Mohammad Faizan Saeed

Mohammad Faizan Saeed

IT Governance • CMMI High Maturity • Process Excellence • AI Governance

I help banks, insurers, and government organizations in the GCC pass regulator-grade audits, achieve CMMI and ISO certifications, and turn governance into measurable performance — 16+ years, 15+ organizations certified, up to 85% reduction in audit non-conformities.

Riyadh, Saudi Arabia
16+Years' Experience
15+Organizations Certified
85%Audit Non-Conformity Reduction
300+Processes Digitized (BPMN 2.0)
9+CMMI Engagements (L3–L5)
c.30%Productivity Uplift Delivered

About

I design, implement, and audit the frameworks that keep enterprise technology compliant, mature, and measurably better — COBIT 2019, ITIL 4, CMMI v3.0 (Levels 3–5), ISO/IEC 20000, 27001, 22301, 9001, and ISO 31000. Over 16+ years across banking, insurance, government, and IT services in the UAE, KSA, and India, I have taken organizations from gap assessment to successful certification, closed central-bank audit observations within regulatory timelines, and built PMO and performance-management structures that C-suites actually use.

At one of the UAE's largest Islamic banks, I established the EPMO and led enterprise digital transformation — converting 300+ procedures to interactive BPMN 2.0 flows on iServer and closing UAE Central Bank (CBUAE) audit observations. Today, under TestCrew, I direct concurrent CMMI DEV Level 3 (a leading KSA insurer) and Level 4 (a KSA public-sector technology company) programs while leading business process re-engineering that has delivered c.30% productivity gains. I am also among the few consultants in the region certified in both AI governance (AIGP – IAPP) and AI audit (AAIA – ISACA), positioned to govern enterprise GenAI adoption with delivery rigor and responsible-AI assurance.

What I Deliver

Nine service lines, each backed by delivered engagements — from gap assessment through certification, audit closure, and sustainment.

CMMI Certification — Levels 3 to 5

Complete handholding: gap analysis, roadmap, process definition, training, internal assessments, and appraisal readiness. Formal Appraisal Team Member and FAR Team Member across three Level 5 multimodal appraisals; all domains — DEV, SVC, Security, Safety, Data, Virtual, People.

CMMI v3.0QPM / OPP / CARSPC & PPMs

IT & Digital Governance

Governance operating models built from the ground up — committees, decision-rights and DoA matrices, escalation paths, policy lifecycles, and enforcement controls aligned to COBIT 2019, ITIL 4, and ISO/IEC 38500.

COBIT 2019ITIL 4ISO 38500

ISO Certification Programs

End-to-end delivery of ISO/IEC 20000-1 (ITSM), ISO 22301 (BCMS), ISO/IEC 27001 (ISMS), and ISO 9001 (QMS) — from gap assessment and policy suites to internal audit and external certification. 15+ organizations certified, repeatedly with zero major non-conformities.

Lead AuditorLead Implementer

AI & GenAI Governance

AI governance readiness evaluation, control structure design, and responsible GenAI adoption advisory — combining AIGP (IAPP) and AAIA (ISACA) credentials with hands-on program delivery in regulated environments.

AIGPAAIAResponsible AI

Business Process Re-Engineering

BPMN 2.0 process redesign on iServer and ARIS — eliminating non-value-adding work, embedding RACI and controls at every touchpoint, and standardizing SOPs. 80+ processes redesigned for a leading KSA insurer; 300+ digitized at a major UAE bank.

BPMN 2.0iServerLean Six Sigma

PMO / EPMO Setup & Governance

EPMO establishment covering strategy, governance gates, risk, compliance, and C-suite performance reporting — plus PMO maturity assessment and methodology enhancement for national transformation programs.

PMPPortfolio ReportingAgile + Stage-Gate

Risk, Audit & Regulatory Compliance

IT risk assessments, treatment planning, and risk registers aligned to ISO 31000 / 27005; audit programs and observation closure for SAMA, NCA ECC, DGA, CBUAE, CITC, and UAE IA regulatory frameworks.

CISASAMA / NCA / CBUAE

ITSM & Service Delivery

Incident, Problem, Change, and Major Incident governance with CAB cadence; SLA/OLA frameworks, vendor scorecards, and continual service improvement on ServiceNow, ManageEngine, and JIRA.

