Summary
Overview
Work History
Education
Skills
Accomplishments
Certification
Timeline
Generic

SARAPHINA DANSO - BSc, CISA, CISM

Parlin,NJ

Summary

Risk management professional with comprehensive understanding of financial risk assessment and mitigation. Adept at identifying and analyzing potential risks, implementing robust risk management strategies, and fostering collaboration to achieve organizational goals. Known for adaptability and reliability in dynamic environments, combined with strong analytical skills and keen eye for detail.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Third Party Risk Analyst/ Data Privacy Analyst

AGO Worldwide Consulting
06.2019 - Current
  • Performed IT control risk assessments encompassing organizational policies, standards, guidelines, and procedures to identify vulnerabilities and recommend appropriate security controls.
  • Conducted thorough General Computer Controls testing, documented identified gaps, devised comprehensive remediation plans, and presented findings and recommendations to IT Management, contributing to improved security posture
  • Spearheaded a cross-functional team initiative to execute a comprehensive data privacy audit, uncovering critical vulnerabilities and implementing robust remediation strategies.
  • Conducted IT general controls risk assessments and comprehensive risk audits leveraging industry-standard frameworks, including HIPAA, PCI, and ISO 27001, to ensure alignment with regulatory requirements and best practices.
  • Developed meticulous security control test plans and conducted in-depth security assessments of information systems, evaluating the effectiveness of administrative, physical, technical, organizational, and policy safeguards.

Security Control Assessor

Geek View Tek Solutions
12.2017 - 06.2019
  • Led security assessment engagements, conducting kickoff meetings to define scope, system boundaries, and gather key artifacts.
  • Conducted GAPP Maturity assessments to evaluate data governance, availability, privacy, and protection; recommended improvements.
  • Created Requirement Traceability Matrices (RTMs) to map NIST SP 800-53A controls to regulatory requirements and document assessment results.
  • Developed Security Assessment Plans (SAPs) and assessed moderate-impact systems for compliance with NIST SP 800 53A Rev 4.

Education

Bachelor of Science - Computer Science

Central University
Ghana
05-2014

Skills

undefined

Accomplishments

    Successfully directed a cross-departmental team in conducting a comprehensive data privacy audit, resulting in a 90% improvement in compliance with internal and external privacy standards, showcasing a commitment to data protection and regulatory adherence

Certification

  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • CompTIA Security+
  • CompTIA Advanced Security Practitioner(CASP+)


Timeline

Third Party Risk Analyst/ Data Privacy Analyst

AGO Worldwide Consulting
06.2019 - Current

Security Control Assessor

Geek View Tek Solutions
12.2017 - 06.2019

Bachelor of Science - Computer Science

Central University