Submitting more applications increases your chances of landing a job.

Here’s how busy the average job seeker was last month:

Opportunities viewed

Applications submitted

Keep exploring and applying to maximize your chances!

Looking for employers with a proven track record of hiring women?

Click here to explore opportunities now!
We Value Your Feedback

You are invited to participate in a survey designed to help researchers understand how best to match workers to the types of jobs they are searching for

Would You Be Likely to Participate?

If selected, we will contact you via email with further instructions and details about your participation.

You will receive a $7 payout for answering the survey.


User unblocked successfully
Brian Mpafe, Fractional CISO

Brian Mpafe

Fractional CISO·NOFIA S.A. Microfinance Institution

Cameroon

Doctorate, Cybersecurity

Work experience

Total years of experience: 13 years, 6 months

Fractional CISO

January 2023 - Present

NOFIA S.A. Microfinance Institution

Douala, Cameroon

January 2023 - Present

• Spearheaded the development of a robust PCI-DSS compliance program, ensuring adherence to industry standards.
• Established a comprehensive third-party risk management framework to mitigate vendor-related risks.
• Created and implemented incident response playbooks, enhancing organizational preparedness for cybersecurity incidents.
• Conducted quarterly reviews of the risk register with the board audit committee, promoting transparency and accountability.
• Achieved successful PCI-DSS and ISO 27001:2022 audits with zero critical findings, demonstrating a strong security posture.
• Integrated the risk register into the board governance cycle, fostering informed decision-making.
• Reduced incident response SLAs by 40%, significantly improving response times and operational efficiency.

Company industry:
Financial Services

Fractional CISO

January 2021 - Present

Premiere Health Centres

Douala, Cameroon

January 2021 - Present

• Led comprehensive ISMS design to enhance organizational security posture and compliance.
• Executed HIPAA gap remediation initiatives to ensure regulatory adherence and mitigate risks.
• Developed and implemented a robust staff security awareness program to foster a culture of security.
• Delivered quarterly risk reporting to the board of directors and executive committee, enhancing decision-making processes.
• Achieved ISO 27001 certification readiness, demonstrating commitment to information security best practices.
• Reduced critical audit findings by 70%, significantly improving overall risk management.
• Established a board risk dashboard as a standard governance tool, facilitating transparent risk communication.

Company industry:
Medical & Healthcare Equipment

General Manager & IT Director / CISO

October 2018 - Present

AIC Experts

Douala, Cameroon

October 2018 - Present

• Transitioned into a leadership role as CISO and IT Director, overseeing comprehensive information security initiatives across multiple sectors.
• Spearheaded the design and implementation of enterprise-wide security strategies that align with organizational goals and board directives.
• Conducted quarterly risk briefings for boards and audit committees, effectively translating complex technical data into actionable insights for informed governance.
• Championed the establishment of ISO 27001 ISMS programs, guiding organizations from initial gap assessments to successful certification, enhancing security posture and compliance.
• Fostered a culture of security awareness and risk management, driving continuous improvement in information security practices across client organizations.

Company industry:
IT Services

Project Manager & Presales Security Engineer

August 2015 - June 2026

Socitech S.A.

Douala, Cameroon

August 2015 - June 2026

• Led the successful implementation of MTN Cameroon SIEM (ArcSight), achieving 97% of project deadlines while enhancing real-time threat detection capabilities.
• Directed the MTN Cameroon DataCenter Extension project, delivering results 20% ahead of schedule and ensuring full regulatory compliance.
• Engineered and executed Active Directory, SCCM, and GPO hardening strategies for multiple enterprise clients, facilitating compliance with PCI-DSS and GDPR standards.
• Spearheaded disaster recovery planning and implementation, ensuring robust business continuity strategies across projects.
• Transitioning into a strategic role as CISO and IT Director, leveraging extensive project management and security engineering experience to drive organizational security initiatives.

Company industry:
IT Services

vCISO Advisory

January 2019 - January 2023

Beneficial Life Insurance Group

Douala, Cameroon Remote

January 2019 - January 2023

• Conducted comprehensive enterprise-wide cybersecurity risk assessments to identify vulnerabilities and enhance security measures.
• Deployed the COBIT governance framework to establish robust IT governance and risk management practices.
• Developed and delivered executive-level security reports, ensuring transparency and informed decision-making across three jurisdictions.
• Achieved a significant improvement in the organization's risk posture, reducing it from High to Moderate within 12 months.
• Harmonized cross-border security policies across three operating entities, fostering consistency and compliance in security practices.
• Collaborated with stakeholders to align cybersecurity initiatives with business objectives, enhancing overall organizational resilience.

