Summary
Overview
Work History
Education
Skills
Timeline
Hi, I’m

Jennifer Opoku

Buford,GA

Summary

Driven Vendor Risk Management Analyst from OneTrust with a proven track record in enhancing information security and regulatory compliance. Expert in documentation and strategic planning, I've significantly improved third-party risk assessments and security reviews. My collaborative approach and ability to forecast trends have fostered key industry relationships, ensuring compliance and safeguarding against potential risks.

Overview

7
years of professional experience

Work History

OneTrust

Vendor Risk Management Analyst
03.2016 - 02.2023

Job overview

●Knowledge of information security, technology, and regulatory frameworks (PCI DSS, ISO, NIST etc.).
●Collect evidence for SOC 1, SOC2, and HITRUST re-certifications annually conduct third-party risk assessments and security review of third-party agreements
●Develop and maintain third-party risk management program documentation and templates such as risk assessment processes, security questionnaires, security requirements in third-party agreements, assessment reports
●Maintain (IT) security and compliance policies and standards.
Assist team members, and external audit firms, contractors, and vendors to execute on GRC plans and initiatives

●·Manage incoming vendor risk assessments queries and oversee that due diligence evaluations of vendors are being performed and documented in the vendor risk management tool (Onspring).

●Review vendor files for completeness and work with business units to update the files accordingly (quality assurance).

●Leading efforts to define and develop vendor management methods, governance, processes, and metrics.
●Completing due diligence regarding risk of third party and negotiate as needed.
●Evaluate information security posture of potential and existing vendors by reviewing SOC1 and SOC2 reports or security questionnaires to ensure compliance.

  • Performed audits of subsidiaries to protect shareholders and potential investors from fraudulent or unrepresentative financial claims.
  • Cultivated relationships with industry leaders and within company to share tips and information.

Education

Harvard University
Cambridge, MA

Associate of Science from Information Technology
02.2015

University Overview

  • Awarded Likely To Become Successful
  • Dean's List 3rd Semester, 2012

Skills

  • Documentation And Reporting
  • Trend modeling
  • Workflow Analysis
  • Trend forecasting
  • Audit Support
  • Strategic Planning

Timeline

Vendor Risk Management Analyst

OneTrust
03.2016 - 02.2023

Harvard University

Associate of Science from Information Technology
Jennifer Opoku