Uwem John Etim
IT Auditor Third Party Risk Analyst @Weresoft Technologies Consulting
Signup · Get unlimited contacts
WORK HISTORY
IT Auditor Third Party Risk Analyst @Weresoft Technologies Consulting
I evaluate IT and business processes for effectiveness and efficiency, by obtaining an understanding of and documenting key business processes and internal controls. I review internal policies and procedures and existing laws, rules, and regulations to determine applicable compliance and the adequacy of underlying internal controls. Performs IT general controls such as access control, change management, disaster recovery, and platform reviews Participate in all phases of IT Audit – Planning, Fieldwork, and Follow up using the applicable framework. Perform Audit of IT Infrastructure and applicable Database- Operating System, UNIX, Mainframe, SQL, Oracle, and DB2. Documents control weaknesses related to testing exceptions and assisted in preparing draft audit reports to communicate findings and recommendations to senior management. Actively participate in conducting information technology controls audit and review related compliance with section 404 of the Sarbanes-Oxley Act and test the adequacy of internal controls in the following areas: Information Access, Change Management, IT Operations, and Segregation of Duties. Evaluate Change Management Control processes, Disaster Recovery Plans, and Business Continuity Plans. Test compliance with company policies and procedures to ensure it conforms to industry standards such as ISO and ITIL frameworks. I review business cases to understand the services that are being provided, I determine the scope and depth of the assessment based on the inherent risk of the engagement. Conduct in-depth risk-based security assessments of housed, vendor, and third-party hosted environments. The assessment focus included Risk Management, Physical Security, Identity & Access Management, Encryption, Data Loss Prevention, Secure Development, Incident Management, Security Infrastructure, and Security Policy. I Work with our vendor oversight to ensure adequate tier-in of our vendors based on the level of data they have access to.
EDUCATION
University of Fairfax
Doctor of Science, Information Assurance
Tai Solarin University
Bachelor of Science - BS, Computer Science
Bowie State University
Master of Science - MS, Computer Science
ABOUT UWEM JOHN ETIM
A third-party/Vendor/IT Risk Management analyst, an IT Auditor, and a Software Developer…
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.