Seasoned Risk Management Analyst with deep expertise in data analysis and cybersecurity. Excel in building relationships and leading cross-functional teams, ensuring compliance with complex regulations. Proactive and detail oriented, I'm committed to maintaining rigorous security standards to protect the organization and its stakeholders.
Overview
9
9
years of professional experience
1
1
Certification
Work History
IT Security Analyst
IptiQ - Swiss Re
Boston, MA
02.2022 - Current
Conduct comprehensive security assessments for new and existing vendors to identify potential risks and vulnerabilities
Evaluate vendor security practices, including data handling, encryption, access controls, and incident response capabilities, ensuring they meet the organization's security standards and compliance requirements
Analyze assessment findings to determine the risk level of each vendor
Develop and implement risk mitigation strategies to address identified security gaps
Regularly monitor and manage vendor risk profiles, adapting to changes in vendor operations or the threat landscape
Perform due diligence for prospective vendors and conduct ongoing monitoring of current vendors to ensure continuous compliance with security policies and standards
Stay informed about any changes in vendors' security postures or the emergence of new threats that could impact the organization
Work closely with procurement, legal, and business units to integrate security considerations into the vendor selection and management process
Provide expert advice on security requirements and best practices to ensure that vendor contracts include necessary security provisions
Prepare detailed reports on vendor security assessments, risk analysis, and monitoring activities
Document and communicate findings, recommendations, and progress on risk mitigation efforts to stakeholders, ensuring transparency and informed decision-making within the organization.
FedRAMP Compliance Analyst
Partners In Health | MA Department of Public Health
Boston, MA
11.2020 - 02.2022
Led and coordinated the FedRAMP authorization process, ensuring all security controls and documentation met FedRAMP standards
Acted as the primary liaison between the CSP, 3PAO, and federal agencies
Managed and facilitated comprehensive security assessments conducted by Third-Party Assessment Organizations (3PAOs), ensuring thorough evaluation of CSP's security controls in alignment with FedRAMP requirements
Developed and maintained key FedRAMP documentation, including System Security Plans (SSPs), Policies and Procedures, and Continuous Monitoring Plans, ensuring they accurately reflected the CSP's security posture
Conducted detailed risk analyses based on 3PAO findings, developed strategic mitigation plans to address identified vulnerabilities, and enhanced overall security measures
Communicated effectively with Agency Authorizing Officials (AOs) and the FedRAMP PMO, presenting security findings and recommendations to facilitate informed decision-making and authorization processes.
Financial Analyst - Third-Party Risk Management
Citizens One
Johnson, RI
08.2020 - 02.2021
Conducted comprehensive financial analyses on vendors to assess their financial stability, creditworthiness, and risk of default
Utilized financial statements, credit reports, and market data to evaluate financial health and identify potential financial risks
Played a key role in the vendor selection process by providing financial risk assessments, ensuring that financially stable and reliable vendors are chosen to minimize risk exposure
Review and validate provided documentation such as SOC Type-I&II report, Vulnerability scan report, independent pen-test report, ISO 270001, PCI-DSS certification
Monitored the financial performance and health of active vendors on an ongoing basis, identifying trends and potential financial distress
Prepared and presented detailed reports on vendor financial risk to senior management, enabling informed decision-making
Developed and recommended risk mitigation strategies to manage identified financial risks associated with vendors
Collaborated with procurement and supply chain teams to implement risk management practices that minimize potential financial impact.
Investment Management Operations Analyst
State Street Bank
Quincy, MA
11.2017 - 11.2018
Monitor pending shares and collateral, ensuring timely processing of newly available shares
Deliver exceptional customer service as the primary point of contact for clients, prioritizing their needs
Uphold investment policies and regulations
Collaborate with investment managers, agents, brokers, and internal SSB departments to monitor third-party and security finance loans, preventing defective trading
Negotiate extensions of expired events with traders to generate profits
Train new hires on tech tools and investment policies.
Operations Analyst / Sales Representative
Cambridge Savings Bank
Belmont, MA
06.2015 - 11.2016
Processed deposits, withdrawals, and payments while providing excellent customer service
Supported the sales team in identifying customer needs and promoting bank services, generating increased sales and revenue.
Education
Bachelor of Arts - <ul><li>International Global Studies</li><li>Anthropology</li><li>Peace, Conflict & Coexistence</li></ul>
Multilingual: Fluent in English, French, Fula, Mandingo, Susu
Certification
Certified Third Party Risk Professional (CTPRP)
Certified Information Systems Auditor (CISA)
Honors And Awards
Sorenson Fellowship, Brandeis Int’l Center for Ethics Justice, and Public Life, 2013, Received funding to travel to Guinea and implemented an initiative exploring nationalism in Guinea-Conakry and bridging ethnic barriers by facilitating communication between three groups with historical conflict. Featured in publication From Looking to Bearing Witness.
Clinton Global Initiative Semi-Finalist, Clinton Global Initiative University, 2013, This initiative empowers young leaders around the world to give back to their communities.
Software And Platform
Bitsight; IMB AppScan; Nessus
AppDetective; Tenable Security Center
Salesforce; Oracle; SharePoint
Nexpose SFTP/FTP Client
Microsoft Office Product; Windows
SQL; Power BI; Azure; Trello; Smartsheet
Timeline
IT Security Analyst
IptiQ - Swiss Re
02.2022 - Current
FedRAMP Compliance Analyst
Partners In Health | MA Department of Public Health
11.2020 - 02.2022
Financial Analyst - Third-Party Risk Management
Citizens One
08.2020 - 02.2021
Investment Management Operations Analyst
State Street Bank
11.2017 - 11.2018
Operations Analyst / Sales Representative
Cambridge Savings Bank
06.2015 - 11.2016
Bachelor of Arts - <ul><li>International Global Studies</li><li>Anthropology</li><li>Peace, Conflict & Coexistence</li></ul>