Cybersecurity Consulting · Dubai, UAE
Basim Ibrahim, Senior Cybersecurity Consultant in Dubai for the UAE & GCC
I'm Basim Ibrahim, an OSCP-certified presales and technical consultant. I help enterprises evaluate, prove, and adopt security solutions: privileged access management, endpoint detection, SIEM, email security, and penetration testing.
What I do
Three ways I help enterprises and security vendors get from evaluation to adoption.
Presales & POC delivery
Discovery workshops, tailored demonstrations, and proof-of-concept engagements with success criteria agreed up front, covering PAM, EDR/XDR, SIEM, email security and DLP platforms.
How POCs work →VAPT & offensive security
OSCP-certified penetration testing with manual exploitation beyond automated scanners. Executive summaries for leadership, prioritised remediation for engineering teams.
Assessment methodology →Advisory & compliance
Security architecture reviews, RFP/RFI responses, and roadmaps aligned to NESA, DESC, CBUAE, UAE PDPL and ISO 27001, written for both boardrooms and engineers.
Advisory scope →Industries: Banking & Financial Services · Government & Public Sector · Healthcare · Telecommunications · Oil, Gas & Energy · Retail & E-Commerce
Selected impact
Anonymised outcomes from enterprise engagements in the UAE and GCC.
PAM proof-of-concept closed the deal at the technical stage
Designed and delivered a two-week Privileged Access Management POC for a 3,000-seat financial institution. The evaluation ended after the technical stage. No further vendor comparison was required.
Layered email security programme cut phishing clicks by 85%
Architected DMARC enforcement, a Mimecast secure email gateway, and KnowBe4 awareness training for a GCC enterprise, reducing simulated phishing click rates from 34% to under 5% in six months.
Legacy EDR displacement and SIEM rationalisation for government
Led a competitive endpoint evaluation across a UAE government entity, then delivered a six-month consolidation roadmap that displaced the legacy platform and reduced licensing spend by 30%.
Latest insights
Analysis and practical guidance on enterprise security, written weekly.
Credentials
Offensive and defensive certifications, independently verified.
Platforms I work with
Hands-on across 50+ enterprise security products, covering evaluation, POC and deployment advisory.
"Basim led our PAM proof-of-concept from scoping through to board sign-off in under three weeks. His ability to translate technical capability into business risk language made the procurement decision straightforward for our leadership team."
CISO, Regional Bank, UAE"The penetration test report was thorough, clearly prioritised by business impact, and the remediation guidance was actionable. Zero findings were disputed by our internal team. That's rare."
IT Director, Healthcare Group, Dubai"Basim's RFP response for our EDR and email security tender was the most technically precise submission we received. He understood the NESA requirements without us having to explain them."
Procurement Lead, Government Entity, Abu Dhabi
About Basim
Basim Ibrahim is a Senior Cybersecurity Presales Consultant at iConnect IT, Dubai, with more than five years of enterprise security experience across the UAE and GCC. He holds the OSCP, CEH, CySA+ and PenTest+ certifications, along with a Post Graduate Diploma in Artificial Intelligence and Machine Learning from NIELIT India.
His work spans VAPT assessments, PAM, EDR and SIEM proof-of-concepts, and security advisory for CISOs and security teams in banking, government, healthcare and energy.
Frequently asked questions
Common questions from CISOs, IT managers and vendors about cybersecurity consulting in the UAE.
Basim Ibrahim, Cybersecurity Consultant in Dubai
If you are looking for a cybersecurity consultant in Dubai, an OSCP-certified penetration tester in the UAE, or a cybersecurity presales consultant for GCC enterprises, you have found the right person. I am Basim Ibrahim, a Dubai-based senior security consultant working with banking, government, healthcare and energy organisations across the UAE, Saudi Arabia, Qatar, Kuwait, Bahrain and Oman.
My work covers privileged access management (PAM), endpoint detection and response (EDR and XDR), SIEM and SOC operations, Zero Trust architecture, email security, and vulnerability assessment and penetration testing (VAPT). That spans the full lifecycle: technical discovery, proof-of-concept design, vendor evaluation, architecture review, and post-deployment tuning. I hold vendor credentials across Mimecast, Proofpoint and KnowBe4.
Engagements are shaped around UAE and GCC regulatory reality, including NESA, the CBUAE cyber requirements, DESC guidance, and ADGM and DIFC data protection obligations. An OSCP-certified offensive security background means the advice comes from understanding how these systems are actually attacked, not only how the products are marketed.
Let's talk about your security posture
Whether it's presales support, a technical POC, or a penetration test, tell me what you're evaluating and I'll come back within one business day.