Summary
Overview
Work history
Education
Skills
Certification
Affiliations
Accomplishments
Timeline
Generic

Nancy Kanyanga

Summary

Highly meticulous and task-oriented cybersecurity consultant with proven track record of success in Governance, Risk, & Compliance (GRC), and Vulnerability management. With several years of experience in the field, I possess deep understanding of industry best practices, cybersecurity frameworks and standards. Leveraging my strong analytical, communication and problem-solving skills, I consistently deliver robust cybersecurity solutions that align with organizational goals and regulatory requirements. Seeking opportunities to help organizations safeguard their critical assets and establish resilient cybersecurity environment.

Overview

5
5
years of professional experience
4
4
years of post-secondary education
1
1
Certification

Work history

PECB Certified Trainer

Professional Evaluation and Certification Board
05.2024 - Current

Key Responsibilities

Training Delivery:

  • Deliver engaging and informative presentations on course material.
    Facilitate discussions, activities, and exercises to enhance understanding and retention.
  • Adjust training methods and content based on participant needs and feedback.

Assessment and Evaluation:

  • Conduct regular assessments, quizzes, and exams to evaluate participants' understanding.
  • Provide constructive feedback to participants on their performance and progress.

Continuous Improvement:

  • Stay updated on the latest developments and updates in the field of certification and training.
  • Engage in continuous professional development to enhance training skills and subject matter expertise.
  • Collect and analyze feedback from participants to improve future training sessions.

Administration and Reporting:

  • Report training outcomes and issues to PECB or relevant stakeholders as required.
  • Ensure compliance with PECB policies, procedures, and standards.

Support and Guidance:

  • Act as a mentor, providing guidance and support to participants throughout the training process.
  • Assist participants in overcoming learning challenges and achieving certification goals.

Cybersecurity Advisory Lead

Digital Safe Limited
01.2020 - Current

Key Responsibilities

Team Leadership

  • Provide a positive and welcoming onboarding experience to all new employees by ensuring they have access to the tools and resources needed to fulfill the requirements of their job.
  • Focus on communications and foster collaboration by regularly providing updates to teams about ongoing initiatives and encouraging teams to work together to accomplish common goals and learning.
  • Ensure knowledge is preserved through cross-training for key skill sets in the team (knowledge transfer)

Cybersecurity Operations

  • Coordinate and track all information technology and security related audits including scope of audits, parties involved, timelines and outcomes.
  • Develop and implementation of effective and reasonable policies, risk management and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and legal interpretation and alignment with business objectives for clients and internally.
  • Manage the implementation and management of management systems based on internal needs. These management systems include ISMS, BCMS, QMS etc.
  • Manage all proposals under the Advisory department. That is, based on the terms of reference from clients for advisory services, ensure that the proposals are written and reviews for quality assurance.
  • Conduct cybersecurity awareness training.
  • Assess information security vulnerabilities and advise on mitigation processes through governance and technology deployment.
  • Monitoring and detecting security threats and breaches.

Software Developer (Intern)

Zambia Postal Services
01.2019 - 12.2019

Key Responsibilities

  • The role involved the creation, maintenance and development of software application.

Education

Bachelor of science in computer science -

Copperbelt University
04.2015 - 09.2019

Skills

  • Risk management
  • Implementation of management systems (ISMS, BCMS and QMS)
  • IT auditing
  • Vulnerability management
  • Incident response
  • Security awareness training
  • Security architecture design
  • Threat intelligence
  • Compliance
  • Policy development
  • Reporting and presentations

Certification

  • Certified ISO/IEC 27005 Lead Risk Manager - PECB (2024)
  • Certified information system security professional (CISSP: certificate of completion) - Cybrary (2021)
  • Certified ISO/IEC 27001 Lead Implementer - PECB (2024)
  • Certified ISO/IEC 27001 Lead Auditor - PECB (2024)
  • Microsoft Azure Fundamentals AZ-900 - Microsoft (2022)
  • Certified in Cybersecurity (CC) - (ISC)2 - 2023
  • Certified ISO 22301 Lead Implementer - PECB (2024)
  • Network Security Expert (NSE) 1 and 2 - Fortinet (2022 & 2023)

Affiliations

  • ICT Association of Zambia
  • ISACA
  • Women in Technology

Accomplishments

  • Successfully implemented an Information security management system based on ISO 27001 for Wiphan (NGO), leading to certification.
  • Successfully implemented an Information security management system and Business continuity management system based on ISO 27001 and ISO 22301 respectively for Zambia Electronic Clearing House (ZECHL) a financial institution, leading to certification.
  • Successfully conducted IT audits and Gap assessment using General IT controls, COBIT, CIS controls, NIST CSF and ISO 27001 for financial institutions, insurance, and pension organisations.
  • Successfully conducted Cybersecurity awareness training for various teams
  • Currently managing an implementation of an integrated management system implementation of ISO 27001 information security management system, ISO 22301 Business continuity management system, ISO 9001 Quality management system and COBIT Framework for Zambia National Building Society
  • Currently managing the implementation of ISO 27001:2022 for MTN Zambia
  • Currently managing the implementation of IMS - ISO 27001 and ISO 9001 for Digital Safe Limited

Timeline

PECB Certified Trainer

Professional Evaluation and Certification Board
05.2024 - Current

Cybersecurity Advisory Lead

Digital Safe Limited
01.2020 - Current

Software Developer (Intern)

Zambia Postal Services
01.2019 - 12.2019

Bachelor of science in computer science -

Copperbelt University
04.2015 - 09.2019
Nancy Kanyanga