Experienced and enthusiastic Professional with track record of success across wide range of industries. Possesses exceptional interpersonal, problem-solving and analytical skills to provide advice and expertise to organizations improving business performance. Experienced in all aspects of governance, risk and compliance.
Overview
13
13
years of professional experience
1
1
Certification
Work History
Consultant
Porter Business Group, LLC
12.2020 - Current
Identify and document specific security issues, propose resolution options, and interpret matters from perspective of involved stakeholders
Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally recognized security concepts tailored to meet requirements of organization
Develop risk/vulnerability assessment programs and questionnaires to aid in identification and mitigation of security risks
Provide implementation guidance for data protection requirements including but not limited to GDPR, Privacy Shield, Russia Data Localization, EU Copyright Law, CCPA
Advise on compliance, audit and/or security requirements in association with applicable standards/regulations and/or best practices, including SOC 2, NIST 800-53, ISO 27001
Research and recommend changes to enhance or streamline quality and information security procedures.
Manage multiple deadlines across several businesses to meet dynamic needs of multiple clients.
Conduct regular reviews of operations and identified areas for improvement.
Director - Governance, Risk & Compliance
Degreed
03.2018 - 09.2020
Managed Security Compliance Team of four (4) employees
Provided implementation guidance for data protection requirements including but not limited to GDPR, Privacy Shield, Russia Data Localization, EU Copyright Law, CCPA
Managed successful completion of three (3) SOC 2 audits with zero findings and minimal observations
Successfully completed client-led audits in half allotted time with zero findings
Developed Vendor Management framework
Completed Privacy Impact Assessments for prospects in support of sales cycle
Interfaced with client security teams to mitigate major security, risk, and compliance concerns
Partnered with Legal to review compliance related items in Enterprise Agreements
Partnered with HR, Engineering and Product teams to develop compliance and monitoring programs and processes
Oversaw operations and provided corrective feedback to achieve daily and long-term goals.
Evaluated company documentation to verify alignment with regulatory requirements.
Conducted company-wide privacy and risk assessments
Information Security Specialist
Degreed
10.2015 - 03.2018
Managed security and compliance commitments
Interfaced with client security teams to mitigate major security, risk, and compliance concerns
Worked with sales teams and employees in general to provide basic security knowledge in support of client questionnaires
Provided international security and data protection guidance for global sales
Completed third-party security risk assessments and provided controls of security environment to potential clients
Monitored remediation of vulnerabilities to completion
Participated in discussions with Legal to review security line items in Enterprise Agreements
Managed Business Continuity Plan
Managed information system regulatory compliance to meet updated guidelines.
Worked with other teams to enforce security of applications and systems.
Investigated and resolved incidents of unauthorized access to sensitive information.
Developed, tested and implemented security policies, plans and procedures for organizational protection.
Performed risk analyses to identify appropriate security countermeasures.
Educated and trained users on information security policies and procedures.
Recommend improvements in security systems and procedures.
Sr. IT Risk & Compliance Analyst
First Citizens Bank
09.2013 - 10.2015
Lead development of risk metric and reporting frameworks for IT
Developed metrics program for Information Security and departmental Risk Register
Facilitated development and execution of IT Risk Review Program
Gathered relevant business, regulatory, process, and system information
Validated/updated process flows, risks, and controls
Administered IT policies, standards, and procedures program
Provided guidance and education of risks and internal controls for IT
Worked with management and associates to identify and assess current and emerging risks associated with technology solutions and strategic initiatives of bank
Ensured appropriate remediation strategies for risks were employed
Participated in regulatory audits
Applied subject matter expertise and industry knowledge to provide independent oversight to operational risk management activities.
Sr. IT Analyst
Progress Energy
07.2010 - 09.2013
Supported NERC-CIP regulatory requirements and cyber security for process computing environments
Implemented audit controls and processes surrounding protection of confidential data
Enhanced project management skills by defining and presenting system solutions and timelines for business needs or technical problems.
Oversaw document development across project workstreams to create internal control statements per compliance and regulatory standards.
Monitored regulatory compliance and assurance activities and completed reviews and assessments
Managed compliance audits, reviews, and spot checks
Partnered with Legal Counsel to address issues with regulatory auditors
Education
B.S - Accounting
North Carolina Agricultural & Technical State University
Greensboro
05.1997
Skills
Project Management
Change Management
Risk Management Strategies
Reports and Documentation
Information Security
Analysis and Evaluation
Processes and Procedures
Attention to Detail
Work Planning and Prioritization
Document Review
Procedures Compliance
Certification
CISA certification
Work Availability
monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse
Quote
Success isn't just about what you accomplish in your life; it's about what you inspire others to do.
Unknown
Timeline
Consultant
Porter Business Group, LLC
12.2020 - Current
Director - Governance, Risk & Compliance
Degreed
03.2018 - 09.2020
Information Security Specialist
Degreed
10.2015 - 03.2018
Sr. IT Risk & Compliance Analyst
First Citizens Bank
09.2013 - 10.2015
Sr. IT Analyst
Progress Energy
07.2010 - 09.2013
B.S - Accounting
North Carolina Agricultural & Technical State University