ITIL 4ISO 20000-1ServiceNow

Quality & Operational Excellence

QMS design, internal audit and CAPA programs, Lean Six Sigma DMAIC improvement, and KPI/statistical performance management — Black Belt-led, with Process Performance Baselines and Models using Minitab and SPSS.

Six Sigma BBISO 9001TQM

Signature Engagements

Delivered outcomes across banking, insurance, government, and global IT services.

Leading Insurance Provider (KSA) — CMMI DEV Level 3 & Enterprise BPR

TestCrew | KSA | 2025 – Present

Directing the CMMI DEV Level 3 certification program and enterprise business process re-engineering for one of KSA's largest insurers — 80+ end-to-end processes redesigned in BPMN 2.0 on iServer, aligned to SAMA, NCA, DGA, IA, CMMI, TMMI, ITIL, and four ISO standards.

Result: c.30% productivity uplift across business units, with SLA dashboards and KPI frameworks embedded post-implementation.

Public-Sector Technology Company (KSA) — CMMI DEV Level 4 (High Maturity)

TestCrew | KSA | 2025 – Present

Directing quantitative process management implementation — QPM and OPP practices, Process Performance Baselines and Models, and statistical process control — with internal readiness assessments ahead of formal appraisal.

Result: Level 4 quantitative governance being institutionalized across development functions.

Major Islamic Bank (UAE) — Digital Governance & CBUAE Audit Closure

UAE | 2022 – 2024

Established EPMO and CMMI SVC 2.0 / COBIT governance across one of the UAE's largest Islamic banks. Led group-wide iServer deployment converting 300+ procedures to interactive BPMN 2.0 flows; acted as Business Analyst for full Sharia Department automation (Helpdesk, Library, DMS, Product Review & Approval); governed annual document review as Configuration Manager with 100% version-control compliance.

Result: UAE Central Bank audit observations closed within regulatory timelines; first-cycle audit readiness achieved.

Two Saudi Government Entities — CMMI DEV Level 3

Nozom Alkhebrat | KSA | 2024 – 2025

Led two concurrent CMMI DEV Level 3 certification programs as Lead Consultant with full team leadership — gap assessment, process documentation, training, internal assessments, and appraisal handholding.

Result: Both entities certified with full process institutionalization across software development functions.

Education & Research Sector (KSA) — Dual ISO Certification as Sole Consultant

Nozom Alkhebrat | KSA | 2024 – 2025

Designed and implemented complete ITSM and BCMS frameworks for two Saudi education & research organizations — ManageEngine deployment, full policy and SOP suites, BIA and BCP development, internal audits, and external certification management.

Result: ISO/IEC 20000-1 + ISO 22301 dual certification for both organizations — zero major non-conformities at external audit.

Global IT Services Firm — Three CMMI Level 5 Appraisals & Global Governance

India / UK / US / AU / ME | 2012 – 2022

Decade-long ownership of high-maturity governance for a global IT services firm — formal Appraisal Team Member (2014) and FAR Team Member (2018, 2021) for CMMI DEV & SVC Level 5 multimodal appraisals; PPBs and PPMs using regression and Monte Carlo simulation; MS Dynamics 365 and Salesforce program governance; Six Sigma cost-optimization with measurable savings.

Result: Three successful Level 5 appraisals and standardized governance across four global delivery regions.

Professional Experience

IT Governance, CMMI & Process Consultant

Jun 2025 – Present | Riyadh, KSA
TestCrew — Clients: KSA BFSI & public-sector portfolio
  • CMMI program delivery — Directing concurrent CMMI DEV Level 3 (insurance) and Level 4 (public sector) certification programs across gap assessment, process definition, training, and appraisal readiness.
  • Enterprise BPR — Redesigned 80+ end-to-end processes in BPMN 2.0 on iServer with governance controls at each touchpoint; c.30% productivity uplift.
  • Quantitative governance — Established PPBs and PPMs using statistical process control; defined QPM and CAR high-maturity practices from scratch; consolidated QPPOs linking process performance to business objectives.
  • AI governance — Applied AIGP and AAIA frameworks to assess AI governance readiness and advise on responsible GenAI adoption.
  • Risk & audit — IT risk assessments and audit programs aligned to DGA, SAMA, and NCA ECC; remediation driven to closure.

