Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Timeline
Generic

BEATRICE DJEUKOU

Dallas,TX

Summary

Passionate Information Security Specialist with extensive experience in developing and testing security frameworks for cloud-based software. Skilled in aligning security architecture with business goals, deploying and managing security solutions, and enhancing cloud infrastructure security. Experienced in GRC Archer for governance, risk, and compliance management. Strong communicator with a track record in leading ISO 27001 certification processes and participating in SOC2 audits, NIST 800-53, 800-37, FIPS 199, and FIPS 200. Committed to continuous learning and staying abreast of emerging threats and best practices.

Overview

7
7
years of professional experience
1
1
Certification

Work History

Information Security Analyst

Boston Scientific
05.2020 - Current
  • Conducted internal audits to identify areas of improvement within the organization's information security program
  • Championed a culture of continuous improvement through regular evaluations of existing security measures against established benchmarks and metrics
  • Developed, tested and implemented security policies, plans and procedures for organizational protection
  • Performed risk analyses to identify appropriate security countermeasures
  • Deployed and configured Cloud Access Security Broker (CASB) solutions to monitor and control data traffic between on- premises and cloud environments, ensuring data security and compliance
  • Led certification process for ISO 27001 compliance, including gap analysis, policy development, risk assessment, and implementation of security controls to achieve certification
  • Participated in SOC2 audits by providing documentation, evidence, and evidence of security controls to auditors, ensuring compliance with service organization controls related to security, availability, processing integrity, confidentiality, and privacy
  • Implemented NIST 800-53 controls to establish security baselines and ensure confidentiality, integrity, and availability of sensitive information
  • Conducted FIPS 199 categorization of information systems to determine the appropriate security controls required to protect organizational data assets
  • Developed and maintained FIPS 200 security controls to enforce minimum security requirements for information systems and applications and ensure compliance with federal standards
  • Used NIST 800-60 guidelines to develop and maintain risk management strategies, including risk assessments, threat modeling, and vulnerability management processes
  • Led implementation of NIST 800-37 framework for risk management, guiding organization through identifying, assessing, and mitigating security risks across IT systems and applications
  • Utilized security information and event management (SIEM) tools to monitor and analyze security events, detect anomalies, and investigate potential security incidents
  • Implemented CrowdStrike Falcon endpoint detection and response (EDR) platform to proactively detect and respond to sophisticated cyber threats, including fileless malware, zero-day exploits, and advanced persistent threats (APTs)
  • Utilized GRC Archer as governance, risk, and compliance (GRC) platform to streamline risk management processes, automate compliance assessments, and provide real-time visibility into organization's risk posture
  • Implemented and managed AWS security solutions to secure cloud infrastructure, including Identity and Access Management (IAM), Virtual Private Cloud (VPC) configurations, and Security Groups.

Compliance and Operations Analyst

Celanese
03.2017 - 04.2020
  • Performed validation and testing of models to promote adequacy and reformulate models as necessary
  • Presented results of mathematical modeling and data analysis to management or other end users
  • Enhanced collaboration between cross-functional teams by establishing effective communication channels and facilitating meetings
  • Conducted daily email monitoring to identify conflicts and ensure compliance with applicable policies and regulations
  • Performed comprehensive compliance reviews on a daily, weekly, monthly, quarterly, and annual basis, including trade surveillance processes
  • Supported the CCO in meeting internal and external reporting requirements and responding to regulatory audits, exams, inquiries, and assessments
  • Supported compliance programs, managing the compliance calendar and audits
  • Conducted forensic testing, coordinated with vendors, and managed client meetings
  • Analyzed data trends, recommended solutions, and supported business operations
  • Managed policy updates, posting, archiving, and compliance memos.

Education

Bachelor of Science in Computer Science -

University of Buea
05.2013

Skills

  • Security Standards & Frameworks: NIST (800-37, 800-53, 800-60), ISO 27001, FIPS (199, 200)
  • Cloud Security: AWS Security, CASB Solutions
  • SIEM/EDR Tools ((CrowdStrike Falcon, Malwarebytes)
  • Compliance: SOX, SOC2, AML, FinCEN 314(a) & (b)
  • Technical Proficiency: AWS IAM, VPC, Security Groups, CrowdStrike Falcon, Malwarebytes, GRC Archer
  • Others: Audit Support, Risk Management, Problem-Solving, Multitasking
  • Vulnerability Assessment
  • Threat Intelligence
  • Network Security
  • SIEM management
  • Incident Response
  • Critical Thinking Skills
  • Regulatory Compliance
  • Identity Management
  • Security metrics
  • Compliance Monitoring
  • Incident Response Management
  • Data Encryption
  • Deductive reasoning skills
  • Disaster Recovery
  • Data Security
  • Cybersecurity Expertise

Certification

  • Security+ (CompTIA Security+)
  • CISA (Certified Information Systems Auditor)

Languages

English
Native or Bilingual
French
Native or Bilingual

Timeline

Information Security Analyst

Boston Scientific
05.2020 - Current

Compliance and Operations Analyst

Celanese
03.2017 - 04.2020

Bachelor of Science in Computer Science -

University of Buea
BEATRICE DJEUKOU