A Hidriss

Sr. Information Security Analyst| Risk & Compliance| CISA| CompTIA Sec +| Risk Assessment | PCI DSS Compliance Analyst| GRC Analyst | IT Auditor | Risk Management

Role
Sr Information Security Analyst at Maximus
Location
Fort Lee, NJ, US
LinkedIn followers
500 followers
Information TechnologyView LinkedIn profile

About A Hidriss

I am an experienced and enthusiastic cybersecurity professional with in-depth information security, risk, and compliance knowledge. As a CISA-certified specialist in Security Assessment and Authorization, I excel at interpreting and implementing controls to ensure compliance with NIST special publications, FISMA, FedRAMP, and other relevant systems and data security guidelines. My background includes extensive experience with the NIST Risk Management Framework (RMF) process, conducting risk assessments, and performing security audits. I have demonstrated expertise in developing standard operating procedures to facilitate accurate security baseline assessments while staying current with compliance standards. I have the ability to work with multiple and diverse groups to successfully deliver security compliance and IT deliverables. I am capable of defining, deploying, and monitoring risk management, security control assessment, compliance, and information security programs while functioning as an information security analyst. I am dedicated to advocating for and fostering a culture of security through education, awareness, and training. Key areas of expertise: GRC Specialist Compliance Specialist Risk assessment and Risk management Vulnerability Management Assessment and Authorization (A&A) Certification and Accreditation (C&A) IT Security Compliance Vulnerability Assessment PCI DSS Specialist Information Assurance Systems Risk Assessment Systems Development Life Cycle POA & M Management

Experience

  1. Sr Information Security Analyst

    Maximus

    Apr 2022 — Present · US

    Supported end-to-end risk assessment and vulnerability management for FSA systems, contributing to compliance with FISMA, NIST 800-53, FedRAMP, and PCI DSS requirements. • Coordinated HITRUST CSF certification efforts across multiple business units, reducing control gaps by 30% within the first year and enabling successful external audit clearance. • Partnered with Salesforce admins to implement role-based access controls, improving data security and achieving 100% compliance with SOC 2 and ISO 27001 controls. • Designed custom Power BI dashboards to track KRIs/KPIs, providing real-time risk insights to executives and reducing audit preparation time by 40%. • Performed third-party vendor risk assessments on 25+ external providers, identifying critical control deficiencies and reducing vendor-related security incidents by 20%. • Supported SOC 2 readiness and PCI DSS compliance, including evidence collection, internal testing, and audit facilitation, leading to zero major non-conformities during external reviews. • Partnered with legal, IT, and compliance teams to align GRC program objectives with organizational goals, streamlining exception management processes and cutting response time by 35%. • Conducted internal readiness assessments and evidence validation for audits, improving ATO efficiency and minimizing last-minute remediation efforts. • Led cross-functional remediation of audit findings, ensuring closure of 95% of open POA & Ms within SLA timelines. • Facilitated ongoing security awareness training for 500+ employees, driving a measurable 25% increase in phishing resilience and overall compliance awareness. • Documented and tracked Key Risk Indicators (KRIs) & Key Performance Indicators (KPIs) to evaluate control effectiveness, providing leadership with actionable reporting on risk posture.

Education

  • Metropolitan Community College

    Associate of Science - AS

    2011 — 2019

  • Clarkson College

    Bachelor of Science in Nursing

    2018 — 2021

  • National University

    Master of Science - MS

    2022 — 2023

  • Lycee Zomayi Togo

    High School Diploma

    2005 — 2008

  • University of Lome Togo

    German Department

    2008 — 2011

Find verified contacts for anyone on LinkedIn

Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.

Free plan included · No credit card required

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

A Hidriss — Sr Information Security Analyst at Maximus in Fort Lee, NJ, US | Unifers