Ayo Olanipekun
About Candidate
I am an experienced IT Security Auditor committed to leveraging my expertise to safeguard IT systems, mitigate risks, and enhance overall security and compliance frameworks. With a proven history of delivering impactful results and a dedication to continuous improvement, I am determined to excel in challenging roles that demand a meticulous approach to IT audit and risk management. |
Education
Work & Experience
• Deployed overseas twice to the Gulf in the Middle East aboard USS Bulkeley (DDG84) as the Oil King, overseeing fuel loading, transfer, and usage, successfully unloading over thirty million gallons of fuel without incident. • Recognized for exemplary service with multiple awards, including two Navy Achievement Medals and one Good Conduct Medal, for faithful service and outstanding performance. • Conducted maintenance and repairs on gas turbine engines and Alison K34 generators, utilizing blueprints, schematics, and technical manuals to ensure optimal performance and reliability. • Performed administrative procedures related to gas turbine and propulsion system operation and maintenance, ensuring compliance with regulations, and facilitating smooth operations. • Executed preventive and corrective maintenance on the ship’s fuel system and air system, ensuring operational readiness and efficiency. • Played a key role as a member of the Engineering Training Team (ITT), responsible for training Engine Room Operators, Propulsion Systems Monitors, and Oil Kings, participating in over one hundred casualty control drills and providing one-on-one training to new sailors to achieve required Personnel Qualification standards. • Entrusted with overseeing the most critical environmental safety program at sea, successfully transferring over twenty million gallons of fuel without incident, resulting in USS Bulkeley receiving a fleet award for operational excellence. • Demonstrated leadership and teamwork by supervising the refueling of helicopters onboard with zero accidents, ensuring safe and efficient operations. • Proficiently utilized Engineering Operational Sequencing System (EOSS), Engineering Operational Casualty Control (EOCC), and Engineering Operating Procedure (EOP) to maintain adherence to established procedures and protocols for safe and efficient operation of ship systems.
• Managed complex fracturing operations, overseeing a team of 10-15 personnel including equipment operators, fluid technicians, and field engineers, ensuring exceptional service delivery to clients. • Maintained oversight of fracturing equipment valued at over $6 million, contributing to the successful execution of operations and meeting client expectations. • Generated annual revenue exceeding $3 million through efficient management of fracturing operations and client relationships. • Monitored and executed fracturing operations, ensuring adherence to design specifications and mitigating risks associated with the job. • Identified and minimized potential risks to ensure safe and successful job outcomes, adapting to unplanned changes at the well site as needed. • Supervised job sites and crew activities, coordinating assets to ensure timely arrival, rigging up, testing, and readiness for job performance in compliance with client requests and SLB QHSE standards. • Performed reviews and audits of security configurations of infrastructures and applications. • Maintained strict adherence to industry standards and safety protocols, ensuring no deviations from established guidelines during job execution.
Evaluated the operating effectiveness of internal controls to validate their adequacy and compliance with regulatory requirements and organizational policies. • Performed monitoring and auditing of IT controls at various levels, including applications, databases, operating systems, and processes, collaborating with business partners to ensure comprehensive process documentation and knowledge transfer. • Managed IT risk-based audits, encompassing review areas such as IT General Control (ITGC), Change Management, Access Control, and IT Operation Problem Management. • Conducted thorough information security and business continuity assessments for clients, identifying vulnerabilities and recommending appropriate mitigation strategies. • Planned, implemented, and executed IT audit processes including testing to validate adherence to established controls, identifying, and reporting deficiencies with recommended corrective action plans. • Ensured effective communication of unmitigated risks and control deficiencies to management, facilitating timely remediation efforts. • Worked closely with operational management to develop and implement appropriate remediation plans, ensuring timely resolution and desired outcomes. • Documented risks and mitigating controls through risk control matrices, evaluating control design and adequacy to manage key risks effectively. • Cultivated cross-functional relationships to assess key business risks and exposures, contributing to a comprehensive risk management approach. • Gathered and documented sufficient evidence to support test results and conclusions on the effectiveness of controls evaluated, maintaining audit integrity and reliability. • Communicated audit findings to management through concise and informative audit reports, facilitating informed decision-making and action planning. • Communicated audit findings to management through concise and informative audit reports, facilitating informed decision-making and action planning.
