Summary
Overview
Work History
Education
Skills
Accomplishments
Languages
Affiliations
Certification
Application & Software
Soft Skills
Timeline
Generic
ADEBAYO A. OMOSEKEJI

ADEBAYO A. OMOSEKEJI

Beaumont,Aberta

Summary

Dynamic Cybersecurity and Compliance Generalist with over 9 years of proven expertise in security frameworks, threat risk assessment, and compliance across diverse industries. Demonstrates a strong ability to align security strategies with business objectives while leading teams, conducting audits, and ensuring adherence to standards such as ISO 27001, NIST, and GDPR. Skilled in translating complex security concepts into clear communications for stakeholders, consistently driving enhancements in security initiatives. Committed to fostering a culture of security awareness and resilience within organizations.

Overview

13
13
years of professional experience
1
1
Certification

Work History

Technology, Risk and Control (TRC) Generalist

Canada Life
06.2023 - Current
  • As a Technology, Risk, and Control (TRC) Generalist, I conduct regular risk assessments to identify potential threats and vulnerabilities within the IT infrastructure, recommending effective mitigation strategies. Through these efforts, I've reduced risk exposure by 25%. I am responsible for developing, implementing, and maintaining control frameworks and security protocols to protect information assets, ensuring compliance with industry standards such as ISO 27001. This role led to a 30% increase in compliance adherence. This includes overseeing adherence to relevant regulations and corporate policies, addressing audit findings and assessments.
  • Additionally, I contribute to creating and revising IT policies, procedures, and guidelines to enhance the organization's risk management capabilities, resulting in a 20% improvement in policy implementation. I work closely with IT teams, business units, and external partners to integrate risk management and control measures into project plans and operational processes, achieving a 15% enhancement in process efficiency. Furthermore, I prepare detailed reports on the status of risk and control initiatives, complete with metrics and analysis, for senior management review, leading to a 10% increase in informed decision-making.

Team Lead, Information Security, Governance, Risk & Compliance Specialist

Canadian Western
05.2022 - 06.2023
  • As a team leader, I drive security and compliance initiatives to protect assets and ensure regulatory adherence. I report directly to the AVP of Security, Governance, Risk, and Compliance, collaborating with CWB's first line of defense to conduct threat risk assessments for key applications vital to operations.
  • As a subject matter expert, I lead third-party application risk assessments, manage security exceptions, and review non-standard software. I support CWB Line 2 in designing, implementing, and testing technology controls for OSFI B-13 and assist in preparing reports to highlight risks and impacts for management and audits, promoting organization-wide remediation efforts. I facilitate regular system reviews and audits to ensure payment systems comply with the latest PCI DSS regulations.

Sr. Information Security, Governance, Risk & Compliance Specialist

Canadian Western Bank
08.2020 - 04.2022
  • As a Senior IS Security Governance, Risk, and Compliance (GRC) Specialist, I perform internal threat risk assessments on all critical applications essential to CWB's operations. This effort has enhanced our security posture by 30%. I lead third-party application risk assessments, manage security exceptions effectively, and oversee technology control testing by OSFI B-13 standards, ensuring a compliance rate of 95%.
  • Additionally, I deliver comprehensive training and compile management reports, increasing team awareness by 40%. I oversee audits and function as a trusted advisor on information security and compliance while maintaining a Cyber Risk Register—a move that has reduced incident response time by 25%. I lead the Technology Control Program by identifying critical applications across technology portfolios, conducting design workshops, drafting test scripts, executing control tests, and coordinating remediation plans with business units for compliance and timely resolution. These initiatives have improved compliance rates by 20%. I oversee the implementation of corrective actions based on findings in internal and external audits, ensuring the timely and effective resolution of discrepancies, achieving a resolution rate of 90%.

Team Lead, Technology Risk Assessment Specialist

Cashco Financial
05.2018 - 07.2020
  • As the team leader for security risk analysis, I report directly to the Chief Information Security Officer. I manage, design, document, and implement Information Security controls and IT compliance programs to meet corporate, legal, and regulatory requirements. Leading third-party application risk assessments, I manage security exceptions and oversee internal security threat risk assessments. Through these efforts, I successfully reduced security risks by 25% over the past year.
  • I conduct impact and gap analyses for regulatory changes, perform security assessments on critical and non-critical IT assets, identify vulnerabilities, and recommend corrective actions aligned with ISO 27001/27002, NIST SP800 Series, and CIS controls. My advisories to senior management have enhanced the organization's compliance posture, achieving a 15% increase in security compliance metrics.
  • By collaborating with various business portfolios, I conduct security risk assessments for onboarding new and existing applications and services. I assist businesses in resolving internal and external audit findings and facilitating the development of remediation plans based on gap assessment reports, leading to a 30% reduction in audit findings over time.
  • As a subject matter expert, I lead and conduct third-party program-level reviews of the information security program and controls to ensure compliance with Cashco's information security control requirements for existing and new partners. This role has contributed to a 20% improvement in partner security compliance rates. I oversee security infrastructures, detecting changes in security controls using Netwrix Auditor tools. Additionally, I educate employees on cybersecurity threats through an e-learning security awareness training platform and administer monthly phishing simulation exercises. These initiatives have resulted in a 40% decrease in phishing susceptibility among employees.