Company industry:
Insurance & TPA

Contract: Project Manager

January 2017 - January 2018

MTN Cameroon

Douala, Cameroon

January 2017 - January 2018

• Led project management for a major DataCenter capacity expansion, focusing on physical security, redundancy design, and regulatory compliance.
• Demonstrated strong leadership and strategic planning skills, resulting in project delivery 20% ahead of schedule.
• Ensured full regulatory compliance during commissioning, enhancing organizational credibility and risk management.
• Collaborated with cross-functional teams to implement best practices in information security and operational efficiency.
• Leveraged expertise in IT governance and security frameworks to align project outcomes with organizational objectives.
• Prepared to transition into roles such as CISO, CIO, and Information Security Manager, bringing a robust background in project execution and risk mitigation.

Company industry:
Telecommunications

University Lecturer

January 2013 - January 2018

College of Technology/Faculty of Engineering and Technology – University of Buea

Buea, Cameroon

January 2013 - January 2018

Company industry:
Higher Education

Developer Platform Evangelist

January 2013 - January 2015

Microsoft — West & Central Africa (WECA)Oct

Douala, Cameroon

January 2013 - January 2015

• Championed secure software development practices across 30+ startups, enhancing their security posture and compliance.
• Organized 12 impactful bootcamps, fostering a culture of security awareness and best practices among developers.
• Supported the successful development of 16 commercial applications on the Microsoft stack, ensuring robust security measures were integrated.
• Advocated for Microsoft Azure cloud security and identity frameworks, emphasizing Zero Trust principles and identity governance to strengthen security across the WECA developer community.
• Cultivated relationships with key stakeholders to promote a unified approach to information security and risk management.
• Leveraged industry knowledge to drive innovation and enhance security strategies, positioning organizations for success in a rapidly evolving threat landscape.

Company industry:
IT Services

Education

Abertay University

June 2029

June 2029

Doctorate, Cybersecurity

Great Britain (UK)

Cranfield University / Defence Academy2012

January 2013

January 2013

High school or equivalent, Information Capability Management

United Kingdom

NIIT University

January 2009

January 2009

Bachelor's degree, Network Engineering

Ghana

Skills

CERTIFIED CHIEF INFORMATION SECURITY OFFICER
Intermediate
CERTIFIED CHIEF INFORMATION SECURITY OFFICER
Intermediate
BUSINESS STRATEGIES
Intermediate
BUSINESS STRATEGIES
Intermediate
CERTIFIED INFORMATION SECURITY MANAGER
Intermediate
CERTIFIED INFORMATION SECURITY MANAGER
Intermediate
CERTIFIED INFORMATION SYSTEM AUDITOR CISA
Intermediate
CERTIFIED INFORMATION SYSTEM AUDITOR CISA
Intermediate
CYBER RISK
Intermediate
CYBER RISK
Intermediate
CYBER THREAT INTELLIGENCE
Intermediate
CYBER THREAT INTELLIGENCE
Intermediate
FINANCIAL SERVICES
Intermediate
FINANCIAL SERVICES
Intermediate
LEADERSHIP
Intermediate
LEADERSHIP
Intermediate
MICROSOFT CERTIFIED SYSTEMS ENGINEER
Intermediate
MICROSOFT CERTIFIED SYSTEMS ENGINEER
Intermediate
PAYMENT CARD INDUSTRY PCI DATA SECURITY STANDARDS
Intermediate
PAYMENT CARD INDUSTRY PCI DATA SECURITY STANDARDS
Intermediate

Social profiles

Languages

English

Beginner

French

Beginner

Training and Certifications

Certifications
Oracle Database Administrator — Oracle
Advanced Technician Diploma in Software Engineering
Symantec Sales Expert
Certified Security Analyst (E|CSA)
Data Analysis with Python - FreeCodeCamp
Microsoft Azure: Hybrid Server, Migration, Business Continuity & Disaster Recovery
Microsoft Certified Solutions Associate — Office 365 (MCSA)
Microsoft Certified Systems Administrator — Messaging & Windows Server (MCSA)
Microsoft Certified Systems Engineer — Windows Server (MCSE)
Microsoft Certified Trainer (MCT)
Advanced Executive Certificate in Project Management
ITIL Foundations
COBIT Foundations
ISO 27001:2013 Information Security Management Systems
Certified Information Systems Auditor (CISA)
Certified Information Security Manager (CISM)
Governance, Risk & Compliance

Hobbies and interests

Listening To Music, Teaching