security assessor cybersecurity auditor resume example with 12+ years of experience

(555) 432-1000,
, , 100 Montgomery St. 10th Floor
Professional Summary

Over 10 years of experience in information security assessment, cybersecurity audit, IT General Controls audit, vendor risk assessment, IT SOX, secure systems development life cycle (SDLC), regulatory compliance, technology risk and general project management, with the use of generally accepted security control frameworks and standards like NIST SP 800-53, NIST CSF, ISO 27001, CSA CCM, CIS CSC, PCI DSS etc.

Excellent communicator with proven history of written and presentation skills.

  • Project Management
  • Technology Risk
  • Cloud Security Assessment
  • Security Assessment
  • IT Compliance
  • ISO/IEC 2001 Readiness Assessment
  • Vendor Risk Management
  • Cybersecurity Audit
  • Remediation Management
  • Data Security
Lagos State University Lagos, Expected in 06/2012 MBA : Management Technology - GPA :
Federal Polytechnic Ilaro Ogun, Expected in 05/2005 Higher National Diploma : Mechanical Engineering - GPA :
  • CISA - Certified Information Systems Auditor
  • Certified SAFe 5 Agilist
  • Agile Scrum Leadership Accredited Certification
  • Scrum Master Accredited Certification
  • Institute of Chattered Economists of Nigeria
Work History
3M Companies - Security Assessor & Cybersecurity Auditor
Redding, CA, 05/2015 - Current
  • Managed several cybersecurity projects for clients in financial services, healthcare and hospitality industries. Projects include enterprise security assessment using CIS CSC (SANS Top 20) controls to identify gaps in client’s security environment and developed remediation roadmap with prioritization recommendations to enable client seamlessly remediate identified vulnerabilities
  • Led vendor risk audit for large FSI client to assess vendors compliance with client’s security program – audited various controls including policies and procedures review, network infrastructure, change management, application security, logical security, data loss prevention, physical security, configuration management, enterprise risk management and provided recommendations for observations noted
  • Led technology risk projects to assess compliance with regulatory controls and manage remediation of MRAs for multiple clients, prepared status update decks for steering groups and periodic briefing documents for regulators; Managed cloud migration risk assessment project for financial service client migrating critical infrastructure to pubic cloud
  • Managed various audits including change management; vulnerability management, SOX readiness, and application security
  • Adept in using various security control frameworks and standards such as ISO 27001, CIS CSC, NIST SP 800-53, FFIEC CAT/NCUA ACET, CSA CCM, PCI DSS and NIST CSF to conduct security assessments and audits
FCMB Plc - Security Assessor & Cybersecurity Audit
City, STATE, 04/2012 - 05/2015
  • Led annual information security audit for several clients – audited control design effectiveness and control effectiveness for network infrastructure, application security, data loss prevention, anti-malware, incident response, management and board oversight, metrics and KPIs reporting and regulatory reporting, and provided recommendations for remediating observations noted.
  • Provided support with IT SOX audits for controls testing relating to database backups, access control, and change management.
  • Led Data Breach Kill Chain security audit for major hospitality client to identify vulnerabilities in application security controls and provided recommendations for remediation.
  • Migrated processes and data to new platform with embedded security process while managing all phases of SDLC for critical IT processes.
  • Managed ISO/IEC 27001 readiness assessment projects for clients across different industries for ISO certification and recertification audits.
  • Managed collaborative efforts with CSIRT team to monitor and mature incident response processes.
FCMB Plc - Project Manager
City, STATE, 07/2008 - 04/2012
  • Managed effective delivery of projects within time, schedule and budget. Supervised internal and external resource requirements across multiple projects.
  • Organized internal and external meetings, and ensured attendance, distribution of meeting notes and relevant materials in preparation of meetings.
  • Consolidated all project plans within program, identified project dependencies, and established project critical paths.
  • Developed and retained productive working relationship with business owners, project sponsors, vendors and significant stakeholders.
  • Worked effectively with multiple teams across all organizational levels while balancing multiple deadlines and helping teams drive for compliance and results.
  • Supported two major process migration projects under 90% of budget and delivery time.
  • Ensured satisfaction and acceptance of all project phases by conducting reviews with project sponsors at time of completion of project.
  • Formulated baseline for cost and schedule for projects, confirmed funding sources and monitored actual cost of project against planned baseline.
  • Developed and maintained productive working relationship with business owners, project sponsors, vendors and other key stakeholders.

By clicking Customize This Resume, you agree to our Terms of Use and Privacy Policy

Your data is safe with us

Any information uploaded, such as a resume, or input by the user is owned solely by the user, not LiveCareer. For further information, please visit our Terms of Use.

Resume Overview

School Attended

  • Lagos State University
  • Federal Polytechnic Ilaro

Job Titles Held:

  • Security Assessor & Cybersecurity Auditor
  • Security Assessor & Cybersecurity Audit
  • Project Manager


  • MBA
  • Higher National Diploma

By clicking Customize This Resume, you agree to our Terms of Use and Privacy Policy

*As seen in:As seen in: