Profile
Motivated and detail-oriented Junior Information Security Analyst with over a year
of hands-on experience supporting the implementation, maintenance, and audit of
ISO 27001 ISMS and ISO 42001 AIMS frameworks. Skilled in risk and vulnerability
management, process automation, threat monitoring and security awareness. Actively
involved in promoting a strong security culture through internal awareness campaigns,
training, and phishing simulations. Passionate about strengthening security posture
through effective governance, automation, and proactive threat detection.
Certifications
BCS CISMP
Certificate in Information Security Management Principles
Education
BSc (Hons) Cyber Security and Digital Forensics - University of Portsmouth (2021-2024)
GPA: 4.11 (1st Class Degree)
-
My degree in Cyber Security and Digital Forensics provided me with a strong foundation
in programming, information security principles, and ethical hacking. I gained valuable
insights into vulnerability management, risk assessment, and secure system design, which
are critical for protecting organizational assets. The curriculum equipped me with both
theoretical knowledge and practical skills necessary to identify, mitigate, and manage
security risks in real-world scenarios.
Work Experience
Junior Information Security Analyst - FM Conway (January 2025-Present)
- Support the implementation, maintenance, and internal audit of the ISO 27001 ISMS and ISO 42001 AIMS.
- Assist in the identification, assessment, and mitigation of information security risks, maintaining up-to-date risk registers.
- Conduct vulnerability management activities, analysing findings and coordinating remediation with IT teams.
- Monitor and analyse SIEM alerts and NDR tool outputs to detect, investigate, and mitigate security incidents.
- Develop business cases and perform requirements gathering for new security tools and processes.
- Lead and deliver security awareness and education initiatives, including monthly phishing simulations, ad-hoc training sessions, and regular awareness campaigns.
- Design and Distribute information security communications and posters to promote best practices across the organisation.
- Use Microsoft Power Automate to streamline and automate access management and internal request processes.
- Contribute to continuous improvement of policies, procedures, and compliance documentation.
Web Development & Design - Freelance (July 2024-Present)
- Design, develop, and launch high-quality static websites using HTML, CSS, and JavaScript.
- Implement SEO techniques to improve website visibility and organic traffic growth.
- Collaborate with clients to manage projects and provide post-launch support.
Business Skills
Security Awareness Training
References
References available on request.