Summary
Overview
Work History
Education
Skills
Certification
Work Availability
Quote
Timeline
Generic
Dionne Porter

Dionne Porter

Clayton,NC

Summary

Experienced and enthusiastic Professional with track record of success across wide range of industries. Possesses exceptional interpersonal, problem-solving and analytical skills to provide advice and expertise to organizations improving business performance. Experienced in all aspects of governance, risk and compliance.

Overview

13
13
years of professional experience
1
1
Certification

Work History

Consultant

Porter Business Group, LLC
12.2020 - Current
  • Identify and document specific security issues, propose resolution options, and interpret matters from perspective of involved stakeholders
  • Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally recognized security concepts tailored to meet requirements of organization
  • Develop risk/vulnerability assessment programs and questionnaires to aid in identification and mitigation of security risks
  • Provide implementation guidance for data protection requirements including but not limited to GDPR, Privacy Shield, Russia Data Localization, EU Copyright Law, CCPA
  • Advise on compliance, audit and/or security requirements in association with applicable standards/regulations and/or best practices, including SOC 2, NIST 800-53, ISO 27001
  • Research and recommend changes to enhance or streamline quality and information security procedures.
  • Manage multiple deadlines across several businesses to meet dynamic needs of multiple clients.
  • Conduct regular reviews of operations and identified areas for improvement.

Director - Governance, Risk & Compliance

Degreed
03.2018 - 09.2020
  • Managed Security Compliance Team of four (4) employees
  • Provided implementation guidance for data protection requirements including but not limited to GDPR, Privacy Shield, Russia Data Localization, EU Copyright Law, CCPA
  • Managed successful completion of three (3) SOC 2 audits with zero findings and minimal observations
  • Successfully completed client-led audits in half allotted time with zero findings
  • Developed Vendor Management framework
  • Completed Privacy Impact Assessments for prospects in support of sales cycle
  • Interfaced with client security teams to mitigate major security, risk, and compliance concerns
  • Partnered with Legal to review compliance related items in Enterprise Agreements
  • Partnered with HR, Engineering and Product teams to develop compliance and monitoring programs and processes
  • Oversaw operations and provided corrective feedback to achieve daily and long-term goals.
  • Evaluated company documentation to verify alignment with regulatory requirements.
  • Conducted company-wide privacy and risk assessments

Information Security Specialist

Degreed
10.2015 - 03.2018
  • Managed security and compliance commitments
  • Interfaced with client security teams to mitigate major security, risk, and compliance concerns
  • Worked with sales teams and employees in general to provide basic security knowledge in support of client questionnaires
  • Provided international security and data protection guidance for global sales
  • Completed third-party security risk assessments and provided controls of security environment to potential clients
  • Monitored remediation of vulnerabilities to completion
  • Participated in discussions with Legal to review security line items in Enterprise Agreements
  • Managed Business Continuity Plan
  • Managed information system regulatory compliance to meet updated guidelines.
  • Worked with other teams to enforce security of applications and systems.
  • Investigated and resolved incidents of unauthorized access to sensitive information.
  • Developed, tested and implemented security policies, plans and procedures for organizational protection.
  • Performed risk analyses to identify appropriate security countermeasures.
  • Educated and trained users on information security policies and procedures.
  • Recommend improvements in security systems and procedures.

Sr. IT Risk & Compliance Analyst

First Citizens Bank
09.2013 - 10.2015
  • Lead development of risk metric and reporting frameworks for IT
  • Developed metrics program for Information Security and departmental Risk Register
  • Facilitated development and execution of IT Risk Review Program
  • Gathered relevant business, regulatory, process, and system information
  • Validated/updated process flows, risks, and controls
  • Administered IT policies, standards, and procedures program
  • Provided guidance and education of risks and internal controls for IT
  • Worked with management and associates to identify and assess current and emerging risks associated with technology solutions and strategic initiatives of bank
  • Ensured appropriate remediation strategies for risks were employed
  • Participated in regulatory audits
  • Applied subject matter expertise and industry knowledge to provide independent oversight to operational risk management activities.

Sr. IT Analyst

Progress Energy
07.2010 - 09.2013
  • Supported NERC-CIP regulatory requirements and cyber security for process computing environments
  • Implemented audit controls and processes surrounding protection of confidential data
  • Enhanced project management skills by defining and presenting system solutions and timelines for business needs or technical problems.
  • Oversaw document development across project workstreams to create internal control statements per compliance and regulatory standards.
  • Monitored regulatory compliance and assurance activities and completed reviews and assessments
  • Managed compliance audits, reviews, and spot checks
  • Partnered with Legal Counsel to address issues with regulatory auditors

Education

B.S - Accounting

North Carolina Agricultural & Technical State University
Greensboro
05.1997

Skills

  • Project Management
  • Change Management
  • Risk Management Strategies
  • Reports and Documentation
  • Information Security
  • Analysis and Evaluation
  • Processes and Procedures
  • Attention to Detail
  • Work Planning and Prioritization
  • Document Review
  • Procedures Compliance

Certification

CISA certification

Work Availability

monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Quote

Success isn't just about what you accomplish in your life; it's about what you inspire others to do.
Unknown

Timeline

Consultant

Porter Business Group, LLC
12.2020 - Current

Director - Governance, Risk & Compliance

Degreed
03.2018 - 09.2020

Information Security Specialist

Degreed
10.2015 - 03.2018

Sr. IT Risk & Compliance Analyst

First Citizens Bank
09.2013 - 10.2015

Sr. IT Analyst

Progress Energy
07.2010 - 09.2013

B.S - Accounting

North Carolina Agricultural & Technical State University
Dionne Porter