Senior IT Governance & CMMI Consultant

Apr 2024 – Jun 2025 | Riyadh, KSA
Nozom Alkhebrat IT Co.
  • CMMI Level 3 ×2 — Led two Saudi government entities to CMMI DEV Level 3 certification as Lead Consultant with full team leadership.
  • Dual ISO certification ×2 — Sole consultant for two education & research organizations: full ITSM + BCMS frameworks, ManageEngine deployment, BIA/BCP, and ISO 20000-1 + ISO 22301 certification with zero major non-conformities.
  • Governance design — Frameworks aligned to ISO/IEC 38500 and COBIT 2019: operating models, committee structures, escalation paths, and policy lifecycle management.
  • SLA & vendor governance — OLA/SLA frameworks, vendor performance scorecards, and executive review cadence.

Manager – PMO, Digital Governance & Quality Assurance

Mar 2022 – Jan 2024 | Abu Dhabi, UAE
Major Islamic Bank — UAE
  • EPMO establishment — Set up and matured PMO functions covering strategy, governance, risk, compliance, and C-suite executive reporting across the IT portfolio.
  • Digital transformation — Led group-wide iServer deployment; converted 300+ procedures to interactive BPMN 2.0 process flows with role-based access and full traceability.
  • CBUAE audit closure — Primary governance lead for closure of UAE Central Bank audit observations within regulatory timelines.
  • Sharia Department automation — Business Analyst for complete digitization: BRDs across Helpdesk, Library, DMS, and Product Review & Approval workstreams.
  • CMMI SVC 2.0 + COBIT — Embedded governance controls across IT and business operations; Configuration Manager for group-wide document review with 100% version-control compliance.
  • Executive reporting — Power BI dashboards tracking program KPIs, SLA performance, and variance analysis for C-suite decisions.

Manager – Business Excellence

Jul 2012 – Mar 2022 | Gurugram, India (UK, US, AU, ME delivery)
Espire Infolabs Pvt. Ltd. — 10-year progression from Quality Analyst
  • CMMI Level 5 ×3 — Appraisal Team Member (2014) and FAR Team Member (2018, 2021) for DEV & SVC Level 5 multimodal appraisals; designed sustainment governance preventing process erosion between cycles.
  • Multi-framework compliance — CMMI, COBIT, ITIL, ISO 9001/20000-1/22301/27001/14001 maintained across global delivery centers in four regions.
  • Statistical governance — PPBs and PPMs using regression and Monte Carlo simulation for data-driven process management.
  • Program delivery — Governed MS Dynamics 365 (HR & Finance) and Salesforce CRM enterprise implementations; owned profitability analysis and MIS reporting for senior management.
  • Six Sigma programs — DMAIC cost-optimization initiatives with measurable savings; trained hundreds of practitioners globally on high maturity, statistical analysis, and internal audit.

Earlier Quality & Governance Roles

Nov 2009 – Jul 2012 | India / Middle East
Sodexo India • Perception Management Consulting • Neel Metals
  • QMS implementation for a global telecom leader (PAN India); CMMI, ISO, and TQM programs for Middle Eastern clients; compliance audits, KPI development, and CAPA programs in manufacturing.

Certifications & Education

PMP — Project Management Professional (PMI) CISA — Certified Information Systems Auditor (ISACA) AAIA — Advanced in AI Audit (ISACA) AIGP — AI Governance Professional (IAPP) Lean Six Sigma Black Belt (IACT) CMMI DEV & SVC Level 5 Appraisal Team Member (CMMI Institute / QAI Global) CMMI Associate Lead Auditor — ISO 9001, ISO/IEC 27001, ISO/IEC 20000-1 Lead Implementer — ISO 22301 (BCMS) ITIL Foundation iServer Administrator (Orbus Software)

Master of Total Quality Management (TQM, QMS, CMMI, Six Sigma) — University of Lucknow, India (2007–2009)
Bachelor of Commerce — University of Lucknow, India (2003–2006)

COBIT 2019ITIL 4CMMI v3.0ISO/IEC 20000-1ISO/IEC 27001ISO 22301ISO 9001ISO 31000SAMANCA ECCDGACBUAEiServerServiceNowManageEnginePower BIJIRAAzure DevOpsMinitabSPSS

Let's Talk

Whether you need CMMI or ISO certification, a governance framework that survives regulator scrutiny, or an AI governance roadmap — I deliver end-to-end, from gap assessment to certification. References and case studies available on request.

📧 faizan.mohd@hotmail.com

📱 +966 56 127 6345

💼 linkedin.com/in/mohammadfaizansaeed