Summary
Education
Timeline
Skills
Work History
Certification
Affiliations
Overview
Generic

BISI OBAFEMI

Katy,TX

Summary

Experienced IT Auditor and Control specialist focused on improving business compliance, workflow and processes through detailed audits and optimization recommendations. Successful track record of fully evaluating information, structures and procedures and initiating corrective actions. Advanced skills in SAP, PeopleSoft, and Oracle Financial.

Education

Master of Business Administration - Finance

Ladoke Akintola University of Technology

Bachelor of Science - Finance

The Polytechnic Ibadan

Timeline

IT AUDITOR & COMPLIANCE ANALYST

VOX TECHNOLOGIES
03.2021 - Current

IT COMPLIANCE ANALYST

IBM
06.2017 - 03.2021

SR INTERNAL AUDITOR/CONTROL & COMPLIANCE OFFICER

STERLING BANK
10.2010 - 03.2017

Master of Business Administration - Finance

Ladoke Akintola University of Technology

Bachelor of Science - Finance

The Polytechnic Ibadan

Skills

  • SOFT SKILLS
  • Excellent project management, teamwork, and leadership skills
  • Good analytical & critical thinking, excellent communication, and report-writing skills
  • Detail-oriented, result-oriented, problem-solving, and mentoring skills
  • Ability to use MS Office (Word, Access, Outlook, Excel, PowerPoint)
  • TECHNICAL SKILLS
  • Sarbanes-Oxley Act (SOX), HIPAA, PCI DSS, IT General Controls (ITGC), SOC, SAS70/SSAE 18 attestation, and ERP security assessment (SAP, PeopleSoft, and Oracle Financial)
  • Project Management
  • Compliance Reporting

Work History

IT AUDITOR & COMPLIANCE ANALYST

VOX TECHNOLOGIES
03.2021 - Current
  • Lead IT implementation and testing of internal controls over financial reporting (Sarbanes-Oxley Act)
  • Perform IT general controls audits (access control, change management, IT operations, disaster recovery) and platform reviews (Windows)
  • Develop risk-based audit plans, determine scope, objectives, key risks, and testing procedures
  • Conduct detailed risk assessments and control gap analysis, evaluating the effectiveness of controls and recommending enhancements
  • Collaborate with cross-functional teams to establish a comprehensive and integrated risk and controls program for Emerging Products
  • Document control weaknesses and testing exceptions in ERP (Enterprise Resources Planning) business processes
  • Identify and communicate IT audit findings to client management
  • Perform PCI and HIPAA audits for commercial companies and healthcare providers
  • Conduct root cause analysis of vulnerabilities and coordinate with stakeholders to remediate findings within schedule and budget constraints
  • Review SSAE 18 (SAS 70) SOC 1 Type 2 reports for organizations in various industries
  • Research and identify control issues and recommend control strengthening to clients
  • Complete and review SOX testing for IT general controls, IT application controls, and key reports identified in the walkthrough process
  • Collaborate with cross-functional teams to identify and remediate security vulnerabilities
  • Followed established auditing processes to meet internal and regulatory requirements.
  • Build and maintain strong relationships with stakeholders, including business partners, auditors, and regulators.

IT COMPLIANCE ANALYST

IBM
06.2017 - 03.2021
  • Evaluated IT and business processes for effectiveness and efficiency by understanding and documenting key business processes and internal controls
  • Performed periodic reviews of process controls and technical controls to ensure continuous adherence to SOX compliance
  • Reviewed internal policies and procedures and existing laws, rules, and regulations to determine applicable compliance and the adequacy of underlying internal controls
  • Performed IT general controls such as access control, change management, IT Operations, disaster recovery, and platform reviews (Windows and UNIX OS)
  • Identified risks associated with IT infrastructure, operations, and applications including pre/post-implementation audit reviews for ongoing IT projects along with current legacy applications
  • Performed assessment of IT internal controls as part of financial statement audits, Internal and operational audits, Attestation engagement, and Audit readiness
  • Conducted testing of Sarbanes-Oxley (SOX), and Service Organization Control (SOC) SSAE 18 Review, using COBIT
  • Reviewed General Controls (ITGC) and various applications, databases, and operating systems
  • Identified risks associated with IT infrastructure, operations, and applications including pre/post-implementation audit reviews for ongoing IT projects along with current legacy applications.
  • Developed and maintained compliance database, tracking all compliance activities and documents.
  • Responded to employee inquiries regarding compliance regulations and procedures.

SR INTERNAL AUDITOR/CONTROL & COMPLIANCE OFFICER

STERLING BANK
10.2010 - 03.2017
  • Examined and evaluated the effectiveness and adequacy of the internal control systems
  • Reviewed financial and management information systems, including electronic banking services and IT information systems
  • Performed risk assessments and risk monitoring of the operating and financial controls environment
  • Performed tests on the functioning of specific internal control procedures and transactions
  • Served as Team Lead for auditors responsible for special investigations & regulatory reporting
  • Prepared and presented audit reports to the Chief Internal Auditor/ Management
  • Developed and coordinated control programs to ensure compliance with all applicable federal and state banking laws, regulations, and rules
  • Presented control findings, reports to the Head of Internal Control, and tracked issues to ensure proper remediation or mitigation in a timely manner
  • Worked collaboratively and effectively with other Compliance team members by assisting in other internal control and compliance processes
  • Served as Team Lead for review of branch Internal Controls & procedures, plan internal audit engagement strategy, define objectives, and addressed related internal controls risks and issues
  • Planned, scheduled, coordinated, and carried out in-house compliance training program

Certification

Certified Information Systems Auditor (CISA)

Affiliations

Member, Information Systems Audit and Control Association (ISACA) Member, Institute of Internal Auditor (IIA)

Overview

13
13
years of professional experience
1
1
Certificate
BISI OBAFEMI