Himalayas logo
SN
Open to opportunities

Solange Nnoko

@solangennoko

Cybersecurity analyst specializing in GRC, risk management, SOC operations, and vulnerability remediation.

United States
Message

What I'm looking for

I seek a role focusing on GRC, risk management, and SOC collaboration where I can drive compliance, reduce risk, and mature vulnerability and vendor programs.

I am a Cybersecurity Analyst with 6+ years of experience across healthcare, financial services, and consulting, focused on GRC, SOC operations, risk management, vulnerability management, and third-party vendor security.

I have led enterprise GRC initiatives mapping controls to NIST RMF, ISO 27001, HIPAA, PCI DSS, and SOC 2, driven vulnerability remediation using Qualys/Nessus, reduced MTTR through SOC collaboration, and automated audit evidence collection to cut manual prep time.

I deliver executive dashboards and risk reports, support SOX and HIPAA audit readiness, run security awareness training and phishing simulations, and partner with IAM and development teams to enforce least-privilege and improve application security posture.

Experience

Work history, roles, and key accomplishments

CA
Current

Cybersecurity GRC & Risk Analyst

CareSource

Feb 2025 - Present (8 months)

Led enterprise GRC initiatives mapping controls to NIST RMF, HIPAA, PCI DSS, and SOC 2, conducted risk assessments and vendor reviews, and collaborated with SOC to reduce MTTR by 25% while improving audit readiness for SOX and HIPAA.

Grant Thornton LLP logoGL

Information Security Risk Analyst

Grant Thornton LLP

Jun 2021 - Jan 2023 (1 year 7 months)

Led ITGC testing and SOX audit preparation for financial and healthcare clients with zero audit deficiencies, conducted vendor risk assessments, and delivered executive dashboards mapping risks to major frameworks.

Grant Thornton LLP logoGL

Cybersecurity & GRC Intern

Grant Thornton LLP

Jan 2021 - May 2021 (4 months)

Assisted ITGC testing and audit evidence collection for SOX and PCI DSS engagements, conducted preliminary vendor risk reviews, and supported Splunk-based SOC monitoring and GRC control mapping.

Education

Degrees, certifications, and relevant coursework

University of Maryland Global Campus logoUC

University of Maryland Global Campus

Master of Science, Cybersecurity Management & Policy

Pursuing a Master of Science in Cybersecurity Management & Policy with expected completion in December 2024, focusing on cybersecurity governance and policy alignment.

University of Maryland Global Campus logoUC

University of Maryland Global Campus

Bachelor of Science, Information Technology

Completed a Bachelor of Science in Information Technology in December 2020, covering IT fundamentals, security, and systems administration.

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan
Solange Nnoko - Cybersecurity GRC & Risk Analyst - CareSource | Himalayas