Summary
Overview
Work history
Education
Skills
Certification
Timeline
Generic

Obi Nkemena

Solihull,SOL

Summary

Critical-thinking information systems risk management leader with 15+ years of experience in infrastructure, data analytics, cyber resilience and information security risk management. MBA in Finance and CISSP with high learning agility and comfortable around senior leadership.

TECHNOLOGY MODERNISATION: Independent, with a track record record on digital transformation. Experience in multiple sectors, including Financial, FMCG and Consultancies.

CYBER RESILIENCE: Strong operations background in fast paced IT environment. Experience in enhancing cyber resilience.

CYBERSECURITY RISK: Effective at analysing security risk and implementing risk mitigation.

Overview

15
15
years of professional experience
1
1
Certification

Work history

Vice President, Information Cyber Security

CLS Group
London
02.2023 - Current
  • Leading response, reporting and remediation of external regulatory and internal audit findings.
  • Leading 350+ application and business service risk function including information asset criticality, data classification and criticality, GDPR requirements and information asset risk assessment.
  • Leading governance and risk management of vulnerabilities, including reporting, creating standards and procedures, and risk issue management.
  • Risk issue and risk incident reporting and management.
  • Implementation of Cloud security framework based on AWS best practices, CIS, NIST, MITRE ATT&CK frameworks.
  • Management of cybersecurity toolset, including Qualys, and Check Point Cloud Guard.

Information Security Risk Consultant (Contract)

CLS Group
London
04.2022 - 02.2023
  • Created and maintained 150+ key and non-key controls, using enterprise GRC tool - RSA Archer.
  • Ensured controls align with risk appetite and risk tolerance levels.
  • Leading management of RCSA of IT Security Controls. Ensuring Controls testing across internal teams and third-party suppliers. Driving creation of action plans where Controls are not fully effective and tracking to completion.
  • Provide Risk Reporting to IT Leadership Team and also to Group Risk
    Promote culture of Risk Awareness within IT Department
  • Maintain awareness of potential Emerging Risk and ensure these are recorded, visible and considered in all new technology initiatives and financial planning activities
  • Work closely with organisational risk management Group, ensuring that IT Risks are reported as required and aligned with Risk appetite and Risk tolerance levels.
  • Building positive relationships to 2nd and 3rd lines of defence. To facilitate information exchange, identify improvements and where appropriate, to responding to changes across all estates.
  • Setting standards for Kyndryl/IBM, AWS estates and any other third party estate.
  • Encouraging Risk-aware culture across all partners, ensuring Risk & Control is considered throughout processes undertaken.
  • Challenging teams on emerging Risks whilst providing help and guidance to maintain overall effective framework.

Network Tools and Reporting COE Lead (Contract)

Mondelez International
Birmingham, West Midlands
01.2019 - 04.2022
  • Developed, verified, deployed and maintained analytical and reporting tools, including conducting multiple POCs.
  • Global solution owner and technical lead for network tools and reporting.
  • Toolset management including Net Scout Pulse and NG1, SolarWinds, Cisco DNAC, Aruba, Exinda, covering estate size of 380 plus sites and 50k plus users.
  • Network Solution architect for digital transformation of Unified Communication, including migrating Skype on-prem to Skype on-line and Skype on-line to Teams for 50k plus users.
  • SME for Azure migration - Identified and assessed (security and network) 100+ enterprise Azure cloud apps, plus all app dependencies.
  • Global network reporting solution owner. Reporting on monthly KPIs including Microsoft Teams/SFBO usage patterns and performance, global app usage, BAU activities
  • Vendor management - maintained primary relationship with vendors and overall servicing responsibility to extract maximum value of all products and services.

Network Optimisation Lead (Contract)

Mondelez International
Birmingham, West Midlands
01.2014 - 12.2018
  • SME for 3 year Azure migration programme. 200+ apps identified, consolidated, then optimised for improved end user experience, then migrated to Azure.
  • Network solution architect and QOS global policy owner for Silver Peak SD-WAN covering 350+ sites and 50k users.
  • VoIP optimisation network lead/SME for 3 year transformation journey of Microsoft SFB (on-prem) to Microsoft SFBO, finally SFBO to Microsoft Teams migration.
  • Partnered closely with technical stakeholders to implement security, operational, compliance and privacy-related controls as part of cloud (Azure) blueprints.
  • Monitored and tested application performance to identify potential bottlenecks, develop solutions, and collaborate with developers on solution implementation.
  • Delivered in-depth training to users, imparting knowledge of best practices for protecting data and minimising errors.

Network and Security Analyst (Contract)

BT Global Services
Birmingham
12.2010 - 12.2013
  • Conducted regularly security audits on 1000+ infrastructure systems to identify vulnerabilities.
  • Coordinated with third-party security information and event management (SIEM) providers to maintain protections and predict threats.
  • Implemented necessary controls and procedures to protect information system assets from intentional or inadvertent modification, disclosure or destruction.
  • Authored security incident reports, highlighting breaches, vulnerabilities and remedial measures.
  • Designed tests and tools to break into security-protected applications and networks to probe for vulnerabilities.

Education

Master of Business Administration - Finance

University of Manchester
Manchester
2014

Master of Science - Pharmaceutical Technology

Kings College, University of London
London
2009

Bachelor of Science - Pharmaceutical Sciences

University of Greenwich
London
1999

Skills

  • Cybersecurity Risk Management
  • Cybersecurity Tooling
  • Designing Security Controls
  • Financial Services
  • Cyber Risk Institute
  • NIST CSF
  • NIST 800-53
  • ISO27001
  • CIS Benchmarks
  • AWS
  • Azure
  • Check Point Cloud Guard
  • Qualys Cloud Platform

Certification

AWS certified cloud practitioner - 2022, # YEN5RGFCSFF11RKQ

CISSP - 2008 - 2017, 2022, # 302790

ISO/IEC 27001 Lead Auditor training # SL201011104

Timeline

Vice President, Information Cyber Security

CLS Group
02.2023 - Current

Information Security Risk Consultant (Contract)

CLS Group
04.2022 - 02.2023

Network Tools and Reporting COE Lead (Contract)

Mondelez International
01.2019 - 04.2022

Network Optimisation Lead (Contract)

Mondelez International
01.2014 - 12.2018

Network and Security Analyst (Contract)

BT Global Services
12.2010 - 12.2013

Master of Business Administration - Finance

University of Manchester

Master of Science - Pharmaceutical Technology

Kings College, University of London

Bachelor of Science - Pharmaceutical Sciences

University of Greenwich
Obi Nkemena