Summary
Overview
Work History
Education
Skills
Timeline
Generic

Gershom Offiong

St. Louis,MO

Summary

Experienced IT Auditor with over 3 years of experience in commercial client using SOX, HIPAA, COSO and SSAE18 to perform audit. Excellent reputation for resolving problems and skilled at analyzing potential risks and providing recommendations to improve operations.

Overview

9
9
years of professional experience

Work History

IT Auditor

Edward Jones
12.2021 - Current
  • Determine security controls effectiveness (i.e., controls implemented correctly, operating as intended, and meeting security requirements) using the three basic methods of assessment - Examine, Interview and Test (EIT).
  • Worked with Engagement Team to identify and resolve client issues discovered during Audit and Review Process.
  • Maintain good working relationship with the clients to enhance customers' satisfaction and work with client management and staff at all levels to perform audit service.
  • Assisted in preparing IT audit program to include access control, change management controls and application controls; and identify deficiencies in the design and operating effectiveness of control and provide recommendation.
  • Identify and communicate IT audit findings to senior management and client.
  • Conduct testing of Sarbanes-Oxley (SOX), PCI DSS and HIPAA, COBIT and COSO.
  • Perform all stages of audit planning, fieldwork, executive, reporting and follow up.
  • Assisting with walkthrough and held meetings with client to discuss areas to be tested: Access, Risk Management, Configuration Management, Identity and Access Management, Incident Response, Contingency Planning, and Security training.
  • Coordinated with IT department and external auditors during SOX IT testing
  • Perform and document audit activities in accordance with professional standards such as COSO and SOX internal control frameworks Audit Project.
  • Consulted clients on internal control systems development and audit program improvements

TECHNICAL SPECIALIST II

Edward Jones
06.2015 - 12.2021
  • Provide detailed analysis of information along with alternative solutions and present recommendations to business area leaders for process or system improvements.
  • Analyze, research and interpret complex information in order to make subjective decisions.
  • Frequent communication with 25% home office leaders, 20% branch offices, and/or vendors to
    resolve issues, answer escalated questions and carry out responsibilities.
  • Reviewed technical documents and collaborated on customized design to achieve process
    improvement and compliance.
  • Train and coaching 20% of associates within or across multiple business areas.
  • Completed troubleshooting and diagnostics on company resources.
  • Break down and evaluate user problems, use test scripts, personal expertise and probing
    questions.



Education

Bachelor of Arts - Economic Studies

Southern Illinois University Carbondale
Carbondale, IL

Google Technical Support Fundamentals
Coursera

Skills

  • Experience performing audit with IT general controls (ITGC) such as access control, change management, IT operations, disaster recovery and platform reviews (Windows and UNIX)
  • Document findings in the Security Assessment Report (SAR) and Conduct risk assessments
  • Produce work papers clearly documenting work performed
  • Assisted in Developing audit plans and programs to evaluate control areas on projects such as
    financial statement audit, SOX
    testing, SOC, COBIT, and FISCAM
  • Testing and documentation of key SOX and IT General controls leveraging a defined process compliance monitoring process
  • Performed ITGC and application control testing using SOC1 type 2 and SOC 2
  • Perform audits on UNIX, Windows, other IT Infrastructures and Disaster Recovery

Timeline

IT Auditor

Edward Jones
12.2021 - Current

TECHNICAL SPECIALIST II

Edward Jones
06.2015 - 12.2021

Bachelor of Arts - Economic Studies

Southern Illinois University Carbondale

Google Technical Support Fundamentals
Gershom Offiong