Senior Presales & Technical Consultant

Basim Ibrahim

Cybersecurity Consultant.

Senior Presales Consultant · Dubai, UAE · OSCP · CEH · CySA+ · PenTest+

OSCP-certified cybersecurity professional bridging deep technical expertise with enterprise business strategy. Specialised in PAM, EDR/XDR, SIEM, VAPT, and security advisory across the UAE & GCC.

Basim Ibrahim - Senior Cybersecurity Presales Consultant Dubai UAE
OSCP
Presales
Advisory
5+
Years Experience
4
Industry Certifications
50+
POCs Delivered
12+
Security Tool Categories

Who I Work With

Delivering cybersecurity presales consulting and technical advisory across key industries in the UAE and GCC region.

Banking & Financial Services
PAM, DLP, GRC, fraud prevention
Government & Public Sector
NESA compliance, Zero Trust, SIEM
Healthcare
Data privacy, EPM, endpoint security
Telecommunications
Network security, threat intelligence
Oil, Gas & Energy
OT/ICS security, brand protection
Retail & E-Commerce
PCI-DSS, email security, VAPT

Impact Highlights

Anonymised snapshots of delivered value across enterprise cybersecurity engagements in the UAE & GCC.

PAM POC → Enterprise Deal Close

Designed and delivered a 2-week Privileged Access Management POC for a 3,000-seat financial institution in the UAE. The technical stage closed the deal — no further evaluation required.

PAM Financial Sector

85% Phishing Click Rate Reduction

Architected a layered email security strategy combining DMARC enforcement, Mimecast gateway, and KnowBe4 awareness training — reducing simulated phishing click rates from 34% to under 5%.

Email Security GCC Client

Legacy EDR Displacement — Government

Led a competitive evaluation and displacement of a legacy endpoint solution across a UAE government entity — delivering a 6-month SIEM rationalisation and EDR consolidation roadmap that saved 30% in licensing cost.

EDR/XDR Government

Tools & Technologies

Hands-on experience across 50+ enterprise security platforms — from evaluation and POC delivery to deployment advisory.

PAM & IAM
BeyondTrust Arcon PAM GetVisibility Wallix
EDR & Endpoint
CrowdStrike SentinelOne Microsoft Defender Symantec Trellix Trend Micro
SIEM & SOC
Microsoft Sentinel Splunk Elastic SIEM IBM QRadar
Email Security
Mimecast Proofpoint TDMARC DMARC Analyzer Mail Hardener
VAPT
Burp Suite Nessus Kali Linux Pentera Acunetix Rapid7 Qualys
DLP & Classification
Forcepoint Safetica Klassify Microsoft Purview GetVisibility Microsoft Titus
GRC & Compliance
Securiti.ai MetricStream Microsoft Purview
Brand & Threat Intel
Recorded Future CloudSEK Cyble SpiderSilk
Awareness Training
KnowBe4 Kaspersky ASAP Human Firewall
EPM & Patch
BeyondTrust EPM ManageEngine Ivanti ConnectWise NinjaOne

Certifications & Credentials

Offensive and defensive certifications validating hands-on expertise across the full cybersecurity spectrum.

OSCP
Offensive Security Certified Professional
Offensive Security
CEH
Certified Ethical Hacker
EC-Council
CySA+
Cybersecurity Analyst
CompTIA
Pentest+
Penetration Testing
CompTIA
Basim Ibrahim — OSCP Certified Cybersecurity Consultant Dubai

About Basim Ibrahim

Basim Ibrahim is a Senior Cybersecurity Presales Consultant at iConnect IT, Dubai, with 5+ years of enterprise security experience across UAE and GCC. Holding the OSCP, CEH, CySA+, and PenTest+ certifications, he bridges technical depth with commercial outcomes — delivering VAPT assessments, PAM/EDR/SIEM proof-of-concepts, and security architecture advisory for CISOs and security teams across banking, government, healthcare, and energy sectors.

OSCP Certified Penetration Tester PAM Specialist SIEM/SOC Architect Zero Trust Advisor UAE/GCC Expert

Frequently Asked Questions

Common questions from CISOs, IT managers, and vendors about cybersecurity presales consulting in the UAE.

