Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Gabriel Samuel

Fort Worth,TX

Summary

Results-oriented Senior GRC Analyst with over 10 years of extensive experience in IT Auditing, Risks, and Compliance, seeking a challenging role that allows me to leverage my expertise in security compliance frameworks and hands-on experience in managing GRC and security tools. Eager to contribute to a dynamic team environment and drive compliance initiatives for a forward-thinking organization.

Overview

10
10
years of professional experience
1
1
Certification

Work History

Senior GRC Analyst

UT Southwestern Medical Center
Dallas, TX
03.2016 - Current
  • Led cross-functional efforts to define and deliver compliance programs, including SOC 2, ISO 27001, PCI, HIPAA, GDPR, and TX-RAMP, ensuring adherence to regulatory requirements and industry best practices.
  • Coordinated and conducted IT and security-related audits, ensuring alignment with industry best practices and regulatory requirements.
  • Developed and documented security plans, policies, and procedures to support organizational objectives and enhance operational excellence.
  • Implemented improvements in existing processes, monitored internal controls, and conducted risk assessments to mitigate potential vulnerabilities.
  • I partnered closely with internal stakeholders and external partners to communicate security and compliance best practices and drive adherence to applicable laws and regulations.
  • Provided leadership and guidance in IT controls testing, identified remediation options, and prioritized closure of audit findings.
  • Collaborated closely with engineering teams to validate compliance-relevant changes, conduct product testing, and assist in drafting documentation for compliance efforts.
  • Stayed abreast of emerging compliance requirements and integrated them into the organization's security policy framework.
  • Maintained high-quality internal policy and procedure documents, ensuring accuracy, accountability, and operational excellence.
  • Participated in regular meetings with management to assess and address issues and identify and implement improvements.
  • Worked collaboratively with Marketing and Privacy Legal teams to support the organization's privacy tooling and ensure compliance with privacy regulations.
  • Partnered with the Security team to maintain corporate security tooling and processes, fostering a culture of continuous improvement and security awareness.
  • Maintained accurate records of all data collected during analysis processes.
  • Created reports, presentations, and other documentation for stakeholders.

GRC Consultant

Cook Children's Hospital
Fort Worth, TX
12.2013 - 03.2016
  • I helped clients attain and maintain regulatory compliance and security assurance by providing them with advice on cybersecurity, risk management, and compliance methods.
  • I carried out IT controls testing, conducted internal risk assessments, and created recommendations based on observed results.
  • I worked with outside auditors to support audits and guarantee adherence to legal requirements and foundations for trust.
  • I Provided training and support to process and control owners, helping them understand audit results and prioritize remediation efforts.
  • I collaborated with cross-functional teams to ensure effective communication regarding GRC initiatives.
  • I monitored industry trends related to GRC regulations and standards to inform organizational strategy decisions.
  • I Assisted in developing key performance indicators for tracking progress against goals.
  • I coordinated activities with external auditors during audit engagements.
  • I evaluated third-party vendors for security compliance according to company requirements.

Education

Bachelor of Science -

Enugu State University of Science and Technology

Skills

  • Proficient in GRC frameworks and methodologies (eg, COSO, COBIT, ITIL)
  • Strong understanding of regulatory compliance standards (PCI DSS, ISO27001, SOC2, GDPR, CCPA)
  • Experience with compliance requirements such as ISO, SOC, FedRAMP, TX-RAMP
  • Excellent communication, organizational, and leadership skills
  • Ability to understand and communicate complex technical concepts to non-technical audiences
  • Strong problem-solving skills and attention to detail
  • Self-driven with an entrepreneurial mindset and ability to thrive in fast-paced environments

Certification

  • CISA
  • CRISC
  • CDPSE
  • AWS-SAA

Timeline

Senior GRC Analyst

UT Southwestern Medical Center
03.2016 - Current

GRC Consultant

Cook Children's Hospital
12.2013 - 03.2016

Bachelor of Science -

Enugu State University of Science and Technology
Gabriel Samuel