Naa Asimenu
@naaasimenu
I build audit-ready security governance, ISO 27001 controls, and cloud compliance programmes.
What I'm looking for
At Yassir, I built and maintained the Information Security Management System, aligning governance, controls, risk management and audit evidence with ISO 27001, PCI DSS, GDPR and local data protection requirements. I translate cloud and security findings into practical remediation for Engineering, CloudOps, SecOps and AppSec teams.
I've also strengthened IT and third-party risk programmes at Brinks and delivered ISO 27001, NIST CSF, SOC 2 readiness, vendor risk and security consulting work through Minerva Global and Leighfisher. My work spans GCP governance, access reviews, control testing, audit evidence, risk registers, policies and remediation tracking.
Experience
Work history, roles, and key accomplishments
GRC & Security Compliance Engineer
Yassir
Jan 2024 - Aug 2026 (2 years 7 months)
Built and maintained Yassir's ISMS and governance framework, aligning with ISO 27001, PCI DSS, GDPR, and local data protection requirements. Conducted security risk assessments, internal audits, and access reviews, and supported audit readiness.
Education
Degrees, certifications, and relevant coursework
University of Sussex
Master of Science, International Management
2008 - 2009
Masters in International Management from the University of Sussex, UK, completed in 2009.
University of Ghana
Bachelor of Arts, Political Science and Psychology
2002 - 2005
Grade: 2:1
Bachelor's (Hons) in Political Science and Psychology from the University of Ghana, completed in 2005.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Naa?
You can contact Naa and 90k+ other talented remote workers on Himalayas.
Message NaaGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
