Experience:
Cybersecurity Technician / GRC Analyst
Webbfontaine Group, Lagos, Nigeria | 07/2009 – Present
Conduct regular risk assessments and gap analyses across critical systems to ensure compliance with NIST and ISO 27001 standards.
Collaborate with cross-functional teams to develop and enforce security policies, procedures, and standards.
Maintain documentation for security controls, risk registers, and compliance reports.
Monitor security alerts and manage incident response protocols to mitigate threats.
Facilitate internal and external audits and coordinate remediation efforts for findings.
Train employees on security awareness and best practices to reduce organizational risk.
Information Security Intern / Analyst
Pjaytech Nigeria Ltd 2005-2009
Assisted in the implementation of GRC tools to track compliance and manage risk workflows.
Performed vulnerability scans and helped prioritize remediation actions.
Supported the review and updating of access controls and encryption protocols.
Contributed to compliance initiatives related to GDPR and HIPAA regulations.
Participated in audit readiness and documentation for third-party assessments.
Education:
B.sc Chemistry
PGd wireles telecommunication
Skills:
Detail-oriented and highly analytical Cybersecurity Technician and GRC (Governance, Risk, and Compliance) Analyst with 17+ years of experience in implementing security protocols, managing risk assessments, and ensuring compliance with regulatory frameworks. Adept at vulnerability assessment, risk mitigation strategies, and applying industry standards such as NIST, ISO 27001, HIPAA, and GDPR. Certified in Cybersecurity and passionate about protecting digital assets and building secure infrastructures.
TECHNICAL SKILLS
Operating Systems: Windows, Linux, macOS
Security Tools: Nessus, Splunk, Wireshark, Qualys, Nmap, Tenable
Compliance Frameworks: NIST, ISO 27001, HIPAA, GDPR, COBIT
GRC Platforms: RSA Archer, ServiceNow GRC, MetricStream (or similar)
Programming/Scripting: Python (basic), Bash, PowerShell
Cloud Security: AWS, Azure (basic understanding
Additionally:
PROJECTS & ACHIEVEMENTS
Developed a Risk Register Template used to track and mitigate over 50 organizational risks.
Led a Cybersecurity Awareness Campaign reducing phishing incidents by 40%.
Assisted in ISO 27001 Readiness for a mid-sized firm, ensuring policy alignment and risk treatment plans.
PROFESSIONAL AFFILIATIONS
Member, (ISC)²
Member, ISACA
Member, Cybersecurity & GRC Community Forums