Patrice A. Gyimah
Principal Risk Controls Manager Cyber Risk & Third-party Risk @Capital One
Signup · Get unlimited contacts
WORK HISTORY
Principal Risk Controls Manager Cyber Risk & Third-party Risk @Capital One
Lead end-to-end third-party risk assessments for critical/sensitive vendors, establishing scope, evidence requirements, and risk rating logic aligned to NIST 800-53, ISO 27001, PCI-DSS, and enterprise policy.Perform independent security control reviews of vendor-supported applications and integrations; identify gaps in IAM, encryption, monitoring, and incident response, and drive remediation with accountable owners.Analyze SOC 1/2 (Type I/II) reports and bridge letters; evaluate exceptions, complementary user entity controls, and carve-outs; document business impact and compensating controls.Partner with Security, Procurement, and Legal to strengthen contract language (SLAs, breach notification, right-to-audit, data residency) and align inherent risk with due diligence depth.Build Power BI dashboards surfacing risk trends, overdue issues, and external ratings (BitSight, SecurityScorecard) to inform quarterly risk committees.Maintain audit-ready documentation in RSA Archer/ServiceNow to withstand regulator and internal audit scrutiny.
EDUCATION
Strayer University
Bachelor of Science - BS
Strayer University
Bachelor of Science - BS, Economics
Michigan State University - Eli Broad College of Business
Master of Science - MS, Strategic Leadership
ABOUT PATRICE A. GYIMAH
Cybersecurity and Risk Leader with 7+ years of experience building and scaling…
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.