Ismail AlSahhar
@ismailalsahhar
DevSecOps leader driving secure SDLC, threat modeling, and automation.
What I'm looking for
I am a DevSecOps and application security leader with a track record of building secure development programs and security operations teams across public and private sectors.
I created and implemented DevSecOps roadmaps, introduced automated SAST/SCA/DAST controls into CI/CD pipelines, and led PoCs and tool deployments including Fortify, SonarQube, OWASP ZAP, Veracode, Invicti, and Acunetix.
I founded and led a Security Operations Center, recruiting and training analysts, defining SOC processes, producing dashboards and metrics, and performing incident investigations and L3 escalations.
I teach and mentor developers and security champions, perform threat modeling and vulnerability management, and continuously improve secure coding practices to empower product teams to build secure software by default.
Experience
Work history, roles, and key accomplishments
DevSecOps Manager
Fawry Egypt
Jun 2024 - Present (1 year 4 months)
Created and executed a DevSecOps adoption plan, implemented Fortify for SAST/DAST, updated secure coding guidelines, and led POCs and training to embed secure programming and threat modeling across teams.
Application Security Manager
UNRWA
Sep 2022 - Apr 2024 (1 year 7 months)
Defined a DevSecOps vision and drove SDLC security by embedding automated SCA, SAST, DAST, and secrets scanning into CI/CD, automating vulnerability scanning and empowering product teams to build secure software.
Security Operation Center Manager
TechPal
May 2018 - Sep 2022 (4 years 4 months)
Founded and led a SOC, recruiting and training analysts, overseeing incident response and L3 escalation, and developing monitoring use cases, dashboards, and processes to improve threat detection and remediation.
Lecturer (Part-time)
Islamic University of Gaza
Sep 2018 - Jun 2020 (1 year 9 months)
Taught undergraduate graduation research modules and supervised student research projects in computer science topics.
Web Developer
AlManar for IT Solutions
Feb 2015 - May 2018 (3 years 3 months)
Remediated legacy code vulnerabilities, built dashboards and web features, integrated marketplaces and social APIs, and developed a planning system with automated testing via Selenium.
Network Security Engineer
TechPal
Jan 2014 - May 2018 (4 years 4 months)
Designed network segmentation and policies, implemented pfSense firewalls and OpenVPN for secure remote access, and conducted regular network security audits and risk assessments.
Desktop Application Developer
AlManar for IT Solutions
Sep 2013 - Feb 2015 (1 year 5 months)
Developed a telephony archive system and a secure document transfer application, and contributed features to open-source encryption projects to enhance data protection.
Network Security Engineer Intern
Ministry of Telecommunications and Information Technology
Sep 2012 - Sep 2013 (1 year)
Installed and tuned IDS/IPS (Snort, Barnyard), authored custom Snort rules, deployed software firewalls, and monitored and recorded security incidents.
Education
Degrees, certifications, and relevant coursework
Islamic University of Gaza
Master in Information Technology, Information Technology
2016 - 2022
Completed a Master in Information Technology covering advanced topics in IT from January 2016 to June 2022.
University of Birmingham
Bachelor of Science, Computer Science
2009 - 2012
Activities and societies: Undergraduate scholarship recipient
Earned a Bachelor of Science in Computer Science from October 2009 to June 2012.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Interested in hiring Ismail?
You can contact Ismail and 90k+ other talented remote workers on Himalayas.
Message IsmailFind your dream job
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
