About Me
GRC professional with 3+ years of hands-on cyber risk assessment, control review, and policy development experience across multi-client, cloud-reliant environments. Skilled at translating ISO/IEC 27001:2022, GDPR, and NIST-aligned control requirements into practical policies and standards, and at bridging GRC and technical teams to drive control gaps through to remediation. ISO/IEC 27001:2022 Lead Auditor with international exposure to European cybersecurity governance through a fellowship with the German Federal Office for Information Security (BSI) and Deutsche Telekom Security GmbH. Working knowledge of the Secure Controls Framework (SCF) and business continuity principles aligned with ISO 22301.