Abi Abi
INFORMATION SECURITY ANALYST | CISA | CDPSE | CICA | ISO/IEC 27001 | SCRUM MASTER | SOXtp | Lean Six Sigma
- Role
- Information Technology Security Consultant at Consulting Firm
- Location
- Houston, TX, US
- LinkedIn followers
- 500 followers
About Abi Abi
An Analytical Information Security/Risk Analyst with professional IT Auditing experience, strong strategic planning, problem solving, time management and project management abilities and Self-directed professional able to excel in any environment. Fully knowledgeable in applicable regulations and standard audit procedures. Proficient in using SOX, COSO, Cloud Computing, COBIT, NIST FRAMEWORKS, PCI-DSS, ISO27001, PCI-DSS, ISO 9001, GDPR and FISCAM for getting the job done.
Experience
Information Technology Security Consultant
Jul 2018 — Present · Houston, TX, US
Identify, assess, and prioritize risks to the organization\'s information systems, processes, and assets.• Collaborate with stakeholders to gather information and conduct interviews, workshops, and surveys to identify and understand risks and potential impacts.• Conduct information security risk assessments for IaaS & PaaS environments on-premises or hosted by Cloud Services Providers (CSP) using the FedRAMP Security Assessment Framework.• Perform vulnerability assessments using tools such as Nessus, Tenable Security Center, and Tenable IO, collaborating with control owners/stakeholders to remediate findings.• Analyze and review SOC (System and Organization Controls) reports, including SOC 1, SOC 2, and SOC 3 reports, to assess the effectiveness of an organization\'s internal controls and security practices.• Continuously monitor and evaluate the effectiveness of internal controls and security practices based on SOC report analysis, identifying areas for improvement.• Identify control deficiencies, gaps, and areas of improvement based on the findings from SOC reports.• Conduct automated internal and external penetration testing using security tools like Core Impact.• Apply the FFIEC Cybersecurity Assessment Tool for risk assessments and control identification and implementation.• Coordinate the incident response plan from identification to resolution, working with stakeholders and control owners.• Review and execute security assessment plans for assessing the effectiveness of security controls in the cloud environment.• Review and ensure proper configuration of S3 bucket policies to prevent undue public access.• Analyze activities generated from CloudTrail logs and review performance metrics and resource utilization through CloudWatch.• Collaborate with technical teams to mitigate security control deficiencies for assigned IT systems.• Research, analyze, design, test, and implement new or vendor-supplied security software solutions.
Education
Yaba College of Technology
Bachelor of Technology - BTech
2009 — 2013
Skills
- Microsoft Word
- Microsoft Office
- Cobit Compliance
- Teamwork
- Civil Engineering
- Business Development
- Management
- Customer Service
- Research
- Project Management
- Strategic Planning
- Project Planning
- Team Leadership
- IT Audit
- Microsoft Excel
- Sox Compliance
- Computers
- Team Building
- Document Management
- Business Strategy
- Program Management
- Humanitarian
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.