Uchenna Anthony Okafor
Grand prairie, TX, *****
**********@*****.***
Summary
Audit, Risk and compliance professional with vast progressive experience in IT Audit engagements. Skilled team player
with excellent communication skills, great problem-solving skills, self-motivated and capable of working in a diversified
environment.
IT Audit Projects
ITGCs and IT Application Controls Audits, SOX testing, PCI DSS, ERP Systems Audit, SAS 70/SSAE 16/service organization control SOC Audit, HIPAA Audits and IT Infrastructure Audit
IT Tools & Technical Skills:
IT Audit Tools: TEAMMATE, ACL, IDEA, CAAT, ETL,
Microsoft Office Tools: MS Access, MS SharePoint, MS Excel, V-Look Up, MS Word, MS PowerPoint, and MS Outlook
Scanning tools: Nexpose, SolarWinds, Imperval, Foundstone, NESSUS, WebInspect
Other tools: MySQL, SPSS, ACL.
Experience
Unisys
IT Auditor Aug 2015- Aug 2017
Conduct audits on IT infrastructure and operating procedures in accordance with established standards for accuracy, efficiency, security and risk mitigation.
Engage in the planning and execution of internal audit procedures and the creation of audit reports.
Collaborate with management and instituted internal committee to devise and implement policies and procedures, regarding network security issues
Create annual audit universe and applicable controls for the testing of ITGC’s using risk base audit approach
Ensure that the monitoring & testing plan are always updated through modifications of rules & regulations, issuance of new or revised policies and procedures, and enactment of new developments arising
Participate in review of the end-to-end processing, transmission and storage of debit and credit card information in conformance with PCI- DSS standard controls
Perform review of the adequacy for critical controls such as Segregation of duties in Access control and Change control, Data integrity/security, Quality Assurance testing, and Release management to mitigate potential risks.
Execute Sarbanes Oxley (SOX) financial audits, and compliance testing as well as Identify and document control weaknesses,
Perform walk-throughs and detailed testing of controls to evaluate control design appropriateness and operating effectiveness relative to HIPAA, PCI, COSO, and COBIT framework
Utilize ACL to export, analyze and evaluate evidence of supporting documentation received to determine deficiencies in controls, level of compliance with best industry practices and management policies.
Review SSAE 16 reports from various service vendors, identify control gaps and evaluate management's responses
Testing of controls in Access Management, Change Management, SDLC, Business Continuity / Disaster Recovery, and Application level controls
Unisys
IT Compliance Auditor Jan. 2014- July 2015
Completed Sarbanes-Oxley Section 404 testing of critical systems financially significant applications
Liaised with external auditors on ITGC’s, Application controls and SOX test procedures.
Reviewed company information security policy, to Identify and mitigate gaps and inconsistencies
Conducted assessment of business continuity and disaster recovery plans.
Executed application security reviews for segregation of duties and compliance with business stipulated procedures
Assisted in development of audit program and audit objectives to address financial and process risks.
Involved with coordination of audit process, ensuring assignment of duties, timely completion, and proper documentation of work papers
Conducted information systems audits which included Application Controls testing, IT Infrastructure audit (Operating system, network device, databases), ITGC testing, and disaster recovery in accordance with department and professional standards
Performed PCI DSS and HIPAA audits
Participated in all phases of internal audit assignments including planning, execution, reporting and follow up
Certifications
CISA – In progress
Education
Nnamdi Azikiwe University, Nigeria: BS, Banking and Finance, 2014