Summary
Overview
Work History
Education
Skills
Certification
It Program Management
Enterprise Software Platform
Productivity Tools
Linkedin
Personal Information
Cybersecurity Standards
Timeline
Hi, I’m

JOSHUA OBIOSSAI

San Antonio,TX
JOSHUA OBIOSSAI

Summary

Dynamic professional with extensive experience at Wells Fargo, excelling in risk management and vendor assessments. Proven ability to enhance compliance through effective audit processes and incident response strategies. Skilled in penetration testing and fostering team collaboration, driving significant improvements in third-party risk profiles and security posture.

Overview

9
years of professional experience
5
Certification

Work History

GXO LOGISTICS
San Antonio, Texas

Shipping Clerk/Analyst
06.2024 - Current

Job overview

  • Perform gap analyses to identify security control deficiencies
  • Lead comprehensive assessments of high-risk vendors, analyzing various risk aspects
  • Conduct periodic reassessments to monitor changes in vendor risk profiles
  • Streamline audit processes for HITRUST, SOC 2, and HIPAA
  • Proactively manage policy/control exceptions while prioritizing compliance and confidentiality
  • Collaborate with teams to refine incident response protocols
  • Continuously monitor vendor performance against contracts, SLAs, and industry standards, escalating critical issues
  • Offer actionable mitigation strategies to vendors
  • Oversee risk metrics, reported data, and maintain documentation in OneTrust
  • Ensure complete data upload into OneTrust
  • Assist in setting up the Trust Portal
  • Employ standardized methods (SIG and IRQ) for accurate risk assessments
  • Utilize JIRA and Knowbe4 to manage tasks and employee training
  • Develop and maintain information security program documentation
  • Identify gaps in third-party vendor controls and implement remediation plans
  • Review and evaluate compliance assessment results and document corrective actions
  • Assist sales and product team with answering security questionnaires.
  • Troubleshot issues related to shipping and receiving in compliance with corporate procedures.
  • Logged inbound and outbound discrepancies for wrong products, incorrect quantities and damages.
  • Computed shipping, storage or demurrage charges using computer or price list.
  • Identified order discrepancies and damaged items and notified supervisor.
  • Weighed mail to determine correct postage.
  • Received and distributed incoming packages to designated departments or personnel.
  • Communicated with carrier representatives to follow specific procedures and make special delivery arrangements.
  • Prepared packages for shipping and determined most economical shipping methods.
  • Obtained required documentation to process shipments and support movement.
  • Rejected deliveries containing damaged items or shortages and corresponded with shipper to rectify issues.
  • Tracked inventory levels, handling aspects of shipping and receiving and kept accurate records.
  • Prepared work orders, bills of lading or shipping orders to route materials.
  • Checked items to be shipped against work orders to confirm correct quantities, destination and routing.
  • Provided assistance in the loading and unloading process of goods from vehicles when necessary.
  • Folded letters, circulars or other documents and inserted into envelopes for distribution.
  • Reviewed carrier invoices for accuracy before submitting them for payment processing.
  • Inspected and recorded incoming and outgoing orders for count, damage and dates.
  • Verified shipping documents for accuracy.
  • Worked closely with internal departments such as purchasing and receiving to ensure timely delivery of products.
  • Delivered or routed materials to departments using handtruck, conveyor or sorting bins.
  • Operated forklifts, hand trucks, or other equipment to load, unload, transport and store goods.
  • Prepared documentation to track and report on damaged or missing items.
  • Monitored merchandise received and shipped from facility in computer system.
  • Maintained inventory control system to ensure accurate tracking of all shipped items.
  • Organized deliveries by sorting and stocking receivables
  • Checked customer orders, labeling and documentation prior to shipment to avoid delays.
  • Recorded shipment data for reporting, accounting or recordkeeping purposes.
  • Compared and verified identifying information of outgoing shipments.
  • Scheduled large shipments and planned logistics to reserve sufficient storage space for incoming items.

