A Hidriss
Sr. Information Security Analyst| Risk & Compliance| CISA| CompTIA Sec +| Risk Assessment | PCI DSS Compliance Analyst| GRC Analyst | IT Auditor | Risk Management
- Role
- Sr Information Security Analyst at Maximus
- Location
- Fort Lee, NJ, US
- LinkedIn followers
- 500 followers
About A Hidriss
I am an experienced and enthusiastic cybersecurity professional with in-depth information security, risk, and compliance knowledge. As a CISA-certified specialist in Security Assessment and Authorization, I excel at interpreting and implementing controls to ensure compliance with NIST special publications, FISMA, FedRAMP, and other relevant systems and data security guidelines. My background includes extensive experience with the NIST Risk Management Framework (RMF) process, conducting risk assessments, and performing security audits. I have demonstrated expertise in developing standard operating procedures to facilitate accurate security baseline assessments while staying current with compliance standards. I have the ability to work with multiple and diverse groups to successfully deliver security compliance and IT deliverables. I am capable of defining, deploying, and monitoring risk management, security control assessment, compliance, and information security programs while functioning as an information security analyst. I am dedicated to advocating for and fostering a culture of security through education, awareness, and training. Key areas of expertise: GRC Specialist Compliance Specialist Risk assessment and Risk management Vulnerability Management Assessment and Authorization (A&A) Certification and Accreditation (C&A) IT Security Compliance Vulnerability Assessment PCI DSS Specialist Information Assurance Systems Risk Assessment Systems Development Life Cycle POA & M Management
Experience
Sr Information Security Analyst
Apr 2022 — Present · US
Supported end-to-end risk assessment and vulnerability management for FSA systems, contributing to compliance with FISMA, NIST 800-53, FedRAMP, and PCI DSS requirements. • Coordinated HITRUST CSF certification efforts across multiple business units, reducing control gaps by 30% within the first year and enabling successful external audit clearance. • Partnered with Salesforce admins to implement role-based access controls, improving data security and achieving 100% compliance with SOC 2 and ISO 27001 controls. • Designed custom Power BI dashboards to track KRIs/KPIs, providing real-time risk insights to executives and reducing audit preparation time by 40%. • Performed third-party vendor risk assessments on 25+ external providers, identifying critical control deficiencies and reducing vendor-related security incidents by 20%. • Supported SOC 2 readiness and PCI DSS compliance, including evidence collection, internal testing, and audit facilitation, leading to zero major non-conformities during external reviews. • Partnered with legal, IT, and compliance teams to align GRC program objectives with organizational goals, streamlining exception management processes and cutting response time by 35%. • Conducted internal readiness assessments and evidence validation for audits, improving ATO efficiency and minimizing last-minute remediation efforts. • Led cross-functional remediation of audit findings, ensuring closure of 95% of open POA & Ms within SLA timelines. • Facilitated ongoing security awareness training for 500+ employees, driving a measurable 25% increase in phishing resilience and overall compliance awareness. • Documented and tracked Key Risk Indicators (KRIs) & Key Performance Indicators (KPIs) to evaluate control effectiveness, providing leadership with actionable reporting on risk posture.
Education
Metropolitan Community College
Associate of Science - AS
2011 — 2019
Clarkson College
Bachelor of Science in Nursing
2018 — 2021
National University
Master of Science - MS
2022 — 2023
Lycee Zomayi Togo
High School Diploma
2005 — 2008
University of Lome Togo
German Department
2008 — 2011
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.