Jacinta Ogbonna
@jacintaogbonna
Senior GRC analyst specializing in ISO 27001, SOC 2, and cyber maturity assessments to strengthen executive-ready compliance.
What I'm looking for
I’m a Senior GRC Analyst with 5 years at Deloitte Canada, leading governance, risk, and compliance programs across financial services, wealth management, and critical infrastructure. I own end-to-end GRC deliverables—driving audit readiness, cyber maturity assessments, and stakeholder-aligned findings across SOC 2 Type II, ISO 27001, PCI, and NIST CSF 2.0.
I standardize and streamline control frameworks by mapping and optimizing 200+ controls across 13 frameworks, reducing duplication and accelerating assessment cycles. I bring a structured, accountability-driven approach to third-party risk management (SAFE-TPRM, OneTrust), incident management policy development, and IRAM2 cyber threat risk assessments—translating risk into clear, executive-ready decisions with a track record of strong outcomes, including 100% on-time audit delivery and zero disputes on ISO 27001 engagements.
Experience
Work history, roles, and key accomplishments
Lead governance, risk, and compliance activities for financial services clients, including SOC 2 Type II and ISO 27001 audit execution, audit readiness, and cyber maturity assessments. Mapped and standardized 200+ controls across 13 frameworks, and delivered third-party risk assessments and policy/governance integrations.
Executed SOC 2 Type II and General IT Controls (GITC) audits, managed evidence lifecycles, and supported enterprise risk assessments. Delivered executive reporting and risk heatmaps, and performed access control, privileged access, and change management testing across multiple engagements.
Education
Degrees, certifications, and relevant coursework
ISO 42001
ISO 42001 L I (in-view), AI Management System (ISO 42001)
Currently preparing for ISO 42001 L I (in-view).
Smart Learning UK
Cybersecurity & Third-Party Risk Management, Cybersecurity & Third-Party Risk Management
Completed training in Cybersecurity & Third-Party Risk Management at Smart Learning UK (May 2024).
ISO 27001 Lead Auditor
ISO 27001 Lead Auditor, Information Security
Earned ISO 27001 Lead Auditor certification (May 2024).
CompTIA
CompTIA Security+, Cybersecurity
Earned CompTIA Security+ (Apr 2023).
Black Tech Academy
Cybersecurity Accelerator Program, Cybersecurity
Completed a Cybersecurity Accelerator Program at Black Tech Academy (Jan 2023).
ISC2
ISC2 Certified in Cybersecurity (CC), Cybersecurity
Completed ISC2 Certified in Cybersecurity (CC) (Mar 2023).
Red River College Polytech
Post-Graduate Diploma (With Honours), Business Technology Management
Completed a Post-Graduate Diploma in Business Technology Management (with Honours) at Red River College Polytech (May 2022).
Laser Petroleum Geosciences Centre, Lagos
Post-Graduate Diploma, Applied Petroleum Geosciences
Completed a Post-Graduate Diploma in Applied Petroleum Geosciences at Laser Petroleum Geosciences Centre, Lagos (Dec 2014).
Federal University of Technology, Nigeria
Bachelor of Engineering (B.Eng.), Petroleum Engineering
Completed a B.Eng. in Petroleum Engineering at the Federal University of Technology, Nigeria (Dec 2007).
ISACA
Certified Information Systems Auditor (CISA), Information Systems Audit
Certified Information Systems Auditor (CISA) with ISACA (Apr 2026).
Universite de Saint-Boniface
Cours de conversation orale, French Language
Completed French Language study focused on oral conversation (Cours de conversation orale) at Universite de Saint-Boniface (June 2022).
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Jacinta?
You can contact Jacinta and 90k+ other talented remote workers on Himalayas.
Message JacintaGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
