Dedicated GRC analyst focused on completing work quickly to consistently exceed targets. Reliable team member accustomed to taking on challenging tasks.
Overview
24
24
years of professional experience
Work History
Information Technology- GRC, Senior Associate
Santander Consumer, USA
04.2018 - 07.2023
Oversight of 330+ production application Inherent Risk Assessments
IT-GRC oversight of data exchange process between Santander Consumer and our third-party vendors
Maintaining and reporting of monthly KRI metrics for Santander Consumer
Ad-Hoc oversight of data integrity across multiple platforms
Perform Information Security risk assessments of third-party vendors
Manage data exchanges between Santander Consumer and our third-party vendors
Collaborate with 1st line business units and the Vendor Management Office to ensure outstanding third-party issues are remediated in a timely manner
Investigated and recommended risk mitigation strategies to reduce potential losses
Stayed on top of changing industry trends and regulatory standards and keep risk assessments accurate and relevant.
Human Resources - Director of Hiring, Diversity and Inclusion
Globe Life and Accident Insurance
06.2017 - 01.2018
HR business partner for IT, Underwriting, Actuarial, Customer Service, Information Security and Marketing departments
Coordinated successful recruitment and hiring procedures to bring in top-quality staff for open positions at all levels
Oversaw work of ten HR staff and monitored performance of work against objectives
Assessed workforce requirements across each project and conducted recruitment drives and selection processes
Stayed up to date on industry changes to keep organization responsive and compliant with new legal standards.
Third Party Services - Vendor Group Manager
Citibank, Retail Card Services
09.2012 - 06.2016
Responsible for the creation, staffing and management of a centralized third-party vendor management group consisting of 12 – 15 vendor managers
Responsible for all facets of compliance, disaster recovery, risk and information security oversight related to primary third-party IT data processor used for Citi Card's Retail Card processing
Extensive experience identifying, documenting, and remediating Corrective Action Plans (CAP) related to most critical third-party processors
Coordinated, tested and documented annual third-party Disaster Recovery (CoB) plans for Bankcard and Retail Card third party processing applications
Provided compliance oversight for 10 to 15 IT applications
Coordinated Annual Data Quality Review (ADQR) testing for all North American retail card applications
5 years Risk Control Self Assessments (RCSA) coordination experience
Extensive Service Level Agreement (SLA) oversight experience of third-party vendor service level adherence
Performed annual on-site third-party vendor security reviews for multiple vendors
Assisted in the creation of standardized third-party vendor contract templates
Coordinated and evaluated annual SOC-1, SOC-2 and Critical Data Asset Inventories for critical third-party vendors
Developed and maintained third party performance metrics oversight program and consolidated management of all third-party IT vendors (50+ third party IT vendors)
Served as primary coordinator for periodic OCC, CFPB and internal/external audit reviews of Retail Card Services
Performed quarterly risk assessments for all critical third-party vendors utilized by Retail Card Services.
Compliance Manager
Citibank, Bankcard Services
12.1999 - 09.2012
Performed on and off-site annual vendor security reviews for 50+ marketing and IT vendors
Responsible for audit reviews of all mail and telephone solicitations generated by private label and bankcard marketing teams
Conducted compliance audits to evaluate effectiveness of internal controls
Uncovered hidden risks or non-conformity issues that could negatively impact company and operations.
Education
B.S. -
University of North Texas
Denton, TX
06.1995
Skills
20 years finance industry experience including compliance, information security, disaster recovery and risk oversight
Extensive AML/KYC and OFAC/SDN oversight and review experience
10 years experience staffing and managing an IT third party vendor management group of 12-15 individual contributors across four sites
Extensive audit and regulatory review coordination experience, including ARR, CFPB, OCC, SSAE-16, SOX, ADQR, SOC-1, SOC-2
Proficient in the following GRC related tools: ServiceNow, Archer, Ariba, Heracles, Hiperos
Timeline
Information Technology- GRC, Senior Associate
Santander Consumer, USA
04.2018 - 07.2023
Human Resources - Director of Hiring, Diversity and Inclusion