Compliance Analyst with over 4 years experience in establishing internal controls, conducting risk assessments and implementing regulatory compliance policies. Strengths include analytical skills, attention to detail and ability to improve processes, ensuring organizational compliance and mitigate risks.
Overview
8
8
years of professional experience
Work History
Senior IT Security & Compliance Analyst
Sedgwick
Memphis, TN
02.2020 - 12.2024
Managed IT audit engagements that conducted in-depth analysis of 8 IT departments resulting in the approval of over 10 audit certifications, consisting of SOC2, ISO, & PCI certifications.
Implemented a new technology risk assessment strategy using ServiceNow. Providing packets to clients containing Policy & Standards, Vulnerability Scans, and a fully vetted Compliance Assessment for the application in question. Increasing productivity 25%.
Conducted over 300 risk assessments and business impact analysis to mitigate the risk of information loss and determined gaps in IS processes and procedures to ensure a minimum 95% compliance.
Established and maintained working relationships with business partners to provide guidance on security measures, proper standard and procedures documentation, as well as evidence gathering for audits.
IT Systems Administrator
National Heritage Academy
Grand Rapids, MI
05.2017 - 02.2019
Partnered with Product owners, developing key business and education partnerships to enhance continuous improvement model outcomes by 2 weeks.
Played a pivotal role in the development process for application user testing and documentation for improvement. Which advocated for over 200 teachers in a test pilot to improve their grading process.
Ensured that all system integrations were tested, working as a QA, through all functional specifications and technical requirements and provided ongoing monitoring and support.
Facilitated training and documentation and user videos for the roll out of the new application. Training over 80 schools, consisting of over 1500 staff members.
Education
Bachelor of Science - Network & Communication Management
DeVry University
12-2017
Service To Country - Information And Computer Systems
United States Air Force
09-2012
Skills
IT audit management
Risk assessment
Regulatory compliance
Control testing
Attention to detail
ServiceNow administration
PCI
ISO27001
SOC2
Access Management
Accomplishments
ISO 27001 Certifications Demonstrated conformity/nonconformity of the ISMS with the documented standards and provided third party auditors with evidence to receive 4 annual certifications.
Risk Assessment Implementation Developed and implemented a new risk assessment evidence gathering strategy, leading to a substantial decrease of evidence to be provided for multiple audits.
Established Audit Schedule Established a schedule for client assessments, internal audits, identify areas of improvement, and implemented corrective actions. This proactive approach helped maintain high compliance standards and mitigating risks.
Built Cross Functional Relationships Created business relationships across cross-functional departments to align and support compliance initiatives across the organization.
Timeline
Senior IT Security & Compliance Analyst
Sedgwick
02.2020 - 12.2024
IT Systems Administrator
National Heritage Academy
05.2017 - 02.2019
Bachelor of Science - Network & Communication Management
DeVry University
Service To Country - Information And Computer Systems