Available for New Opportunities

Muhammad
Rashid Mahmood

IT Audit | Information Systems Audit | Internal Controls | GRC, Al and Cybersecurity Professional

Download CV
19+
Years Experience
4
Global Regions
15
Certifications
8+
Major Sectors

The Profile

Dynamic & Certified IT Audit Professional

With over 19 years of experience across Pakistan, Bahrain, Dubai, and KSA, I specialize in IT audits, information risk management, and compliance services.

My expertise spans IT General Controls (ITGCs) and IT Application Controls (ITACs) across major sectors including financial, oil & gas, power, telecom, hospitality, and real estate. I have a proven ability to manage complex, multi-scale engagements delivering high-quality, accurate results.

Currently based in Madina Munawara, KSA

Premium Credentials

CISA CISM CRISC CGEIT PMP CPA CICA ISO 27001 LA CFC CFE CICISO EC-CCSA

Executive Services

Specialized consulting and audit solutions to secure and optimize your business.

IT Audit & Compliance

Comprehensive evaluation of your IT infrastructure, policies, and operations to ensure strict compliance with local and international regulatory standards.

Cybersecurity Consulting

Strategic guidance to fortify your digital assets against emerging threats, including vulnerability assessments, architecture reviews, and defense strategies.

Risk Assessment

Proactive identification and analysis of potential IT risks. Developing robust frameworks to mitigate impact and safeguard business continuity.

ISO 27001 Implementation

End-to-end guidance in designing, establishing, and maintaining a robust Information Security Management System (ISMS) tailored to your organization.

Career Trajectory

19+ Years of driving excellence in Audit, Advisory & Security

Manager IT Audit

March 2024 - Present
RUA AL Madinah Saudi Arabia

Managing internal audit teams, overseeing IT audits across functions, ensuring compliance, assessing controls, and aligning IT practices with strategic goals.

Manager IT Audit

April 2022 - March 2024
Deloitte Riyadh, KSA

Coordinated GITCs and ITACs scope with external auditors. Summarized IT audit documentation and collaborated with audit managers and engagement partners.

Assistant Manager IT Audit

January 2020 - March 2022
KPMG Riyadh, KSA

Established scope for GITCs/ITACs, communicated audit requirements to clients, and pinpointed key issues for collaboration.

Deputy Manager to Associate

July 2006 - January 2020
KPMG Lahore, Pakistan

Progressed from Associate to Deputy Manager over 14 years. Delivered compliance services, executed risk assessments (ISO 27001), managed teams, and supported integrated audit engagements.

International Secondments with KPMG

Completed three high-impact secondments in the Middle East:
Dubai • KSA • Bahrain

Core Competencies

Technical capabilities and governance domains

Governance, Risk & Compliance

IT Audit
Internal Controls
Cyber Security
Risk Assessment
Audit Planning & Scoping
Compliance Services

IT Stack

Oracle
SAP
Microsoft Dynamics
IBM AIX & Linux

Leadership

Team Management Mentoring Problem-solving Negotiation Adaptability

Publications & Insights

Journal articles and professional research authored in the fields of IT Audit, Cyber Security, and GRC.

IT Governance & Risk Optimization Study

A research-based study focusing on improving IT governance frameworks and enhancing organizational risk management strategies.

Read Full Article

Advanced IT Audit & Compliance Frameworks

This paper explores modern IT audit methodologies and their role in ensuring compliance within complex enterprise systems.

Read Full Article

Policy Frameworks in Cybersecurity Governance

A policy-driven analysis addressing governance structures, regulatory compliance, and cybersecurity risk mitigation.

Read Full Article

Cloud Security Controls & Verification

An evaluation of how traditional IT general controls must adapt to dynamic, containerized cloud infrastructures.

Read Full Article

Elite Portfolio

Trusted by industry leaders across the Middle East & Pakistan

Financial

  • Al Rajhi Bank
  • Banque Saudi Fransi
  • Saudi British Bank
  • MCB Bank Limited
  • Allied Bank Limited

Oil, Gas & Power

  • Bahrain Petroleum Co.
  • Hidd Power Co.
  • SNGPL
  • OGDCL
  • Total PARCO

Manufacturing

  • PepsiCo KSA/PAK
  • Eastern Province Cement
  • LUMS
  • PTCL
  • Dubai Multi Commodities Centre

Let's Secure the Future.

Open to discussions regarding leadership roles, consulting opportunities, and strategic partnerships.

Send a Message

© Muhammad Rashid Mahmood. All rights reserved.

Publication Archive

Comprehensive list of research, journals, and technical insights.

IT Governance & Risk Optimization Study

A research-based study focusing on improving IT governance frameworks and enhancing organizational risk management strategies.

Read Full Article

Advanced IT Audit & Compliance Frameworks

This paper explores modern IT audit methodologies and their role in ensuring compliance within complex enterprise systems.

Read Full Article

Policy Frameworks in Cybersecurity Governance

A policy-driven analysis addressing governance structures, regulatory compliance, and cybersecurity risk mitigation.

Read Full Article

Cloud Security Controls & Verification

An evaluation of how traditional IT general controls must adapt to dynamic, containerized cloud infrastructures.

Read Full Article