About

About

Hi, I’m Jad El Hakim, a cybersecurity professional and Product Security Manager at Murex (FinTech). I hold a Bachelor’s degree in Computer Science and have earned CCNA and CompTIA Security+ certifications.

Professional Background

At Murex, I help improve the security posture of a FinTech product used by international financial institutions. My role focuses on driving product security outcomes end-to-end, working closely with engineering and stakeholders to reduce risk while enabling delivery.

What I Do

  • Vulnerability Management (end-to-end): triage, assessment, prioritization, coordination with engineering, remediation tracking, and risk communication.
  • External Penetration Tests: manage the full lifecycle from scoping and engagement to finding validation, tracking, and remediation closure.
  • Secure SDLC: support and improve secure development practices across the product lifecycle.
  • Secure by Design & Threat Modeling: contribute to feature threat modeling and security reviews to ensure security is built in early.
  • Product Security Improvements: collaborate on security features and hardening initiatives that enhance resilience.
  • Client Compliance Support: assist with security & compliance questionnaires and evidence-based responses.

Technical Focus Areas

  • Application & Product Security: secure architecture reviews, vulnerability assessment, risk management, security requirements, security feature enablement, threat modeling.
  • Secure Engineering & OWASP-aligned practices: OWASP SAMM (program maturity), OWASP ASVS (application security verification), and Secure by Design principles.
  • Security Frameworks & Compliance: DORA, ISO 27001, NIST, PCI DSS, SOC 2 (supporting client expectations and questionnaires).
  • Programming and Scripting: Java, JavaScript, Python, C, C#, Bash, PowerShell, Flask, HTML, CSS.
  • Databases: Elasticsearch, Oracle, MSSQL, PostgreSQL, Sybase.
  • Linux: Red Hat Enterprise, Debian.
  • Networking: Routing, Switching, LAN/WAN, TCP/IP, network monitoring.

Certifications

Completed Trainings

  • SOC Analyst program from Hack The Box (HTB)

Current and Upcoming Training

  • SOC Level 2 certification from TryHackMe
  • Bug Bounty Hunter from Hack The Box (HTB) (to broaden my offensive-security skills and strengthen my overall security depth) …

Personal Goals

My goal is to become a leading expert in cybersecurity—especially in product security—by helping teams ship secure software, reduce risk, and adopt strong security engineering practices through continuous learning.

Connect with Me

Feel free to connect with me on LinkedIn or check out my projects on GitHub.

Thank you for visiting my blog. I hope you find my posts informative and insightful.


This page is part of Jad’s Cybersecurity Blog.