Sarah Emerson
Details
-Coordinate and facilitate annual risk assessments for critical business services within scope of the ISMS
-Coordinate and Facilitate ISO27001 Certification for critical business services within scope of the ISMS
-Create and implement ISO27001 e-Learning for all control owners and stakeholders
-Collaborate internally with governance department to maintain and continuously improve information security policies, standards, and guidelines
-Coordinate, track, and facilitate internal ISAE security audits
-Collaboratively created and implemented internal annual ISAE e-learning
-Maintain and continuously improve internal audit tracking tool
-Collaborate internally with audit department to continuously improve internal audit processes through continuous feedback
2020 : Present
SWIFT
Senior Information Security Management Specialist
2019 : 2020
SWIFT
Information Technology Security Analyst
Map out training plans, design and develop training programs (outsourced or in-house) for the department
Choose appropriate training methods per case (simulations, mentoring, on the job training, professional development classes, etc)
Market available training opportunities to employees and provide necessary information
Conduct department wide needs assessment and identify skills or knowledge gaps that need to be addressed
Use accepted education principles and track new training methods and techniques
Assess instructional effectiveness and summarize evaluation reports determining the impact of training on employee skills and how it affects KPIs
Partner with internal stakeholders and liaise with matter experts regarding instructional design
Maintain updated curriculum database and training records
Provide train-the-trainer sessions for internal subject matter experts
2017 : 2019
SWIFT
Information Technology Training Coordinator
2015 : 2017
SWIFT
Senior Management Assistant
Having overall accountability for growing the sales and profitability throughout each area of a $1.5 million business. Managed 25 member team to deliver KPI’s and compliance throughout the operations as well as delivering excellent standards of customer service.
• Performed administrative and office management duties to support day to day retail operations, including established and maintained human resources – related employee files reflecting salary increases, deductions, garnishments, benefits, payroll exceptions, W2 withholdings, exercising a high level of confidentiality.
• Follow through on timely and accurate month end closings and financial reporting activities.
• Liaison between senior management, employees, and clients to ensure proper lines of communication critical in addressing myriad problems and issues requiring immediate attention and resolve.
• Skilled at interviewing and hiring, training, and evaluating employees in areas of Retail Operations and Customer Service.
• Improved existing operation processes at Kirkland’s and carried out research and performed data analysis
• Coordinated with outside contractors and property management to ensure facility requirements and facility repairs were completed in a timely fashion as to not interrupt daily operations.
• Trains management and team members on their daily jobs, including how to read profit and loss statements, cost analysis, human resource issues, and all safety regulations and standards.
2013 : 2015
Kirkland's, Inc.
Retail Administrative Manager
About
A results-oriented information security professional who enjoys a good challenge. Vast background in HR management with the necessary skills to bring parties to the table for in depth discussions that lead to result driven solutions.
Specializing in Audit Coordination, with emphasis on both the ISAE and ISO frameworks, as well as process improvement. Through coordinating both internal and external audits - assists staff to connect the dots across the organization and continuously improve the security posture for both internal infrastructure and our customers.
I strive to be successful in all of my projects, but am not afraid to fail forward. This leads to my passion of learning, where currently I’m diving deeper into InfoSec Risk Management.