Summary
Overview
Work history
Education
Skills
Languages
Timeline
Generic

LORRAINE LEBONE MGWENYA

0157,Centurion

Summary

Lorraine has been in the Risk Mangement space for over 20 years and for the past four years she has been afforded an opportunity to manage the entire unit after the resignation of the manager and a colleague.

She managed to single handle the unit professionally and with intent.

The unit never received any audit findings under those three positions.

She has just completed her Master of Business Administration (MBA) degree with Gordon Institute of Business Sciences (GIBS) with the aim of enhancing her business acumen, strategic thinking, and decision-making skills.

With all of these, Lorraine has managed to prove how much she can stretch herself without breaking, she is resilient in her approach to life and her profession.

Overview

10
10
years of professional experience
7
7
years of post-secondary education

Work history

Acting Manager: IT Risk & Control

RAF
Tshwane, Centurion
05.2020 - Current


  • She is also acting in the position of Manager ICT Risk & Control, actively managing T&D risks, she works very closely with all internal assurance providers (Internal Audit, Enterprise risk management department, Compliance and Combined assurance teams.)
  • She also manages T&D’s very own Control Self assessments (CSA) process and provides meaningful reports to management.
  • She provides a comprehensive and prioritised approach to the tracking and testing of remedial actions on identified potential threats, and/or opportunities, control weaknesses or significant inherent risk mitigations.
  • Manages strategic & Tactical risk profile for T&D
  • Directs the implementation of corporate governance best practices and policies within the RAF’s Risk management environment.
  • Direct the development, implementation and maintenance of risk management policies, processes and strategies.
  • Support the reinsurance function in the management of reinsurance recoveries to ensure that reinsurance contracts provide appropriate cover to the RAF business (Just completed AIG application for cyber-security cover).
  • Ensure that the risk mitigation strategies are appropriate, feasible and implementable and that associated targets are achievable for ICT.
  • Liaise and engage with all assurance providers
  • Manage ICT Compliance Register


IT Change Management

Road Accident Fund
Tshwane, Centurion
02.2020 - Current



  • She is also responsible for T&D Change Management, the purpose of this function is to control the lifecycle of all changes, enabling beneficial Changes to be made with minimum disruption to IT services and business activities.
  • She also manages and chairs the Change Advisory Board, (CAB) that coordinates, assesses, approves, implement, and reviews changes in a controlled manner.
  • Coordinate and Chair the Change advisory board (CAB) to analyse changes zooming in on potential risks and the impact it may have to the organization.
  • Coordinate implementation or rejection of changes
  • Ensures that all the activities designed to implement the change are as per the standards.
  • Ensures that policies and procedures are well defined, documented, recognized and reviewed.
  • Prepare the change forward schedule prior to the CAB meeting and the Approved/Declined/On Hold schedule after the CAB meeting that summarizes all RFC’s.
  • These schedules help the CAB members to understand and evaluate the proposed changes and have the records of the CAB outcome.
  • She is also responsible for reviewing the change management process.
  • Analyse changes and document change reports
  • All these are part on the holistic risk management within the Digital and Technology space.



  • Assisted with restructuring of staff component to streamline the exceptional application of the project.
  • Drafted proposals to redefine functions and modify techniques.
  • Developed change management plans for projects to set and reinforce goals.
  • Evaluated user readiness to achieve strategic alignment and agility.

IT Service Continuity Management Specialist

Road Accident Fund
Tshwane, Centurion
09.2013 - Current
  • Lorraine is responsible RAF‘s IT Service Continuity management, a subset of the BCM programme, within the ICT Security, Risk management & Governance department.
  • This programme ensures that the business continues its mission critical activities through the timeous availability of the ICT systems under adverse situation by effectively and proactively managing the IT Service Continuity programme.
  • This is the mitigation control to address the availability and continuity risk within the RAF
  • Document ITSCM plans, review and communicate.
  • Invoke the plans when needed and prepare for testing and report accordingly.
  • This is part of risks management within the RAF.
  • The main key performance indicator (KPI) is to ensure that critical systems are available within the defined recovery time objective (RTO) and recovery point objective (RPO).


Education

Bachelor of Commerce, Ins & Risk Man and Bus Fin. - Department of business Sciences

University of the Witwatersrand
Johannesburg, Gauteng
01.1997 - 11.2001

Post Graduate Diploma, Gen Management - Business Sciences

Gordon Institute of Business Sciences
South Africa, Johannesburg
01.2019 - 03.2020

Master of Business Administration - Business Sciences

Gordon Institute of Business Sciences
Johannesburg, Gauteng
01.2021 - 03.2022

Skills

  • She is also acting in the position of Manager ICT Risk & Control, actively managing T&D risks, she works very closely with all internal assurance providers (Internal Audit, Enterprise risk management department, Compliance and Combined assurance teams)
  • She also manages T&D’s very own Control Self assessments (CSA) process and provides meaningful reports to management
  • She provides a comprehensive and prioritised approach to the tracking and testing of remedial actions on identified potential threats, and/or opportunities, control weaknesses or significant inherent risk mitigations
  • Manages strategic & Tactical risk profile for T&D
  • Directs the implementation of corporate governance best practices and policies within the RAF’s Risk management environment
  • Direct the development, implementation and maintenance of risk management policies, processes and strategies
  • Support the reinsurance function in the management of reinsurance recoveries to ensure that reinsurance contracts provide appropriate cover to the RAF business (Just completed AIG application for cyber-security cover)
  • Ensure that the risk mitigation strategies are appropriate, feasible and implementable and that associated targets are achievable for ICT
  • Liaise and engage with all assurance providers
  • Manage ICT Compliance Register

Languages

English
Fluent

Timeline

Master of Business Administration - Business Sciences

Gordon Institute of Business Sciences
01.2021 - 03.2022

Acting Manager: IT Risk & Control

RAF
05.2020 - Current

IT Change Management

Road Accident Fund
02.2020 - Current

Post Graduate Diploma, Gen Management - Business Sciences

Gordon Institute of Business Sciences
01.2019 - 03.2020

IT Service Continuity Management Specialist

Road Accident Fund
09.2013 - Current

Bachelor of Commerce, Ins & Risk Man and Bus Fin. - Department of business Sciences

University of the Witwatersrand
01.1997 - 11.2001
LORRAINE LEBONE MGWENYA