Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic

Bridgett Johnson

IT Compliance Analyst
Zion,IL

Summary

Compliance Analyst with over 4 years experience in establishing internal controls, conducting risk assessments and implementing regulatory compliance policies. Strengths include analytical skills, attention to detail and ability to improve processes, ensuring organizational compliance and mitigate risks.

Overview

8
8
years of professional experience

Work History

Senior IT Security & Compliance Analyst

Sedgwick
Memphis, TN
02.2020 - 12.2024
  • Managed IT audit engagements that conducted in-depth analysis of 8 IT departments resulting in the approval of over 10 audit certifications, consisting of SOC2, ISO, & PCI certifications.
  • Implemented a new technology risk assessment strategy using ServiceNow. Providing packets to clients containing Policy & Standards, Vulnerability Scans, and a fully vetted Compliance Assessment for the application in question. Increasing productivity 25%.
  • Conducted over 300 risk assessments and business impact analysis to mitigate the risk of information loss and determined gaps in IS processes and procedures to ensure a minimum 95% compliance.
  • Established and maintained working relationships with business partners to provide guidance on security measures, proper standard and procedures documentation, as well as evidence gathering for audits.

IT Systems Administrator

National Heritage Academy
Grand Rapids, MI
05.2017 - 02.2019
  • Partnered with Product owners, developing key business and education partnerships to enhance continuous improvement model outcomes by 2 weeks.
  • Played a pivotal role in the development process for application user testing and documentation for improvement. Which advocated for over 200 teachers in a test pilot to improve their grading process.
  • Ensured that all system integrations were tested, working as a QA, through all functional specifications and technical requirements and provided ongoing monitoring and support.
  • Facilitated training and documentation and user videos for the roll out of the new application. Training over 80 schools, consisting of over 1500 staff members.

Education

Bachelor of Science - Network & Communication Management

DeVry University
12-2017

Service To Country - Information And Computer Systems

United States Air Force
09-2012

Skills

  • IT audit management
  • Risk assessment
  • Regulatory compliance
  • Control testing
  • Attention to detail
  • ServiceNow administration
  • PCI
  • ISO27001
  • SOC2
  • Access Management

Accomplishments

  • ISO 27001 Certifications Demonstrated conformity/nonconformity of the ISMS with the documented standards and provided third party auditors with evidence to receive 4 annual certifications.
  • Risk Assessment Implementation Developed and implemented a new risk assessment evidence gathering strategy, leading to a substantial decrease of evidence to be provided for multiple audits.
  • Established Audit Schedule Established a schedule for client assessments, internal audits, identify areas of improvement, and implemented corrective actions. This proactive approach helped maintain high compliance standards and mitigating risks.
  • Built Cross Functional Relationships Created business relationships across cross-functional departments to align and support compliance initiatives across the organization.

Timeline

Senior IT Security & Compliance Analyst

Sedgwick
02.2020 - 12.2024

IT Systems Administrator

National Heritage Academy
05.2017 - 02.2019

Bachelor of Science - Network & Communication Management

DeVry University

Service To Country - Information And Computer Systems

United States Air Force
Bridgett JohnsonIT Compliance Analyst