

As an IT Risk Control Manager, IT auditor and Data analyst, I like to focus on improving internal control within organizations. In recent years I have carried out internal and external IT audits in both the financial and non-financial sectors. In the past 4,5 years I have managed teams in implementing and testing SOx IT controls for Nouryon. I have performed the following different types of engagements: annual statement, ISAE3000 and ISAE3402 type I and II reports, DGS, SOx audits, DORA, DNB58, ISO27001 cybersecurity audits and contributed to the SOx and ISO27001 implementation processes.