Dynamic Information Security Analyst with proven expertise at African Diaspora Development Institute in risk assessment and compliance. Skilled in developing security policies aligned with NIST and ISO standards, enhancing third-party risk management, and fostering cybersecurity awareness. Strong analytical and communication skills drive successful incident response and vulnerability remediation initiatives.
Overview
6
6
years of professional experience
1
1
Certification
Work History
Information Security Analyst
African Diaspora Development Institute (ADDI)
05.2022 - Current
Developed, implemented, and maintained organizational security policies and compliance programs aligned with NIST CSF and ISO/IEC 27001.
Conducted risk and vulnerability assessments, identifying critical gaps and providing actionable recommendations to mitigate risks.
Develop, implement, and manage proactive threat detection techniques.
Initiate investigations into suspected insider incidents, collaborating with legal, HR, and IT teams.
Establish and maintain security standards and procedures in compliance with all regulatory agencies/groups and industry best practices.
Managed and enhanced third-party risk management processes, reviewing vendor compliance against CIS Controls and ISO standards.
Maintained and monitored compliance across business units, ensuring adherence to security frameworks.
Performed security audits, identifying control weaknesses, and proposing improvements to strengthen security posture.
Authored and disseminated cybersecurity best practices to educate staff about emerging threats and secure configuration guidelines.
Recommended and implemented security enhancements for incident response and disaster recovery plans.
Sr. Business System Analyst
Optum
01.2019 - 03.2022
Due Diligence ServiceNow ticket verbiage.
Data mining and review of information to update the IT Site Survey Due Diligence form within 48 hours prior to on-site survey. This will ensure that the most up-to-date information is available for the on-site survey.
Legacy EMR Access Report.
Clinic Integration Workbook.
Notification to Local desktop Management – sending email after creation of ticket. Ensures local desktop management is aware of the Due diligence/request for support.
FastKeys for ServiceNow ticket or QRG document containing verbiage to be used for standardization.
AP Form (Smartsheet).
Confirm with PM that the Legacy IT vendor will be on-site/available on the date of the due diligence.
Establish best practices and standardized processes and procedures specific to the IT Due Diligence Site Survey as part of the Due Diligence process.
Excell, PowerPoint, SQL, AI.
MFA setup for Sparq VPN.
MFA setup for office365.
Application tracking Sheet – confirming if they can access some sites.
Wireless Access for Mobile Devices WLAN.
Enable WiFi if it is not already enabled.
Security WLANm01 WPA2 Enterprise.
MS Domain ID Password.
MS Domain Password.
Installing Printer Logic.
Update information in GSS (Global self-services).
Webex Calling User setup.
Daily overview call document.
EPCS token registration.
Education
Higher National Diploma - Computer Science
Divine Computer College
Lagos Nigeria
06-2000
Some College (No Degree) - Cybersecurity
Houston Communicating College
Texas City, TX
Skills
Governance, Risk, and Compliance (GRC)
Risk Assessment and Mitigation
Security Policy Development (NIST, ISO 27001, PCI DSS)
Co-chair & Head of the Cultural Department at African Diaspora Youth Forum in Europe-ADYFE)Co-chair & Head of the Cultural Department at African Diaspora Youth Forum in Europe-ADYFE)