Wells Fargo

Third-Party Risk Analyst
06.2019 - 02.2022

Job overview

  • Conduct risk and control assessments for medium and high-risk third-party service providers, ensuring the effectiveness of control systems
  • Evaluated vendor security posture through SOC reports, penetration tests, and BCP/DR/IRP plans
  • Reviewed financial statements, credit reports, legal contracts, and business licenses
  • Performed due diligence on prospective vendors, analyzing financial health, regulatory compliance, and potential risk exposure
  • Collaborated with stakeholders to navigate risks across critical areas (supply chain, distribution channels, regulations)
  • Proactively identified and documented potential risks associated with new initiatives and changing environments
  • Developed standardized methods for collecting comprehensive vendor data, improving efficiency and data accuracy
  • Successfully expanded the program internationally, adapting to regional regulations
  • Employed RSA Archer to track progress, manage findings, and generate risk metrics for senior leadership.

MoneyGram

Cybersecurity Analyst
03.2016 - 05.2019

Job overview

  • Lead evidence collection for annual NIST 800-53 assessments, ensuring all control requirements were met
  • Orchestrated the annual evidence collection process, ensuring flawless adherence to control requirements
  • Conducted analysis on logs, reports, and configuration data
  • Developed and managed a comprehensive system for both internal and external access
  • Produced reports and presentations for assessors, highlighting findings, remedial actions, and compliance progress
  • Managed the coordination of remediation activities, monitored progress, and ensured timely completion
  • Collaborated with risk owners, security engineers, system owners, and management on remediation plans and implementation
  • Provided training and support to internal stakeholders on requirements and evidence collection procedures.

Education

Lagos State university
Nigeria

Bachelor of Arts from HISTORY AND INTERNATIONAL RELATIONS

Skills

  • Compliance Management
  • Risk Management
  • Vendor Management
  • Due diligence
  • Penetration testing skills
  • Incident response
  • Security monitoring and analysis
  • Security Fundamentals
  • Audit and Control Management
  • Shipping documentation
  • Risk assessment
  • Supplier communication
  • Audit processes
  • Team collaboration
  • Inspection and quality control
  • Hazmat and international shipping
  • Warehouse safety
  • Analytical thinking

Certification

  • Certified Information Systems Auditor - (CISA) 2024
  • CompTIA Security+
  • CISM-In-View
  • Certified SAFe 5 Scrum Master, 2023
  • Professional Scrum Master I (PSM I), 2021

It Program Management

  • Cybersecurity Technical Writing (Policies, Standards, and Procedures)
  • Third-Party Risk Management
  • Business Continuity & Disaster Recovery (BC/DR)
  • SDLC Security Controls, Policies and Procedures
  • Implementation
  • Incident Response
  • Supplier management
  • Risk Assessment and Risk Mitigation Analysis
  • Access Control Management
  • Contingency Plan
  • Policy Review
  • Continuous Monitoring
  • Artifacts gathering
  • Remediation

Enterprise Software Platform

  • RSA Archer
  • service now
  • OneTrusT

Productivity Tools

  • Microsoft 365
  • ServiceNow
  • Jira / Confluence
  • Sharepoint
  • Slack
  • Teams
  • Google Docs
  • Windows
  • SQL
  • Microsoft Office
  • Microsoft 365 (Word, Excel, PowerPoint, Outlook, Teams)
  • Google Workspace (Gmail, Docs, Sheets, Slides, Calendar, Meet)
  • Slack
  • Zoom
  • Trello
  • Asana
  • Evernote

Linkedin

https://www.linkedin.com/in/joshua-obiossai-cisa-ba0316144/

Personal Information

Status: GC HOLDER

Cybersecurity Standards

  • SOC 2 - Type 1 & 2 Reports
  • PCI-DSS
  • HIPAA
  • GRC
  • CAIQ
  • SSAE 18
  • SIG
  • HITRUST
  • ISO 27001/2
  • NIST 800 series
  • FedRAMP
  • ITGC
  • Vendor/Supplier Security Audit
  • FIPS 199
  • FISMA

Timeline

Shipping Clerk/Analyst

GXO LOGISTICS
06.2024 - Current

Third-Party Risk Analyst

Wells Fargo
06.2019 - 02.2022

Cybersecurity Analyst

MoneyGram
03.2016 - 05.2019

Lagos State university

Bachelor of Arts from HISTORY AND INTERNATIONAL RELATIONS