Summary
Overview
Work History
Education
Skills
Certification
Honors And Awards
Software And Platform
Timeline
Generic

IBRAHIMA DIABOULA

Providence,RI

Summary

Seasoned Risk Management Analyst with deep expertise in data analysis and cybersecurity. Excel in building relationships and leading cross-functional teams, ensuring compliance with complex regulations. Proactive and detail oriented, I'm committed to maintaining rigorous security standards to protect the organization and its stakeholders.

Overview

9
9
years of professional experience
1
1
Certification

Work History

IT Security Analyst

IptiQ - Swiss Re
Boston, MA
02.2022 - Current
  • Conduct comprehensive security assessments for new and existing vendors to identify potential risks and vulnerabilities
  • Evaluate vendor security practices, including data handling, encryption, access controls, and incident response capabilities, ensuring they meet the organization's security standards and compliance requirements
  • Analyze assessment findings to determine the risk level of each vendor
  • Develop and implement risk mitigation strategies to address identified security gaps
  • Regularly monitor and manage vendor risk profiles, adapting to changes in vendor operations or the threat landscape
  • Perform due diligence for prospective vendors and conduct ongoing monitoring of current vendors to ensure continuous compliance with security policies and standards
  • Stay informed about any changes in vendors' security postures or the emergence of new threats that could impact the organization
  • Work closely with procurement, legal, and business units to integrate security considerations into the vendor selection and management process
  • Provide expert advice on security requirements and best practices to ensure that vendor contracts include necessary security provisions
  • Prepare detailed reports on vendor security assessments, risk analysis, and monitoring activities
  • Document and communicate findings, recommendations, and progress on risk mitigation efforts to stakeholders, ensuring transparency and informed decision-making within the organization.

FedRAMP Compliance Analyst

Partners In Health | MA Department of Public Health
Boston, MA
11.2020 - 02.2022
  • Led and coordinated the FedRAMP authorization process, ensuring all security controls and documentation met FedRAMP standards
  • Acted as the primary liaison between the CSP, 3PAO, and federal agencies
  • Managed and facilitated comprehensive security assessments conducted by Third-Party Assessment Organizations (3PAOs), ensuring thorough evaluation of CSP's security controls in alignment with FedRAMP requirements
  • Developed and maintained key FedRAMP documentation, including System Security Plans (SSPs), Policies and Procedures, and Continuous Monitoring Plans, ensuring they accurately reflected the CSP's security posture
  • Conducted detailed risk analyses based on 3PAO findings, developed strategic mitigation plans to address identified vulnerabilities, and enhanced overall security measures
  • Communicated effectively with Agency Authorizing Officials (AOs) and the FedRAMP PMO, presenting security findings and recommendations to facilitate informed decision-making and authorization processes.

Financial Analyst - Third-Party Risk Management

Citizens One
Johnson, RI
08.2020 - 02.2021
  • Conducted comprehensive financial analyses on vendors to assess their financial stability, creditworthiness, and risk of default
  • Utilized financial statements, credit reports, and market data to evaluate financial health and identify potential financial risks
  • Played a key role in the vendor selection process by providing financial risk assessments, ensuring that financially stable and reliable vendors are chosen to minimize risk exposure
  • Review and validate provided documentation such as SOC Type-I&II report, Vulnerability scan report, independent pen-test report, ISO 270001, PCI-DSS certification
  • Monitored the financial performance and health of active vendors on an ongoing basis, identifying trends and potential financial distress
  • Prepared and presented detailed reports on vendor financial risk to senior management, enabling informed decision-making
  • Developed and recommended risk mitigation strategies to manage identified financial risks associated with vendors
  • Collaborated with procurement and supply chain teams to implement risk management practices that minimize potential financial impact.

Investment Management Operations Analyst

State Street Bank
Quincy, MA
11.2017 - 11.2018
  • Monitor pending shares and collateral, ensuring timely processing of newly available shares
  • Deliver exceptional customer service as the primary point of contact for clients, prioritizing their needs
  • Uphold investment policies and regulations
  • Collaborate with investment managers, agents, brokers, and internal SSB departments to monitor third-party and security finance loans, preventing defective trading
  • Negotiate extensions of expired events with traders to generate profits
  • Train new hires on tech tools and investment policies.

Operations Analyst / Sales Representative

Cambridge Savings Bank
Belmont, MA
06.2015 - 11.2016
  • Processed deposits, withdrawals, and payments while providing excellent customer service
  • Supported the sales team in identifying customer needs and promoting bank services, generating increased sales and revenue.

Education

Bachelor of Arts - <ul><li>International Global Studies</li><li>Anthropology</li><li>Peace, Conflict & Coexistence</li></ul>

Brandeis University
01.2016

Skills

  • Risk Assessment
  • Security controls implementation
  • TPRM Frameworks
  • Cybersecurity
  • Regulatory Compliance: GDPR; CCPA; HIPAA; GLBA; LGPA
  • Data Analysis & reporting
  • Stakeholder Communication & Collaboration
  • Problem-solving; Decision-making
  • Project Management
  • Continuous Improvement
  • Capital Markets
  • Banking & Investment Operations
  • Financial Regulations
  • Relationship Management
  • Multilingual: Fluent in English, French, Fula, Mandingo, Susu

Certification

  • Certified Third Party Risk Professional (CTPRP)
  • Certified Information Systems Auditor (CISA)

Honors And Awards

  • Sorenson Fellowship, Brandeis Int’l Center for Ethics Justice, and Public Life, 2013, Received funding to travel to Guinea and implemented an initiative exploring nationalism in Guinea-Conakry and bridging ethnic barriers by facilitating communication between three groups with historical conflict. Featured in publication From Looking to Bearing Witness.
  • Clinton Global Initiative Semi-Finalist, Clinton Global Initiative University, 2013, This initiative empowers young leaders around the world to give back to their communities.

Software And Platform

  • Bitsight; IMB AppScan; Nessus
  • AppDetective; Tenable Security Center
  • Salesforce; Oracle; SharePoint
  • Nexpose SFTP/FTP Client
  • Microsoft Office Product; Windows
  • SQL; Power BI; Azure; Trello; Smartsheet

Timeline

IT Security Analyst

IptiQ - Swiss Re
02.2022 - Current

FedRAMP Compliance Analyst

Partners In Health | MA Department of Public Health
11.2020 - 02.2022

Financial Analyst - Third-Party Risk Management

Citizens One
08.2020 - 02.2021

Investment Management Operations Analyst

State Street Bank
11.2017 - 11.2018

Operations Analyst / Sales Representative

Cambridge Savings Bank
06.2015 - 11.2016

Bachelor of Arts - <ul><li>International Global Studies</li><li>Anthropology</li><li>Peace, Conflict & Coexistence</li></ul>

Brandeis University
IBRAHIMA DIABOULA