Muhammad Hussaan

Manager – Cybersecurity & Information Security Advisory

Regulatory & Cybersecurity Compliance
95%

Applies SAMA Cybersecurity Framework, NCA, ISO 27001, NIST CSF, COBIT 2019, ITIL 4 and HIPAA perspectives to identify compliance gaps, assess control maturity and support risk-based remediation.

ITGC & Application Controls
93%

Strong experience assessing IT general controls and application controls across SAP S/4HANA, core banking, cloud and enterprise environments, including access, change, operations, interfaces and configuration controls.

Biography​

Muhammad Hussaan is an IT audit, cybersecurity and technology risk professional with over 8 years of experience across global financial institutions, advisory firms and complex enterprise environments. His experience covers IT audit, cybersecurity, governance, technology risk and control assessments, with exposure across banking, financial services, government, oil & gas and enterprise technology environments.

As Manager of Cybersecurity & Information Security Advisory at Infinitrs, he leads and supports engagements covering IT governance, ITGC, cybersecurity maturity, regulatory compliance, technology risk and control assurance. His expertise includes SAMA Cybersecurity Framework, ISO 27001, NIST CSF, NCA, COBIT 2019, ITIL 4 and HIPAA, complemented by experience across SAP S/4HANA, core banking and cloud control environments. He combines technical risk knowledge with strong stakeholder and team leadership capabilities to translate control weaknesses into practical, business-relevant remediation actions.

Professional skills​

IT Audit & Technology Risk
95%

Extensive experience in risk-based IT audit planning and execution, ITGC assessments, control testing, audit evidence review, risk registers, RCMs and management-level reporting across complex organizations.

Cybersecurity & Information Security GRC
94%

Experienced in cybersecurity maturity assessments, technology risk reviews, third-party cyber risk and regulatory compliance assessments using leading cybersecurity and information security frameworks.

Stakeholder & Engagement Leadership
91%

Experienced in managing client interactions, conducting process-owner interviews, validating issues, presenting observations and recommendations, supervising audit teams and supporting end-to-end engagement delivery.

Request a quote for work

Feel free to contact us through Twitter or Facebook if you prefer!