A cybersecurity presales consultant bridges the gap between a vendor's technical product and an enterprise client's business needs. This includes conducting discovery workshops, designing and running proof-of-concept (POC) engagements, delivering technical demonstrations, writing RFP/RFI responses, and advising on security architecture — all before a commercial deal is signed. The goal is to technically validate a solution and give the client confidence to purchase.

Basim Ibrahim holds four industry-recognised certifications: OSCP (Offensive Security Certified Professional) — one of the most respected hands-on penetration testing credentials globally; CEH (Certified Ethical Hacker) by EC-Council; CompTIA CySA+ (Cybersecurity Analyst); and CompTIA Pentest+. He also holds a Post Graduate Diploma in Artificial Intelligence and Machine Learning from NIELIT India.

Privileged Access Management (PAM) is a cybersecurity discipline focused on controlling, monitoring, and auditing access to critical systems by privileged accounts — such as administrators, service accounts, and third-party vendors. In the UAE and GCC, PAM is increasingly mandated by frameworks like NESA and Dubai Electronic Security Center (DESC) guidelines. Without PAM, a single compromised admin credential can give an attacker unrestricted access to an organisation's entire infrastructure.

EDR (Endpoint Detection and Response) focuses on monitoring and responding to threats on individual endpoints — laptops, servers, and workstations. XDR (Extended Detection and Response) expands this visibility across multiple security layers: endpoints, network, email, cloud, and identity. XDR correlates signals from all these sources to provide a unified threat detection and response platform. For most UAE enterprises, XDR is the recommended evolution, particularly those already investing in Microsoft, CrowdStrike, or SentinelOne ecosystems.

A penetration test (VAPT) for a UAE business typically follows a structured methodology: scoping (defining what systems are in scope), reconnaissance, vulnerability scanning, exploitation, and reporting. The final deliverable includes an executive summary for leadership and a technical remediation report for IT teams. OSCP-certified testers like Basim Ibrahim use manual techniques beyond automated scanners to find logic flaws and business-critical vulnerabilities that tools miss.

Yes. Basim Ibrahim is available for select freelance engagements including cybersecurity presales support, POC delivery, security architecture advisory, VAPT assessments, and technical RFP responses. Engagements are primarily based in Dubai and across the GCC region. Contact via the form on this site or connect directly on LinkedIn.

UAE organisations are typically required to comply with NESA (National Electronic Security Authority) standards, the Dubai Electronic Security Center (DESC) framework, and sector-specific mandates such as CBUAE guidelines for financial institutions. Internationally, ISO 27001, NIST CSF, and PCI-DSS are widely adopted. Basim Ibrahim has experience aligning security solutions to all major UAE and GCC compliance requirements.

Zero Trust is a security model built on the principle of "never trust, always verify" — no user, device, or system is trusted by default, even inside the corporate network. Implementation typically involves: strong identity verification (MFA, PAM), micro-segmentation of networks, least-privilege access controls, continuous monitoring via SIEM/UEBA, and endpoint verification before granting access. In the UAE, Microsoft, Zscaler, and Palo Alto Networks are the most commonly deployed Zero Trust platforms.

What Clients Say

Trusted by security leaders and enterprise teams across the UAE and GCC.

"Basim led our PAM proof-of-concept from scoping through to board sign-off in under three weeks. His ability to translate technical capability into business risk language made the procurement decision straightforward for our leadership team."

AK
CISO — Regional Bank, UAE

"We engaged Basim for a penetration test ahead of our ISO 27001 audit. The report was thorough, clearly prioritised by business impact, and the remediation guidance was actionable. Zero findings were disputed by our internal team — that's rare."

SM
IT Director — Healthcare Group, Dubai

"Basim's RFP response for our EDR and email security tender was the most technically precise submission we received. He understood the NESA compliance requirements without us having to explain them — and we awarded the contract within two weeks."

NA
Procurement Lead — Government Entity, Abu Dhabi

Ready to Secure Your Business?

Whether you need a cybersecurity presales consultant, a technical POC, or a VAPT assessment — let's talk.

Weekly Cyber Insights

One email per week. UAE/GCC focused. No spam, unsubscribe any time.