Summary
Overview
Work History
Education
Skills
Websites
Certification
Affiliations And Volunteering
Personal Information
Languages
Skills And Technologies
Project Highlights
Timeline
Generic

UWEM ESSIEN

Bossier City

Summary

Experienced Cybersecurity Analyst and IT Auditor with over 6 years of expertise in IT security, risk management, and compliance. Specializing in Governance, Risk, and Compliance (GRC), control testing, access control, security & risk management, and network security. Adept at developing, executing, and enhancing security frameworks, conducting risk assessments, penetration testing, and ensuring compliance with industry standards such as NIST, PCI-DSS, SOX, CCPA, and GDPR. Certified Information Systems Auditor (CISA), CompTIA Security+, and AWS Certified Solutions Architect (SAP CO2). Proven success in enhancing security postures, managing complex security projects, and collaborating with cross-functional teams to ensure robust security measures.

Overview

7
7
years of professional experience
1
1
Certification

Work History

Cybersecurity Risk Analyst

Gelson’s Corporation
06.2024 - Current
  • Lead the execution and continuous evolution of the information security risk management program
  • Conduct targeted risk assessments related to privacy, security, and compliance frameworks (e.g., NIST, GDPR)
  • Perform risk-based operational audits, evaluating IT systems and controls to ensure adherence to security policies
  • Manage and maintain the Enterprise GRC tool, collaborating with cross-functional teams to mitigate risks and enhance security posture
  • Prepare and present risk posture reports to leadership, ensuring alignment with business objectives and compliance goals
  • Lead IT audit activities, including planning, fieldwork, and reporting, ensuring compliance with COSO, COBIT, and NIST frameworks

Cybersecurity Analyst

Air Tech Solutions
05.2018 - 05.2024
  • Conduct quantitative security risk analyses and recommend security improvements to management, ensuring compliance with GDPR, SOX, HIPAA, and other regulations
  • Oversee the lifecycle of information security policies, working with senior analysts to create and manage security documentation
  • Lead the Vendor Risk Management Program, assessing third-party vendor risks and ensuring secure data management practices
  • Collaborate with cross-functional teams to ensure integration of security measures and compliance requirements into business processes
  • Implement and monitor security controls across the organization, including firewalls, encryption, authentication processes, and backup protocols

Education

Associate of Science - Cyber Security

University of Phoenix
Phoenix, AZ
10.2025

Bachelor of Science - Information Technology

Ogun State University
Ogun State, Nigeria
01.2017

Skills

  • GRC Platforms: Vanta
  • GRC Platforms: Drata
  • GRC Platforms: Secureframe
  • GRC Platforms: HIPAA
  • Security Tools: SIEM
  • Security Tools: IDS
  • Security Tools: Vulnerability Scanners
  • Security Tools: Penetration Testing Tools
  • Scripting: Python
  • Scripting: PowerShell
  • Security Frameworks: NIST
  • Security Frameworks: ISO 27001
  • Security Frameworks: PCI-DSS
  • Security Frameworks: SOX
  • Data Analytics: Microsoft Excel
  • Data Analytics: SQL
  • Cloud Security: AWS CloudTrail
  • Cloud Security: Palo Alto Networks Prisma Cloud
  • Incident Response & Forensics: EDR tools (CrowdStrike)
  • Incident Response & Forensics: EDR tools (Carbon Black)

Certification

  • Certified Information Systems Auditor (CISA)
  • AWS Certified Solutions Architect (SAP CO2)
  • CompTIA Security+
  • Microsoft Office Specialist – Excel Expert

Affiliations And Volunteering

  • Actively engage in community technology advocacy, contributing to awareness initiatives around cybersecurity and data privacy.
  • Volunteer as a mentor for aspiring cybersecurity professionals, providing guidance on risk management and GRC processes.

Personal Information

Title: Cybersecurity Risk Analyst

Languages

English, Fluent

Skills And Technologies

  • GRC Platforms: Vanta, Drata, Secureframe, HIPAA
  • Security Tools: SIEM, IDS, Vulnerability Scanners, Penetration Testing Tools
  • Scripting: Python, PowerShell
  • Security Frameworks: NIST, ISO 27001, PCI-DSS, SOX
  • Data Analytics: Microsoft Excel, SQL
  • Cloud Security: AWS CloudTrail, Palo Alto Networks Prisma Cloud
  • Incident Response & Forensics: EDR tools (CrowdStrike, Carbon Black)

Project Highlights

  • SIEM Implementation: Successfully implemented and managed Security Information and Event Management (SIEM) systems (Splunk, IBM QRadar), reducing incident response time by 40%.
  • Cloud Security Optimization: Deployed cloud security tools (AWS CloudTrail, Azure Security Center, Palo Alto Networks Prisma Cloud) to improve cloud security compliance by 35%.
  • Incident Response: Utilized endpoint detection and response (EDR) tools such as CrowdStrike and Carbon Black, improving malware detection capabilities by 45%, and reducing successful cyber-attacks by over 50%.

Timeline

Cybersecurity Risk Analyst

Gelson’s Corporation
06.2024 - Current

Cybersecurity Analyst

Air Tech Solutions
05.2018 - 05.2024

Associate of Science - Cyber Security

University of Phoenix

Bachelor of Science - Information Technology

Ogun State University
UWEM ESSIEN