Trainer info inner banner

Teaching Experience

(Years)

10+

Professional Experience

(Years)

15+

Trainer avatar

TOLA VONG

Current Employer: Sword & Shield Consulting Company Limited | City: Phnom Penh

Province / State / Region: N/A | Country: Cambodia


Profile Summary

វង តុលា - TOLA VONG, CISA, CRISC, COBIT5, ITIL, ISO 27001 Senior Lead Implementer, ISO 27001 Senior Lead Auditor, ISO 22301 Senior Lead Auditor,  ISO 27005 Senior Lead Risk Manager Information and Technology Security, Risk and Control Governance Assurance and Strategist; Strategic Corporate Security Road Map, Frameworks, Policy, and Procedure Development Expert; Business Systems and Processes Engineer; Big Data Analyst; Project Management Professional. TOLA has over 17 years of extensive international professional experience with strong knowledge and skills. Area fo expertise, skills, and competencies highlight: Information & Technology (I&T) security policy, procedure, standard, guideline development Strategic corporate security roadmap and framework development Strategic IT roadmap development, governance, and management Enterprise Risk Management (ERM), Governance, Risk, Compliance (GRC), I&T security & control consulting and implementation Business Impact Analysis (BIA), Critical Business Function, Disaster Recovery Planning (DRP), Business Continuity Management (BCM) Enterprise Resource Planning (ERP) system consulting Information Security Management System (ISMS) I&T security governance and management, I&T security risk control audit, assurance, advisory, review, assessment, and due diligence Project proposal and request for proposal document development Project management & implementation; post-project review Vendor evaluation and selection; vendor management IT general controls (ITGCs), automated/ computerized application controls, IT-dependent business controls, ERP Systems, various IT Infrastructure and platforms, financial audit IT integration, regulatory compliance audit & assurance based on COBIT, COSO, ISO, SOX, PCI DSS and territory frameworks, standards and regulations Business system & process analysis, improvement & re-engineering IT and internal control design and optimization Data analytics, journal entries testing, and CAAT-related delivery Mentoring, counseling, coaching, and training


Trainer specialities and experience

Here is a detailed description of the courses that the trainer is specialized in and their related experience.

ISO 27001

Lead Implementer

Training Experience (Hours):2000

Professional Experience (Years): 17

ISO 27001

Lead Auditor

Training Experience (Hours):2000

Professional Experience (Years): 16

ISO 22301

Lead Auditor

Training Experience (Hours):2000

Professional Experience (Years): 17

ISO 31000

Manager

Training Experience (Hours):3000

Professional Experience (Years): 17

ISO 27005

Manager

Training Experience (Hours):2000

Professional Experience (Years): 17

Scroll to Top