
Ifeoma Nwajei
Verified Expert in Engineering
GRC Consultant and Developer
Abuja, FCT, Nigeria
Toptal member since March 25, 2026
Ifeoma is a thoughtful and collaborative cybersecurity professional who is known for bringing clarity, structure, and calm to complex environments. She communicates effectively with both technical and non-technical stakeholders, builds strong relationships across teams, and approaches challenges with a practical, solutions-focused mindset. Ifeoma is highly organized, dependable, and comfortable taking ownership of ambiguous or sensitive work.
Portfolio
Experience
- GRC - 7 years
- Microsoft - 7 years
- Information Security Governance - 7 years
- Incident Response - 7 years
- Vulnerability Assessment - 7 years
- Security Policy Development - 7 years
- ISO 27001 - 3 years
- Role-based Access Control (RBAC) - 3 years
Preferred Environment
Slack, Microsoft, Kali Linux, VirtualBox, Windows PowerShell, GitLab
The most amazing...
...security program I've developed enabled an organization to achieve ISO/IEC 27001 compliance and improve audit readiness across multiple departments.
Work Experience
GRC Consultant
Sycom Integrated Solutions
- Guided enterprise risk assessments and identified governance, compliance, and information security improvement opportunities.
- Developed and maintained information security policies, standards, and procedures aligned with ISO/IEC 27001 requirements.
- Trained and phished simulations for staff members and all 3rd parties.
Cybersecurity Analyst and GRC Specialist
Jugo N. Puro
- Developed and implemented information security policies aligned with ISO/IEC 27001 and NIST Cybersecurity Framework standards.
- Conducted operational risk assessments, threat analysis, and security monitoring activities to identify and mitigate vulnerabilities.
- Maintained security risk registers and coordinated remediation activities for compliance and control gaps.
- Delivered security awareness and social engineering training programs to improve employee security practices and reduce human-related risks.
Program Administrative Specialist
Open Society Foundations
- Supported governance oversight of budgets, vendor agreements, and procurement compliance activities.
- Performed budget tracking, reporting, and variance analysis to identify operational and financial risks.
- Maintained vendor documentation and supported 3rd-party risk management processes.
- Assisted with grant compliance reviews, expenditure tracking, and audit readiness activities.
- Managed records and reporting systems to ensure data integrity, traceability, and governance compliance.
Finance and GRC Support Officer
DevTech Systems
- Reviewed financial and operational documentation to ensure compliance with internal controls and organizational policies.
- Identified anomalies, inconsistencies, and potential fraud indicators requiring escalation and remediation.
- Applied secure data handling procedures for sensitive financial and operational information.
- Maintained accurate and audit-ready documentation supporting governance and compliance requirements.
Risk Weighted Assets (RWA) Analyst
UBS AG
- Reported Basel III Risk Weighted Assets (RWA) metrics to regulatory authorities in compliance with reporting requirements.
- Reconciled daily risk reports and investigated discrepancies affecting data integrity and governance processes.
- Prepared accurate reporting documentation, supporting governance oversight and compliance initiatives.
Transactional Risk and Controls Officer
First Bank
- Managed transactional operations in compliance with banking regulations, internal controls, and operational policies.
- Monitored transactions for discrepancies, fraud indicators, and operational risk exposures.
- Supported governance documentation, audit preparedness, and operational reporting activities.
- Maintained secure handling procedures for financial instruments and sensitive customer information.
Experience
Information Security Management System (ISMS)
https://git.toptal.com/screening-ops/Ifeoma-nwajeiPolicy Creation
https://drive.google.com/drive/folders/1RiXnZZAZ3-Pl8dMgaSRProB8yww0jEXG?usp=drive_linkPolicy Creation and Development for Jugo Capital
https://drive.google.com/drive/folders/1RiXnZZAZ3-Pl8dMgaSRProB8yww0jEXG?usp=drive_linkEducation
Postgraduate Diploma in Business Administration
St Mary's University - London, UK
Bachelor's Degree in Economics
Madonna University - Okija, Anambra State, Nigeria
Certifications
ISO/IEC 27001 Lead Implementer
PECB
ISC2 Network Security
ISC2
ISC2 Incident Response, Business Continuity, and Disaster Recovery Concepts
ISC2
ISC2 Access Control
ISC2
ISC2 Security Principles
ISC2
Introduction to Cybersecurity
Cisco Networking Academy
Responsive Web Design
freeCodeCamp
Skills
Libraries/APIs
Auth
Tools
Slack, VirtualBox, Asana, Notion, GitLab
Paradigms
Penetration Testing, HIPAA Compliance, Role-based Access Control (RBAC)
Platforms
Microsoft, YouTube, Azure, Vanta, Windows, Kali Linux
Industry Expertise
Cybersecurity
Languages
HTML, CSS, JavaScript
Frameworks
Windows PowerShell
Other
Information Security Governance, Security Policy Development, Regulatory Compliance, NIST, GRC, IT Security, Security, Google, Compliance, Reporting, Reports, Security Audits, General Data Protection Regulation (GDPR), Documentation, Policies & Procedures Compliance, Security Policies & Procedures, AI Security, Governance, IT Security Assessment, Fortune 500 IT Security, IT Security Audit and Assessment, Applied IT Security, Product Security, Web Application Security (Web AppSec), Mobile App Security, Security Architecture, Risk Management, Hands-on Implementation, CISO, Leadership, SIEM, Prompt Injection, Artificial Intelligence (AI), AI Trust, Risk and Security Management (AI TRiSM), IT Audits, IT Contracts, Phishing Simulation & Analysis, Email Security, Microsoft 365, Data Protection, Access Control, Responsible AI, Crisis Management, Vulnerability Assessment, Incident Response, Security Awareness Training, Business Continuity, Audit Readiness, Endpoint Protection, Security Monitoring, Vulnerability Management, Auditing, ISO 27001, GDPR, PCI DSS, HIPAA, NIST Cybersecurity Framework, Cloud Security, Information Security, Risk Assessment, Private Banking, Personal Loans, Business Loans, Loans, Information Security Management Systems (ISMS)
How to Work with Toptal
Toptal matches you directly with global industry experts from our network in hours—not weeks or months.
Share your needs
Choose your talent
Start your risk-free talent trial
Top talent is in high demand.
Start hiring