Senior Cybersecurity Presales Consultant · Dubai, UAE

Basim Ibrahim, Senior Cybersecurity Consultant in Dubai for the UAE & GCC

I'm Basim Ibrahim, an OSCP-certified presales and technical consultant. Background covers privileged access management, endpoint detection, SIEM, email security, and penetration testing.

Currently: Senior Presales Consultant, iConnect IT · 5+ years across banking, government, healthcare and energy

Basim Ibrahim, Senior Cybersecurity Presales Consultant, Dubai UAE
Basim Ibrahim
Senior Cybersecurity Presales Consultant
Dubai, United Arab Emirates
OSCP CEH CySA+ PenTest+
5+Years in enterprise security
50+Proof-of-concepts delivered
4Active certifications
12+Security domains covered

Areas of Focus

Three areas of technical background spanning evaluation through to adoption.

More about me →

Presales & POC delivery

Discovery workshops, tailored demonstrations, and proof-of-concept engagements with success criteria agreed up front, covering PAM, EDR/XDR, SIEM, email security and DLP platforms.

VAPT & offensive security

OSCP-certified penetration testing with manual exploitation beyond automated scanners. Executive summaries for leadership, prioritised remediation for engineering teams.

Advisory & compliance

Security architecture reviews, RFP/RFI responses, and roadmaps aligned to NESA, DESC, CBUAE, UAE PDPL and ISO 27001, written for both boardrooms and engineers.

Industries: Banking & Financial Services · Government & Public Sector · Healthcare · Telecommunications · Oil, Gas & Energy · Retail & E-Commerce

Credentials

Offensive and defensive certifications, independently verified.

OSCP Offensive Security Certified ProfessionalOffensive Security
CEH Certified Ethical HackerEC-Council
CySA+ Cybersecurity AnalystCompTIA
PenTest+ Penetration TestingCompTIA

Platforms I work with

Hands-on across 50+ enterprise security products, covering evaluation, POC and deployment advisory.

PAM & IAM BeyondTrust, Arcon PAM, Wallix
EDR & Endpoint CrowdStrike, SentinelOne, Microsoft Defender, Trellix, Trend Micro
SIEM & SOC Microsoft Sentinel, Splunk, Elastic SIEM, IBM QRadar
Email Security Mimecast, Proofpoint, TDMARC, DMARC Analyzer
VAPT Burp Suite, Nessus, Kali Linux, Pentera, Acunetix, Rapid7, Qualys
DLP & Data Forcepoint, Safetica, Klassify, Microsoft Purview, GetVisibility
GRC Securiti.ai, MetricStream, Microsoft Purview
Threat Intel Recorded Future, CloudSEK, Cyble, SpiderSilk
Awareness KnowBe4, Kaspersky ASAP, Human Firewall
EPM & Patch BeyondTrust EPM, ManageEngine, Ivanti, NinjaOne
Basim Ibrahim, OSCP Certified Cybersecurity Consultant Dubai

About Basim

Basim Ibrahim is a Senior Cybersecurity Presales Consultant at iConnect IT, Dubai, with more than five years of enterprise security experience across the UAE and GCC. He holds the OSCP, CEH, CySA+ and PenTest+ certifications, along with a Post Graduate Diploma in Artificial Intelligence and Machine Learning from NIELIT India.

His work spans VAPT assessments, PAM, EDR and SIEM proof-of-concepts, and security advisory for CISOs and security teams in banking, government, healthcare and energy.

Frequently asked questions

Common questions from CISOs, IT managers and vendors about cybersecurity consulting in the UAE.

A cybersecurity presales consultant bridges the gap between a vendor's technical product and an enterprise client's business needs. This includes conducting discovery workshops, designing and running proof-of-concept (POC) engagements, delivering technical demonstrations, writing RFP/RFI responses, and advising on security architecture, all before a commercial deal is signed. The goal is to technically validate a solution and give the client confidence to purchase.

Basim Ibrahim holds four industry-recognised certifications: OSCP (Offensive Security Certified Professional), one of the most respected hands-on penetration testing credentials globally; CEH (Certified Ethical Hacker) by EC-Council; CompTIA CySA+ (Cybersecurity Analyst); and CompTIA Pentest+. He also holds a Post Graduate Diploma in Artificial Intelligence and Machine Learning from NIELIT India.

Privileged Access Management (PAM) is a cybersecurity discipline focused on controlling, monitoring, and auditing access to critical systems by privileged accounts, such as administrators, service accounts, and third-party vendors. In the UAE and GCC, PAM is increasingly mandated by frameworks like NESA and Dubai Electronic Security Center (DESC) guidelines. Without PAM, a single compromised admin credential can give an attacker unrestricted access to an organisation's entire infrastructure.

EDR (Endpoint Detection and Response) focuses on monitoring and responding to threats on individual endpoints (laptops, servers, and workstations). XDR (Extended Detection and Response) expands this visibility across multiple security layers: endpoints, network, email, cloud, and identity. XDR correlates signals from all these sources to provide a unified threat detection and response platform. For most UAE enterprises, XDR is the recommended evolution, particularly those already investing in Microsoft, CrowdStrike, or SentinelOne ecosystems.

A penetration test (VAPT) for a UAE business typically follows a structured methodology: scoping (defining what systems are in scope), reconnaissance, vulnerability scanning, exploitation, and reporting. The final deliverable includes an executive summary for leadership and a technical remediation report for IT teams. OSCP-certified testers like Basim Ibrahim use manual techniques beyond automated scanners to find logic flaws and business-critical vulnerabilities that tools miss.

UAE organisations are typically required to comply with NESA (National Electronic Security Authority) standards, the Dubai Electronic Security Center (DESC) framework, and sector-specific mandates such as CBUAE guidelines for financial institutions. Internationally, ISO 27001, NIST CSF, and PCI-DSS are widely adopted. Basim Ibrahim has experience aligning security solutions to all major UAE and GCC compliance requirements.

Zero Trust is a security model built on the principle of "never trust, always verify": no user, device, or system is trusted by default, even inside the corporate network. Implementation typically involves: strong identity verification (MFA, PAM), micro-segmentation of networks, least-privilege access controls, continuous monitoring via SIEM/UEBA, and endpoint verification before granting access. In the UAE, Microsoft, Zscaler, and Palo Alto Networks are the most commonly deployed Zero Trust platforms.

Basim Ibrahim, Cybersecurity Consultant in Dubai

Search terms this page is relevant for include cybersecurity consultant in Dubai, OSCP-certified penetration tester in the UAE, and cybersecurity presales consultant for GCC enterprises. Basim Ibrahim is a Dubai-based senior security consultant working with banking, government, healthcare and energy organisations across the UAE, Saudi Arabia, Qatar, Kuwait, Bahrain and Oman.

My work covers privileged access management (PAM), endpoint detection and response (EDR and XDR), SIEM and SOC operations, Zero Trust architecture, email security, and vulnerability assessment and penetration testing (VAPT). That spans the full lifecycle: technical discovery, proof-of-concept design, vendor evaluation, architecture review, and post-deployment tuning. I hold vendor credentials across Mimecast, Proofpoint and KnowBe4.

Engagements are shaped around UAE and GCC regulatory reality, including NESA, the CBUAE cyber requirements, DESC guidance, and ADGM and DIFC data protection obligations. An OSCP-certified offensive security background means the advice comes from understanding how these systems are actually attacked, not only how the products are marketed.

Always happy to talk shop

Presales, POCs, penetration testing, or just comparing notes on a platform, always glad to connect.

Weekly Cyber Insights

One email per week. UAE/GCC focused. No spam, unsubscribe any time.