We provide IT Staff Augmentation Services!

Senior It Risk Analyst Resume

4.00/5 (Submit Your Rating)

OBJECTIVE:

  • An experienced IT Auditor with an extensive noledge of audit planning, testing and reporting. Interested in contributing to an audit team success in challenging projects.

PROFESSIONAL EXPERIENCE

Confidential

Senior IT Risk Analyst

Responsibilities:

  • Partners with key stakeholders in teh business to identify, assess, aggregate and document risks and controls, including risks associated with new or modified products, services, distribution channels, regulations and third - party operations.
  • Communicates results of risk assessments to governance committees, process owners and various levels of leadership.
  • Assesses data and produces analytical insights to understand business objectives, drive risk-based business decisions and influence solution strategies.
  • Provides risk management support for a business process owner for proper identification, measurement, monitoring, control and reporting, and teh understanding and management of risk through appropriate practices and processes.
  • Monitor teh risk and control environment and provides effective challenge to internal and external stakeholders to ensure dat exposures are kept at acceptable levels.
  • Conducts control testing on ICFR key controls for money movement line of business to determine enterprise and business exposures.
  • Formulates test plans for a line of business and enterprise including teh evaluation of results and framing of contingency plans in partnership with key business stakeholders.
  • Conducts walkthroughs and test of control, with accurate documentation of work done dat leads to improvement of teh overall control environment.

Confidential, Woodlands, TX

IT Auditor

Responsibilities:

  • Conducted IT control testing within various infrastructures Operating Systems, Database, Servers and Active Directory.
  • Performed Cloud Computing audit testing confidentiality, integrity, availability, security access control, compatibility and encryption to determine design adequacy and operating effectiveness.
  • Developed IT audit work programs/testing procedure/test steps, dat accurately capture teh scope of audit to determine design adequacy and operating effectiveness of controls.
  • Conducted walkthroughs and test of control, with accurate documentation of work done dat leads to improvement of teh overall control environment.
  • Involved in teh coordination of IT audit projects from initial kick-off meeting, team meetings, status updates, and exit meetings.
  • Tested ITGCs and IT Applications Controls (ITACs) on a risk-based approach to verify design appropriateness and operating effectiveness of controls.
  • Performed annual SOX and PCI DSS compliance audits, testing key controls to verify design adequacy and operating effectiveness of controls to meet regulatory requirements.
  • Participated in teh creation of Risk Control Matrix - (RCM) dat capture risks and expected controls.• Performed SOC I, II, III and SOC I type 1 audits using COBIT & COSO framework, and review SSAE18 and SOC I type 2 reports.
  • Executed Information Security controls testing around administrative, physical and technical safeguards to determine design appropriateness and operating effectiveness.
  • Recommended industry-leading audit methods, present control gaps and ensure timely follow-up with IT management during and post IT audit projects.
  • Documented audit activities in accordance with professional frameworks such as CObiT, COSO, NIST, ITIL and ISO
  • Liaised with internal audit team members to validate audit-testing results and review teh risk within teh business processes enterprise-wide.
  • Conducted pre and post SDLC implementation review of IT controls in systems and business applications, in-house-built and vendor applications.

Confidential

Wheeled Vehicle Mechanic

Responsibilities:

  • Supervised and performed field and sustainment level maintenance and recovery operations on light and heavy wheeled military vehicles and material handling equipment in support of an oversea mobilization unit in Kaiserslautern, Germany.
  • Accelerated teh servicing of automotive electrical systems not limited to wiring harness, starting and charging systems, radio and satellite systems and UAV control systems for quick logistical turnaround in Tobyhanna Army Depot.
  • Simplified teh workflow of teh motor pool preventive maintenance checks and services before, during and after any type of movement or use of military equipment.

TECHNICAL SKILLS

  • Information Security
  • Risk Management
  • COBIT
  • CISA
  • ISO
  • ITIL
  • Nexpose
  • NIST
  • Payment Card Industry
  • PCI
  • Sarbanes Oxley
  • SOX
  • Active Directory
  • Encryption
  • Access Control
  • Unspecified
  • Machine Learning
  • Unspecified
  • RSA
  • SDLC
  • Technical Design
  • Unspecified database
  • Unspecified
  • Security
  • SAA
  • Amazon Web Services
  • AWS
  • SAP
  • Python
  • Product Specifications
  • PRO-E
  • Unspecified
  • Automotive Electrical
  • SOC
  • Conveyor
  • Unspecified
  • Material Handling
  • Unspecified
  • Material Handling Equipment
  • Unspecified
  • APQP
  • Unspecified
  • Wiring
  • Unspecified
  • Electrical Systems
  • Unspecified
  • Test Plans
  • Control Systems
  • Unspecified
  • Operations
  • Unspecified

We'd love your feedback!