John Olusoji
Cybersecurity | Third-Party Risk | GRC
- Role
- Risk Management Specialist at Tata Consultancy Services
- Location
- Bowie, MD, US
- LinkedIn followers
- 500 followers
About John Olusoji
Accomplished Cybersecurity & Third-Party Risk Management Professional with 9+ years of experience leading enterprise risk initiatives, IT audits, and third-party risk programs to mitigate cyber threats and ensure regulatory compliance. Proven expertise in control frameworks, risk assessments, and GRC tool implementation to strengthen organizational security posture. I am skilled in stakeholder engagement, vendor risk management, and audit remediation, with deep knowledge of NIST, ISO 27001, PCI DSS, HIPAA, SOC 1/2, and HITRUST
Experience
Risk Management Specialist
Jun 2021 — Present
Active involvement in the project in improving the third-party screening risk management/ IT key controls testing as a continuous improvement process.• Conduct regular control testing and evaluate the design and operating effectiveness of the IT key controls environment to ensure adherence to established security policies.• Track and ensure Equitable stays updated on privacy laws and regulations relevant to the organization, such as GDPR, and CCPA for effective design of audit procedures also collaborate with internal audit for data mapping and classification.• Performing onboarding and periodic review processes and leveraging information from internal and external resources to develop a description of third-party services and drive collaboration between LOB’s.• Performing third-party risk assessments by conducting and elevating inherent risk questionnaires, vendor surveys, and assessing due diligence documentation, and formulating and providing effective challenges into the risk assessment process that includes cloud security, infrastructure, etc.• Assists with preparing reporting of key risk indications (KRIs) to internal business partners, and executive management, including but not limited to the vendor population, risk distribution, ongoing monitoring/review status updates, issues aging, watch list reporting, etc.• Reporting detailed reports using tools using RSA. Archer, One Trust, and Jira for risk registering.• Vendor contract review to ensure the presence of an infosec clause to support the security process.• Manage ongoing monitoring of critical vendors through the security scorecard platform and provide biweekly reports to the leadership for business decisions equally support the security team in monitoring the enterprise environment on compliance to Centre for Internet Security (CIS)
Education
Ekiti State University
Master of Business Administration - MBA, Finance, General
Harvard University
Certificate Course, Cybersecurity: Managing Risk in the Information Age
University of Ilorin, Nigeria
Bachelor's degree, Economics
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.