Himalayas logo
IA
Open to opportunities

Ismail AlSahhar

@ismailalsahhar

DevSecOps leader driving secure SDLC, threat modeling, and automation.

Egypt
Message

What I'm looking for

I seek senior DevSecOps or application security roles where I can lead secure SDLC adoption, mentor teams, implement automated security controls, and drive measurable risk reduction in collaborative, growth-oriented environments.

I am a DevSecOps and application security leader with a track record of building secure development programs and security operations teams across public and private sectors.

I created and implemented DevSecOps roadmaps, introduced automated SAST/SCA/DAST controls into CI/CD pipelines, and led PoCs and tool deployments including Fortify, SonarQube, OWASP ZAP, Veracode, Invicti, and Acunetix.

I founded and led a Security Operations Center, recruiting and training analysts, defining SOC processes, producing dashboards and metrics, and performing incident investigations and L3 escalations.

I teach and mentor developers and security champions, perform threat modeling and vulnerability management, and continuously improve secure coding practices to empower product teams to build secure software by default.

Experience

Work history, roles, and key accomplishments

UNRWA logoUN

Application Security Manager

UNRWA

Sep 2022 - Apr 2024 (1 year 7 months)

Defined a DevSecOps vision and drove SDLC security by embedding automated SCA, SAST, DAST, and secrets scanning into CI/CD, automating vulnerability scanning and empowering product teams to build secure software.

IG

Lecturer (Part-time)

Islamic University of Gaza

Sep 2018 - Jun 2020 (1 year 9 months)

Taught undergraduate graduation research modules and supervised student research projects in computer science topics.

AS

Web Developer

AlManar for IT Solutions

Feb 2015 - May 2018 (3 years 3 months)

Remediated legacy code vulnerabilities, built dashboards and web features, integrated marketplaces and social APIs, and developed a planning system with automated testing via Selenium.

MT

Network Security Engineer Intern

Ministry of Telecommunications and Information Technology

Sep 2012 - Sep 2013 (1 year)

Installed and tuned IDS/IPS (Snort, Barnyard), authored custom Snort rules, deployed software firewalls, and monitored and recorded security incidents.

Education

Degrees, certifications, and relevant coursework

IG

Islamic University of Gaza

Master in Information Technology, Information Technology

2016 - 2022

Completed a Master in Information Technology covering advanced topics in IT from January 2016 to June 2022.

University of Birmingham logoUB

University of Birmingham

Bachelor of Science, Computer Science

2009 - 2012

Activities and societies: Undergraduate scholarship recipient

Earned a Bachelor of Science in Computer Science from October 2009 to June 2012.

Tech stack

Software and tools used professionally

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan
Ismail AlSahhar - DevSecOps Manager - Fawry Egypt | Himalayas