Summary
Overview
Work History
Education
Skills
Timeline
Certification
Generic

Mawuli Senoo

Akron,OH

Summary

Experienced cybersecurity professional who has demonstrated thorough expertise in security control implementation, assessment, authorizations, and POA&M management. Proficiency with Risk Management Framework (RMF) methodologies, Privacy/Compliance, and Continuous monitoring security strategies. Great communication and customer service skills. Proven ability to lead teams and direct, solve problems creatively, and make strategic decisions in fast paced environments that are beneficial for clients.

Overview

6
6
years of professional experience
1
1
Certificate

Work History

Information Security Analyst (Contractor)

Maximus
Remote
01.2024 - 12.2024

• Collaborate with a team of assessors to conduct security control assessments on all enterprise inscope assets to ensure they were compliant with PCI-DSS, HIPPA, ISO, and NIST regulatory frameworks.

• Schedule meetings with the Senior Assessors, ISSO, and various system owners.

• Ensure all discussed items are accurately logged in the meeting minutes for recording keeping and tracking purposes.

• Assist in the development, maintenance, and revision of policies, standards, procedures, and guidelines of security programs.

• Work with a team of Information System Owners, Developers and System Engineers to select and implement tailored security controls in safeguarding system information.

• Review security controls and provided implementation responses as to if/how the systems are currently meeting the requirements.

Third Party Risk Analyst (Contractor)

Home Depot
Remote
01.2023 - 12.2023

• Performed risk and control assessment for all medium and high-risk third-party service providers to evaluate the effectiveness of control systems.

• Collaborated with teams across various internal business lines and external groups to mitigate 3rd and 4th party risk exposure.

• Reviewed SOC reports, penetration test report, vulnerability scan reports, business continuity plan, disaster recovery and incidence response plans as supporting evidence backing up the information security questionnaire.

• Partnered with key stakeholders to research reviews and document risk and controls, including risk associated with new or modified products, services, distribution channels, regulations, and third-party operations.

• Evaluated, monitored, and reported on the adequacy of artifacts provided to evidence remediation of issues, audit findings and regulatory requirements.

• Responded to security questionnaires and inquiries related to the company’s compliance program.

Cyber Security Analyst/ Security Control Assessor

Accenture
Pittsburgh, PA
03.2019 - 11.2022

• Leveraged existing organization’s RMF process, review and determine if system/application documentations are accurate, up to date, and displayed thorough details to support the Security Control Assessment/Validation process.

• Sound understanding and experience with NIST Risk Management Framework (RMF) process. Performed assessments and document creation using NIST SP 800-53 Rev.4.

• Performed Information Systems Security Audits and Certification and Accreditation (C&A) Test in compliance with the NIST standards.

• Performed continuous monitoring of security controls to ensure that they are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the cybersecurity requirements for assigned IT systems.

• Assisted with pre-assessment preparation. • Performed assessments, POA&M Remediation, and document creation using NIST SP 800-53.

Education

Bachelor of Science - Computer Science

Kent State University
Kent, OH
12-2008

Skills

NIST SP 800 series, FedRAMP

Third Party Risk, ServiceNow

Test Result Controls, Access Control Management

FIPS 199/200, SAP/SAR

System Security Plan, Policy Review

Continuous Monitoring, Artifacts Gathering

PTA/PIA, Nessus

Risk Assessment, POAM Management

RMF (Risk Management Framework), ISO 2700X

Data Security, Privacy

Timeline

Information Security Analyst (Contractor)

Maximus
01.2024 - 12.2024

Third Party Risk Analyst (Contractor)

Home Depot
01.2023 - 12.2023

Cyber Security Analyst/ Security Control Assessor

Accenture
03.2019 - 11.2022

Bachelor of Science - Computer Science

Kent State University

Certification

CompTIA Security+

Google Cybersecurity

Mawuli Senoo