Summary
Overview
Work history
Education
Skills
Certification
Timeline
Generic

Grace Smith

London

Summary

A professional with expertise in regulatory compliance, internal controls assessments, and GDPR implementation. Demonstrates a strong understanding of legal frameworks and the ability to enhance organisational compliance strategies. Committed to advancing career goals by leveraging skills in regulatory environments to drive business success.

Overview

6
6
years of professional experience
1
1
Certification

Work history

Information Security Officer

Company 1 Ltd
01.2020 - Current
  • Manage internal and external security audits and coordinate remediation efforts for any findings.
    Define and scope security framework (e.g., NIST, ISO 27001) for the organisation
    Carried out Third-Party vendor security assessment
  • carry out targeted risk based assessments
  • Conducted thorough risk assessments to devise tailored security solutions.
  • Collaborated with senior management for a holistic approach to data protection strategy.
  • Increased employee awareness of phishing scams through educational workshops.
  • Developed effective security policies for improved network safety.
  • Designed custom security protocols for enhanced data protection.
  • Tracked emerging cybersecurity threats to maintain updated defensive strategies.
  • Conducted ongoing threat monitoring and targeted audits on systems.
  • Conducted comprehensive information security audits, ensuring compliance with industry standards.

Cyber Security Analyst

Company 2 Ltd
  • Develop, implement, and maintained Information Security Policies
    Conduct regular security risk assessments and Business Impact Analyses
  • Manage internal and external security audits and coordinate remediation efforts for any findings.
  • Define and scope security framework (e.g., NIST, ISO 27001) for the organisation
  • Carried out Third-Party vendor security assessment

Education

MBA Finance -

University

Skills

  • Knowledge of Regulatory compliance
  • Internal controls assessments
  • GDPR implementation
  • Security Frameworks including SIO 27001
  • Risk management
  • Stakeholder collaboration
  • AI Security
  • Third-Party Vendor security

Certification

ISO 27001 Lead Implementer (in view)

Timeline

Information Security Officer

Company 1 Ltd
01.2020 - Current

Cyber Security Analyst

Company 2 Ltd

MBA Finance -

University
Grace Smith