ADEOLUWA OBADOFIN
Abuja, Nigeria | Phone:-
Email:-| LinkedIn Profile
PROFESSIONAL SUMMARY
Adeoluwa is a Certified Information Security Analyst with deep expertise in Governance, Risk, and
Compliance (GRC), specializing in frameworks such as ISO/IEC 27001/2, GDPR, NDPR, NIST, PCI DSS,
SOC 2, and HIPAA. Proven record of accomplishment in ISMS implementation, risk assessments, internal
audits, and third-party risk management. Adept in vulnerability management, IAM, and designing robust
security policies.
He is passionate about data protection, threat monitoring, and incident response, with a strong commitment
to staying ahead of evolving cybersecurity trends. A collaborative problem-solver who thrives on securing
complex environments and driving compliance excellence.
EDUCATION
Aug 2016 – Aug 2021
University of Ilorin - Ilorin, Kwara state
B.Sc. Technology Education
SKILLS/ COMPETENCIES
Policy development
Security Policies and Procedures
Governance, Risk and Compliance
Regulatory Compliance
Vulnerability Management and Risk
Assessment
Information Security
Identity and Access Management
Data Loss Prevention (DLP)
Data Protection
Encryption
Cloud Security Azure
ServiceNow GRC, RSA Archer
Internal Auditing
AI Governance
SIEM
Third Party Risk Management
CERTIFICATIONS & ACHIEVEMENTS
●
Google Cybersecurity (2022)
●
SBP ISO 29100 (2024)
●
ALX AI essentials (2024)
●
SBP ISO 31000 (2024)
●
ISC2 Certified in Cybersecurity (2024)
●
ISO 27001 Lead Auditor (2025)
●
SBP ISO 27001 (2024)
STANDARDS AND REGULATION
-
ISO/IEC 27001, 27032, 27017, 27701, 31000
-
NIST CSF - SOC 2 - PCI DSS - GDPR - COBIT
RELEVANT WORK EXPERIENCE
Lead GRC Analyst (Information Security)
CyberPlural – Abuja, Nigeria
May 2024 - Present
●
●
Lead enterprise-wide GRC initiatives by conducting recurring risk assessments on vendors, internal
systems, and audit logs reducing risk exposure by 40% through effective remediation strategies.
Develop and maintain security governance documents and policies aligned with ISO 27001, NIST,
SOC 2, PCI DSS, GDPR, and NDPR, ensuring compliance and audit readiness using SharePoint.
●
Drive data protection efforts by formulating privacy policies, implementing data classification
standards, and ensuring regulatory alignment with GDPR, NDPR, and ISO/IEC 27701.
●
Serve as a liaison for compliance and audit inquiries, delivering accurate, timely responses and
control documentation using ServiceNow GRC and Excel
●
Risk-rate vendors using a defined third-party management framework; oversee vendor due
diligence and ensure adherence to obligations.
●
Perform internal control audits and system configuration reviews; track remediation actions and
provide progress updates to management, boosting control effectiveness by 30%.
●
Maintain the organization’s risk and control registers; collaborate with control owners to assess
risks and close compliance gaps using Excel.
●
Facilitate quarterly security awareness programs and phishing simulations, achieving over 90%
staff participation and reducing human-factor risk using KnowBe4
●
Generate and present risk and compliance reports to leadership, supporting strategic planning and
continuous improvement.
Information Security Analyst
JPT Tech - Remote
January 2023 - May 2024
Supported alignment with industry standards such as NIST, ISO 27001, and PCI DSS by
conducting internal audits and implementing remediation strategies.
Participated in the development, testing, and improvement of BCP, DRP, and IRP documentation
in coordination with cross-functional teams.
Performed regular vulnerability assessments, penetration testing, and vendor risk reviews to
identify and address security issues in a timely manner.
Assisted in preparing responses to client and partner security assessments, including policy
documentation, compliance status, and environmental security practices.
Contributed to vendor onboarding by reviewing security practices, assessing risk levels, and
ensuring compliance with internal security policies.
Helped maintain risk and control registers, flagging and tracking outstanding gaps, and
collaborating with relevant teams for resolution.
Delivered security awareness sessions and monitored employee participation in training programs,
increasing engagement and reducing preventable incidents.
Technical Project Manager
November 2022 - April 2024
Izesan Limited – Abuja, Nigeria
●
Led cross-functional teams of developers, designers, content creators, and educators to deliver
EdTech solutions, achieving a 95% on-time project delivery rate.
●
Integrated cybersecurity best practices into all stages of product development, enhancing the
security posture of educational applications and platforms.
●
Directed the secure launch of a children’s gaming app by collaborating with development and
operations teams, achieving a 100% incident-free release.
●
Managed end-to-end project lifecycles, defining project scope, developing detailed project plans,
and maintaining a 90% adherence to initial budget estimates.
●
Conducted regular risk assessments, identified cybersecurity vulnerabilities, and implemented
mitigation strategies to ensure data protection and compliance with global standards.
●
Facilitated weekly cross-departmental meetings with internal and external stakeholders to maintain
clear communication and project alignment.
●
Reviewed and inspected deliverables bi-weekly to ensure compliance with quality, security, and
educational standards, maintaining a 95% quality compliance rate.
●
Supported security awareness initiatives within the organization to promote best practices in data
protection and safe content delivery.
Junior Supervisor /IT Support
De-Babloh Multi Services Limited - Abuja Nigeria
Nov 2021 - Sept 2022
●
Replaced defective components and upgraded office equipment per technology plan monthly
across 4 departments.
●
Installed application software and upgrades, virus protection, and drivers on both Windows and
Mac platforms for an average of 25 systems monthly.
●
Helped the team of 35 document core systems configurations, relevant passwords, and system
access requirements as needed.
●
Resolved Internet and wireless, wired network access problems, and supported the team in backup
and restoration of databases.
●
Shadowed 6 team members to learn appropriate methods for solving issues and troubleshooting.
VOLUNTEER
Manager, Tracking and Evaluation
AIESEC Nigeria - Kwara, Nigeria
Jan 2018 - Aug 2021
●
Quarterly evaluated outcomes of strategies deployed to grow organization.
●
Supported operations across various departments like media and communication, sales and
partnership, talent management, operations and logistics.
●
Monitored program's growth to meet 200 members' learning and development plans as well as
organizational goals and objectives.
●
Developed and enforced adherence to projects budgets, plans and schedules.
●
Designed, created and implemented sustainable development goals community projects.
Volunteer
No Hunger Food Bank – Abuja, Nigeria
April 2025 – Present
Assisted in organizing and distributing over food packages monthly, helping support vulnerable
families and individuals.
Applied information security skills to advice on digital safety best practices for internal tools and
online outreach.
Wrote and published informative blog posts on food security, digital safety, and community
impact, helping increase online engagement.
Advocate for reducing food waste by redistributing excess food from local partners (e.g.,
groceries, farms).
Encourage eco-friendly practices, such as using recyclable bags or reducing packaging.
REFEREES
Made available on request.