional meetings to provide expert guidance on information security issues during project development phases.
  • Enhance employee information security through up-to-date policies, procedures, and training programs and informative presentations.

Senior Information Security Engineer

DOST Digital Innovations Centre
01.2022 - 04.2024
  • Strengthened company's cybersecurity posture by identifying and remediating vulnerabilities in software, hardware, and networks.
  • Implemented robust security measures for protecting sensitive data and preventing unauthorized access.
  • Enhanced employee awareness of information security best practices through regular training sessions and workshops.
  • Developed and maintained company-wide endpoint security solutions.
  • Authored security and vulnerability reports, detailing logged incursions and suggesting remediation efforts.

Information Security Engineer

Kapital Bank OJSC
08.2017 - 01.2022
  • Represented company's technical security interests to partners to provide bi-directional flow of technical information and best practices in information security.
  • Implemented multi-factor authentication processes for enhanced access control and user management.
  • Managed third-party vendor relationships to maintain compliance with industry standards and regulations.
  • Manage Security Awareness Training Platform ( Wombat Security Platform - Proofpoint Security Awareness Training) and to train bank employees about information security ( via Awareness Platform )
  • Audited and controlled all IT processes of bank based on bank procedures, best-practices and Bank laws of Azerbaijan Republic .

Education

Master of Information System Management - Information Technology in Management

Azerbaijan State Oil&Industry University
Baku, Azerbaijan
06.2019

Bachelor of Applied Science in Information Technology - Information Technology And Systems Engineer

Azerbaijan University of Architecture&Construction
Baku, Azerbaijan
06.2015

Skills

  • Identity and Access Management
  • Security Awareness Training
  • Information Governance
  • Data Loss Prevention
  • Security policy development
  • Endpoint Protection
  • Disaster Recovery Planning
  • Excellent Communication
  • Adaptability and Flexibility
  • Team building
  • Self Motivation
  • Written Communication

Certification

  • Certified ISO/IEC 27001:2022 Foundation / Professional Evaluation and Certification Board - PECB / [08/07/2023] ;
  • Certified Security+ / CompTIA / 06/07/2024.

Languages

Azerbaijan
Native language
English
Upper intermediate
B2
Russian
Intermediate
B1

Timeline

Information Security Manager

SGS International
05.2024 - Current

Senior Information Security Engineer

DOST Digital Innovations Centre
01.2022 - 04.2024

Information Security Engineer

Kapital Bank OJSC
08.2017 - 01.2022

Master of Information System Management - Information Technology in Management

Azerbaijan State Oil&Industry University

Bachelor of Applied Science in Information Technology - Information Technology And Systems Engineer

Azerbaijan University of Architecture&Construction
  • Certified ISO/IEC 27001:2022 Foundation / Professional Evaluation and Certification Board - PECB / [08/07/2023] ;
  • Certified Security+ / CompTIA / 06/07/2024.
Fidan Mammadova