IT Security Risk Assessment Lead

Cashco Financial
03.2017 - 04.2018
  • As the Information Security Lead, I effectively managed all aspects of information assurance processes. This included risk analysis, system certifications, audits, security documentation, and security testing. By applying standards such as NIST SP 800-37, SP 800-53, ISO 31000, ISO 27001, and CIS controls, I performed comprehensive threat risk assessments for essential infrastructure and systems, ensuring 95% compliance. My strategic approach resulted in a 90% improvement in the timely detection and response to potential threats.
  • I efficiently managed all elements of information assurance, integrating risk analysis, system certifications, auditing, security documentation, and security testing. This holistic approach led to an 85% reduction in security vulnerabilities and a 92% success rate in security audits and certification renewals.

Financial Services Advisor

TD Canada Trust
03.2015 - 10.2016
  • As a Financial Advisor, I developed tailored financial strategies to help clients achieve their financial goals while managing the day-to-day operations for TD clients. Through fostering professional relationships with over three hundred clients, I successfully advised on a substantial investment portfolio of over $14 million. My commitment to providing exceptional, personalized service resulted in a remarkable increase in client satisfaction ratings from 86 to 100, underscoring the value of dedicated client engagement.

Information Security, Governance, Risk, and Compliance Analyst

Vasa Andelsbank
09.2012 - 07.2014
  • As an Information Security and GRC Analyst at Vasa Andelsbank, I was responsible for developing, implementing, and supporting the IT Risk Management, governance, and compliance program. Through effective collaboration with diverse stakeholders, including Information Security, IT, Legal, Audit, and business teams, I enhanced the bank's risk framework. This initiative led to a 30% improvement in the detection and mitigation of potential IT risks.
  • I coordinated with the business continuity and disaster recovery, Information Security, Infrastructure, and operations teams to perform impact security assessments on various applications. These efforts ensured adherence to regulatory requirements and strengthened the overall risk posture of the bank, achieving a 25% increase in compliance efficiency and a 40% reduction in security incident response times.

Education

Master of Information Systems Security and Assurance Management -

Concordia University of Edmonton
Edmonton, AB
08.2016

BSc - Business Administration and Management

Vaasa University of Applied Sciences
Vaasa Finland
10.2013

Skills

  • Proficient in NIST and ISO risk frameworks
  • Regulatory compliance expertise
  • Creation of security guidelines
  • Threat assessment expertise
  • Security policy formulation
  • Report creation and documentation

Accomplishments

  • Successfully led the strategic planning, implementation, and management of the Rapid7 vulnerability management program (Insight and App Sec), resulting in a 95% reduction in the instances of known vulnerabilities.
  • Successfully led threat risk assessment for over thirty crown jewel applications for Canadian Western Bank (CWB)
  • Successfully assessed over 150 Third-Party Vendors (On-site and remote).
  • Successfully led the implementation and management of CWB bank security educational training for over four thousand employees and decreased phishing susceptibility rate from 80% to 2%.
  • Improved Cashco Financial risk management program processes and identified areas for improvement using security standards (ISO 27001, NIST SP800 series, and CIS control) recommended a solution that led to improving processes and efficiencies by 75%.
  • I successfully managed a project on PCI DSS service account compliance, enhancing CWB's security posture and compliance with critical financial service industry regulations.
  • Successfully assessed over seventy critical applications against NIST CSF requirements and other regulatory standards. Over a year, I successfully executed the project in multiple stages: discovery, design, testing, and monitoring.

Languages

English
Native or Bilingual

Affiliations

  • ISACA - Information Systems Audit and Control Association
  • ISSA - Information Systems Security Association
  • ISC2 - International Information System Security Certification Consortium

Certification

  • January 2021: PECB Certified ISO/IEC 27001 Lead Auditor
  • May 2020: ISACA Certified in Risk and Information Systems Control (CRISC)
  • February 2020: Rapid7-Insight Vulnerabilities Management Certified Administrator.
  • Nov 2019: ISACA Certified Information Security Manager (CISM)
  • June 2014: SAP Certified Associate - Business Process Integration with SAP ERP
  • Feb 2025: PECB Certified Lead Operational Resilience Manager
  • August 2025: Certified Information Security Professional (CISSP) – In progress
  • October 2025: Certified Cloud Security Professional (CCSP) and, Certified of Cloud Security Knowledge (CCSK) - In Progress

Application & Software

  • MS Office Suite - Word, Excel, PowerPoint, Outlook, Access, OneNote, SharePoint, Team Planner.
  • Governance, Risk, and Compliance tools: NAVEX, ZenGRC, MetricStream, Logic Manager (ServiceNow), Archer, LogicGate Risk Cloud, ServiceNow GRC.
  • Rapid7 Vulnerabilities Management Tool
  • Wombat, Inspire eLearning, and KnowBe4 Security awareness training platform.

Soft Skills

  • Verbal & and written communication skills
  • Excellent interpersonal, communication, and presentation skills

Timeline

Technology, Risk and Control (TRC) Generalist

Canada Life
06.2023 - Current

Team Lead, Information Security, Governance, Risk & Compliance Specialist

Canadian Western
05.2022 - 06.2023

Sr. Information Security, Governance, Risk & Compliance Specialist

Canadian Western Bank
08.2020 - 04.2022

Team Lead, Technology Risk Assessment Specialist

Cashco Financial
05.2018 - 07.2020

IT Security Risk Assessment Lead

Cashco Financial
03.2017 - 04.2018

Financial Services Advisor

TD Canada Trust
03.2015 - 10.2016

Information Security, Governance, Risk, and Compliance Analyst

Vasa Andelsbank
09.2012 - 07.2014

Master of Information Systems Security and Assurance Management -

Concordia University of Edmonton

BSc - Business Administration and Management

Vaasa University of Applied Sciences
ADEBAYO A. OMOSEKEJI