Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

FAITH Ndukwe

LYNNWOOD,WA

Summary

Three years experience as an IT Auditor and three years experience as a Security Control Assessor and Risk Assessment and Management. Experience with SOX audits and Application Controls leveraging COSO and COBIT Framework. Strong history of providing excellent team leadership and outstanding program management capabilities with advanced knowledge in supervising business lines, compliance teams and audits.

Overview

6
6
years of professional experience
1
1
Certification

Work History

IT Auditor

DTT Consulting
Greenbelt, MD
03.2019 - Current
  • Perform testing of information technology general controls for ERP systems like people soft, oracle financials and other leading private and public sectors.
  • Document control weakness and related testing expectations.
  • Experience testing access control, change management and IT operations using COBIT and FISCAM framework.
  • Assist in development and implementation of goals, policies, priorities and procedures relating to internal controls over financial reporting and sox.
  • Identified control gaps in processes, procedures and systems through in-depth research and assessment and suggested methods for improvement.
  • Evaluate design of internal controls and provide recommendations on control processes.
  • Review and evaluate effectiveness of internal controls in a variety of business areas.
  • Prepare updates to management to include management control remediation plan.
  • Engage in testing design and operating effectiveness of internal controls over financial reporting.

Security Control Assessor.

DTT Consulting.
Greenbelt MD.
06.2016 - 06.2019
  • Performed risk analyses to identify appropriate security countermeasures.
  • Develops, reviews, updates, and enforces implementation of Information Security System Policies, System Security Plans (SSPs), and Security baselines in accordance with FISMA, NIST SP 800-18, OMB and industry best security practices.
  • Supports and manages systems going through the Assessment and Authorization (A&A) process while maintaining Confidentiality, Integrity and Availability (CIA) of the systems and the data stored in them are in compliance with FISMA and NIST Special Publications 800 series.
  • Conducts reviews of security documents updated by ISSOs to ensure FISMA compliance, reviews and validate items uploaded into POA&M tracking tool to support the remediated findings .
  • Assists the Preparation of Assessment & Authorization (A&A) packages development and reviews security documents such as FIPS 199 categorization, E-Authentication risk assessment, System Security Plan (SSP), Privacy threshold analysis (PTA), Privacy Impact Assessment (PIA), POA&M and Contingency Plans, for efficacy and compliance with NIST guidance.
  • Assist System Owners and ISSOs through the Certification and Accreditation (C&A) Process, ensuring that Operational, management and technical controls securing sensitive Security Systems are in place and being followed according to the Federal Guideline (NIST SP 800-137 RMF).
  • Manage the POA&M process for designated IT systems to provide timely detection, identification. and alerting of non-compliance issues.
  • Prepared a variety of different written communications, reports and documents to ensure smooth operations.

Education

Associate of Arts - Associate in Business Administration.

Edmonds Community College
Lynnwood, WA
04.2020

Skills

  • Microsoft office (World, Excel, PowerPoint
  • Proficient Knowledge in Microsoft Team, teammates and sharepoint
  • Detailed oriented individual focusing on accuracy in completing assignments, including good sense of design, proof reading, grammar, and analytical skills
  • Working knowledge of FISMA, NIST, HIPPA, COBIT, SOC and PCI DSS standards
  • Ability to lead team to efficiently complete engagement and meet deadlines
  • Vulnerability and risk assessment
  • Risk assessment and mitigation

Certification

Security +.

CISA in progress.

Timeline

IT Auditor

DTT Consulting
03.2019 - Current

Security Control Assessor.

DTT Consulting.
06.2016 - 06.2019

Associate of Arts - Associate in Business Administration.

Edmonds Community College