Business and Process OptimisationRegulatory ChangeSystem and Cloud Development Testing
System Implementation
See all
About me
I am a highly experienced InformationSecurityComplianceOfficerwith4+yearsofexperienceininformationsecurityandcompliance,havingsuccessfullycompliedwithallguidelinesandregulations,improvedoperationalandriskprocesses,andidentifiedsuspicious activitiesandsecuritybreaches.Skilledatintegratingnewprocessimprovementstominimiserisklevels,effectivelycooperatingwithteamsaswellasconsistentlyexceedingallsetKPIsandtargets,ensuringthesmoothdailyrunningofsecurityoperations. I have a deep understanding of the industry and am passionate about helping my clients find the best solutions for their needs.
Superpowers
Due DiligenceRisk Assessment
Skills
Due DiligenceRisk Assessment
Experience
Mar, 2023
Current
information security compliance officer
Information Technology
Partnerize London/Newcastle
Experienced Information Security Compliance Officer with a proven track record of successfully meeting and exceeding client expectations. With expertise in ISO27001, ISO9001, SOC, Cyber Essentials Plus, NIST, UK GDPR, HIPAA and other standards, they have created risk management policies and procedures, monitored suspicious activities and security breaches, implemented mechanisms for data backup and disaster recovery strategies and provided support for centralized logging, real time monitoring, vulnerability scanning and patch management, incident response plan, security audit and employee training. They have also conducted enterprise and targeted risk assessments across the organisation.
Key responsibilities
Comply with standards
Evaluate processes and procedures
Create risk registers
Coordinate with IT team
Key achievements
Produced risk management policies and procedures
Identified and managed suspicious activities and security breaches
Published campaign monitoring
Integrated data backup and disaster recovery strategies
Mar, 2022
Dec, 2022
information security compliance analyst
Information Technology
Professional services
Provided support for the administration of internal and external audits, client relationships and vendor engagements. Lead in the deployment of DLP solutions to review and prevent unauthorised data transfers or leaks. Utilised the JIRA ticketing system to handle the administration of key security tasks. Presented internal vulnerability assessments and penetration tests. Assisted with physical security maintenance and wrote key metric reports.
Key responsibilities
Administration of audits and client relationships
Deployment of DLP solutions
Handling of security tasks
Presentation of vulnerability assessments
Key achievements
Launched OneTrust for vendor engagements
Responded to urgent client security questionnaires
Managed cloud infrastructure and data
Composed metric reports
Mar, 2019
Mar, 2022
information assurance and compliance analyst
Health Care
Professional Services Business
The Information Assurance Analyst provided in-depth investigations of serious event incident alerts to meet business requirements. They conducted due diligence checks to adhere to risk assessment guidelines and regulations. They collaborated with the team to introduce vulnerability assessments and IT security tests, and assessed system events for malicious activity. The Analyst also coached and mentored the team on ISO27001 and completed additional duties such as analysing internal security controls, providing security policies and preparing for Information Governance and Security Board.
Key responsibilities
Investigations of serious event incident alerts
Due diligence checks
Introduce vulnerability assessments and IT security tests
Assess system events for malicious activity
Key achievements
Coached and mentored the team on ISO27001
Analysed internal security controls
Provided security policies
Prepared for Information Governance and Security Board
Jul, 2017
Dec, 2018
account control analyst
Financial Services
Professional Services
Provided risk assessment and due diligence services to ensure compliance with regulations and guidelines. Mentored and coached team members on ISO27001. Investigated serious event incident alerts and assessed system events for malicious activity. Implemented security policies and vulnerability assessments. Prepared for Information Governance and Security Board.
Key responsibilities
Investigation of incident alerts
Due diligence checks
Mentoring and coaching
Security policy implementation
Key achievements
Vulnerability assessments
IT security tests
ISO27001 implementation
Information Governance and Security Board preparation
Feb, 2017
May, 2017
control and compliance analyst
Global professional services
A Control & Compliance Analyst with experience in Diageo GB, responsible for investigations, due diligence checks, vulnerability assessments, IT security tests, ISO27001 compliance and internal security control analysis. Fostered a team environment of collaboration and mentorship, and provided security policies, documents and Information Governance and Security Board preparations.
Key responsibilities
Investigating serious event incident alerts
Performing due diligence checks
Collaborating and mentoring
Assessing and reviewing system events
Key achievements
Meeting business requirements
Adhering to risk assessment guidelines and regulations
Introducing vulnerability assessments and IT security tests
Providing security policies, documents and Information Governance and Security Board preparations
Sign in
Enter your email and password to log in
Sign up
Enter your info to sign up
Password recovery
Enter your password to receive a recovery link email address