Skip to main content
HimalayasHimalayas logo
AO
Open to opportunities

ADEGBOLA OYEKUNLE

@adegbolaoyekunle

Senior GRC analyst building enterprise governance and risk programs that convert regulations into audit-ready controls.

United States
Message

What I'm looking for

I’m looking for a Senior GRC role where I can design TPRA and ITGC controls, reduce risk exposure, and deliver board-ready reporting—partnering with executives and technical teams to achieve measurable compliance outcomes and zero repeat findings.

I’m a Senior Governance, Risk & Compliance (GRC) Analyst with 7+ years of progressive experience architecting enterprise-wide governance, risk, and compliance programs across financial services and public infrastructure. I translate complex regulatory mandates—SOX, GDPR, FFIEC, NIST, and ISO 27001—into operational frameworks that measurably reduce risk exposure.

At MARTA, I spearheaded the enterprise-wide Third-Party Risk Assessment (TPRA) program, overseeing vendor onboarding due diligence, annual reassessments, and remediation tracking for 80+ active vendor contracts. I engineered the organization’s first Vendor Risk Scoring Matrix, driving a 34% reduction in critical vendor risk exposure within 18 months and serving as a principal reviewer for SOC 2 Type II, penetration test results, and ISO 27001 documentation.

I led ITGC audit preparation across 14 control domains, coordinating evidence collection that delivered zero repeat findings across two consecutive annual audit cycles. I also manage ServiceNow GRC for risk register maintenance and issue tracking, and I deliver quarterly executive dashboards to the CIO and Board.

Previously at USAA, I owned end-to-end SOX compliance for IT General Controls, managing testing of 45+ controls and directing quarterly access recertification across 12 banking applications—remediating 300+ excessive privilege instances and reducing segregation-of-duties violations by 42%. I’ve also supported GDPR gap assessments and OCC regulatory examinations to achieve zero Matters Requiring Attention (MRAs), and I bring a trusted cross-functional approach that bridges technical teams and executive leadership.

Experience

Work history, roles, and key accomplishments

MA
Current

Senior GRC Analyst

MARTA

Aug 2022 - Present (3 years 10 months)

Spearheaded MARTA’s enterprise Third-Party Risk Assessment (TPRA) program for 80+ active vendor contracts, reducing critical vendor risk exposure by 34% in 18 months. Led ITGC audit preparation across 14 control domains, enabling zero repeat findings, and managed ServiceNow GRC dashboards delivered quarterly to the CIO and Board.

UB

Senior GRC Analyst

USAA Bank

Oct 2020 - Jul 2022 (1 year 9 months)

Owned end-to-end SOX compliance for IT General Controls, testing 45+ controls across change management, logical access, and computer operations. Reduced excessive privilege instances by remediating 300+ cases and decreased segregation-of-duties violations by 42%, while supporting GDPR gap assessments and achieving zero Matters Requiring Attention (MRAs) during OCC regulatory examinations.

CC

GRC Analyst I

Chase Bank (JPMorgan Chase)

Aug 2018 - Sep 2020 (2 years 1 month)

Performed risk-based assessments aligned to the FFIEC IT Examination Handbook, identifying control gaps and drafting remediation recommendations for senior management review. Supported annual SOX audit cycles through cross-functional evidence gathering and developed security policies aligned to NIST, including incident response, data retention, mobile device management, and remote access.

Education

Degrees, certifications, and relevant coursework

OP

Ondo State Polytechnic

Attended Ondo State Polytechnic in Ondo State, Nigeria.

Tech stack

Software and tools used professionally

Find your dream job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan