Miata Simisola Tucker
Senior Cybersecurity Consultant
30 Olayemi Street
Surulere, Lagos,
Nigeria.
ㅡ
Profile
Summary
--
-
https://www.linkedin.com/in/miatatucker-53b31b146/
A highly dedicated, Cybersecurity Consultant with over four years of work experience in
leading several engagements with expertise spanning across PCI DSS, ISMS auditing, cyber
security maturity assessments, vulnerability assessments and penetration testing.
I specialize in providing consultancy services to clients on implementing security standards
such as NIST, PCI DSS, ISO 27001(ISMS), Cybersecurity Strategy as well as vulnerability
assessments and penetration testing. My wealth of experience cuts across different
industries in both the private and public sector.
In my current role, I have led and conducted several security assessment and audit projects,
yielding an average of 35% increase in the security posture of our clients which has grown
my firm’s clientele by way of retainerships.
ㅡ
Experience
Ernst & Young Nigeria/Senior Cybersecurity Consultant
•
•
•
•
•
•
•
•
•
2019 - Present
Provide information and cybersecurity management consultancy
Managing and delivering cyber security and cyber risk assignments, including
producing documentation and reports.
Complete security management of vulnerability assessments and penetration testing
project
Perform IT security audits
Review of information systems
Perform Cybersecurity maturity assessments
Develop course materials and facilitated trainings
Develop and Respond to Request for Proposal (RFP)
Implement security compliance frameworks (ISO27001, NIST, PCI DSS, SWIFT CSP
etc.)
Digital Encode Limited / Information Security Consultant
2017 - 2019
• Provided information and cybersecurity management consultancy
• Performed security management of vulnerability assessments and penetration test
projects
• Reviewed Information Systems
• Implemented security compliance frameworks (ISO27001, PCI DSS)
ㅡ
Education
ㅡ
Achievements
Covenant University / B.Sc. Industrial Physics
2011 - 2015, Ogun State
4.32/5.0
•
•
•
Conducted an intensive 6 months cybersecurity assessment of a top tier Nigerian bank
and 6 of its subsidiaries across sub-Saharan Africa which led to a significant
improvement in the security posture and cyber attack resilience of the Bank
Created several training materials and also conducted trainings for middle level and
entry level staff in top tier Nigerian banks. Examples of such trainings include PCI DSS
awareness training, Ethical Hacking, Information Security Awareness training etc.
Implementation of enterprise security solutions (Nessus, Qualys) for over seven large-
•
•
•
•
•
•
scale organizations and recorded an average of 40% reduction in the organization’s
Third-party security assessment.
Successfully conducted vulnerability assessments and penetration tests for over nine
organizations both financial and non-financial where I was able to identify and exploit
vulnerabilities which if spotted by an attacker would have extremely negative impact
on these organizations. 80% of these assessments created opportunities for
retainers/contracts with the clients.
Performed several quarterly security reviews for several institutions using tools like
nipper to review and analyze configuration files and identify gaps in the configuration
status.
Conducted PCIDSS compliance audit end to end for several financial organizations
leading to a successful certification exercise for these institutions.
Successful digital forensics investigation for a top tier bank where the team and I were
able to identify the root cause analysis, pinpoint the source and proffer
recommendations to avoid future occurrences of such incidents.
Implemented ISO27001 standard for over three organizations leading to a successful
certification exercise for these establishments and an improvement in the information
security posture of the organization.
Successfully conducted information security audits identifying gaps in process, people
and technology using relevant standards such as ISO27001, FFIEC, NIST, SWIFT CSCF
etc.
ㅡ
Certifications
•
•
•
•
•
•
•
Certified Ethical Hacker (CEH)
ISO 27001 Lead Auditor
ISACA Cybersecurity Fundamentals (CSX)
QualysGuard Certified Specialist
IBM Blockchain Essentials
EY Cybersecurity Badge
Project Management Professional (PMP)
Certified Information Security Manager (CISM)
AWS Certified Solutions Architect Associate (SAA)
•
•
•
•
•
•
•
•
•
•
Vulnerability Assessment and Penetration Testing
IT security audits
Cybersecurity maturity assessments
Cyber strategy and roadmap
Security compliance frameworks (ISO27001, PCI DSS NIST, FFIEC)
Security intelligence using Qradar, Archsight, Alienvault, Securevue, etc
Excellent communication skills (oral and written)
Detail oriented
Experienced with windows, Mac and Linux
Excellent analytical, risk-assessments, and problem-solving skills
Digital Forensics Investigation
•
•
ㅡ
Competencies
•
ㅡ
Hobbies
Reading, Listening to Music, Travelling