Highly organized and detail-oriented professional with 5+ years of experience in IT auditing. Proficient in analyzing IT systems, identifying potential risks, and implementing effective controls. Adept at performing risk assessment procedures on key business activities and processes. Strong legal attorney background, with demonstrated ability to work independently and collaboratively to achieve audit objectives. Proven track record of delivering accurate and insightful audit reports.
- The role entails the designing,implementing and managing the IHS compliance program.
- Creation of major compliance policies (Anti Money Laundering Policy, Anti Bribery and Corruption Policy, Gifts & Entertainment Policy etc) and creating awareness around these policies and other compliance initiatives fell under the responsibilities of this role.
- Implementation of the IHS whistleblower platform and created two major policies out of the implementation of the platform. These policies are the whistleblower policy and the Non- Retaliation policy.
- Implemented the compliance e-learning platform for the roll out online compliance training
- Ensuring the constant monitoring of third-party risk monitoring through the implementation of an automated monitoring system
- Ensured an evidence compliance framework for the Nigerian Communications Commissions Code of Corporate Governance
- Investigation of reported ethical compliance breach
- Managed Compliance monitoring across the organization by conducting quarterly compliance assessments and reporting to Executive Management on compliance infractions or non-compliance
§ General Counsel for a large 650+ employee telecommunications company
§ Monitored and ensured compliance with the statutory requirements of the regulatory/statutory bodies such as the Nigerian Communications Commission (NCC), Nigerian Stock Exchange (NSE), Securities & Exchange Commission (SEC), and the Corporate Affairs Commission (CAC)
§ Participated and provided key input to the Association of Licensed Telecommunication Operators of Nigeria (ALTON) and NCC meetings to protect Company interests.
§ Established rapport with key officials of government statutory bodies to keep track of key industry developments and new initiatives in the interest of the Company.
§ Reviewed contracts and ensured regulatory compliance in the network roll-out and expansion drive including management of commercial, licensing/governmental approvals matters.
§ Provided leadership and strategic input towards the resolution of customer disputes and the prosecution of legal proceedings from the preparatory to conclusion stages.
§ Organized and ensured smooth conduct of the Company’s Board and Board Committee meetings
§ Organized and ensured that the Annual General and other Statutory Meetings were held in accordance with the statutory requirements.
§ Ensured that all acts and functions of the Company are carried out in compliance with the provisions of the Company’s Memorandum and Articles of Association
▪ Support clients with audit readiness efforts in preparation for annual external audits
▪ Document control weakness and related testing exceptions for an upper-level management presentation
▪ Identify and prepare a Corrective Action Plan that recommends solutions to identified findings to senior management and stakeholders
▪ Conduct risk assessments, including identification, evaluation, and documentation of IT business risks and controls
▪ Review systems and security controls to support annual FISMA Compliance
▪ Support new system development projects, (pre and post implementation audits), system enhancements, and data analysis projects consistent with maintaining a strong internal control environment
▪ Lead efforts in all phases of audit activities including planning, establishing audit objectives and audit scope
▪ Conduct various types of audits such as PCI-DSS, HIPAA, SOX audits to identify conflicts, report issues and control gaps
▪ Prepare comprehensive work papers to document audit findings as required and prepare Audit Reports summarizing audit results
▪ Conduct follow-up to determine if corrective actions plan have been developed for remediation and mitigation support
▪ Lead and coordinate teams in performing all stages of the audit, from planning to follow-up
▪ Lead presentation of audit reports and provide regular status reports during various audit phases
▪ Build collaborative relationships with stakeholders during walkthroughs and interviews for an effective audit process and policy creation
▪ Communicate audit findings to senior management and appropriate stakeholders
▪ Conduct and lead information systems audit engagements, including ITGCs review and IT Application Control testing, operating systems audits, information security review, network performance review, and disaster recovery in accordance with department and professional standards
▪ Support clients with audit readiness efforts in preparation for annual external audits
▪ Document control weakness and related testing exceptions for an upper-level management presentation
Lead and conduct IT audits for various clients, evaluating the internal controls, risk management practices, and ensuring compliance with regulatory requirements.
- Develop and execute audit plans, ensuring alignment with company policies and industry standards.
- Execute risk/control analyses, analyze business processes/flows, perform tests to evaluate the design and operating effectiveness of controls, and draw conclusions based on factual information
- Assessed IT infrastructure, including networks, applications, and databases, identifying vulnerabilities and proposing risk mitigation strategies.
- Collaborated with cross-functional teams to implement recommended control improvements and enhance operational efficiency.
- Presented audit findings to senior management, providing actionable insights and recommendations for process enhancements.
▪ COBIT / COSO
▪ Information Technology General Controls (ITGS)
▪ IT Application Controls
▪ SSAE 18 guidance/SOC Audit
▪ Financial Statement Audit Support
▪ Corporate Governance
▪ Project Management
▪ Business Management
▪ Policy and Standard Operating Procedure (SOP) Writing / Reviews
▪ FISMA Audit
▪ PCI-DSS Audit
▪ HIPPA Audit
▪ SOX Audit
▪ Internal Controls Testing
▪ Regulatory Compliance
▪ COBIT / COSO
▪ Corrective Action Plans
▪ Audit Readiness
▪ Incident Reporting
▪ Certified Information Systems Auditor (CISA) - (In focus)
▪ Certified Information Systems Auditor (CISA) - (In focus)