• Conducted preliminary assessments and planning for IT SOX audits, focusing on controls testing related to database backups, access control, and change management. • Collaborated with internal teams to gather relevant documentation and information pertaining to the audited controls, ensuring comprehensive coverage, and understanding. • Led walkthrough meetings with stakeholders to gain insights into control procedures and identify potential areas for testing. • Utilized EY testing methodologies tailored to assess the effectiveness and compliance of database backup, access control, and change management controls. • Executed testing activities according to the defined plans, meticulously evaluating control activities, documentation, and evidence to ascertain adherence to regulatory requirements and internal policies. • Documented testing results, observations, and any identified deficiencies or areas for improvement, maintaining detailed records for audit trail and reporting purposes. • Engaged in discussions with control owners and process stakeholders to provide feedback, clarification, and guidance on control testing requirements and outcomes. • Assisted in the preparation of audit reports summarizing findings, conclusions, and recommendations related to database backup, access control, and change management controls.
• Coordinated various audit engagements, including ITGC audits, IT dependencies assessments, and SOC 2 audits, consulting with clients to manage expectations effectively and ensure smooth collaboration. • Monitored the advancement of audit projects according to pre-established plans and schedules, utilizing an audit tracker to ensure alignment with timelines and objectives. • Assigned controls to testers and monitored progress using trackers, ensuring timely completion and collection of evidence through leading walkthrough meetings, and developing PBCs (Provided by Clients) for audit evidence requests. • Conducted thorough assessments of the Audit Engagement Team's work, offering constructive feedback, coaching notes, and on-the-job training to foster consistent and high-quality audit documentation practices. • Delivered comprehensive status reports during weekly meetings, providing management with transparent, insights into the progress and development of audit team engagements. • Oversaw project execution, ensuring on-time, on-budget completion of audit projects that met or exceeded clients’ needs and expectations. • Communicated with clients frequently to ensure understanding of audit findings and provided clarifications where required. • Provided general client support, including project status updates. • Upheld the integrity and quality of audit processes by furnishing essential audit information and enforcing rigorous standards throughout the auditing process. • Tracked audit progress weekly using a burndown tracker, proactively managing deadlines to ensure timely project completion and adherence to schedules. • Supported management in the review and refinement of control planning documentation, contributing. insights and expertise to enhance audit effectiveness. • Functioned as the primary point of contact for clients regarding audit-related inquiries, promptly addressing concerns and escalating issues when necessary to ensure swift resolution. • Assigned controls to testers and monitored progress using trackers, ensuring timely completion and collection of evidence through leading walkthrough meetings, and developing PBCs (Provided by Clients) for audit evidence requests.
• Lead audits of internal IT systems and conduct comprehensive risk assessments to ensure system integrity and identify potential cyber-risk exposure and control weaknesses. • Develop and implement audit and control frameworks to monitor IT production environments, including applications, business control process, change control management procedures, security measures, network, and data center operations. • Identify various risks to the organization, including financial, operational, and compliance risks, and recommend corrective actions and mitigation strategies. • Evaluate complex information systems and controls against established standards, reporting findings to management and providing recommendations for corrective action. • Conduct interviews, examinations, and testing of security controls, and assist in preparing assessment deliverables such as Security Control assessment Reports and Security Risk Assessment. • Function as recognized expert within the organization, interpreting internal and external business issues and recommending solutions and best practices. • Utilize strong analytical and collaboration skills, along with detailed knowledge of current and emerging security technologies, to analyze controls and propose effective solutions. • Participate in planning, executing, and reporting security audits and network vulnerability assessments. • Provide external audit readiness consulting to the company and interact with senior management and ICT Risk Director during audits to define scopes, controls, and executes testing plans. • Performed ISO 27001 internal audit for all our facilities in NAM, APAC, and EMEA. • Plan, execute, and report on IT, privacy, and operational reviews to identify business, privacy, security, compliance, and regulatory risks. • Contribute to security compliance efforts, including ISO 27001, SOC2, and EU Data Privacy compliance. compliance initiatives. • Conduct annual reviews of policies and procedures, and collaborate with the team to provide input and assistance as needed, including documentation associated with systems.