About

Segun is an award-winning Cybersecurity Professional with excellent third-party risk management skills to identify control implementation gaps. He is a published author known for his exceptional Cybersecurity books, ‘The Visibility Playbook for Cyber Starters’ and ‘The 21-Day Visibility Work Plan for Cyber Starters’ He works with business owners to identify control implementation and compliance gaps; develops remediation plans, and ensures that third parties comply with organisation policy, standards, and procedures. This improves compliance and audit processes by 30% saving time and over $4M annually. Segun holds several certifications, including CompTIA Security+, Microsoft Certified Azure - Security Engineer, Qualys Certified Specialist - Vulnerability Management, Microsoft Certified Azure - Administrator, Cisco CyberOps Associate (Student Level Certification), and (ISC)² Certified in Cybersecurity. These certifications demonstrate his commitment to staying updated with the latest industry practices and technologies. As an experienced Third-Party Risk Analyst, Segun plays a crucial role in ensuring that third-party relationships align with the company's policies and regulatory guidelines. He conducts due diligence reviews to assess operational fitness and tracks risks, vulnerabilities, and mitigation plans. Segun's ability to comprehend security architectures and conduct risk assessments enables him to provide valuable insights to business owners and the Vendor Management Office.

Skills

  • Communication
    10
  • Teamwork
    10
  • Problem-Solving
    9
  • Creativity
    10
  • Leadership
    9
  • Cybersecurity
    10
  • Information Security Management
    10
  • risk assessment
    9
  • Vulnerability Managemnt
    9
  • Mitigation Planning
    9
  • OneTrust GRC
    10
  • Vendor Management
    9

Experience

Segun Ebenezer Olaniyan

Work experience
  • Conducts information security risk assessments for third parties and cloud services, including advising management on how to mitigate any identified risks.
  • Gather vendor risk assessment data and prepare risk assessments review for critical-related vendors as needed, to be communicated to stakeholders.
  • Responsible for identifying and developing mitigation plans for information security risks resulting from third-party applications, systems, and infrastructure
  • Review answers to the questionnaire, SOC2 report, vulnerability scan report, and penetration test report and gather evidence to ensure they align with organisation control requirements and standards.
  • Create vendor risk assessment report to track and remediate all findings during assessment and escalate vendor non-compliance issues to management as needed.
  • Pull standardised reporting from the system of record for the third-party Risk Management program and format it in Excel.
  • Identifies opportunities to improve risk posture and develop solutions for remediating or mitigating risks and assessing the residual risk.

Related persons

Oyewumi OlatunjiBusiness Manager at Olzits International Limited
Oluwatosin AdeogunICT , GRC, information technology skills