OLAIYA OLUWAGBAYI OLOWOOYE
LinkedIn: www.linkedin.com/in/ola-olowooye-ariel01
PROFESSIONAL SUMMARY
Certified Cybersecurity GRC and PCI DSS Analyst with over 5 years of experience driving
regulatory compliance across PCI DSS, SOC1/SOC2, and NIST frameworks. Proven ability to
close compliance gaps, reduce audit findings, and enhance enterprise risk posture through
strong governance, risk management, and technical control validation. Experienced in
collaborating with engineering, audit, and business teams to remediate issues and maintain
audit readiness. Skilled at producing compliance documentation, evidence artifacts, and risk
treatment plans that improve efficiency and reduce compliance cycle time.
CORE COMPETENCIES
PCI DSS Compliance | Risk Assessments & Gap Analysis | Audit Readiness | Remediation
Tracking
Vendor Risk Management | GRC Frameworks (NIST, ISO 27001) | SOC1/SOC2 | Policy
Governance | HHS SRA
Compliance Documentation | Access Control & IAM | SIEM Monitoring
PROFESSIONAL EXPERIENCE
Cybersecurity Analyst – Governance, Risk & Compliance
Medline Industries – Katy, TX | July 2024 – Present
Directed PCI DSS control validation across 200+ enterprise systems, achieving 100%
remediation closure for critical findings.
Conducted PCI readiness assessments, reducing pre-audit issues by 35%.
Produced PCI compliance artifacts (risk treatment plans, matrices, evidence logs), ensuring
audit documentation met regulatory standards.
Partnered with internal audit and IT teams, cutting compliance review time by 20%.
Coordinated third-party vendor PCI compliance reviews, reducing vendor-related risk
exposure by 15%.
Developed and tracked remediation plans, ensuring issues were resolved within SLA.
Maintained continuous monitoring dashboards, improving visibility of control effectiveness.
Delivered compliance briefings to stakeholders, aligning IT operations with PCI standards.
Enhanced audit readiness by streamlining evidence collection processes, saving 10+ hours
per audit cycle.
Cybersecurity Analyst – Risk & Compliance
Proven System Solutions – Houston, TX | Oct 2022 – June 2024
Supported PCI DSS and SOC2 compliance, leading to zero major findings during external
audits.
Performed gap assessments against PCI DSS, creating roadmaps that cut remediation
timelines by 25%.
Coordinated with engineering teams to implement encryption, access control, and data
protection, achieving a 98% compliance rate.
Authored and updated policy and compliance procedures, aligning with PCI DSS & ISO
27001.
Conducted quarterly risk reviews that uncovered and mitigated emerging threats.
Managed compliance projects with Jira & Confluence, reducing project delays by 30%.
Prepared audit evidence packages, accelerating auditor approval cycles.
Delivered compliance awareness training to staff, increasing audit preparedness scores by
40%.
Collaborated with leadership to align compliance priorities with business strategy.
System Administration & Security Apprentice
Chegg Skills – Santa Clara, CA | Dec 2021 – Sept 2022
Assisted with PCI audits by conducting privileged access reviews across 100+ accounts.
Supported remediation of non-compliant systems, reducing patch backlog by 50%.
Developed evidence logs for PCI and ISO 27001, cutting audit prep time by 25%.
Configured secure system baselines, ensuring 95% compliance during security scans.
Helped implement IAM controls to reduce unauthorized access attempts.
Participated in compliance tracking dashboard creation, improving audit transparency.
Assisted in writing SOPs for system hardening and patching.
Resolved 25+ technical support tickets weekly, ensuring compliance alignment.
Contributed to team’s continuous monitoring efforts by documenting security events.
EDUCATION
Bachelor of Engineering – Electrical & Electronic Engineering
Federal Polytechnic Ado Ekiti, Nigeria
CERTIFICATIONS
CompTIA Security+
SAP Associate Access Control (GRC 10.X)
CompTIA ITF+
Google Technical Support Fundamentals
TRAINING
Coursework in enterprise GRC, PCI DSS, SOC1/SOC2, NIST CSF, GDPR, and HIPAA. Skilled at
aligning risk and compliance programs with organizational objectives.