Charity Uwera

Charity Uwera

Regulatory Compliance Consultant

Followers of Charity Uwera433 followers
location of Charity UweraTempe, Arizona, United States

Connect with Charity Uwera to Send Message

Connect

Connect with Charity Uwera to Send Message

Connect
  • Timeline

  • About me

    Security Governance, Risk Management, Privacy & Compliance| IT Auditor| Third-Party Risk Analyst

  • Education

    • DePaul University

      2019 - 2020
      Master's degree Cybersecurity
    • Penn State University

      -
      Bachelor's degree
  • Experience

    • Oracle

      Apr 2022 - Apr 2023
      Regulatory Compliance Consultant
    • Top Group Technologies

      Apr 2023 - May 2024
      Information Security Analyst

      Conduct comprehensive assessments of third-party vendors, identifying and mitigating potential vulnerabilities and weaknesses in their systems.Ensure vendors' compliance with industry standards such as HIPAA, PCI-DSS, and ISO 27001, fostering a secure and regulatory-compliant ecosystem.Develop and execute risk-based approaches for the assessment and monitoring of third-party vendors, emphasizing continuous monitoring and timely reporting of risks and issues.Perform on-site assessments of vendors' information security programs, verifying adherence to established policies and procedures.Create and implement metrics and reports for third-party risk management, providing valuable insights into vendor risk exposure and trends.Stay abreast of industry standards and regulatory requirements, ensuring continuous compliance with evolving vendor management practices.Collaborate cross-functionally with internal teams including Legal, Procurement, and Information Security to implement and maintain robust risk management controls.Conduct due diligence assessments for mergers and acquisitions, evaluating third-party risks and ensuring compliance.Review and provide strategic feedback on third-party vendor security questionnaires and security control attestations, contributing to enhanced security postures. Show less

    • American Express

      May 2024 - now
      Third-Party Risk Analyst

      Collaborate with Third-Party Relationship Managers to conduct risk assessments and manage ongoing oversight activities.Maintain and review vendor portfolio data across multiple business units.Partner with Procurement to ensure accurate documentation and timely processing.Review and evaluate control evidence to ensure compliance with program standards.Perform remediation activities to address risks with existing third-party vendors.Ensure high-quality output by adhering to established standards and guidelines. Show less

  • Licenses & Certifications

    • Eramba Compliance Management Certification

      Eramba
      Feb 2024
    • Eramba Risk Management Certification

      Eramba
      Feb 2024